漏洞列表 358219
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-48585
In multiple functions of ProfilingService.java, there is a possible persistent denial of service due
MEDIUM 6.2 2026-03-02
google android
NVD
CVE-2025-48582
In multiple locations, there is a possible way to delete media without the MANAGE_EXTERNAL_STORAGE p
HIGH 8.4 2026-03-02
google android google android +1个
NVD
CVE-2025-48579
In multiple functions of MediaProvider.java, there is a possible external storage write permission b
HIGH 8.4 2026-03-02
google android google android +1个
NVD
CVE-2025-48578
In multiple functions of MediaProvider.java, there is a possible way to bypass the WRITE_EXTERNAL_ST
HIGH 7.8 2026-03-02
google android google android +1个
NVD
CVE-2025-48577
In multiple functions of KeyguardViewMediator.java, there is a possible lockscreen bypass due to a r
HIGH 7.4 2026-03-02
google android google android +1个
NVD
CVE-2025-48574
In validateAddingWindowLw of DisplayPolicy.java, there is a possible way for an app to intercept dra
HIGH 8.4 2026-03-02
google android google android +1个
NVD
CVE-2025-48568
In multiple locations, there is a possible lockscreen bypass due to a race condition. This could lea
HIGH 7.4 2026-03-02
google android google android
NVD
CVE-2025-48567
In multiple locations, there is a possible bypass of a file path filter designed to prevent access t
HIGH 7.8 2026-03-02
google android google android +1个
NVD
CVE-2025-32313
In UsageEvents of UsageEvents.java, there is a possible out of bounds write due to an incorrect boun
HIGH 8.4 2026-03-02
google android google android +1个
NVD
CVE-2024-43766
In multiple functions of btm_ble_sec.cc, there is a possible unencrypted communication due to Invali
MEDIUM 6.5 2026-03-02
google android google android +1个
NVD
CVE-2024-31328
In broadcastIntentLockedTraced of BroadcastController.java, there is a possible way to launch arbitr
HIGH 8.8 2026-03-02
google android google android
NVD
CVE-2026-3180
The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is
HIGH 7.5 2026-03-02
未知
NVD
CVE-2026-3132
The Master Addons for Elementor Premium plugin for WordPress is vulnerable to Remote Code Execution
HIGH 8.8 2026-03-02
未知
NVD
CVE-2026-26707
sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_s
CRITICAL 9.8 2026-03-02
oretnom23 pharmacy_point_of_sale_system
NVD
CVE-2026-26706
sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_r
CRITICAL 9.8 2026-03-02
oretnom23 pharmacy_point_of_sale_system
NVD
CVE-2026-26705
sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_p
CRITICAL 9.8 2026-03-02
oretnom23 pharmacy_point_of_sale_system
NVD
CVE-2026-26704
sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_c
CRITICAL 9.8 2026-03-02
oretnom23 pharmacy_point_of_sale_system
NVD
CVE-2026-0655
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in TP-L
UNKNOWN N/A 2026-03-02
未知
NVD
CVE-2026-0654
Improper input handling in the administration web interface on TP-Link Deco BE25 v1.0 allows crafted
UNKNOWN N/A 2026-03-02
未知
NVD
CVE-2026-28401
NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, rich text cell
MEDIUM 5.4 2026-03-02
nocodb nocodb
NVD