漏洞列表 354299
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-41102
Multiple vulnerabilities in Fairsketch's RISE CRM Framework
MEDIUM 5.1 2025-11-11
Fairsketch RISE CRM Framework fairsketch rise_ultimate_project_manager
CVE NVD
CVE-2025-41101
Multiple vulnerabilities in Fairsketch's RISE CRM Framework
MEDIUM 5.1 2025-11-11
Fairsketch RISE CRM Framework fairsketch rise_ultimate_project_manager
CVE NVD
CVE-2025-11960
Reflected XSS in Aryom's KVKNET
MEDIUM 6.1 2025-11-11
Aryom Software High Technology Systems Inc. KVKNET
CVE NVD
CVE-2025-12846
Blocksy Companion <= 2.1.19 - Authenticated (Author+) Arbitrary File Upload via SVG Upload Bypass
HIGH 8.8 2025-11-11
creativethemeshq Blocksy Companion
CVE NVD
CVE-2025-12788
Hydra Booking – All in One Appointment Booking System | Appointment Scheduling, Booking Calendar & WooCommerce Bookings <= 1.1.27 - Missing Payment Verification to Unauthenticated Payment Bypass
MEDIUM 5.3 2025-11-11
themefic Hydra Booking — Appointment Scheduling & Booking Calendar
CVE NVD
CVE-2025-12953
Classified Listing – AI-Powered Classified ads & Business Directory Plugin <= 5.2.0 - Missing Authorization to Authenticated (Subscriber+) Listing Types Tampering
MEDIUM 4.3 2025-11-11
techlabpro1 Classified Listing – AI-Powered Classified ads & Business Directory Plugin
CVE NVD
CVE-2025-12787
Hydra Booking – All in One Appointment Booking System | Appointment Scheduling, Booking Calendar & WooCommerce Bookings <= 1.1.27 - Unauthenticated Arbitrary Booking Cancellation via Weak Hash Generation
MEDIUM 5.3 2025-11-11
themefic Hydra Booking — Appointment Scheduling & Booking Calendar
CVE NVD
CVE-2025-12539
TNC Toolbox: Web Performance <= 1.4.2 - Unauthenticated Sensitive Information Exposure to Privilege Escalation/cPanel Account Takeover
CRITICAL 10.0 2025-11-11
leopardhost TNC Toolbox: Web Performance
CVE NVD
CVE-2025-7633
Stored XSS
HIGH 7.3 2025-11-11
Zohocorp ManageEngine Exchange Reporter Plus zohocorp manageengine_exchange_reporter_plus +1个
CVE NVD
CVE-2025-7632
Stored XSS
HIGH 7.3 2025-11-11
Zohocorp ManageEngine Exchange Reporter Plus zohocorp manageengine_exchange_reporter_plus +1个
CVE NVD
CVE-2025-7430
Stored XSS
HIGH 7.3 2025-11-11
Zohocorp ManageEngine Exchange Reporter Plus zohocorp manageengine_exchange_reporter_plus +1个
CVE NVD
CVE-2017-20210
Photo Station
CRITICAL 9.8 2025-11-11
QNAP Systems Inc. Photo Station qnap photo_station +1个
CVE NVD
CVE-2025-5317
Improper access restriction to critical folder in Bitdefender Endpoint Security Tools for Mac
MEDIUM 6.8 2025-11-11
Bitdefender Endpoint Security Tools for Mac bitdefender endpoint_security
CVE NVD
CVE-2025-7429
Stored XSS
HIGH 7.3 2025-11-11
Zohocorp ManageEngine Exchange Reporter Plus zohocorp manageengine_exchange_reporter_plus +1个
CVE NVD
CVE-2025-9055
The VAPIX Edge storage API that allowed a privilege escalation, enabling a VAPIX administrator-privi...
MEDIUM 6.4 2025-11-11
Axis Communications AB AXIS OS
CVE NVD
CVE-2025-8998
It was possible to upload files with a specific name to a temporary directory, which may result in p...
LOW 3.1 2025-11-11
Axis Communications AB AXIS OS
CVE NVD
CVE-2025-9524
The VAPIX API port.cgi did not have sufficient input validation, which may result in process crashes...
MEDIUM 4.3 2025-11-11
Axis Communications AB AXIS OS
CVE NVD
CVE-2025-10714
AXIS Optimizer was vulnerable to an unquoted search path vulnerability, which could potentially lead...
HIGH 8.4 2025-11-11
Axis Communications AB AXIS Optimizer
CVE NVD
CVE-2025-8108
An ACAP configuration file has improper permissions and lacks input validation, which could potentia...
MEDIUM 6.7 2025-11-11
Axis Communications AB AXIS OS axis axis_os
CVE NVD
CVE-2025-6779
An ACAP configuration file has improper permissions, which could allow command injection and potenti...
MEDIUM 6.7 2025-11-11
Axis Communications AB AXIS OS axis axis_os
CVE NVD