漏洞列表 352348
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-0766
Open WebUI load_tool_module_by_id Command Injection Remote Code Execution Vulnerability
HIGH 8.8 2026-01-23
Open WebUI Open WebUI
CVE NVD
CVE-2026-0765
Open WebUI PIP install_frontmatter_requirements Command Injection Remote Code Execution Vulnerability
HIGH 8.8 2026-01-23
Open WebUI Open WebUI
CVE NVD
CVE-2026-0764
GPT Academic upload Deserialization of Untrusted Data Remote Code Execution Vulnerability
CRITICAL 9.8 2026-01-23
GPT Academic GPT Academic
CVE NVD
CVE-2026-0763
GPT Academic run_in_subprocess_wrapper_func Deserialization of Untrusted Data Remote Code Execution Vulnerability
CRITICAL 9.8 2026-01-23
GPT Academic GPT Academic
CVE NVD
CVE-2026-0762
GPT Academic stream_daas Deserialization of Untrusted Data Remote Code Execution Vulnerability
HIGH 8.1 2026-01-23
GPT Academic GPT Academic
CVE NVD
CVE-2026-0761
Foundation Agents MetaGPT actionoutput_str_to_mapping Code Injection Remote Code Execution Vulnerability
CRITICAL 9.8 2026-01-23
Foundation Agents MetaGPT
CVE NVD
CVE-2026-0760
Foundation Agents MetaGPT deserialize_message Deserialization of Untrusted Data Remote Code Execution Vulnerability
CRITICAL 9.8 2026-01-23
Foundation Agents MetaGPT
CVE NVD
CVE-2026-0759
Katana Network Development Starter Kit executeCommand Command Injection Remote Code Execution Vulnerability
CRITICAL 9.8 2026-01-23
Katana Network Development Starter Kit
CVE NVD
CVE-2026-0758
mcp-server-siri-shortcuts shortcutName Command Injection Privilege Escalation Vulnerability
HIGH 7.8 2026-01-23
mcp-server-siri-shortcuts mcp-server-siri-shortcuts
CVE NVD
CVE-2026-0757
MCP Manager for Claude Desktop execute-command Command Injection Sandbox Escape Vulnerability
HIGH 8.8 2026-01-23
MCP Manager for Claude Desktop MCP Manager for Claude Desktop
CVE NVD
CVE-2026-0756
github-kanban-mcp-server execAsync Command Injection Remote Code Execution Vulnerability
CRITICAL 9.8 2026-01-23
github-kanban-mcp-server github-kanban-mcp-server
CVE NVD
CVE-2026-0755
gemini-mcp-tool execAsync Command Injection Remote Code Execution Vulnerability
CRITICAL 9.8 2026-01-23
Gemini MCP Tool gemini-mcp-tool
CVE NVD
CVE-2025-15061
Framelink Figma MCP Server fetchWithRetry Command Injection Remote Code Execution Vulnerability
CRITICAL 9.8 2026-01-23
Framelink Figma MCP Server
CVE NVD
CVE-2025-15062
Trimble SketchUp SKP File Parsing Use-After-Free Remote Code Execution Vulnerability
HIGH 7.8 2026-01-23
Trimble SketchUp
CVE NVD
CVE-2026-0795
ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability
HIGH 7.2 2026-01-23
ALGO 8180 IP Audio Alerter
CVE NVD
CVE-2026-0794
ALGO 8180 IP Audio Alerter SIP Use-After-Free Remote Code Execution Vulnerability
HIGH 8.1 2026-01-23
ALGO 8180 IP Audio Alerter
CVE NVD
CVE-2026-0793
ALGO 8180 IP Audio Alerter InformaCast Heap-based Buffer Overflow Remote Code Execution Vulnerability
HIGH 8.1 2026-01-23
ALGO 8180 IP Audio Alerter
CVE NVD
CVE-2026-0792
ALGO 8180 IP Audio Alerter SIP INVITE Alert-Info Stack-based Buffer Overflow Remote Code Execution Vulnerability
HIGH 8.1 2026-01-23
ALGO 8180 IP Audio Alerter
CVE NVD
CVE-2026-0791
ALGO 8180 IP Audio Alerter SIP INVITE Replaces Stack-based Buffer Overflow Remote Code Execution Vulnerability
HIGH 8.1 2026-01-23
ALGO 8180 IP Audio Alerter
CVE NVD
CVE-2026-0790
ALGO 8180 IP Audio Alerter Web UI Direct Request Information Disclosure Vulnerability
MEDIUM 5.3 2026-01-23
ALGO 8180 IP Audio Alerter
CVE NVD