漏洞列表 360566
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-27990
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
HIGH 8.1 2026-03-05
未知
NVD
CVE-2026-27989
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
HIGH 8.1 2026-03-05
未知
NVD
CVE-2026-27988
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
HIGH 8.1 2026-03-05
未知
NVD
CVE-2026-27987
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
HIGH 8.1 2026-03-05
未知
NVD
CVE-2026-27986
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
HIGH 8.1 2026-03-05
未知
NVD
CVE-2026-27985
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
HIGH 8.1 2026-03-05
未知
NVD
CVE-2026-27984
Improper Control of Generation of Code ('Code Injection') vulnerability in Marketing Fire Widget Opt
CRITICAL 9.0 2026-03-05
未知
NVD
CVE-2026-27983
Incorrect Privilege Assignment vulnerability in designthemes LMS Elementor Pro lms-elementor-pro all
CRITICAL 9.8 2026-03-05
未知
NVD
CVE-2026-27982
An open redirect vulnerability exists in django-allauth versions prior to 65.14.1 when SAML IdP init
MEDIUM 4.3 2026-03-05
allauth allauth
NVD
CVE-2026-27541
Incorrect Privilege Assignment vulnerability in Josh Kohlbach Wholesale Suite woocommerce-wholesale-
HIGH 7.1 2026-03-05
未知
NVD
CVE-2026-27439
Deserialization of Untrusted Data vulnerability in ThemeREX Dentario dentario allows Object Injectio
CRITICAL 9.8 2026-03-05
未知
NVD
CVE-2026-27438
Deserialization of Untrusted Data vulnerability in ThemeREX Kingler kingler allows Object Injection.
CRITICAL 9.8 2026-03-05
未知
NVD
CVE-2026-27437
Deserialization of Untrusted Data vulnerability in ThemeREX Tennis Club tennis-sportclub allows Obje
CRITICAL 9.8 2026-03-05
未知
NVD
CVE-2026-27428
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i
HIGH 8.5 2026-03-05
未知
NVD
CVE-2026-27417
Deserialization of Untrusted Data vulnerability in SeventhQueen Sweet Date sweetdate allows Object I
CRITICAL 9.8 2026-03-05
未知
NVD
CVE-2026-27411
Guessable CAPTCHA vulnerability in jp-secure SiteGuard WP Plugin siteguard allows Functionality Bypa
MEDIUM 5.3 2026-03-05
未知
NVD
CVE-2026-27406
Insertion of Sensitive Information Into Sent Data vulnerability in Joe Dolson My Tickets my-tickets
HIGH 7.5 2026-03-05
未知
NVD
CVE-2026-27396
Missing Authorization vulnerability in e-plugins Directory Pro directory-pro allows Exploiting Incor
HIGH 7.3 2026-03-05
未知
NVD
CVE-2026-27390
Authentication Bypass Using an Alternate Path or Channel vulnerability in designthemes WeDesignTech
HIGH 8.8 2026-03-05
未知
NVD
CVE-2026-27389
Authentication Bypass Using an Alternate Path or Channel vulnerability in designthemes WeDesignTech
CRITICAL 9.8 2026-03-05
未知
NVD