2026年7月28日星期二

蘋果產品多個漏洞

蘋果產品多個漏洞

發佈日期: 2026年07月28日

風險: 中度風險

類型: 操作系統 - 流動裝置及操作系統

於蘋果產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、洩露敏感資料、資料篡改、權限提升、仿冒、遠端執行程式碼及繞過保安限制。


影響

  • 阻斷服務
  • 資料洩露
  • 繞過保安限制
  • 篡改
  • 權限提升
  • 仿冒
  • 遠端執行程式碼

受影響之系統或技術

  • iOS 26.6 及 iPadOS 26.6 以前的版本
  • macOS Sequoia 15.7.8 以前的版本
  • macOS Sonoma 14.8.8 以前的版本
  • macOS Tahoe 26.6 以前的版本
  • Safari 26.6 以前的版本
  • tvOS 26.6 以前的版本
  • watchOS 26.6 以前的版本
  • visionOS 26.6 以前的版本

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

安裝供應商提供的修補程式:

 

  • iOS 26.6 and iPadOS 26.6
  • macOS Sequoia 15.7.8
  • macOS Sonoma 14.8.8
  • macOS Tahoe 26.6
  • Safari 26.6
  • tvOS 26.6
  • watchOS 26.6
  • visionOS 26.6

漏洞識別碼


資料來源


相關連結

Apple Products Multiple Vulnerabilities

Apple Products Multiple Vulnerabilities

Release Date: 28 Jul 2026

RISK: Medium Risk

TYPE: Operating Systems - Mobile & Apps

Multiple vulnerabilities were identified in Apple Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, sensitive information disclosure, data manipulation, elevation of privilege, spoofing, remote code execution and security restriction bypass on the targeted system.


Impact

  • Denial of Service
  • Information Disclosure
  • Security Restriction Bypass
  • Data Manipulation
  • Elevation of Privilege
  • Spoofing
  • Remote Code Execution

System / Technologies affected

  • Versions prior to iOS 26.6 and iPadOS 26.6
  • Versions prior to macOS Sequoia 15.7.8
  • Versions prior to macOS Sonoma 14.8.8
  • Versions prior to macOS Tahoe 26.6
  • Versions prior to Safari 26.6
  • Versions prior to tvOS 26.6
  • Versions prior to watchOS 26.6
  • Versions prior to visionOS 26.6

Solutions

Before installation of the software, please visit the vendor web-site for more details.

Apply fixes issued by the vendor:

 

  • iOS 26.6 and iPadOS 26.6
  • macOS Sequoia 15.7.8
  • macOS Sonoma 14.8.8
  • macOS Tahoe 26.6
  • Safari 26.6
  • tvOS 26.6
  • watchOS 26.6
  • visionOS 26.6

Vulnerability Identifier


Source


Related Link

2026年7月27日星期一

Microsoft Edge 多個漏洞

Microsoft Edge 多個漏洞

發佈日期: 2026年07月27日

風險: 中度風險

類型: 用戶端 - 瀏覽器

於 Microsoft Edge 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、繞過保安限制、敏感資料洩露、遠端執行任意程式碼、資料篡改及彷冒。


Microsoft Edge Multiple Vulnerabilities

Microsoft Edge Multiple Vulnerabilities

Release Date: 27 Jul 2026

RISK: Medium Risk

TYPE: Clients - Browsers

Multiple vulnerabilities were identified in Microsoft Edge. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, security restriction bypass, sensitive information disclosure, remote code execution, data manipulation and spoofing on the targeted system.


2026年7月24日星期五

Google Chrome 多個漏洞

Google Chrome 多個漏洞

發佈日期: 2026年07月24日

風險: 中度風險

類型: 用戶端 - 瀏覽器

於 Google Chrome 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、繞過保安限制、遠端執行任意程式碼及資料篡改。


影響

  • 阻斷服務
  • 篡改
  • 繞過保安限制
  • 遠端執行程式碼

受影響之系統或技術

  • Google Chrome 150.0.7871.186 (Linux) 之前的版本
  • Google Chrome 150.0.7871.186/.187 (Mac) 之前的版本
  • Google Chrome 150.0.7871.186/.187 (Windows) 之前的版本

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

安裝軟件供應商提供的修補程式:

  • 更新至 150.0.7871.186 (Linux) 或之後版本
  • 更新至 150.0.7871.186/.187 (Mac) 或之後版本
  • 更新至 150.0.7871.186/.187 (Windows) 或之後版本

漏洞識別碼


資料來源


相關連結

Google Chrome Multiple Vulnerabilities

Google Chrome Multiple Vulnerabilities

Release Date: 24 Jul 2026

RISK: Medium Risk

TYPE: Clients - Browsers

Multiple vulnerabilities were identified in Google Chrome. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, security restriction bypass, remote code execution and data manipulation on the targeted system.


Impact

  • Denial of Service
  • Data Manipulation
  • Security Restriction Bypass
  • Remote Code Execution

System / Technologies affected

  • Google Chrome prior to 150.0.7871.186 (Linux)
  • Google Chrome prior to 150.0.7871.186/.187 (Mac)
  • Google Chrome prior to 150.0.7871.186/.187 (Windows)

Solutions

Before installation of the software, please visit the software vendor web-site for more details.

Apply fixes issued by the vendor:

  • Update to version 150.0.7871.186 (Linux) or later
  • Update to version 150.0.7871.186/.187 (Mac) or later
  • Update to version 150.0.7871.186/.187 (Windows) or later

Vulnerability Identifier


Source


Related Link

MongoDB 多個漏洞

MongoDB 多個漏洞

發佈日期: 2026年07月24日

風險: 中度風險

類型: 伺服器 - 數據庫伺服器

於 MongoDB 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發繞過保安限制、遠端執行任意程式碼、資料篡改、阻斷服務狀況、權限提升及洩露敏感資料。


影響

  • 阻斷服務
  • 資料洩露
  • 遠端執行程式碼
  • 繞過保安限制
  • 權限提升
  • 篡改

受影響之系統或技術

  • MongoDB Compass 1.38.0 至 1.49.7 之前的版本
  • MongoDB Server 7.0.0 至 7.0.39 之前的版本
  • MongoDB Server 8.0.0 至 8.0.28 之前的版本
  • MongoDB Server 8.2.0 至 8.2.12 之前的版本
  • MongoDB Server 8.3.0 至 8.3.7 之前的版本

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

安裝供應商提供的修補程式:

 


漏洞識別碼


資料來源


相關連結

MongoDB Multiple Vulnerabilities

MongoDB Multiple Vulnerabilities

Release Date: 24 Jul 2026

RISK: Medium Risk

TYPE: Servers - Database Servers

Multiple vulnerabilities were identified in MongoDB. A remote attacker could exploit some of these vulnerabilities to trigger security restriction bypass, remote code execution, data manipulation, denial of service condition, elevation of privilege and sensitive information disclosure on the targeted system.


Impact

  • Denial of Service
  • Information Disclosure
  • Remote Code Execution
  • Security Restriction Bypass
  • Elevation of Privilege
  • Data Manipulation

System / Technologies affected

  • MongoDB Compass 1.38.0 versions prior to 1.49.7
  • MongoDB Server 7.0.0 versions prior to 7.0.39
  • MongoDB Server 8.0.0 versions prior to 8.0.28
  • MongoDB Server 8.2.0 versions prior to 8.2.12
  • MongoDB Server 8.3.0 versions prior to 8.3.7

Solutions

Before installation of the software, please visit the vendor web-site for more details.

Apply fixes issued by the vendor:

 


Vulnerability Identifier


Source


Related Link

Microsoft Edge 多個漏洞

Microsoft Edge 多個漏洞

發佈日期: 2026年07月24日

風險: 中度風險

類型: 用戶端 - 瀏覽器

於 Microsoft Edge 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、遠端執行任意程式碼、權限提升、資料篡改及繞過保安限制。


Microsoft Edge Multiple Vulnerabilities

Microsoft Edge Multiple Vulnerabilities

Release Date: 24 Jul 2026

RISK: Medium Risk

TYPE: Clients - Browsers

Multiple vulnerabilities were identified in Microsoft Edge. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, remote code execution, elevation of privilege, data manipulation and security restriction bypass on the targeted system.


2026年7月23日星期四

IBM WebSphere 產品多個漏洞

IBM WebSphere 產品多個漏洞

發佈日期: 2026年07月23日

風險: 中度風險

類型: 伺服器 - 互聯網應用伺服器

於 IBM WebSphere 產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況。


影響

  • 阻斷服務

受影響之系統或技術

  • IBM WebSphere Application Server - Liberty - 17.0.0.3 - 26.0.0.7

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

 

安裝供應商提供的修補程式:


漏洞識別碼


資料來源


相關連結

IBM WebSphere Products Multiple Vulnerabilities

IBM WebSphere Products Multiple Vulnerabilities

Release Date: 23 Jul 2026

RISK: Medium Risk

TYPE: Servers - Internet App Servers

Multiple vulnerabilities were identified in IBM WebSphere Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition on the targeted system.


Impact

  • Denial of Service

System / Technologies affected

  • IBM WebSphere Application Server - Liberty - 17.0.0.3 - 26.0.0.7

Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

2026年7月22日星期三

Google Chrome 多個漏洞

Google Chrome 多個漏洞

發佈日期: 2026年07月22日

風險: 中度風險

類型: 用戶端 - 瀏覽器

於 Google Chrome 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、繞過保安限制、遠端執行任意程式碼、資料篡改及權限提升。


影響

  • 阻斷服務
  • 權限提升
  • 遠端執行程式碼
  • 篡改
  • 繞過保安限制

受影響之系統或技術

  • Google Chrome 150.0.7871.181 (Linux) 之前的版本
  • Google Chrome 150.0.7871.181/.182 (Mac) 之前的版本
  • Google Chrome 150.0.7871.181/.182 (Windows) 之前的版本

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

安裝軟件供應商提供的修補程式:

  • 更新至 150.0.7871.181 (Linux) 或之後版本
  • 更新至 150.0.7871.181/.182 (Mac) 或之後版本
  • 更新至 150.0.7871.181/.182 (Windows) 或之後版本

漏洞識別碼


資料來源


相關連結

蘋果產品多個漏洞

蘋果產品多個漏洞 發佈日期: 2026年07月28日 風險: 中度風險 類型: 操作系統 - 流動裝置及操作系統 於蘋果產品發現多個漏洞。遠端攻...