快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 352348
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2025-14069 |
Schema & Structured Data for WP & AMP <= 1.54 - Authenticated (Contributor+) Stored Cross-Site Scripting via User Custom Schema
|
MEDIUM | 6.4 | 2026-01-23 |
magazine3 Schema & Structured Data for WP & AMP
|
CVE NVD | |
| CVE-2026-0927 |
KiviCare – Clinic & Patient Management System (EHR) <= 3.6.15 - Missing Authorization to Unauthenticated Limited Arbitrary File Upload
|
MEDIUM | 5.3 | 2026-01-23 |
iqonicdesign KiviCare – Clinic & Patient Management System (EHR)
|
CVE NVD | |
| CVE-2025-67847 |
Moodle: moodle: remote code execution via insufficient restore input validation
|
HIGH | 8.8 | 2026-01-23 |
未知
|
CVE NVD | |
| CVE-2025-15522 |
Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin <= 6.10.0.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
|
MEDIUM | 6.4 | 2026-01-23 |
uncannyowl Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin
|
CVE NVD | |
| CVE-2026-0710 |
Sipp/sipp: sipp: denial of service and potential arbitrary code execution vulnerability
|
HIGH | 8.4 | 2026-01-23 |
未知
|
CVE NVD | |
| CVE-2025-15351 |
Anritsu VectorStar CHX File Parsing Deserialization of Untrusted Data Remote Code Execution Vulnerability
|
HIGH | 7.8 | 2026-01-23 |
Anritsu VectorStar
|
CVE NVD | |
| CVE-2025-15350 |
Anritsu VectorStar CHX File Parsing Deserialization of Untrusted Data Remote Code Execution Vulnerability
|
HIGH | 7.8 | 2026-01-23 |
Anritsu VectorStar
|
CVE NVD | |
| CVE-2025-15349 |
Anritsu ShockLine SCPI Race Condition Remote Code Execution Vulnerability
|
HIGH | 7.5 | 2026-01-23 |
Anritsu ShockLine
|
CVE NVD | |
| CVE-2025-15348 |
Anritsu ShockLine CHX File Parsing Deserialization of Untrusted Data Remote Code Execution Vulnerability
|
HIGH | 7.8 | 2026-01-23 |
Anritsu ShockLine
|
CVE NVD | |
| CVE-2026-0778 |
Enel X JuiceBox 40 Telnet Service Missing Authentication Remote Code Execution Vulnerability
|
HIGH | 8.8 | 2026-01-23 |
Enel X JuiceBox 40
|
CVE NVD | |
| CVE-2026-0776 |
Discord Client Uncontrolled Search Path Element Local Privilege Escalation Vulnerability
|
HIGH | 7.3 | 2026-01-23 |
Discord Client
|
CVE NVD | |
| CVE-2026-0775 |
npm cli Incorrect Permission Assignment Local Privilege Escalation Vulnerability
|
HIGH | 7.0 | 2026-01-23 |
npm cli
|
CVE NVD | |
| CVE-2026-0774 |
WatchYourLAN Configuration Page Argument Injection Remote Code Execution Vulnerability
|
HIGH | 8.8 | 2026-01-23 |
WatchYourLAN WatchYourLAN
|
CVE NVD | |
| CVE-2026-0773 |
Upsonic Cloudpickle Deserialization of Untrusted Data Remote Code Execution Vulnerability
|
CRITICAL | 9.8 | 2026-01-23 |
Upsonic Upsonic
|
CVE NVD | |
| CVE-2026-0772 |
Langflow Disk Cache Deserialization of Untrusted Data Remote Code Execution Vulnerability
|
HIGH | 7.5 | 2026-01-23 |
Langflow Langflow
|
CVE NVD | |
| CVE-2026-0771 |
Langflow PythonFunction Code Injection Remote Code Execution Vulnerability
|
HIGH | 7.1 | 2026-01-23 |
Langflow Langflow
|
CVE NVD | |
| CVE-2026-0770 |
Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere Remote Code Execution Vulnerability
|
CRITICAL | 9.8 | 2026-01-23 |
Langflow Langflow
|
CVE NVD | |
| CVE-2026-0769 |
Langflow eval_custom_component_code Eval Injection Remote Code Execution Vulnerability
|
CRITICAL | 9.8 | 2026-01-23 |
Langflow Langflow
|
CVE NVD | |
| CVE-2026-0768 |
Langflow code Code Injection Remote Code Execution Vulnerability
|
CRITICAL | 9.8 | 2026-01-23 |
Langflow Langflow
|
CVE NVD | |
| CVE-2026-0767 |
Open WebUI Cleartext Transmission of Credentials Information Disclosure Vulnerability
|
MEDIUM | 5.3 | 2026-01-23 |
Open WebUI Open WebUI
|
CVE NVD |