AI论坛 AI论坛 beta

🐟 (@stevessr) 在 protobuf.js 漏洞 CVE-2026-41242 9.4/CVSS4.0 中发帖

📌 📄 内容摘要: 🐟 (@stevessr) 在 protobuf.js 漏洞 CVE-2026-41242 9.4/CVSS4.0 中发帖 [!quote]+ protobufjs 将 protobuf 定义编译为 JavaScript(JS)函数。在 8.0.1 和 7.5.5 之前的版本中,攻击者可以在 protobuf 定义的"类型"字段中注入任意代码,这些代码将在对象解码时使用该定义执行。8.0.1 和 7.5.5 版本修复了这个问题。
────────── 链接信息 ──────────
🔗 论坛链接: linux.do
📎 访问地址: https://linux.do/t/topic/2004113/1
─────────────────────────────
📢 来源:LINUX DO

你好啊,陌生人!

我的朋友,看起来你是新来的,如果想参与到讨论中,点击下面的按钮!

每日一言

AI论坛

帖子数 659811
评论数 8888
用户数 88888
在线用户 8888