快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 360566
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2026-27990 |
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
|
HIGH | 8.1 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27989 |
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
|
HIGH | 8.1 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27988 |
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
|
HIGH | 8.1 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27987 |
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
|
HIGH | 8.1 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27986 |
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
|
HIGH | 8.1 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27985 |
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
|
HIGH | 8.1 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27984 |
Improper Control of Generation of Code ('Code Injection') vulnerability in Marketing Fire Widget Opt
|
CRITICAL | 9.0 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27983 |
Incorrect Privilege Assignment vulnerability in designthemes LMS Elementor Pro lms-elementor-pro all
|
CRITICAL | 9.8 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27982 |
An open redirect vulnerability exists in django-allauth versions prior to 65.14.1 when SAML IdP init
|
MEDIUM | 4.3 | 2026-03-05 |
allauth allauth
|
NVD | |
| CVE-2026-27541 |
Incorrect Privilege Assignment vulnerability in Josh Kohlbach Wholesale Suite woocommerce-wholesale-
|
HIGH | 7.1 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27439 |
Deserialization of Untrusted Data vulnerability in ThemeREX Dentario dentario allows Object Injectio
|
CRITICAL | 9.8 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27438 |
Deserialization of Untrusted Data vulnerability in ThemeREX Kingler kingler allows Object Injection.
|
CRITICAL | 9.8 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27437 |
Deserialization of Untrusted Data vulnerability in ThemeREX Tennis Club tennis-sportclub allows Obje
|
CRITICAL | 9.8 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27428 |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i
|
HIGH | 8.5 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27417 |
Deserialization of Untrusted Data vulnerability in SeventhQueen Sweet Date sweetdate allows Object I
|
CRITICAL | 9.8 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27411 |
Guessable CAPTCHA vulnerability in jp-secure SiteGuard WP Plugin siteguard allows Functionality Bypa
|
MEDIUM | 5.3 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27406 |
Insertion of Sensitive Information Into Sent Data vulnerability in Joe Dolson My Tickets my-tickets
|
HIGH | 7.5 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27396 |
Missing Authorization vulnerability in e-plugins Directory Pro directory-pro allows Exploiting Incor
|
HIGH | 7.3 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27390 |
Authentication Bypass Using an Alternate Path or Channel vulnerability in designthemes WeDesignTech
|
HIGH | 8.8 | 2026-03-05 |
未知
|
NVD | |
| CVE-2026-27389 |
Authentication Bypass Using an Alternate Path or Channel vulnerability in designthemes WeDesignTech
|
CRITICAL | 9.8 | 2026-03-05 |
未知
|
NVD |