全部/科技/实时热榜

OSV.dev · 实时热榜

HISTORY2026年8月8日161 不同热搜
08/0309/01 有历史数据
DAILY UNIQUE TOPICS161 个热搜
  1. 01
    CGA-5rcr-hj5p-4fc7 · Chainguard/flux-notification-controller

    Affected packages: Chainguard/flux-notification-controller、Wolfi/flux-notification-controller Attributes: Fix available

    最高第 117:29 达到17:29 首次观测上榜21:45 观测离榜累计约4小时16分
  2. 02
    DEBIAN-CVE-2026-61478 · Debian:11/libvirt

    Affected packages: Debian:11/libvirt、Debian:12/libvirt、Debian:13/libvirt、Debian:14/libvirt Attributes: No fix available

    最高第 119:05 达到19:05 首次观测上榜21:45 观测离榜累计约2小时40分
  3. 03
    DEBIAN-CVE-2026-62289 · Debian:11/libheif

    Affected packages: Debian:11/libheif、Debian:12/libheif、Debian:13/libheif、Debian:14/libheif Attributes: Fix available

    最高第 105:07 达到05:07 首次观测上榜09:13 观测离榜累计约4小时6分
  4. 04
    ECHO-2c71-7b73-53dd · Echo/ffmpeg

    Affected packages: Echo/ffmpeg Attributes: No fix available

    最高第 104:51 达到04:51 首次观测上榜09:13 观测离榜累计约4小时22分
  5. 05
    ECHO-c1f2-5b8f-bfa5 · Echo/zip

    Affected packages: Echo/zip Attributes: No fix available

    最高第 110:17 达到10:17 首次观测上榜18:33 观测离榜累计约8小时16分
  6. 06
    EEF-CVE-2026-67585 · Atom Exhaustion via _entities Representation Keys in DivvyPayHQ absinthe_federation

    Atom Exhaustion via _entities Representation Keys in DivvyPayHQ absinthe_federation Affected packages: Hex/absinthe_federation、github.com/divvypayhq/absinthe_federation Attributes: Fix available、Severity - 8.7 (High)

    最高第 100:51 达到00:51 首次观测上榜02:43 观测离榜累计约1小时52分
  7. 07
    GHSA-9rjg-x2p2-h68h · API Platform Core: Relation IRIs are not type-checked: a related resource can be denormalised as the wrong resource type (type confusion)

    API Platform Core: Relation IRIs are not type-checked: a related resource can be denormalised as the wrong resource type (type confusion) Affected packages: Packagist/api-platform/core Attributes: Fix available、Severity - 6.5 (Medium)

    最高第 101:07 达到01:07 首次观测上榜02:43 观测离榜累计约1小时36分
  8. 08
    GHSA-f23p-vx2j-j53r · Hono: ` memo() ` retains SSR output across requests, leading to cross-user data disclosure

    Hono: ` memo() ` retains SSR output across requests, leading to cross-user data disclosure Affected packages: npm/hono Attributes: Fix available、Severity - 4.8 (Medium)

    最高第 102:59 达到02:59 首次观测上榜04:19 观测离榜累计约1小时20分
  9. 09
    GHSA-fp3f-mc75-235c · pypdf: Possible large memory usage for large /ToUnicode streams

    pypdf: Possible large memory usage for large /ToUnicode streams Affected packages: PyPI/pypdf Attributes: Fix available、Severity - 4.8 (Medium)

    最高第 103:47 达到03:47 首次观测上榜04:19 观测离榜累计约32分钟
  10. 10
    GHSA-fwg2-594c-jp42 · pypdf: Possible long runtimes/large memory usage for large CID font width ranges

    pypdf: Possible long runtimes/large memory usage for large CID font width ranges Affected packages: PyPI/pypdf Attributes: Fix available、Severity - 4.8 (Medium)

    最高第 103:15 达到03:15 首次观测上榜04:19 观测离榜累计约1小时4分
  11. 11
    GHSA-gm37-52c6-37mw · pymdown-extensions: exponential-backtracking ReDoS in caret, tilde, betterem, and magiclink inline processors

    pymdown-extensions: exponential-backtracking ReDoS in caret, tilde, betterem, and magiclink inline processors Affected packages: PyPI/pymdown-extensions Attributes: Fix available、Severity - 7.5 (High)

    最高第 102:43 达到02:43 首次观测上榜04:19 观测离榜累计约1小时36分
  12. 12
    GHSA-rjhh-76wf-8xmw · Smarty Security stream restriction bypass through stream: resource

    Smarty Security stream restriction bypass through stream: resource Affected packages: Packagist/smarty/smarty Attributes: Fix available、Severity - 6.9 (Medium)

    最高第 100:00 达到当日首次采集时已在榜01:07 观测离榜累计约1小时7分
  13. 13
    GHSA-wvpp-8hx9-p66j · GitPython: Unsafe git option guard bypass via split_single_char_options=False short-option token smuggling enables command execution

    GitPython: Unsafe git option guard bypass via split_single_char_options=False short-option token smuggling enables command execution Affected packages: PyPI/gitpython Attributes: Fix available、Severity - 8.8 (High)

    最高第 100:03 达到00:03 首次观测上榜01:39 观测离榜累计约1小时36分
  14. 14
    JLSEC-2026-1194 · An issue was discovered in freedesktop poppler v25.04.0. The heap memory containing PDF stream...

    An issue was discovered in freedesktop poppler v25.04.0. The heap memory containing PDF stream... Affected packages: Julia/Cairo_NoGPL_jll、Julia/Cairo_jll Attributes: No fix available、Severity - 2.9 (Low)

    最高第 101:23 达到01:23 首次观测上榜02:43 观测离榜累计约1小时20分
  15. 15
    JLSEC-2026-1197 · A use-after-free vulnerability exists in libcurl when an application configures an HTTP/2 stream...

    A use-after-free vulnerability exists in libcurl when an application configures an HTTP/2 stream... Affected packages: Julia/CURL_jll、Julia/LibCURL_jll Attributes: Fix available、Severity - 9.8 (Critical)

    最高第 104:19 达到04:19 首次观测上榜09:13 观测离榜累计约4小时54分
  16. 16
    MAL-2026-13621 · Malicious code in @decido/backend-core (npm)

    Malicious code in @decido/backend-core (npm) Affected packages: npm/@decido/backend-core Attributes: No fix available

    最高第 101:39 达到01:39 首次观测上榜02:59 观测离榜累计约1小时20分
  17. 17
    MAL-2026-13626 · Malicious code in @mrbenty8jf1p9y5/oidc-bind-canary (npm)

    Malicious code in @mrbenty8jf1p9y5/oidc-bind-canary (npm) Affected packages: npm/@mrbenty8jf1p9y5/oidc-bind-canary Attributes: No fix available

    最高第 102:11 达到02:11 首次观测上榜03:47 观测离榜累计约1小时36分
  18. 18
    MAL-2026-13629 · Malicious code in @coralxyz/anchor (npm)

    Malicious code in @coralxyz/anchor (npm) Affected packages: npm/@coralxyz/anchor Attributes: No fix available

    最高第 109:13 达到09:13 首次观测上榜18:17 观测离榜累计约9小时4分
  19. 19
    MINI-3pmc-p293-g8px · MinimOS/litellm-1.87

    Affected packages: MinimOS/litellm-1.87 Attributes: No fix available

    最高第 121:45 达到21:45 首次观测上榜22:01 观测离榜累计约16分钟
  20. 20
    MINI-qm85-wcc2-329m · MinimOS/opensearch-dashboards-fips-3-plugin-reports

    Affected packages: MinimOS/opensearch-dashboards-fips-3-plugin-reports Attributes: No fix available

    最高第 122:01 达到22:01 首次观测上榜当日结束时仍在榜累计约1小时52分
  21. 21
    MINI-vxw9-6v68-j9hf · MinimOS/gotenberg

    Affected packages: MinimOS/gotenberg、MinimOS/gotenberg-libreoffice Attributes: Fix available

    最高第 110:01 达到10:01 首次观测上榜18:33 观测离榜累计约8小时32分
  22. 22
    MINI-x744-27r3-223m · MinimOS/confluent-common-docker-8.1

    Affected packages: MinimOS/confluent-common-docker-8.1 Attributes: Fix available

    最高第 104:03 达到04:03 首次观测上榜04:19 观测离榜累计约16分钟
  23. 23
    RHSA-2026:51603 · Red Hat Security Advisory: kernel security, bug fix, and enhancement update

    Red Hat Security Advisory: kernel security, bug fix, and enhancement update Affected packages: Red Hat:rhel_e4s:9.2::appstream/bpftool-debuginfo、Red Hat:rhel_e4s:9.2::appstream/kernel-64k-debug-debuginfo、Red Hat:rhel_e4s:9.2::appstream/kernel-64k-debug-devel、Red Hat:rhel_e4s:9.2::appstream/kernel-64k-debug-devel-matched、Red Hat:rhel_e4s:9.2::appstream/kernel-64k-debuginfo、... 66 more Attributes: Fix available、Severity - 8.4 (High)

    最高第 118:17 达到18:17 首次观测上榜21:45 观测离榜累计约3小时28分
  24. 24
    RHSA-2026:51746 · Red Hat Security Advisory: kernel security, bug fix, and enhancement update

    Red Hat Security Advisory: kernel security, bug fix, and enhancement update Affected packages: Red Hat:rhel_e4s:9.4::appstream/bpftool-debuginfo、Red Hat:rhel_e4s:9.4::appstream/kernel-64k-debug-debuginfo、Red Hat:rhel_e4s:9.4::appstream/kernel-64k-debug-devel、Red Hat:rhel_e4s:9.4::appstream/kernel-64k-debug-devel-matched、Red Hat:rhel_e4s:9.4::appstream/kernel-64k-debuginfo、... 119 more Attributes: Fix available、Severity - 8.4 (High)

    最高第 118:33 达到18:33 首次观测上榜21:45 观测离榜累计约3小时12分
  25. 25
    RLSA-2026:51035 · Moderate: kernel security, bug fix, and enhancement update

    Moderate: kernel security, bug fix, and enhancement update Affected packages: Rocky Linux:9/kernel Attributes: Fix available、Severity - 7.1 (High)

    最高第 102:27 达到02:27 首次观测上榜04:19 观测离榜累计约1小时52分
  26. 26
    RLSA-2026:51295 · Moderate: kernel security, bug fix, and enhancement update

    Moderate: kernel security, bug fix, and enhancement update Affected packages: Rocky Linux:10/kernel Attributes: Fix available、Severity - 7.5 (High)

    最高第 108:41 达到08:41 首次观测上榜09:13 观测离榜累计约32分钟
  27. 27
    CGA-76w3-rghh-v4jj · Chainguard/flux-notification-controller

    Affected packages: Chainguard/flux-notification-controller、Wolfi/flux-notification-controller Attributes: Fix available

    最高第 217:29 达到17:29 首次观测上榜21:45 观测离榜累计约4小时16分
  28. 28
    DEBIAN-CVE-2026-19082 · Debian:11/libimager-perl

    Affected packages: Debian:11/libimager-perl、Debian:12/libimager-perl、Debian:13/libimager-perl、Debian:14/libimager-perl Attributes: No fix available

    最高第 205:07 达到05:07 首次观测上榜06:11 观测离榜累计约1小时4分
  29. 29
    DEBIAN-CVE-2026-62292 · Debian:11/libheif

    Affected packages: Debian:11/libheif、Debian:12/libheif、Debian:13/libheif、Debian:14/libheif Attributes: Fix available

    最高第 206:11 达到05:07 首次观测上榜09:13 观测离榜累计约4小时6分
  30. 30
    ECHO-6324-d2f6-0441 · Echo/ffmpeg

    Affected packages: Echo/ffmpeg Attributes: No fix available

    最高第 204:51 达到04:51 首次观测上榜09:13 观测离榜累计约4小时22分
  31. 31
    GHSA-29g2-3rmr-qm68 · SvelteKit: ReDoS (O(n^2)) in content negotiation — unauthenticated DoS via the Accept header

    SvelteKit: ReDoS (O(n^2)) in content negotiation — unauthenticated DoS via the Accept header Affected packages: npm/@sveltejs/kit Attributes: Fix available、Severity - 5.3 (Medium)

    最高第 201:07 达到01:07 首次观测上榜02:43 观测离榜累计约1小时36分
  32. 32
    GHSA-79qm-7rj5-m7r9 · Hono: Proxy Helper does not remove response headers listed in the ` Connection ` header

    Hono: Proxy Helper does not remove response headers listed in the ` Connection ` header Affected packages: npm/hono Attributes: Fix available、Severity - 3.7 (Low)

    最高第 202:59 达到02:59 首次观测上榜04:19 观测离榜累计约1小时20分
  33. 33
    GHSA-f6wf-28g6-769x · Smarty: Symlink path traversal out of trusted directories

    Smarty: Symlink path traversal out of trusted directories Affected packages: Packagist/smarty/smarty Attributes: Fix available、Severity - 6.9 (Medium)

    最高第 200:00 达到当日首次采集时已在榜01:07 观测离榜累计约1小时7分
  34. 34
    GHSA-jm78-9fvv-mhgr · GitPython: git-config OPTION-name injection via =/#/whitespace bypasses name validator, enabling forged core.sshCommand/hooksPath (RCE)

    GitPython: git-config OPTION-name injection via =/#/whitespace bypasses name validator, enabling forged core.sshCommand/hooksPath (RCE) Affected packages: PyPI/gitpython Attributes: Fix available、Severity - 8.8 (High)

    最高第 200:03 达到00:03 首次观测上榜01:23 观测离榜累计约1小时20分
  35. 35
    GHSA-mmj4-63m4-r6h5 · CodeIgniter: Uploaded file extension validation bypass in ` is_image ` and ` mime_in ` rules

    CodeIgniter: Uploaded file extension validation bypass in ` is_image ` and ` mime_in ` rules Affected packages: Packagist/codeigniter4/framework Attributes: Fix available、Severity - 9.8 (Critical)

    最高第 202:43 达到02:43 首次观测上榜04:19 观测离榜累计约1小时36分
  36. 36
    GHSA-p9jm-q85p-7mcp · Netty: RedisArrayAggregator max-elements failure leaves retained partial aggregate state

    Netty: RedisArrayAggregator max-elements failure leaves retained partial aggregate state Affected packages: Maven/io.netty:netty-codec-redis Attributes: Fix available、Severity - 6.5 (Medium)

    最高第 201:39 达到01:39 首次观测上榜02:59 观测离榜累计约1小时20分
  37. 37
    GHSA-qgq7-7hm3-q39j · go-git: Malicious reference names may modify files outside the reference storage

    go-git: Malicious reference names may modify files outside the reference storage Affected packages: Go/github.com/go-git/go-git/v5、Go/github.com/go-git/go-git/v6 Attributes: Fix available、Severity - 6.3 (Medium)

    最高第 200:51 达到00:51 首次观测上榜02:27 观测离榜累计约1小时36分
  38. 38
    GHSA-rg76-677x-56q9 · crypto-js: Insufficient Entropy in Cryptographic Secret Generation via Vulnerable CryptoJS Dependency Chain

    crypto-js: Insufficient Entropy in Cryptographic Secret Generation via Vulnerable CryptoJS Dependency Chain Affected packages: npm/crypto-js Attributes: Fix available、Severity - 9.0 (Critical)

    最高第 203:15 达到03:15 首次观测上榜04:19 观测离榜累计约1小时4分
  39. 39
    JLSEC-2026-1195 · GNU coreutils uniq is vulnerable to an out‑of‑bounds read due to incorrect handling of multibyte...

    GNU coreutils uniq is vulnerable to an out‑of‑bounds read due to incorrect handling of multibyte... Affected packages: Julia/coreutils_jll Attributes: No fix available、Severity - 4.6 (Medium)

    最高第 201:23 达到01:23 首次观测上榜02:43 观测离榜累计约1小时20分
  40. 40
    JLSEC-2026-1198 · An issue in curl’s QUIC UDP receive function allows a malicious HTTP/3 server to trigger a remote...

    An issue in curl’s QUIC UDP receive function allows a malicious HTTP/3 server to trigger a remote... Affected packages: Julia/CURL_jll、Julia/LibCURL_jll Attributes: Fix available、Severity - 7.5 (High)

    最高第 204:19 达到04:19 首次观测上榜09:13 观测离榜累计约4小时54分
  41. 41
    MAL-2026-13624 · Malicious code in @depup/memfs (npm)

    Malicious code in @depup/memfs (npm) Affected packages: npm/@depup/memfs Attributes: No fix available

    最高第 202:11 达到02:11 首次观测上榜03:15 观测离榜累计约1小时4分
  42. 42
    MAL-2026-13664 · Malicious code in titan-exchange-shared-permissions (npm)

    Malicious code in titan-exchange-shared-permissions (npm) Affected packages: npm/titan-exchange-shared-permissions Attributes: No fix available

    最高第 209:13 达到09:13 首次观测上榜18:17 观测离榜累计约9小时4分
  43. 43
    MINI-7xp3-wgr3-phqg · MinimOS/litellm-1.86

    Affected packages: MinimOS/litellm-1.86 Attributes: No fix available

    最高第 221:45 达到21:45 首次观测上榜22:01 观测离榜累计约16分钟
  44. 44
    MINI-8w8f-pp74-rj4f · MinimOS/external-secrets-operator-fips

    Affected packages: MinimOS/external-secrets-operator-fips Attributes: Fix available

    最高第 210:01 达到10:01 首次观测上榜18:33 观测离榜累计约8小时32分
  45. 45
    MINI-r775-rcch-57vj · MinimOS/opensearch-dashboards-fips-3-plugin-assistant

    Affected packages: MinimOS/opensearch-dashboards-fips-3-plugin-assistant、MinimOS/opensearch-dashboards-fips-3-plugin-investigation、MinimOS/opensearch-dashboards-fips-3-plugin-observability、MinimOS/opensearch-dashboards-fips-3-plugin-reports Attributes: No fix available

    最高第 222:01 达到22:01 首次观测上榜当日结束时仍在榜累计约1小时52分
  46. 46
    RHSA-2026:51604 · Red Hat Security Advisory: kernel-rt security, bug fix, and enhancement update

    Red Hat Security Advisory: kernel-rt security, bug fix, and enhancement update Affected packages: Red Hat:rhel_e4s:9.2::nfv/kernel-rt、Red Hat:rhel_e4s:9.2::nfv/kernel-rt-core、Red Hat:rhel_e4s:9.2::nfv/kernel-rt-debug、Red Hat:rhel_e4s:9.2::nfv/kernel-rt-debug-core、Red Hat:rhel_e4s:9.2::nfv/kernel-rt-debug-debuginfo、... 27 more Attributes: Fix available、Severity - 8.4 (High)

    最高第 218:17 达到18:17 首次观测上榜21:45 观测离榜累计约3小时28分
  47. 47
    RHSA-2026:51861 · Red Hat Security Advisory: Red Hat Hardened Images RPMs Security Update

    Red Hat Security Advisory: Red Hat Hardened Images RPMs Security Update Affected packages: Red Hat:hummingbird:1/policycoreutils、Red Hat:hummingbird:1/policycoreutils-dbus Attributes: Fix available、Severity - 4.4 (Medium)

    最高第 218:33 达到18:33 首次观测上榜21:45 观测离榜累计约3小时12分
  48. 48
    CGA-5c4q-86pf-x59c · Chainguard/tensorflow-cpu-jupyter

    Affected packages: Chainguard/tensorflow-cpu-jupyter Attributes: Fix available

    最高第 317:29 达到17:29 首次观测上榜21:45 观测离榜累计约4小时16分
  49. 49
    ECHO-6986-2e97-593f · Echo/ffmpeg

    Affected packages: Echo/ffmpeg Attributes: No fix available

    最高第 304:51 达到04:51 首次观测上榜09:13 观测离榜累计约4小时22分
  50. 50
    GHSA-54fx-42gc-7vw4 · Hono: Algorithmic Complexity DoS in Language Middleware

    Hono: Algorithmic Complexity DoS in Language Middleware Affected packages: npm/hono Attributes: Fix available、Severity - 5.3 (Medium)

    最高第 302:59 达到02:59 首次观测上榜04:19 观测离榜累计约1小时20分