漏洞列表 354145
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-11981
School Management System – WPSchoolPress <= 2.2.23 - Authenticated (Administrator+) SQL Injection
MEDIUM 4.9 2025-11-14
jdsofttech School Management System – WPSchoolPress
CVE NVD
CVE-2025-11794
Password hash and MFA secret returned in user email verification endpoint
MEDIUM 4.9 2025-11-14
Mattermost Mattermost mattermost mattermost_server
CVE NVD
CVE-2025-55073
MS Teams plugin OAuth allows editing arbitrary posts
MEDIUM 5.4 2025-11-14
Mattermost Mattermost mattermost mattermost_server
CVE NVD
CVE-2025-55070
Lack of MFA enforcement in WebSocket connections
MEDIUM 6.5 2025-11-14
Mattermost Mattermost mattermost mattermost_server
CVE NVD
CVE-2025-41436
Unauthorized access to archived channel content via threads interface
LOW 3.1 2025-11-14
Mattermost Mattermost mattermost mattermost_server
CVE NVD
CVE-2025-11776
Guest user can discover archived public channels
MEDIUM 4.3 2025-11-14
Mattermost Mattermost mattermost mattermost_server
CVE NVD
CVE-2025-10686
Creta Testimonial Showcase < 1.2.4 - Editor+ Local File Inclusion
HIGH 7.2 2025-11-14
Unknown Creta Testimonial Showcase
CVE NVD
CVE-2025-64444
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exi...
HIGH 8.6 2025-11-14
Sony Network Communications Inc. NCP-HG100/Cellular model Sony Network Communications Inc. NCP-HG100/WLAN model
CVE NVD
CVE-2025-13161
IQ Service International|IQ-Support - Arbitrary File Read
HIGH 8.7 2025-11-14
IQ Service International IQ-Support
CVE NVD
CVE-2025-13160
IQ Service International|IQ-Support - Exposure of Sensitive Information
MEDIUM 6.9 2025-11-14
IQ Service International IQ-Support
CVE NVD
CVE-2025-13107
Inappropriate implementation in Compositing in Google Chrome prior to 140.0.7339.80 allowed a remote...
MEDIUM 4.3 2025-11-14
Google Chrome google chrome
CVE NVD
CVE-2024-7021
Inappropriate implementation in Autofill in Google Chrome on Windows prior to 124.0.6367.60 allowed ...
MEDIUM 4.3 2025-11-14
Google Chrome google chrome
CVE NVD
CVE-2024-13178
Inappropriate implementation in Fullscreen in Google Chrome prior to 128.0.6613.84 allowed a remote ...
MEDIUM 4.3 2025-11-14
Google Chrome google chrome
CVE NVD
CVE-2024-7017
Inappropriate implementation in DevTools in Google Chrome prior to 126.0.6478.182 allowed a remote a...
HIGH 7.5 2025-11-14
Google Chrome google chrome
CVE NVD
CVE-2024-9126
Use after free in Internals in Google Chrome on iOS prior to 127.0.6533.88 allowed a remote attacker...
HIGH 7.5 2025-11-14
Google Chrome google chrome
CVE NVD
CVE-2025-13102
Inappropriate implementation in WebApp Installs in Google Chrome on Android prior to 134.0.6998.35 a...
MEDIUM 4.3 2025-11-14
Google Chrome google chrome
CVE NVD
CVE-2024-11919
Inappropriate implementation in Intents in Google Chrome on Android prior to 129.0.6668.58 allowed a...
MEDIUM 4.3 2025-11-14
Google Chrome google chrome
CVE NVD
CVE-2024-11920
Inappropriate implementation in Dawn in Google Chrome on Mac prior to 130.0.6723.92 allowed a remote...
MEDIUM 4.3 2025-11-14
Google Chrome google chrome
CVE NVD
CVE-2024-13983
Inappropriate implementation in Lens in Google Chrome on iOS prior to 136.0.7103.59 allowed a remote...
MEDIUM 6.3 2025-11-14
Google Chrome google chrome
CVE NVD
CVE-2025-9479
Out of bounds read in V8 in Google Chrome prior to 133.0.6943.141 allowed a remote attacker to poten...
MEDIUM 4.3 2025-11-14
Google Chrome google chrome
CVE NVD