| CVE-2025-14054 |
| WC Builder WordPress插件存储型XSS漏洞 |
中危 |
4.4 |
2025-12-21 |
| CVE-2025-14043 |
WordPress Tainacan插件未授权元数据创建漏洞 |
中危 |
5.3 |
2025-12-21 |
| CVE-2025-13838 |
WishSuite WordPress插件存储型XSS漏洞 |
中危 |
6.4 |
2025-12-21 |
| CVE-2025-13693 |
WordPress Final Tiles Grid插件存储型XSS漏洞 |
中危 |
6.4 |
2025-12-21 |
| CVE-2025-13361 |
WordPress Web to SugarCRM Lead插件CSRF漏洞 |
中危 |
4.3 |
2025-12-21 |
| CVE-2025-13220 |
WordPress Ultimate Member插件存储型XSS漏洞 |
中危 |
6.4 |
2025-12-21 |
| CVE-2025-12980 |
WordPress PostX插件未授权信息泄露漏洞 |
高危 |
7.5 |
2025-12-21 |
| CVE-2025-12654 |
WPvivid插件任意目录创建漏洞 |
低危 |
2.7 |
2025-12-21 |
| CVE-2025-12398 |
WordPress WooCommerce产品表插件反射型XSS漏洞 |
中危 |
6.1 |
2025-12-21 |
| CVE-2025-11496 |
WordPress餐厅预订插件存储型XSS漏洞 |
中危 |
6.1 |
2025-12-21 |
| CVE-2023-47232 |
WordPress WP Affiliate Disclosure插件CSRF和访问控制漏洞 |
低危 |
4.3 |
2025-12-21 |
| CVE-2023-25446 |
HappyFiles Pro访问控制绕过漏洞 |
高危 |
7.7 |
2025-12-21 |
| CVE-2023-25445 |
HappyFiles Pro 插件访问控制绕过漏洞 |
中危 |
5.4 |
2025-12-21 |
| CVE-2023-25068 |
Magazine Edge WordPress主题缺失授权漏洞 |
中危 |
4.3 |
2025-12-21 |
| CVE-2025-8065 |
Tapo C200/C520WS ONVIF SOAP XML解析器栈缓冲区溢出漏洞 |
中危 |
6.5 |
2025-12-20 |
| CVE-2025-7782 |
WordPress JobHunt插件未授权XSS漏洞 |
高危 |
7.6 |
2025-12-20 |
| CVE-2025-7733 |
WordPress JobHunt插件IDOR漏洞可导致邮件注入攻击 |
中危 |
4.3 |
2025-12-20 |
| CVE-2025-14735 |
WordPress Amazon Affiliate Lite Plugin 存储型XSS漏洞 |
中危 |
4.4 |
2025-12-20 |
| CVE-2025-14734 |
WordPress Amazon affiliate lite插件CSRF漏洞 |
中危 |
5.4 |
2025-12-20 |
| CVE-2025-14721 |
WordPress Responsive and Swipe Slider存储型XSS漏洞 |
中危 |
5.5 |
2025-12-20 |
| CVE-2025-14633 |
WordPress F70 Lead Document Download插件未授权文件访问漏洞 |
中危 |
5.3 |
2025-12-20 |
| CVE-2025-14591 |
Delphix Continuous Compliance EOR配置错误导致PII数据泄露 |
高危 |
7.5 |
2025-12-20 |
| CVE-2025-14300 |
TP-Link Tapo C200 V3 未授权Wi-Fi配置修改漏洞 |
高危 |
8.1 |
2025-12-20 |
| CVE-2025-14299 |
Tapo C200 V3 HTTPS服务器Content-Length验证不当导致拒绝服务 |
中危 |
6.5 |
2025-12-20 |
| CVE-2025-14298 |
FiboSearch插件thegem_te_search短代码存储型XSS漏洞 |
中危 |
5.4 |
2025-12-20 |
| CVE-2025-14168 |
WP DB Booster插件CSRF漏洞可删除数据库记录 |
中危 |
4.3 |
2025-12-20 |
| CVE-2025-14164 |
WordPress Quran Gateway插件CSRF漏洞 |
中危 |
4.3 |
2025-12-20 |
| CVE-2025-13624 |
WordPress Overstock Affiliate Links插件反射型XSS漏洞 |
中危 |
6.1 |
2025-12-20 |
| CVE-2025-13619 |
Flex Store Users插件权限提升漏洞 |
严重 |
9.8 |
2025-12-20 |
| CVE-2025-13365 |
WordPress WP Hallo Welt插件CSRF存储型XSS漏洞 |
中危 |
6.1 |
2025-12-20 |