快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 354145
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2025-11981 |
School Management System – WPSchoolPress <= 2.2.23 - Authenticated (Administrator+) SQL Injection
|
MEDIUM | 4.9 | 2025-11-14 |
jdsofttech School Management System – WPSchoolPress
|
CVE NVD | |
| CVE-2025-11794 |
Password hash and MFA secret returned in user email verification endpoint
|
MEDIUM | 4.9 | 2025-11-14 |
Mattermost Mattermost
mattermost mattermost_server
|
CVE NVD | |
| CVE-2025-55073 |
MS Teams plugin OAuth allows editing arbitrary posts
|
MEDIUM | 5.4 | 2025-11-14 |
Mattermost Mattermost
mattermost mattermost_server
|
CVE NVD | |
| CVE-2025-55070 |
Lack of MFA enforcement in WebSocket connections
|
MEDIUM | 6.5 | 2025-11-14 |
Mattermost Mattermost
mattermost mattermost_server
|
CVE NVD | |
| CVE-2025-41436 |
Unauthorized access to archived channel content via threads interface
|
LOW | 3.1 | 2025-11-14 |
Mattermost Mattermost
mattermost mattermost_server
|
CVE NVD | |
| CVE-2025-11776 |
Guest user can discover archived public channels
|
MEDIUM | 4.3 | 2025-11-14 |
Mattermost Mattermost
mattermost mattermost_server
|
CVE NVD | |
| CVE-2025-10686 |
Creta Testimonial Showcase < 1.2.4 - Editor+ Local File Inclusion
|
HIGH | 7.2 | 2025-11-14 |
Unknown Creta Testimonial Showcase
|
CVE NVD | |
| CVE-2025-64444 |
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exi...
|
HIGH | 8.6 | 2025-11-14 |
Sony Network Communications Inc. NCP-HG100/Cellular model
Sony Network Communications Inc. NCP-HG100/WLAN model
|
CVE NVD | |
| CVE-2025-13161 |
IQ Service International|IQ-Support - Arbitrary File Read
|
HIGH | 8.7 | 2025-11-14 |
IQ Service International IQ-Support
|
CVE NVD | |
| CVE-2025-13160 |
IQ Service International|IQ-Support - Exposure of Sensitive Information
|
MEDIUM | 6.9 | 2025-11-14 |
IQ Service International IQ-Support
|
CVE NVD | |
| CVE-2025-13107 |
Inappropriate implementation in Compositing in Google Chrome prior to 140.0.7339.80 allowed a remote...
|
MEDIUM | 4.3 | 2025-11-14 |
Google Chrome
google chrome
|
CVE NVD | |
| CVE-2024-7021 |
Inappropriate implementation in Autofill in Google Chrome on Windows prior to 124.0.6367.60 allowed ...
|
MEDIUM | 4.3 | 2025-11-14 |
Google Chrome
google chrome
|
CVE NVD | |
| CVE-2024-13178 |
Inappropriate implementation in Fullscreen in Google Chrome prior to 128.0.6613.84 allowed a remote ...
|
MEDIUM | 4.3 | 2025-11-14 |
Google Chrome
google chrome
|
CVE NVD | |
| CVE-2024-7017 |
Inappropriate implementation in DevTools in Google Chrome prior to 126.0.6478.182 allowed a remote a...
|
HIGH | 7.5 | 2025-11-14 |
Google Chrome
google chrome
|
CVE NVD | |
| CVE-2024-9126 |
Use after free in Internals in Google Chrome on iOS prior to 127.0.6533.88 allowed a remote attacker...
|
HIGH | 7.5 | 2025-11-14 |
Google Chrome
google chrome
|
CVE NVD | |
| CVE-2025-13102 |
Inappropriate implementation in WebApp Installs in Google Chrome on Android prior to 134.0.6998.35 a...
|
MEDIUM | 4.3 | 2025-11-14 |
Google Chrome
google chrome
|
CVE NVD | |
| CVE-2024-11919 |
Inappropriate implementation in Intents in Google Chrome on Android prior to 129.0.6668.58 allowed a...
|
MEDIUM | 4.3 | 2025-11-14 |
Google Chrome
google chrome
|
CVE NVD | |
| CVE-2024-11920 |
Inappropriate implementation in Dawn in Google Chrome on Mac prior to 130.0.6723.92 allowed a remote...
|
MEDIUM | 4.3 | 2025-11-14 |
Google Chrome
google chrome
|
CVE NVD | |
| CVE-2024-13983 |
Inappropriate implementation in Lens in Google Chrome on iOS prior to 136.0.7103.59 allowed a remote...
|
MEDIUM | 6.3 | 2025-11-14 |
Google Chrome
google chrome
|
CVE NVD | |
| CVE-2025-9479 |
Out of bounds read in V8 in Google Chrome prior to 133.0.6943.141 allowed a remote attacker to poten...
|
MEDIUM | 4.3 | 2025-11-14 |
Google Chrome
google chrome
|
CVE NVD |