漏洞列表 360318
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-3611
The Honeywell IQ4x building management controller, exposes its full web-based HMI without authentica
CRITICAL 10.0 2026-03-12
未知
NVD
CVE-2026-2581
This is an uncontrolled resource consumption vulnerability (CWE-400) that can lead to Denial of Serv
MEDIUM 5.9 2026-03-12
未知
NVD
CVE-2026-2229
ImpactThe undici WebSocket client is vulnerable to a denial-of-service attack due to improper valida
HIGH 7.5 2026-03-12
未知
NVD
CVE-2026-1528
ImpactA server can reply with a WebSocket frame using the 64-bit length form and an extremely large
HIGH 7.5 2026-03-12
未知
NVD
CVE-2026-1527
ImpactWhen an application passes user-controlled input to the upgrade option of client.request(), an
MEDIUM 4.6 2026-03-12
未知
NVD
CVE-2026-1526
The undici WebSocket client is vulnerable to a denial-of-service attack via unbounded memory consump
HIGH 7.5 2026-03-12
未知
NVD
CVE-2026-32274
Black is the uncompromising Python code formatter. Prior to 26.3.1, Black writes a cache file, the n
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32269
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32260
Deno is a JavaScript, TypeScript, and WebAssembly runtime. From 2.7.0 to 2.7.1, A command injection
HIGH 8.1 2026-03-12
未知
NVD
CVE-2026-32259
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior
MEDIUM 6.7 2026-03-12
未知
NVD
CVE-2026-32251
Tolgee is an open-source localization platform. Prior to 3.166.3, the XML parsers used for importing
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32249
Vim is an open source, command line text editor. From 9.1.0011 to before 9.2.0137, Vim's NFA regex c
MEDIUM 5.3 2026-03-12
未知
NVD
CVE-2026-32248
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32240
Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, when using
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32239
Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, a negative
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-1525
Undici allows duplicate HTTP Content-Length headers when they are provided in an array with case-var
MEDIUM 6.5 2026-03-12
未知
NVD
CVE-2026-3497
Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerabilit
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32247
Graphiti is a framework for building and querying temporal context graphs for AI agents. Graphiti ve
HIGH 8.1 2026-03-12
未知
NVD
CVE-2026-32246
Tinyauth is an authentication and authorization server. Prior to 5.0.3, the OIDC authorization endpo
HIGH 8.5 2026-03-12
未知
NVD
CVE-2026-32245
Tinyauth is an authentication and authorization server. Prior to 5.0.3, the OIDC token endpoint does
MEDIUM 6.5 2026-03-12
未知
NVD