漏洞列表 355639
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-13414
Chamber Dashboard Business Directory <= 3.3.11 - Missing Authorization to Unauthenticated Business Information Export
MEDIUM 5.3 2025-11-25
gwendydd Chamber Dashboard Business Directory
CVE NVD
CVE-2025-12043
Autochat Automatic Conversation <= 1.1.9 - Missing Authorization to Unauthenticated Settings Update
MEDIUM 5.3 2025-11-25
autochat Autochat Automatic Conversation
CVE NVD
CVE-2025-59365
A stack buffer overflow vulnerability has been identified in certain router models. An authenticated...
MEDIUM 6.9 2025-11-25
ASUS Router ASUS Router +1个
CVE NVD
CVE-2025-59366
An authentication-bypass vulnerability exists in AiCloud. This vulnerability can be triggered by an ...
CRITICAL 9.2 2025-11-25
ASUS Router ASUS Router +1个
CVE NVD
CVE-2025-64693
Security Point (Windows) of MaLion and MaLionCloud contains a heap-based buffer overflow vulnerabili...
CRITICAL 9.3 2025-11-25
Intercom, Inc. Security Point (Windows) of MaLion Intercom, Inc. Security Point (Windows) of MaLionCloud
CVE NVD
CVE-2025-62691
Security Point (Windows) of MaLion and MaLionCloud contains a stack-based buffer overflow vulnerabil...
CRITICAL 9.3 2025-11-25
Intercom, Inc. Security Point (Windows) of MaLion Intercom, Inc. Security Point (Windows) of MaLionCloud
CVE NVD
CVE-2025-59485
Incorrect default permissions issue exists in Security Point (Windows) of MaLion prior to Ver.5.3.4....
MEDIUM 4.8 2025-11-25
Intercom, Inc. Security Point (Windows) of MaLion
CVE NVD
CVE-2025-12742
Remote Code Execution in Looker via Teradata JDBC Driver
HIGH 7.5 2025-11-25
Google Cloud Looker
CVE NVD
CVE-2025-13644
MongoDB may be susceptible to Invariant Failure due to batched delete
HIGH 7.1 2025-11-25
MongoDB Inc. MongoDB Server mongodb mongodb +1个
CVE NVD
CVE-2025-13643
MongoDB Server may allow queries to be terminated by unauthorized users
LOW 2.3 2025-11-25
MongoDB Inc. MongoDB Server mongodb mongodb +1个
CVE NVD
CVE-2025-12893
Improper Certificate Validation May Allow Successful TLS Handshaking Despite Invalid Extended Key Usage Fields in MongoDB Server
LOW 2.3 2025-11-25
MongoDB Inc. MongoDB Server mongodb mongodb
CVE NVD
CVE-2025-13507
Time-series operations may cause internal BSON size limit to be exceed
HIGH 7.1 2025-11-25
MongoDB Inc. MongoDB Server mongodb mongodb
CVE NVD
CVE-2025-13068
Telegram Bot & Channel <= 4.1 - Unauthenticated Stored Cross-Site Scripting via Telegram Username
HIGH 7.2 2025-11-25
milmor Telegram Bot & Channel
CVE NVD
CVE-2025-13559
EduKart Pro <= 1.0.3 - Unauthenticated Privilege Escalation
CRITICAL 9.8 2025-11-25
venusweb EduKart Pro
CVE NVD
CVE-2025-13558
Blog2Social <= 8.7.0 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Trashing
MEDIUM 5.4 2025-11-25
pr-gateway Blog2Social: Social Media Auto Post & Scheduler
CVE NVD
CVE-2025-64730
Cross-site scripting vulnerability exists in SNC-CX600W all versions. If this vulnerability is explo...
MEDIUM 4.8 2025-11-25
Sony Corporation SNC-CX600W sony snc-cx600w_firmware
CVE NVD
CVE-2025-62497
Cross-site request forgery vulnerability exists in SNC-CX600W versions prior to Ver.2.8.0. If a user...
LOW 2.1 2025-11-25
Sony Corporation SNC-CX600W sony snc-cx600w_firmware
CVE NVD
CVE-2025-64304
"FOD" App uses hard-coded cryptographic keys, which may allow a local unauthenticated attacker to re...
MEDIUM 5.1 2025-11-25
Fuji Television Network, Inc. "FOD" App for Android Fuji Television Network, Inc. "FOD" App for iOS
CVE NVD
CVE-2025-10646
Search Exclude <= 2.5.7 – Missing Authorization to Authenticated (Contributor+) Search Settings Modification via REST API
MEDIUM 4.3 2025-11-25
quadlayers Search Exclude
CVE NVD
CVE-2025-6389
Sneeit Framework <= 8.3 - Unauthenticated Remote Code Execution in sneeit_articles_pagination_callback
CRITICAL 9.8 2025-11-25
Sneeit Sneeit Framework
CVE NVD