漏洞列表 352749
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-43536
A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS T...
MEDIUM 4.3 2025-12-17
Apple iOS and iPadOS Apple Safari +5个
CVE NVD
CVE-2025-43428
A configuration issue was addressed with additional restrictions. This issue is fixed in visionOS 26...
CRITICAL 9.8 2025-12-17
Apple iOS and iPadOS Apple visionOS +5个
CVE NVD
CVE-2025-46283
A logic issue was addressed with improved validation. This issue is fixed in macOS Tahoe 26.2. An ap...
MEDIUM 5.5 2025-12-17
Apple macOS apple macos
CVE NVD
CVE-2025-43541
A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 26....
MEDIUM 4.3 2025-12-17
Apple iOS and iPadOS Apple Safari +7个
CVE NVD
CVE-2025-43501
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in Safari 2...
MEDIUM 4.3 2025-12-17
Apple iOS and iPadOS Apple Safari +7个
CVE NVD
CVE-2025-46282
The issue was addressed with additional permissions checks. This issue is fixed in macOS Tahoe 26.2,...
MEDIUM 5.5 2025-12-17
Apple Safari Apple macOS +2个
CVE NVD
CVE-2025-46277
A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.2,...
MEDIUM 5.5 2025-12-17
Apple iOS and iPadOS Apple macOS +5个
CVE NVD
CVE-2025-59849
HCL BigFix Remote Control is vulnerable to an insecure CSP configuration
MEDIUM 4.7 2025-12-17
HCL Software BigFix Remote Control hcltechsw hcl_devops_deploy +1个
CVE NVD
CVE-2025-53000
nbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows
HIGH 8.5 2025-12-17
jupyter nbconvert jupyter nbconvert
CVE NVD
CVE-2025-66647
RIOT OS has buffer overflow in gnrc_ipv6_ext_frag_reass
LOW 1.7 2025-12-17
RIOT-OS RIOT riot-os riot +1个
CVE NVD
CVE-2025-14764
Missing cryptographic key commitment in the Amazon S3 Encryption Client for Go may allow a user with...
MEDIUM 6.0 2025-12-17
AWS S3 Encryption Client for Go
CVE NVD
CVE-2025-14763
Missing cryptographic key commitment in the Amazon S3 Encryption Client for Java may allow a user wi...
MEDIUM 6.0 2025-12-17
AWS S3 Encryption Client for Java
CVE NVD
CVE-2025-14762
Missing cryptographic key commitment in the AWS SDK for Ruby may allow a user with write access to t...
MEDIUM 6.0 2025-12-17
AWS AWS SDK for Ruby
CVE NVD
CVE-2025-14761
Missing cryptographic key commitment in the AWS SDK for PHP may allow a user with write access to th...
MEDIUM 6.0 2025-12-17
AWS AWS SDK for PHP
CVE NVD
CVE-2025-14760
Missing cryptographic key commitment in the AWS SDK for C++ may allow a user with write access to th...
MEDIUM 6.0 2025-12-17
AWS AWS SDK for C++
CVE NVD
CVE-2025-14759
Missing cryptographic key commitment in the Amazon S3 Encryption Client for .NET may allow a user wi...
MEDIUM 6.0 2025-12-17
AWS S3 Encryption Client for .NET
CVE NVD
CVE-2025-34438
AVideo < 20.1 IDOR Arbitrary Video Rotation
MEDIUM 5.3 2025-12-17
World Wide Broadcast Network AVideo wwbn avideo
CVE NVD
CVE-2025-34437
AVideo < 20.1 IDOR Arbitrary Comment Image Upload
HIGH 8.7 2025-12-17
World Wide Broadcast Network AVideo wwbn avideo
CVE NVD
CVE-2025-34435
AVideo < 20.1 IDOR Arbitrary File Deletion
HIGH 8.7 2025-12-17
World Wide Broadcast Network AVideo wwbn avideo
CVE NVD
CVE-2025-34436
AVideo < 20.1 IDOR Arbitrary File Upload
HIGH 8.7 2025-12-17
World Wide Broadcast Network AVideo wwbn avideo
CVE NVD