| CVE-2025-36410 |
IBM ApplinX 11.1 认证用户权限提升漏洞 |
低危 |
3.1 |
2026-01-20 |
| CVE-2025-36409 |
IBM ApplinX 11.1 跨站脚本(XSS)漏洞 |
中危 |
5.4 |
2026-01-20 |
| CVE-2025-36408 |
IBM ApplinX 11.1 存储型XSS漏洞 |
中危 |
6.4 |
2026-01-20 |
| CVE-2025-36397 |
IBM Application Gateway HTML注入漏洞 |
中危 |
5.4 |
2026-01-20 |
| CVE-2025-36396 |
| IBM Application Gateway 跨站脚本漏洞 |
中危 |
5.4 |
2026-01-20 |
| CVE-2025-36115 |
IBM Sterling Connect:Express Adapter 会话劫持漏洞 |
中危 |
6.3 |
2026-01-20 |
| CVE-2025-36113 |
IBM Sterling Connect:Express Adapter XSS漏洞 |
中危 |
5.4 |
2026-01-20 |
| CVE-2025-36066 |
IBM Sterling B2B Integrator跨站脚本漏洞 |
中危 |
6.1 |
2026-01-20 |
| CVE-2025-36065 |
| IBM Sterling Connect:Express Adapter 会话管理漏洞 |
中危 |
6.3 |
2026-01-20 |
| CVE-2025-36063 |
IBM Sterling Connect:Express 会话管理漏洞导致用户冒充 |
中危 |
6.3 |
2026-01-20 |
| CVE-2025-36059 |
IBM Business Automation Workflow容器本地权限提升漏洞 |
中危 |
4.7 |
2026-01-20 |
| CVE-2025-36058 |
IBM Business Automation Workflow容器ConfigMap敏感信息泄露漏... |
中危 |
5.5 |
2026-01-20 |
| CVE-2025-33233 |
NVIDIA Merlin Transformers4Rec代码注入漏洞 |
高危 |
7.8 |
2026-01-20 |
| CVE-2025-33231 |
NVIDIA Nsight Systems Windows DLL劫持漏洞 |
中危 |
6.7 |
2026-01-20 |
| CVE-2025-33230 |
NVIDIA Nsight Systems .run安装程序OS命令注入漏洞 |
高危 |
7.3 |
2026-01-20 |
| CVE-2025-33229 |
NVIDIA Nsight Monitor权限提升漏洞 |
高危 |
7.3 |
2026-01-20 |
| CVE-2025-33228 |
NVIDIA Nsight Systems gfx_hotspot命令注入漏洞 |
高危 |
7.3 |
2026-01-20 |
| CVE-2025-33015 |
IBM Concert 恶意文件上传漏洞 |
高危 |
8.8 |
2026-01-20 |
| CVE-2025-1722 |
IBM Concert堆内存信息泄露漏洞 |
中危 |
5.9 |
2026-01-20 |
| CVE-2025-1719 |
IBM Concert堆内存信息泄露漏洞 |
中危 |
5.9 |
2026-01-20 |
| CVE-2025-15466 |
WordPress Final Tiles Grid插件权限绕过漏洞 |
中危 |
5.4 |
2026-01-20 |
| CVE-2025-15380 |
NotificationX插件DOM型XSS漏洞 |
高危 |
7.2 |
2026-01-20 |
| CVE-2025-15347 |
WordPress Creator LMS插件权限提升漏洞 |
高危 |
8.8 |
2026-01-20 |
| CVE-2025-15281 |
GNU C Library wordexp函数内存损坏漏洞 |
高危 |
7.5 |
2026-01-20 |
| CVE-2025-15043 |
WordPress Events Calendar插件权限绕过漏洞 |
中危 |
5.4 |
2026-01-20 |
| CVE-2025-14978 |
PeachPay WooCommerce插件未授权订单状态修改漏洞 |
中危 |
5.3 |
2026-01-20 |
| CVE-2025-14977 |
WordPress Dokan插件IDOR漏洞可劫持支付信息 |
高危 |
8.1 |
2026-01-20 |
| CVE-2025-14798 |
LearnPress WordPress LMS插件敏感信息泄露漏洞 |
中危 |
5.3 |
2026-01-20 |
| CVE-2025-14533 |
WordPress Advanced Custom Fields: Extended 权限提升漏洞 |
严重 |
9.8 |
2026-01-20 |
| CVE-2025-14369 |
dr_libs dr_flac整数溢出拒绝服务漏洞 |
中危 |
5.5 |
2026-01-20 |