快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 352749
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2025-40350 |
Linux kernel 安全漏洞
|
UNKNOWN | N/A | 2025-12-16 |
Linux Linux
Linux Linux
|
CVE NVD +1 | |
| CVE-2025-40349 |
Linux kernel 安全漏洞
|
UNKNOWN | N/A | 2025-12-16 |
Linux Linux
Linux Linux
|
CVE NVD +1 | |
| CVE-2025-40348 |
Linux kernel 安全漏洞
|
UNKNOWN | N/A | 2025-12-16 |
Linux Linux
|
CVE NVD +1 | |
| CVE-2025-40347 |
Linux kernel 安全漏洞
|
UNKNOWN | N/A | 2025-12-16 |
Linux Linux
Linux Linux
+1个
|
CVE NVD +1 | |
| CVE-2025-40346 |
arch_topology: Fix incorrect error check in topology_parse_cpu_capacity()
|
MEDIUM | -1.0 | 2025-12-16 |
Linux Linux
Linux Linux
|
CVE NVD | |
| CVE-2025-14780 |
Xiongwei Smart Catering Cloud Platform dish_trade_detail_get sql injection
|
MEDIUM | 5.3 | 2025-12-16 |
Xiongwei Smart Catering Cloud Platform
|
CVE NVD | |
| CVE-2025-65076 |
Wave Terminal 路径遍历漏洞
|
HIGH | 8.6 | 2025-12-16 |
WaveStore WaveStore Server
wavestore video_management_software_server
|
CVE NVD +1 | |
| CVE-2025-65075 |
Wave Terminal 路径遍历漏洞
|
MEDIUM | 5.1 | 2025-12-16 |
WaveStore WaveStore Server
wavestore video_management_software_server
|
CVE NVD +1 | |
| CVE-2025-65074 |
OS Command Injection via Path Traversal in WaveStore Server
|
HIGH | 8.6 | 2025-12-16 |
WaveStore WaveStore Server
wavestore video_management_software_server
|
CVE NVD | |
| CVE-2025-14443 |
Ose-openshift-apiserver: openshift api server: server-side request forgery (ssrf) vulnerability in imagestreamimport mechanism
|
HIGH | 8.5 | 2025-12-16 |
Red Hat Red Hat OpenShift Container Platform 4
|
CVE NVD | |
| CVE-2025-13474 |
IDOR in Menulux Software's Mobile App
|
HIGH | 7.5 | 2025-12-16 |
Menulux Software Inc. Mobile App
|
CVE NVD | |
| CVE-2025-13741 |
Schedule Post Changes With PublishPress Future: Unpublish, Delete, Change Status, Trash, Change Categories <= 4.9.2 - Missing Authorization to Authenticated (Contributor+) Authors' Emails Exposure
|
MEDIUM | 4.3 | 2025-12-16 |
publishpress Schedule Post Changes With PublishPress Future: Unpublish, Delete, Change Status, Trash, Change Categories
|
CVE NVD | |
| CVE-2025-11220 |
Elementor <= 3.33.3 - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via Text Path
|
MEDIUM | 6.4 | 2025-12-16 |
elemntor Elementor Website Builder – More Than Just a Page Builder
|
CVE NVD | |
| CVE-2025-0836 |
XProtect MIP API Missing Authorization
|
MEDIUM | 5.3 | 2025-12-16 |
Milestone Systems XProtect VMS
|
CVE NVD | |
| CVE-2025-14002 |
WPCOM Member <= 1.7.16 - Authentication Bypass via Weak OTP
|
HIGH | 8.1 | 2025-12-16 |
whyun WPCOM Member
|
CVE NVD | |
| CVE-2025-13231 |
Fancy Product Designer | WooCommerce WordPress <= 6.4.8 - Unauthenticated Server-Side Request Forgery via Race Condition
|
MEDIUM | 6.5 | 2025-12-16 |
radykal Fancy Product Designer
|
CVE NVD | |
| CVE-2025-68088 |
WordPress Huger for Elementor plugin <= 1.1.5 - Broken Access Control vulnerability
|
MEDIUM | 5.4 | 2025-12-16 |
merkulove Huger for Elementor
|
CVE NVD | |
| CVE-2025-68087 |
WordPress Modalier for Elementor plugin <= 1.0.6 - Broken Access Control vulnerability
|
MEDIUM | 5.4 | 2025-12-16 |
merkulove Modalier for Elementor
|
CVE NVD | |
| CVE-2025-68086 |
WordPress Reformer for Elementor plugin <= 1.0.6 - Broken Access Control vulnerability
|
MEDIUM | 5.4 | 2025-12-16 |
merkulove Reformer for Elementor
|
CVE NVD | |
| CVE-2025-68085 |
WordPress Buttoner for Elementor plugin <= 1.0.6 - Settings Change vulnerability
|
MEDIUM | 5.4 | 2025-12-16 |
merkulove Buttoner for Elementor
|
CVE NVD |