漏洞列表 359293
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-26104
Udisks: missing authorization check allows unprivileged users to back up luks headers via udisks d-bus api
MEDIUM 5.5 2026-02-25
Red Hat Red Hat Enterprise Linux 10 Red Hat Red Hat Enterprise Linux 6 +5个
CVE NVD
CVE-2025-62878
Local Path Provisioner vulnerable to Path Traversal via parameters.pathPattern
CRITICAL 9.9 2026-02-25
SUSE Rancher
CVE NVD
CVE-2025-67601
Rancher CLI skips TLS verification on Rancher CLI login command
HIGH 8.3 2026-02-25
SUSE rancher suse rancher
CVE NVD
CVE-2025-67860
NeuVector scanner insecurely handles passwords as command arguments
LOW 3.8 2026-02-25
SUSE harvester
CVE NVD
CVE-2026-26103
Udisks: missing authorization check allows unprivileged users to restore luks headers via udisks d-bus api
HIGH 7.1 2026-02-25
Red Hat Red Hat Enterprise Linux 10 Red Hat Red Hat Enterprise Linux 6 +5个
CVE NVD
CVE-2026-2367
Secure Copy Content Protection and Content Locking <= 5.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attribute
MEDIUM 6.4 2026-02-25
ays-pro Secure Copy Content Protection and Content Locking
CVE NVD
CVE-2026-2301
Post Duplicator <= 3.0.8 - Missing Authorization to Authenticated (Contributor+) Protected Post Meta Insertion via 'customMetaData' Parameter
MEDIUM 4.3 2026-02-25
metaphorcreations Post Duplicator
CVE NVD
CVE-2026-2410
Disable Admin Notices – Hide Dashboard Notifications <= 1.4.2 - Cross-Site Request Forgery to Plugin Settings Update
MEDIUM 4.3 2026-02-25
themeisle Disable Admin Notices – Hide Dashboard Notifications
CVE NVD
CVE-2025-14742
WP Recipe Maker <= 10.2.3 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure
MEDIUM 4.3 2026-02-25
brechtvds WP Recipe Maker
CVE NVD
CVE-2026-3171
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System queue.php cross site scripting
MEDIUM 5.1 2026-02-25
SourceCodester Patients Waiting Area Queue Management System Patrick Mvuma Patients Waiting Area Queue Management System +1个
CVE NVD
CVE-2026-1929
Advanced Woo Labels <= 2.37 - Authenticated (Contributor+) Remote Code Execution via 'callback' Parameter
HIGH 8.8 2026-02-25
mihail-barinov Advanced Woo Labels – Product Labels & Badges for WooCommerce
CVE NVD
CVE-2026-2416
Geo Mashup <= 1.13.17 - Unauthenticated SQL Injection via 'sort' Parameter
HIGH 7.5 2026-02-25
cyberhobo Geo Mashup
CVE NVD
CVE-2026-1916
WPGSI: Spreadsheet Integration <= 3.8.3 - Missing Authorization to Unauthenticated Arbitrary Post Creation and Deletion via Forged Base64 Token
HIGH 7.5 2026-02-25
javmah WPGSI: Spreadsheet Integration
CVE NVD
CVE-2026-2479
Responsive Lightbox & Gallery <= 2.7.1 - Authenticated (Author+) Server-Side Request Forgery via Remote Library Image Upload
MEDIUM 5.0 2026-02-25
dfactory Responsive Lightbox & Gallery
CVE NVD
CVE-2026-3170
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System patient-search.php cross site scripting
MEDIUM 4.8 2026-02-25
SourceCodester Patients Waiting Area Queue Management System Patrick Mvuma Patients Waiting Area Queue Management System +1个
CVE NVD
CVE-2026-3169
Tenda F453 httpd SafeEmailFilter fromSafeEmailFilter buffer overflow
HIGH 8.7 2026-02-25
Tenda F453 tenda f453_firmware
CVE NVD
CVE-2026-3168
Tenda F453 httpd NatStaticSetting fromNatStaticSetting buffer overflow
HIGH 8.7 2026-02-25
Tenda F453 tenda f453_firmware
CVE NVD
CVE-2026-3167
Tenda F453 httpd webtypelibrary formWebTypeLibrary buffer overflow
HIGH 8.7 2026-02-25
Tenda F453 tenda f453_firmware
CVE NVD
CVE-2026-1614
Rise Blocks – A Complete Gutenberg Page Builder <= 3.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via Site Identity Block Attributes
MEDIUM 6.4 2026-02-25
eaglethemes Rise Blocks – A Complete Gutenberg Page Builder
CVE NVD
CVE-2026-3166
Tenda F453 httpd RouteStatic fromRouteStatic buffer overflow
HIGH 8.7 2026-02-25
Tenda F453 tenda f453_firmware
CVE NVD