Nessus 的 Artificial Intelligence 系列

ID名稱嚴重性
313204更新機制中的 Ollama 路徑遊走 RCE (CVE-2026-42249)
high
313203Ollama 缺少更新的簽章驗證 (CVE-2026-42248)
high
312368CrewAI Python 函式庫偵測
info
312367Anthropic Claude 桌面應用程式已安裝(Windows)
info
311475Ray 2.49.0 < 2.55.0 遠端程式碼執行 (CVE-2026-41486)
high
311391Brave 瀏覽器已安裝(Linux)
info
311390Brave 瀏覽器已安裝(Windows)
info
311389Flowise Python 函式庫偵測
info
311359Brave 瀏覽器已安裝(macOS)
info
311268Codeium 風帆衝浪安裝(Linux / Unix)
info
311267Anthropic Claude 程式碼已安裝(Windows)
info
311261LangGraph Python 函式庫偵測
info
311260pgvector Python 函式庫偵測
info
306491BentoML < 1.4.38 多個弱點 (GHSA-fgv4-6jr3-jgfw、GHSA-v959-cwq9-7hr6)
critical
305983Anthropic Claude 程式碼已安裝(Linux)
info
304817LangChain 核心偵測
info
304816LangChain Core < 1.2.22 路徑遊走 (GHSA-qh6h-p6c9-ff54)
high
304809偵測到 MCP JSON 組態 (Linux)
info
304806LiteLLM 1.82.7 / 1.82.8 供應鏈入侵 (GHSA-5mg7-485q-xm76)
critical
304685Langflow Web 偵測
info
304684Langflow 未經驗證的存取
critical
304266BentoML < 1.4.37 命令插入 (GHSA-jfjg-vc52-wqvf)
high
303796Langflow 偵測
info
303795Langflow < 1.9.0 RCE (GHSA-vwmf-pq79-vjvx)
critical
302853Python 套件 Microsoft Azure 儲存程式庫偵測
info
302134Ollama 未經驗證的存取
critical
300838Zed < 0.224.4 多個路徑遊走弱點
high
300821BentoML < 1.4.36 任意檔案寫入
high
300258已安裝 Zed (Linux)
info
300257已安裝 Zed (macOS)
info
300256已安裝 Zed (Windows)
info
300255Zed < 0.225.9 符號連結逸出 (CVE-2026-27967)
high
299880MLflow < 3.8.0 驗證繞過 (ZDI-26-111)
critical
299798OpenClaw < 2026.2.15 多個弱點
high
299797OpenClaw < 2026.2.14 多個弱點
high
299796OpenClaw 2026.2.6 < 2026.2.14 深層連結訊息截斷 (macOS) (GHSA-7q2j-c4q5-rm27)
high
299795OpenClaw < 2026.2.13 多個弱點
high
299794OpenClaw < 2026.2.3 提示插入 (GHSA-782p-5fr5-7fj8)
low
299793OpenClaw < 2026.2.1 驗證繞過 (GHSA-mp5h-m6qj-6292)
high
299665Cursor < 2.5 RCE (GHSA-8pcm-8jpx-hv8r)
critical
298466BentoML < 1.4.34 路徑遊走
medium
298465OpenClaw < 2026.1.20 命令插入 (GHSA-g55j-c2v4-pjcg)
high
298450OpenClaw < 2026.1.30 路徑遊走 (GHSA-r8g4-86fx-92mq)
medium
297816OpenClaw < 2026.1.29 多個弱點
high
297108已安裝 OpenClaw AI Assistant
info
271839Figma Developer MCP < 0.6.3 RCE (GHSA-gxw4-4fc5-9gr5)
high
271266偵測到 MCP JSON 組態 (Windows)
info
270574Cursor < 1.7 RCE (GHSA-xcwh-rrwj-gxc7)
high
265760已安裝 Google Gemini CLI (macOS)
info
265759已安裝 Google Gemini CLI (Windows)
info