漏洞列表 359799
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-2969
datapizza-labs datapizza-ai Jinja2 Template prompt.py ChatPromptTemplate special elements used in a template engine
MEDIUM 5.1 2026-02-23
datapizza-labs datapizza-ai datapizza datapizza_ai
CVE NVD
CVE-2026-2968
Cesanta Mongoose Poly1305 Authentication Tag tls_chacha20.c mg_chacha20_poly1305_decrypt signature verification
MEDIUM 6.3 2026-02-23
Cesanta Mongoose Cesanta Mongoose +20个
CVE NVD
CVE-2026-2998
eAI Technologies|ERP - DLL Hijacking
HIGH 8.5 2026-02-23
eAI Technologies ERP F2
CVE NVD
CVE-2026-2967
Cesanta Mongoose TCP Sequence Number net_builtin.c getpeer verification of source
MEDIUM 6.3 2026-02-23
Cesanta Mongoose Cesanta Mongoose +20个
CVE NVD
CVE-2026-2966
Cesanta Mongoose DNS Transaction ID dns.c mg_sendnsreq random values
MEDIUM 6.3 2026-02-23
Cesanta Mongoose Cesanta Mongoose +20个
CVE NVD
CVE-2026-2997
WisdomGarden|Tronclass - Insecure Direct Object Reference
MEDIUM 6.5 2026-02-23
WisdomGarden Tronclass
CVE NVD
CVE-2026-2965
07FLYCMS/07FLY-CMS/07FlyCRM System Extension edit.html cross site scripting
MEDIUM 4.8 2026-02-23
未知
CVE NVD
CVE-2026-24494
SQL injection vulnerability in Order Up Online Ordering System
CRITICAL 9.8 2026-02-23
Order Up Online Ordering System
CVE NVD
CVE-2026-2964
higuma web-audio-recorder-js Dynamic Config Handling WebAudioRecorder.js extend prototype pollution
LOW 2.3 2026-02-23
higuma web-audio-recorder-js higuma web-audio-recorder-js +2个
CVE NVD
CVE-2026-2963
Jinher OA C6 OfficeSupplyTypeRight.aspx sql injection
MEDIUM 5.3 2026-02-23
Jinher OA C6
CVE NVD
CVE-2026-2962
D-Link DWR-M960 Scheduled Reboot Configuration Endpoint formDateReboot sub_460F30 stack-based overflow
HIGH 8.7 2026-02-23
D-Link DWR-M960 dlink dwr-m960_firmware
CVE NVD
CVE-2026-2961
D-Link DWR-M960 VPN Configuration Endpoint formVpnConfigSetup sub_4196C4 stack-based overflow
HIGH 8.7 2026-02-23
D-Link DWR-M960 dlink dwr-m960_firmware
CVE NVD
CVE-2026-2960
D-Link DWR-M960 formDhcpv6s sub_468D64 stack-based overflow
HIGH 8.7 2026-02-23
D-Link DWR-M960 dlink dwr-m960_firmware
CVE NVD
CVE-2025-61143
libtiff up to v4.7.1 was discovered to contain a NULL pointer dereference via the component libtiff/...
MEDIUM 5.5 2026-02-23
libtiff libtiff
CVE NVD
CVE-2025-61144
libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer...
HIGH 7.3 2026-02-23
libtiff libtiff
CVE NVD
CVE-2025-61145
libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c.
MEDIUM 5.0 2026-02-23
libtiff libtiff
CVE NVD
CVE-2025-61146
saitoha libsixel until v1.8.7 was discovered to contain a memory leak via the component malloc_stub....
MEDIUM 4.0 2026-02-23
libsixel_project libsixel
CVE NVD
CVE-2025-61147
strukturag libde265 commit d9fea9d wa discovered to contain a segmentation fault via the component d...
MEDIUM 6.2 2026-02-23
未知
CVE NVD
CVE-2025-63945
A privilege escalation (PE) vulnerability in the Tencent iOA app thru 210.9.28693.621001 on Windows ...
HIGH 7.4 2026-02-23
tencent ioa
CVE NVD
CVE-2025-63946
A privilege escalation (PE) vulnerability in the Tencent PC Manager app thru 17.10.28554.205 on Wind...
HIGH 7.4 2026-02-23
tencent pcmanager
CVE NVD