漏洞列表 354145
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-14950
code-projects Scholars Tracking System delete_post.php sql injection
MEDIUM 6.9 2025-12-19
code-projects Scholars Tracking System fabian scholars_tracking_system
CVE NVD
CVE-2025-14946
Libnbd: libnbd: arbitrary code execution via ssh argument injection through a malicious uri
MEDIUM 4.8 2025-12-19
Red Hat libnbd Red Hat Red Hat Enterprise Linux 10 +3个
CVE NVD
CVE-2025-14881
pretix 安全漏洞
LOW 3.8 2025-12-19
pretix pretix
CVE NVD +1
CVE-2025-14882
pretix-offlinesales 安全漏洞
LOW 3.8 2025-12-19
pretix pretix-offlinesales
CVE NVD +1
CVE-2025-1928
Improper Authentication in Restajet's Online Food Delivery System
CRITICAL 9.1 2025-12-19
Restajet Information Technologies Inc. Online Food Delivery System restajet online_food_delivery_system
CVE NVD
CVE-2025-1927
CSRF in Restajet's Online Food Delivery System
HIGH 7.1 2025-12-19
Restajet Information Technologies Inc. Online Food Delivery System restajet online_food_delivery_system
CVE NVD
CVE-2025-1885
Open Redirect in Restajet's Online Food Delivery System
MEDIUM 5.4 2025-12-19
Restajet Information Technologies Inc. Online Food Delivery System restajet online_food_delivery_system
CVE NVD
CVE-2025-14847
MongoDB Server 安全漏洞
HIGH 8.7 2025-12-19
MongoDB Inc. MongoDB Server MongoDB Inc. MongoDB Server +2个
CVE NVD +1
CVE-2025-14455
Image Photo Gallery Final Tiles Grid <= 3.6.7 - Missing Authorization to Authenticated (Contributor+) Gallery Management
MEDIUM 5.4 2025-12-19
wpchill Image Photo Gallery Final Tiles Grid
CVE NVD
CVE-2025-12361
myCred – Points Management System For Gamification, Ranks, Badges, and Loyalty Program <= 2.9.7.1 - Missing Authorization to Sensitive Information Exposure
MEDIUM 4.3 2025-12-19
saadiqbal myCred – Points Management System For Gamification, Ranks, Badges, and Loyalty Program.
CVE NVD
CVE-2025-66524
Apache NiFi: Deserialization of Untrusted Data in GetAsanaObject Processor
HIGH 7.5 2025-12-19
Apache Software Foundation Apache NiFi apache nifi +1个
CVE NVD
CVE-2025-11747
Colibri Page Builder <= 1.0.345 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
MEDIUM 6.4 2025-12-19
extendthemes Colibri Page Builder
CVE NVD
CVE-2025-14151
SlimStat Analytics <= 5.3.2 - Unauthenticated Stored Cross-Site Scripting
MEDIUM 6.1 2025-12-19
veronalabs SlimStat Analytics
CVE NVD
CVE-2025-66522
Foxit pdfonline.foxit.com Stored Cross-Site Scripting in Digital IDs Common Name Field
MEDIUM 6.3 2025-12-19
Foxit Software Inc. pdfonline.foxit.com foxit pdf_editor_cloud
CVE NVD
CVE-2025-66521
Foxit pdfonline.foxit.com Stored Cross-Site Scripting in Trusted Certificates Feature
MEDIUM 6.3 2025-12-19
Foxit Software Inc. pdfonline.foxit.com foxit pdf_editor_cloud
CVE NVD
CVE-2025-66520
Foxit pdfonline.foxit.com Stored Cross-Site Scripting in Portfolio SVG Handling
MEDIUM 6.3 2025-12-19
Foxit Software Inc. pdfonline.foxit.com foxit pdf_editor_cloud
CVE NVD
CVE-2025-66519
Foxit pdfonline.foxit.com Stored Cross-Site Scripting in Layer Import Functionality
MEDIUM 6.3 2025-12-19
Foxit Software Inc. pdfonline.foxit.com foxit pdf_editor_cloud
CVE NVD
CVE-2025-66502
Foxit pdfonline.foxit.com Stored Cross-Site Scripting in Page Templates Feature
MEDIUM 6.3 2025-12-19
Foxit Software Inc. pdfonline.foxit.com foxit pdf_editor_cloud
CVE NVD
CVE-2025-66501
Foxit pdfonline.foxit.com Stored Cross-Site Scripting in eSign Predefined Text Feature
MEDIUM 6.3 2025-12-19
Foxit Software Inc. pdfonline.foxit.com foxit pdf_editor_cloud
CVE NVD
CVE-2025-66500
Foxit webplugins.foxit.com Stored Cross-Site Scripting via postMessage Vulnerability
MEDIUM 6.3 2025-12-19
Foxit Software Inc. webplugins.foxit.com foxit pdf_editor_cloud
CVE NVD