2026年8月19日星期三

GitLab 多個漏洞

GitLab 多個漏洞

發佈日期: 2026年08月19日

於 GitLab 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發資料篡改及繞過保安限制。


影響

  • 繞過保安限制
  • 篡改

受影響之系統或技術

  • GitLab Community Edition (CE) 19.2.4, 19.1.6, 19.0.8, 18.11.11 以前的版本
  • GitLab Enterprise Edition (EE) 19.2.4, 19.1.6, 19.0.8, 18.11.11 以前的版本

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

 

安裝供應商提供的修補程式:


漏洞識別碼


資料來源


相關連結

GitLab Multiple Vulnerabilities

GitLab Multiple Vulnerabilities

Release Date: 19 Aug 2026

Multiple vulnerabilities were identified in GitLab. A remote attacker could exploit some of these vulnerabilities to trigger data manipulation and security restriction bypass on the targeted system.


Impact

  • Security Restriction Bypass
  • Data Manipulation

System / Technologies affected

  • GitLab Community Edition (CE) versions prior to 19.2.4, 19.1.6, 19.0.8, 18.11.11
  • GitLab Enterprise Edition (EE) versions prior to 19.2.4, 19.1.6, 19.0.8, 18.11.11

Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

Google Chrome 多個漏洞

Google Chrome 多個漏洞

發佈日期: 2026年08月19日

於 Google Chrome 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、繞過保安限制、敏感資料洩露及遠端執行任意程式碼。


影響

  • 阻斷服務
  • 遠端執行程式碼
  • 資料洩露
  • 繞過保安限制

受影響之系統或技術

  • Google Chrome 151.0.7922.169 (Android) 之前的版本
  • Google Chrome 151.0.7922.169 (Linux) 之前的版本
  • Google Chrome 151.0.7922.169/.170 (Mac) 之前的版本
  • Google Chrome 151.0.7922.169/.170 (Windows) 之前的版本

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

安裝軟件供應商提供的修補程式:

  • 更新至 151.0.7922.169 (Android) 或之後版本
  • 更新至 151.0.7922.169 (Linux) 或之後版本
  • 更新至 151.0.7922.169/.170 (Mac) 或之後版本
  • 更新至 151.0.7922.169/.170 (Windows) 或之後版本

漏洞識別碼


資料來源


相關連結

    Google Chrome Multiple Vulnerabilities

    Google Chrome Multiple Vulnerabilities

    Release Date: 19 Aug 2026

    Multiple vulnerabilities were identified in Google Chrome. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, security restriction bypass, sensitive information disclosure and remote code execution on the targeted system.


    Impact

    • Denial of Service
    • Remote Code Execution
    • Information Disclosure
    • Security Restriction Bypass

    System / Technologies affected

    • Google Chrome prior to 151.0.7922.169 (Android)
    • Google Chrome prior to 151.0.7922.169 (Linux)
    • Google Chrome prior to 151.0.7922.169/.170 (Mac)
    • Google Chrome prior to 151.0.7922.169/.170 (Windows)

    Solutions

    Before installation of the software, please visit the software vendor web-site for more details.

    Apply fixes issued by the vendor:

    • Update to version 151.0.7922.169 (Android) or later
    • Update to version 151.0.7922.169 (Linux) or later
    • Update to version 151.0.7922.169/.170 (Mac) or later
    • Update to version 151.0.7922.169/.170 (Windows) or later

    Vulnerability Identifier


    Source


    Related Link

    Mozilla 產品多個漏洞

    Mozilla 產品多個漏洞

    發佈日期: 2026年08月19日

    於 Mozilla 產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、權限提升、繞過保安限制、敏感資料洩露、遠端執行任意程式碼及彷冒。

     


    影響

    • 遠端執行程式碼
    • 繞過保安限制
    • 資料洩露
    • 阻斷服務
    • 權限提升
    • 仿冒

    受影響之系統或技術

    以下版本之前的版本﹕

     

    • Firefox 154
    • Firefox ESR 153.1
    • Firefox ESR 140.14
    • Thunderbird 140.14
    • Thunderbird 153.1
    • Thunderbird 154

    解決方案

    在安裝軟體之前,請先瀏覽供應商之官方網站,以獲得更多詳細資料。

    更新至版本:

     

    • Firefox 154
    • Firefox ESR 153.1
    • Firefox ESR 140.14
    • Thunderbird 140.14
    • Thunderbird 153.1
    • Thunderbird 154

    漏洞識別碼


    資料來源


    相關連結

    Mozilla Products Multiple Vulnerabilities

    Mozilla Products Multiple Vulnerabilities

    Release Date: 19 Aug 2026

    Multiple vulnerabilities were identified in Mozilla Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, security restriction bypass, sensitive information disclosure, remote code execution and spoofing on the targeted system.

     


    Impact

    • Remote Code Execution
    • Security Restriction Bypass
    • Information Disclosure
    • Denial of Service
    • Elevation of Privilege
    • Spoofing

    System / Technologies affected

    Versions prior to:

     

    • Firefox 154
    • Firefox ESR 153.1
    • Firefox ESR 140.14
    • Thunderbird 140.14
    • Thunderbird 153.1
    • Thunderbird 154

    Solutions

    Before installation of the software, please visit the vendor web-site for more details.

    Apply fixes issued by the vendor:

     

    • Firefox 154
    • Firefox ESR 153.1
    • Firefox ESR 140.14
    • Thunderbird 140.14
    • Thunderbird 153.1
    • Thunderbird 154

    Vulnerability Identifier


    Source


    Related Link

    GitLab 多個漏洞

    GitLab 多個漏洞 發佈日期: 2026年08月19日 於 GitLab 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發資料篡改及繞過保安限制。 影響 繞過保安限制 篡改 受影響之系統或技術 GitLab Community Edition (CE) 19.2.4, ...