Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 163

Количество 163

oracle-oval логотип

ELSA-2026-23228

27 дней назад

ELSA-2026-23228: image-builder security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-22937

3 месяца назад

ELSA-2026-22937: image-builder security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2026:22714

4 месяца назад

Important: osbuild-composer security update

EPSS: Низкий
rocky логотип

RLSA-2026:22450

4 месяца назад

Important: osbuild-composer security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-22714

около 2 месяцев назад

ELSA-2026-22714: osbuild-composer security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-22450

около 2 месяцев назад

ELSA-2026-22450: osbuild-composer security update (IMPORTANT)

EPSS: Низкий
redos логотип

ROS-20260430-80-0011

5 месяцев назад

Уязвимость golang

CVSS3: 6.4
EPSS: Низкий
rocky логотип

RLSA-2026:25999

3 месяца назад

Moderate: yggdrasil-worker-package-manager security update

EPSS: Низкий
github логотип

GHSA-xj38-jxc5-rppx

6 месяцев назад

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
EPSS: Низкий
oracle-oval логотип

ELSA-2026-25999

3 месяца назад

ELSA-2026-25999: yggdrasil-worker-package-manager security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2026-07252

6 месяцев назад

Уязвимость языка программирования Go, связанная с неверным определением ссылки перед доступом к файлу, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260729-80-0025

2 месяца назад

Уязвимость coredns

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260729-73-0017

2 месяца назад

Уязвимость coredns

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260710-80-0031

3 месяца назад

Уязвимость mimir

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260710-73-0031

3 месяца назад

Уязвимость mimir

CVSS3: 6.4
EPSS: Низкий
redos логотип

ROS-20260430-73-0011

5 месяцев назад

Уязвимость golang

CVSS3: 6.4
EPSS: Низкий
ubuntu логотип

CVE-2026-33810

6 месяцев назад

When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 8.2
EPSS: Низкий
redhat логотип

CVE-2026-33810

6 месяцев назад

When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-33810

6 месяцев назад

When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 8.2
EPSS: Низкий
msrc логотип

CVE-2026-33810

6 месяцев назад

Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x509

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2026-23228

ELSA-2026-23228: image-builder security update (IMPORTANT)

27 дней назад
oracle-oval логотип
ELSA-2026-22937

ELSA-2026-22937: image-builder security update (IMPORTANT)

3 месяца назад
rocky логотип
RLSA-2026:22714

Important: osbuild-composer security update

4 месяца назад
rocky логотип
RLSA-2026:22450

Important: osbuild-composer security update

4 месяца назад
oracle-oval логотип
ELSA-2026-22714

ELSA-2026-22714: osbuild-composer security update (IMPORTANT)

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-22450

ELSA-2026-22450: osbuild-composer security update (IMPORTANT)

около 2 месяцев назад
redos логотип
ROS-20260430-80-0011

Уязвимость golang

CVSS3: 6.4
5 месяцев назад
rocky логотип
RLSA-2026:25999

Moderate: yggdrasil-worker-package-manager security update

3 месяца назад
github логотип
GHSA-xj38-jxc5-rppx

On Linux, if the target of Root.Chmod is replaced with a symlink while the chmod operation is in progress, Chmod can operate on the target of the symlink, even when the target lies outside the root. The Linux fchmodat syscall silently ignores the AT_SYMLINK_NOFOLLOW flag, which Root.Chmod uses to avoid symlink traversal. Root.Chmod checks its target before acting and returns an error if the target is a symlink lying outside the root, so the impact is limited to cases where the target is replaced with a symlink between the check and operation.

CVSS3: 6.4
6 месяцев назад
oracle-oval логотип
ELSA-2026-25999

ELSA-2026-25999: yggdrasil-worker-package-manager security update (MODERATE)

3 месяца назад
fstec логотип
BDU:2026-07252

Уязвимость языка программирования Go, связанная с неверным определением ссылки перед доступом к файлу, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.4
6 месяцев назад
redos логотип
ROS-20260729-80-0025

Уязвимость coredns

CVSS3: 6.4
2 месяца назад
redos логотип
ROS-20260729-73-0017

Уязвимость coredns

CVSS3: 6.4
2 месяца назад
redos логотип
ROS-20260710-80-0031

Уязвимость mimir

CVSS3: 6.4
3 месяца назад
redos логотип
ROS-20260710-73-0031

Уязвимость mimir

CVSS3: 6.4
3 месяца назад
redos логотип
ROS-20260430-73-0011

Уязвимость golang

CVSS3: 6.4
5 месяцев назад
ubuntu логотип
CVE-2026-33810

When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 8.2
6 месяцев назад
redhat логотип
CVE-2026-33810

When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 8.8
6 месяцев назад
nvd логотип
CVE-2026-33810

When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.

CVSS3: 8.2
6 месяцев назад
msrc логотип
CVE-2026-33810

Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x509

CVSS3: 5.9
6 месяцев назад

Уязвимостей на страницу