漏洞列表 360895
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-27971
Qwik is a performance focused javascript framework. qwik <=1.19.0 is vulnerable to RCE due to an uns
CRITICAL 9.8 2026-03-03
qwik qwik
NVD
CVE-2026-27932
joserfc is a Python library that provides an implementation of several JSON Object Signing and Encry
HIGH 7.5 2026-03-03
hsiaoming joserfc
NVD
CVE-2026-27905
BentoML is a Python library for building online serving systems optimized for AI apps and model infe
HIGH 7.8 2026-03-03
bentoml bentoml
NVD
CVE-2026-27622
OpenEXR provides the specification and reference implementation of the EXR file format, an image sto
HIGH 7.8 2026-03-03
openexr openexr
NVD
CVE-2026-27601
Underscore.js is a utility-belt library for JavaScript. Prior to 1.13.8, the _.flatten and _.isEqual
HIGH 7.5 2026-03-03
underscorejs underscore
NVD
CVE-2026-27600
HomeBox is a home inventory and organization system. Prior to 0.24.0-rc.1, the notifier functionalit
MEDIUM 5.0 2026-03-03
sysadminsmedia homebox
NVD
CVE-2026-26279
Froxlor is open source server administration software. Prior to 2.3.4, a typo in Froxlor's input val
CRITICAL 9.1 2026-03-03
froxlor froxlor
NVD
CVE-2026-26272
HomeBox is a home inventory and organization system. Prior to 0.24.0-rc.1, a stored cross-site scrip
MEDIUM 4.6 2026-03-03
sysadminsmedia homebox
NVD
CVE-2026-26266
AliasVault is a privacy-first password manager with built-in email aliasing. A stored cross-site scr
CRITICAL 9.3 2026-03-03
aliasvault aliasvault
NVD
CVE-2026-25590
The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collec
MEDIUM 4.5 2026-03-03
glpi-project glpi_inventory
NVD
CVE-2026-3487
A vulnerability was found in itsourcecode College Management System 1.0. This issue affects some unk
MEDIUM 4.7 2026-03-03
angeljudesuarez college_management_system
NVD
CVE-2026-3224
Authentication bypass in the Microsoft Entra ID (Azure AD) authentication mode in Devolutions Server
CRITICAL 9.8 2026-03-03
devolutions devolutions_server
NVD
CVE-2026-3204
Improper input validation in the error message page in Devolutions Server 2025.3.15 and earlier all
CRITICAL 9.8 2026-03-03
devolutions devolutions_server
NVD
CVE-2026-3130
Improper Enforcement of Behavioral Controls in Devolutions Server 2025.3.15 and earlier allows an au
CRITICAL 9.8 2026-03-03
devolutions devolutions_server
NVD
CVE-2026-2590
Improper enforcement of the Disable password saving in vaults setting in the connection entry comp
CRITICAL 9.8 2026-03-03
devolutions remote_desktop_manager
NVD
CVE-2026-27012
OpenSTAManager is an open source management software for technical assistance and invoicing. In 2.9.
CRITICAL 9.8 2026-03-03
devcode openstamanager
NVD
CVE-2026-25146
OpenEMR is a free and open source electronic health records and medical practice management applicat
CRITICAL 9.6 2026-03-03
open-emr openemr
NVD
CVE-2026-24898
OpenEMR is a free and open source electronic health records and medical practice management applicat
CRITICAL 10.0 2026-03-03
open-emr openemr
NVD
CVE-2026-24848
OpenEMR is a free and open source electronic health records and medical practice management applicat
CRITICAL 9.9 2026-03-03
open-emr openemr
NVD
CVE-2026-24415
OpenSTAManager is an open source management software for technical assistance and invoicing. OpenSTA
MEDIUM 6.1 2026-03-03
devcode openstamanager
NVD