漏洞列表 355986
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-52331
Cross-site scripting (XSS) vulnerability in the generate report functionality in Rarlab WinRAR 7.11,...
MEDIUM 6.1 2025-11-12
rarlab winrar
CVE NVD
CVE-2025-56385
A SQL injection vulnerability exists in the login functionality of WellSky Harmony version 4.1.0.2.8...
CRITICAL 9.8 2025-11-12
wellsky harmony
CVE NVD
CVE-2025-57310
A Cross-Site Request Forgery (CSRF) vulnerability in Salmen2/Simple-Faucet-Script v1.07 via crafted ...
HIGH 8.8 2025-11-12
salmen simple_faucet_script
CVE NVD
CVE-2025-59491
Cross Site Scripting vulnerability in CentralSquare Community Development 19.5.7 via form fields.
MEDIUM 6.1 2025-11-12
centralsquare community_development
CVE NVD
CVE-2025-60645
A Cross-Site Request Forgery (CSRF) in xxl-api v1.3.0 allows attackers to arbitrarily add users to t...
MEDIUM 6.5 2025-11-12
xuxueli xxl-api
CVE NVD
CVE-2025-60646
A stored cross-site scripting (XSS) in the Business Line Management module of Xxl-api v1.3.0 attacke...
MEDIUM 6.1 2025-11-12
xuxueli xxl-api
CVE NVD
CVE-2025-63289
Sogexia Android App Compile Affected SDK v35, Max SDK 32 and fixed in v36, was discovered to contain...
CRITICAL 9.1 2025-11-12
sogexia sogexia
CVE NVD
CVE-2025-63353
A vulnerability in FiberHome GPON ONU HG6145F1 RP4423 allows the device's factory default Wi-Fi pass...
CRITICAL 9.8 2025-11-12
fiberhome hg6145f1_firmware
CVE NVD
CVE-2025-63396
An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() can cause torch.prof...
LOW 3.3 2025-11-12
linuxfoundation pytorch linuxfoundation pytorch
CVE NVD
CVE-2025-63419
Cross Site Scripting (XSS) vulnerability in CrushFTP 11.3.6_48. The Web-Based Server has a feature w...
MEDIUM 6.1 2025-11-12
crushftp crushftp
CVE NVD
CVE-2025-63645
A stored cross-site scripting (XSS) vulnerability exists in pH7Software pH7-Social-Dating-CMS 17.9.1...
MEDIUM 5.4 2025-11-12
ph7builder ph7_social_dating_builder
CVE NVD
CVE-2025-63666
Tenda AC15 v15.03.05.18_multi) issues an authentication cookie that exposes the account password has...
CRITICAL 9.8 2025-11-12
tenda ac15_firmware
CVE NVD
CVE-2025-63667
Incorrect access control in SIMICAM v1.16.41-20250725, KEVIEW v1.14.92-20241120, ASECAM v1.14.10-202...
HIGH 7.5 2025-11-12
simicam ip_camera_firmware keview ip_camera_firmware +1个
CVE NVD
CVE-2025-63679
free5gc v4.1.0 and before is vulnerable to Buffer Overflow. When AMF receives an UplinkRANConfigurat...
CRITICAL 9.8 2025-11-12
free5gc free5gc
CVE NVD
CVE-2025-63811
An issue was discovered in dvsekhvalnov jose2go 1.5.0 thru 1.7.0 allowing an attacker to cause a Den...
HIGH 7.5 2025-11-12
dvsekhvalnov jose2go
CVE NVD
CVE-2025-63927
A heap-use-after-free vulnerability exists in airpig2011 IEC104 thru Commit be6d841 (2019-07-08). Du...
MEDIUM 4.0 2025-11-12
airpig2011 iec104
CVE NVD
CVE-2025-63929
A null pointer dereference vulnerability exists in airpig2011 IEC104 thru Commit be6d841 (2019-07-08...
HIGH 7.5 2025-11-12
airpig2011 iec104
CVE NVD
CVE-2025-64280
A SQL Injection Vulnerability in CentralSquare Community Development 19.5.7 allows attackers to inje...
CRITICAL 9.8 2025-11-12
centralsquare community_development
CVE NVD
CVE-2025-64281
An Authentication Bypass issue in CentralSquare Community Development 19.5.7 allows attackers to acc...
CRITICAL 9.8 2025-11-12
centralsquare community_development
CVE NVD
CVE-2025-65001
Fujitsu fbiosdrv.sys before 2.5.0.0 allows an attacker to potentially affect system confidentiality,...
HIGH 8.2 2025-11-12
Fujitsu fbiosdrv.sys
CVE NVD