漏洞列表 350426
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-33206
NVIDIA NSIGHT Graphics for Linux contains a vulnerability where an attacker could cause command inje...
HIGH 7.8 2026-01-14
NVIDIA NSIGHT Graphics
CVE NVD
CVE-2025-71166
Typesetter CMS Reflected XSS via Move Message Handling
MEDIUM 4.8 2026-01-14
Typesetter Typesetter
CVE NVD
CVE-2025-71165
Typesetter CMS Reflected XSS via Status.php
MEDIUM 4.8 2026-01-14
Typesetter Typesetter
CVE NVD
CVE-2025-71164
Typesetter CMS Reflected XSS via Editing.php
MEDIUM 4.8 2026-01-14
Typesetter Typesetter
CVE NVD
CVE-2026-23497
Frappe LMS has a Stored XSS via Unsanitized Image Filename in Course and Jobs Pages
LOW 1.3 2026-01-14
frappe lms
CVE NVD
CVE-2026-23492
Pimcore has a Blind SQL Injection in Admin Search Find API due to an incomplete fix for CVE-2023-30848
HIGH 8.8 2026-01-14
pimcore pimcore pimcore pimcore
CVE NVD
CVE-2026-23477
Rocket.Chat Unauthorized Access to OAuth App Details
HIGH 7.7 2026-01-14
RocketChat Rocket.Chat
CVE NVD
CVE-2026-22819
Outray has a Race Condition in main/apps/web/src/routes/api/$orgSlug/subdomains/index.ts
MEDIUM 5.9 2026-01-14
akinloluwami outray
CVE NVD
CVE-2026-22859
FreeRDP has a heap-buffer-overflow in urb_select_configuration
MEDIUM 5.6 2026-01-14
FreeRDP FreeRDP
CVE NVD
CVE-2026-22858
FreeRDP has a global-buffer-overflow in crypto_base64_decode
MEDIUM 5.6 2026-01-14
FreeRDP FreeRDP
CVE NVD
CVE-2026-22857
FreeRDP has a heap-use-after-free in irp_thread_func
MEDIUM 6.8 2026-01-14
FreeRDP FreeRDP
CVE NVD
CVE-2026-22856
FreeRDP has a heap-use-after-free in create_irp_thread
MEDIUM 6.8 2026-01-14
FreeRDP FreeRDP
CVE NVD
CVE-2026-22855
FreeRDP has a heap-buffer-overflow in smartcard_unpack_set_attrib_call
MEDIUM 5.6 2026-01-14
FreeRDP FreeRDP
CVE NVD
CVE-2026-22854
FreeRDP has a heap-buffer-overflow in drive_process_irp_read
MEDIUM 6.8 2026-01-14
FreeRDP FreeRDP
CVE NVD
CVE-2026-22853
FreeRDP has a heap-buffer-overflow in ndr_read_uint8Array
MEDIUM 6.8 2026-01-14
FreeRDP FreeRDP
CVE NVD
CVE-2026-22852
FreeRDP has a heap-buffer-overflow in audin_process_formats
MEDIUM 6.8 2026-01-14
FreeRDP FreeRDP
CVE NVD
CVE-2026-22851
FreeRDP RDPGFX ResetGraphics race leads to use-after-free in SDL client (sdl->primary)
MEDIUM 6.9 2026-01-14
FreeRDP FreeRDP
CVE NVD
CVE-2026-22787
html2pdf.js has a cross-site scripting vulnerability
HIGH 8.7 2026-01-14
eKoopmans html2pdf.js
CVE NVD
CVE-2026-22779
BlackSheep ClientSession is vulnerable to CRLF injection
MEDIUM 6.3 2026-01-14
Neoteroi BlackSheep
CVE NVD
CVE-2026-22708
Cursor has a Terminal Tool Allowlist Bypass via Environment Variables
HIGH 7.2 2026-01-14
cursor cursor
CVE NVD