2026年10月8日星期四

IBM WebSphere Products Multiple Vulnerabilities

IBM WebSphere Products Multiple Vulnerabilities

Release Date: 8 Oct 2026

Multiple vulnerabilities were identified in IBM WebSphere Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, sensitive information disclosure and data manipulation on the targeted system.


Impact

  • Denial of Service
  • Elevation of Privilege
  • Data Manipulation
  • Information Disclosure

System / Technologies affected

  • IBM WebSphere Application Server - Liberty version prior to 26.0.0.10

Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

 


Mozilla Firefox 繞過保安限制漏洞

Mozilla Firefox 繞過保安限制漏洞

發佈日期: 2026年10月08日

於 Mozilla Firefox 發現一個漏洞,遠端攻擊者可利用此漏洞,於目標系統觸發繞過保安限制。


影響

  • 繞過保安限制

受影響之系統或技術

以下版本之前的版本﹕

  • Firefox 157.0.1

解決方案

在安裝軟體之前,請先瀏覽供應商之官方網站,以獲得更多詳細資料。

更新至版本:

  • Firefox 157.0.1

漏洞識別碼


資料來源


相關連結

 


Mozilla Firefox Security Restriction Bypass Vulnerability

Mozilla Firefox Security Restriction Bypass Vulnerability

Release Date: 8 Oct 2026

A vulnerability was identified in Mozilla Firefox. A remote attacker could exploit this vulnerability to trigger security restriction bypass on the targeted system.


Impact

  • Security Restriction Bypass

System / Technologies affected

Versions prior to:

  • Firefox 157.0.1

Solutions

Before installation of the software, please visit the vendor web-site for more details.

Apply fix issued by the vendor:

  • Firefox 157.0.1

Vulnerability Identifier


Source


Related Link

 


SonicWall SMA1000 系列產品多個漏洞

SonicWall SMA1000 系列產品多個漏洞

發佈日期: 2026年10月08日

於 SonicWall SMA1000 系列產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發跨網站指令碼、繞過保安限制及遠端執行任意程式碼。


影響

  • 遠端執行程式碼
  • 繞過保安限制
  • 跨網站指令碼

受影響之系統或技術

  • SMA1000 Models - 6210, 7210, 8200v 
    • 12.4.3-03526、12.5.0-02952 及之前版本 (platform-hotfix)

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

 

安裝供應商提供的修補程式:


漏洞識別碼


資料來源


相關連結

 


SonicWall SMA1000 Series Products Multiple Vulnerabilities

SonicWall SMA1000 Series Products Multiple Vulnerabilities

Release Date: 8 Oct 2026

Multiple vulnerabilities were identified in SonicWall SMA1000 Series Products. A remote attacker could exploit some of these vulnerabilities to trigger cross-site scripting, security restriction bypass and remote code execution on the targeted system.


Impact

  • Remote Code Execution
  • Security Restriction Bypass
  • Cross-Site Scripting

System / Technologies affected

  • SMA1000 Models - 6210, 7210, 8200v 
    • 12.4.3-03526, 12.5.0-02952 and older versions (platform-hotfix)

Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link

 


2026年10月7日星期三

Android 多個漏洞

Android 多個漏洞

發佈日期: 2026年10月07日

於 Android 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、權限提升、敏感資料洩露及遠端執行任意程式碼。


影響

  • 阻斷服務
  • 權限提升
  • 遠端執行程式碼
  • 資料洩露

受影響之系統或技術

  • 2026-10-01 前的 Android 裝置保安更新級別

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。


漏洞識別碼


資料來源


相關連結

 


Android Multiple Vulnerabilities

Android Multiple Vulnerabilities

Release Date: 7 Oct 2026

Multiple vulnerabilities were identified in Android. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, sensitive information disclosure and remote code execution on the targeted system.

 


Impact

  • Denial of Service
  • Elevation of Privilege
  • Remote Code Execution
  • Information Disclosure

System / Technologies affected

  • Android devices with a security patch level prior to 2026-10-01

Solutions

Before installation of the software, please visit the vendor web-site for more details.


Vulnerability Identifier


Source


Related Link

 


Google Chrome 多個漏洞

Google Chrome 多個漏洞

發佈日期: 2026年10月07日

於 Google Chrome 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發跨網站指令碼、阻斷服務狀況、權限提升、繞過保安限制、敏感資料洩露、遠端執行任意程式碼、資料篡改及彷冒。


影響

  • 跨網站指令碼
  • 阻斷服務
  • 權限提升
  • 遠端執行程式碼
  • 繞過保安限制
  • 資料洩露
  • 仿冒
  • 篡改

受影響之系統或技術

  • Google Chrome 155.0.8059.39 (Linux) 之前的版本
  • Google Chrome 155.0.8059.39/.40 (Mac) 之前的版本
  • Google Chrome 155.0.8059.39/.40 (Windows) 之前的版本

解決方案

在安裝軟體之前,請先瀏覽供應商之網站,以獲得更多詳細資料。

安裝軟件供應商提供的修補程式:

  • Google Chrome 155.0.8059.39 (Linux) 或之後版本
  • Google Chrome 155.0.8059.39/.40 (Mac) 或之後版本
  • Google Chrome 155.0.8059.39/.40 (Windows) 或之後版本

漏洞識別碼


資料來源


相關連結

 


Apache HTTP Server 多個漏洞

Apache HTTP Server 多個漏洞 發佈日期 : 2026 年 10 月 09 日 於 Apache 產品發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發遠端執行程式碼、資料篡改、阻斷服務狀況、繞過保安限制及敏感資料洩露。 影響 ...