漏洞列表 359408
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-2978
FastApiAdmin Scheduled Task API controller.py upload_file_controller unrestricted upload
MEDIUM 5.3 2026-02-23
fastapiadmin fastapi-admin fastapiadmin fastapi-admin +2个
CVE NVD
CVE-2026-2977
FastApiAdmin Scheduled Task API controller.py upload_controller unrestricted upload
MEDIUM 5.3 2026-02-23
fastapiadmin fastapi-admin fastapiadmin fastapi-admin +2个
CVE NVD
CVE-2026-1367
SQL Injection
HIGH 8.3 2026-02-23
Zohocorp ManageEngine ADSelfService Plus
CVE NVD
CVE-2026-2976
FastApiAdmin Download Endpoint controller.py download_controller information disclosure
MEDIUM 5.3 2026-02-23
fastapiadmin fastapi-admin fastapiadmin fastapi-admin +2个
CVE NVD
CVE-2026-2975
FastApiAdmin Custom Documentation Endpoint init_app.py reset_api_docs information disclosure
MEDIUM 6.9 2026-02-23
fastapiadmin fastapi-admin fastapiadmin fastapi-admin +2个
CVE NVD
CVE-2026-2974
AliasVault App Backup aliasvault.xml backup
LOW 2.0 2026-02-23
未知
CVE NVD
CVE-2026-2972
a466350665 Smart-SSO Role Edit UserController.java save cross site scripting
MEDIUM 4.8 2026-02-23
a466350665 Smart-SSO a466350665 Smart-SSO +1个
CVE NVD
CVE-2026-2971
a466350665 Smart-SSO Login login.html cross site scripting
MEDIUM 5.3 2026-02-23
a466350665 Smart-SSO a466350665 Smart-SSO +1个
CVE NVD
CVE-2026-2970
datapizza-labs datapizza-ai cache.py RedisCache deserialization
LOW 2.1 2026-02-23
datapizza-labs datapizza-ai datapizza datapizza-ai +1个
CVE NVD
CVE-2026-2969
datapizza-labs datapizza-ai Jinja2 Template prompt.py ChatPromptTemplate special elements used in a template engine
MEDIUM 5.1 2026-02-23
datapizza-labs datapizza-ai datapizza datapizza_ai
CVE NVD
CVE-2026-2968
Cesanta Mongoose Poly1305 Authentication Tag tls_chacha20.c mg_chacha20_poly1305_decrypt signature verification
MEDIUM 6.3 2026-02-23
Cesanta Mongoose Cesanta Mongoose +20个
CVE NVD
CVE-2026-2998
eAI Technologies|ERP - DLL Hijacking
HIGH 8.5 2026-02-23
eAI Technologies ERP F2
CVE NVD
CVE-2026-2967
Cesanta Mongoose TCP Sequence Number net_builtin.c getpeer verification of source
MEDIUM 6.3 2026-02-23
Cesanta Mongoose Cesanta Mongoose +20个
CVE NVD
CVE-2026-2966
Cesanta Mongoose DNS Transaction ID dns.c mg_sendnsreq random values
MEDIUM 6.3 2026-02-23
Cesanta Mongoose Cesanta Mongoose +20个
CVE NVD
CVE-2026-2997
WisdomGarden|Tronclass - Insecure Direct Object Reference
MEDIUM 6.5 2026-02-23
WisdomGarden Tronclass
CVE NVD
CVE-2026-2965
07FLYCMS/07FLY-CMS/07FlyCRM System Extension edit.html cross site scripting
MEDIUM 4.8 2026-02-23
未知
CVE NVD
CVE-2026-24494
SQL injection vulnerability in Order Up Online Ordering System
CRITICAL 9.8 2026-02-23
Order Up Online Ordering System
CVE NVD
CVE-2026-2964
higuma web-audio-recorder-js Dynamic Config Handling WebAudioRecorder.js extend prototype pollution
LOW 2.3 2026-02-23
higuma web-audio-recorder-js higuma web-audio-recorder-js +2个
CVE NVD
CVE-2026-2963
Jinher OA C6 OfficeSupplyTypeRight.aspx sql injection
MEDIUM 5.3 2026-02-23
Jinher OA C6
CVE NVD
CVE-2026-2962
D-Link DWR-M960 Scheduled Reboot Configuration Endpoint formDateReboot sub_460F30 stack-based overflow
HIGH 8.7 2026-02-23
D-Link DWR-M960 dlink dwr-m960_firmware
CVE NVD