PatchSiren

Tencent CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Tencent CVE published 2026-08-10

CVE-2026-72565

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-10T11:17:28.973Z and has not been modified since then. CVE-2026-72565 is a critical SQL injection vulnerability in Tencent APIJSON through version 8.1.8. The vulnerability allows unauthenticated remote attackers to bypass per-table access control and read arbitrary database tables via the Map-form @ [truncated]

MEDIUM Tencent CVE published 2026-07-13

CVE-2026-15515

A security vulnerability has been detected in Tencent PC Manager 18.1.30242.301. This issue affects some unknown processing in the library qmudisk64.sys of the component QMUDisk Driver. The manipulation leads to uncontrolled search path. The attack must be carried out locally. The attack is considered to have high complexity. The exploitability is assessed as difficult. This vulnerability has been publicly disclosed.