接入 API · 个人 AI 解读连接自己的模型解读资讯,浏览新闻无需配置。

漏洞与安全

追踪 AI 相关漏洞、安全公告、补丁和供应链风险,保留原始出处。

20 条资讯按来源发布或更新时间排序
漏洞与安全Transformers 安全公告社区 / 第三方

CVE-2025-6921: Hugging Face Transformers vulnerable to Regular Expression Denial of Service (ReDoS) in the AdamWeightDecay optimizer

The huggingface/transformers library, versions prior to 4.53.0, is vulnerable to Regular Expression Denial of Service (ReDoS) in the AdamWeightDecay optimizer. The vulnerability arises from the _do_use_weight_decay method, which processes user-controlled regul

漏洞与安全LangChain 安全公告社区 / 第三方

CVE-2024-8309: Langchain SQL Injection vulnerability

A vulnerability in the GraphCypherQAChain class of langchain-ai/langchain version 0.2.5 allows for SQL injection through prompt injection. This vulnerability can lead to unauthorized data manipulation, data exfiltration, denial of service (DoS) by deleting all

把 AI 雷达放到桌面

在支持安装的浏览器中,可以将本站作为应用打开。

安装入口取决于浏览器;应用和网站使用同一份最新内容。

查看完整安装指南