快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 359293
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2026-26104 |
Udisks: missing authorization check allows unprivileged users to back up luks headers via udisks d-bus api
|
MEDIUM | 5.5 | 2026-02-25 |
Red Hat Red Hat Enterprise Linux 10
Red Hat Red Hat Enterprise Linux 6
+5个
|
CVE NVD | |
| CVE-2025-62878 |
Local Path Provisioner vulnerable to Path Traversal via parameters.pathPattern
|
CRITICAL | 9.9 | 2026-02-25 |
SUSE Rancher
|
CVE NVD | |
| CVE-2025-67601 |
Rancher CLI skips TLS verification on Rancher CLI login command
|
HIGH | 8.3 | 2026-02-25 |
SUSE rancher
suse rancher
|
CVE NVD | |
| CVE-2025-67860 |
NeuVector scanner insecurely handles passwords as command arguments
|
LOW | 3.8 | 2026-02-25 |
SUSE harvester
|
CVE NVD | |
| CVE-2026-26103 |
Udisks: missing authorization check allows unprivileged users to restore luks headers via udisks d-bus api
|
HIGH | 7.1 | 2026-02-25 |
Red Hat Red Hat Enterprise Linux 10
Red Hat Red Hat Enterprise Linux 6
+5个
|
CVE NVD | |
| CVE-2026-2367 |
Secure Copy Content Protection and Content Locking <= 5.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attribute
|
MEDIUM | 6.4 | 2026-02-25 |
ays-pro Secure Copy Content Protection and Content Locking
|
CVE NVD | |
| CVE-2026-2301 |
Post Duplicator <= 3.0.8 - Missing Authorization to Authenticated (Contributor+) Protected Post Meta Insertion via 'customMetaData' Parameter
|
MEDIUM | 4.3 | 2026-02-25 |
metaphorcreations Post Duplicator
|
CVE NVD | |
| CVE-2026-2410 |
Disable Admin Notices – Hide Dashboard Notifications <= 1.4.2 - Cross-Site Request Forgery to Plugin Settings Update
|
MEDIUM | 4.3 | 2026-02-25 |
themeisle Disable Admin Notices – Hide Dashboard Notifications
|
CVE NVD | |
| CVE-2025-14742 |
WP Recipe Maker <= 10.2.3 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure
|
MEDIUM | 4.3 | 2026-02-25 |
brechtvds WP Recipe Maker
|
CVE NVD | |
| CVE-2026-3171 |
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System queue.php cross site scripting
|
MEDIUM | 5.1 | 2026-02-25 |
SourceCodester Patients Waiting Area Queue Management System
Patrick Mvuma Patients Waiting Area Queue Management System
+1个
|
CVE NVD | |
| CVE-2026-1929 |
Advanced Woo Labels <= 2.37 - Authenticated (Contributor+) Remote Code Execution via 'callback' Parameter
|
HIGH | 8.8 | 2026-02-25 |
mihail-barinov Advanced Woo Labels – Product Labels & Badges for WooCommerce
|
CVE NVD | |
| CVE-2026-2416 |
Geo Mashup <= 1.13.17 - Unauthenticated SQL Injection via 'sort' Parameter
|
HIGH | 7.5 | 2026-02-25 |
cyberhobo Geo Mashup
|
CVE NVD | |
| CVE-2026-1916 |
WPGSI: Spreadsheet Integration <= 3.8.3 - Missing Authorization to Unauthenticated Arbitrary Post Creation and Deletion via Forged Base64 Token
|
HIGH | 7.5 | 2026-02-25 |
javmah WPGSI: Spreadsheet Integration
|
CVE NVD | |
| CVE-2026-2479 |
Responsive Lightbox & Gallery <= 2.7.1 - Authenticated (Author+) Server-Side Request Forgery via Remote Library Image Upload
|
MEDIUM | 5.0 | 2026-02-25 |
dfactory Responsive Lightbox & Gallery
|
CVE NVD | |
| CVE-2026-3170 |
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System patient-search.php cross site scripting
|
MEDIUM | 4.8 | 2026-02-25 |
SourceCodester Patients Waiting Area Queue Management System
Patrick Mvuma Patients Waiting Area Queue Management System
+1个
|
CVE NVD | |
| CVE-2026-3169 |
Tenda F453 httpd SafeEmailFilter fromSafeEmailFilter buffer overflow
|
HIGH | 8.7 | 2026-02-25 |
Tenda F453
tenda f453_firmware
|
CVE NVD | |
| CVE-2026-3168 |
Tenda F453 httpd NatStaticSetting fromNatStaticSetting buffer overflow
|
HIGH | 8.7 | 2026-02-25 |
Tenda F453
tenda f453_firmware
|
CVE NVD | |
| CVE-2026-3167 |
Tenda F453 httpd webtypelibrary formWebTypeLibrary buffer overflow
|
HIGH | 8.7 | 2026-02-25 |
Tenda F453
tenda f453_firmware
|
CVE NVD | |
| CVE-2026-1614 |
Rise Blocks – A Complete Gutenberg Page Builder <= 3.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via Site Identity Block Attributes
|
MEDIUM | 6.4 | 2026-02-25 |
eaglethemes Rise Blocks – A Complete Gutenberg Page Builder
|
CVE NVD | |
| CVE-2026-3166 |
Tenda F453 httpd RouteStatic fromRouteStatic buffer overflow
|
HIGH | 8.7 | 2026-02-25 |
Tenda F453
tenda f453_firmware
|
CVE NVD |