| CVE-2024-58314 |
Atcom 100M IP电话 web_cgi_main.cgi 认证命令注入漏洞 |
高危 |
8.8 |
2025-12-12 |
| CVE-2024-58311 |
Dormakaba Saflok System 6000 可预测密钥生成漏洞 |
严重 |
9.8 |
2025-12-12 |
| CVE-2024-58305 |
WonderCMS 4.3.2 XSS到RCE远程代码执行漏洞 |
高危 |
8.8 |
2025-12-12 |
| CVE-2024-58299 |
PCMan FTP Server 2.0 pwd命令缓冲区溢出RCE漏洞 |
严重 |
9.8 |
2025-12-12 |
| CVE-2024-14010 |
Typora PDF导出命令注入漏洞 |
严重 |
9.8 |
2025-12-12 |
| CVE-2023-29144 |
Malwarebytes for Linux签名计算漏洞导致检测绕过 |
低危 |
3.3 |
2025-12-12 |
| CVE-2025-9436 |
WordPress Google Reviews插件存储型XSS漏洞 |
中危 |
6.4 |
2025-12-11 |
| CVE-2025-8405 |
GitLab CE/EE 存储型HTML注入漏洞 |
高危 |
7.7 |
2025-12-11 |
| CVE-2025-67780 |
Starlink Dish设备未授权gRPC访问漏洞 (CVE-2025-67780) |
中危 |
4.2 |
2025-12-11 |
| CVE-2025-67742 |
JetBrains TeamCity 文件上传路径遍历漏洞 |
低危 |
3.8 |
2025-12-11 |
| CVE-2025-67741 |
JetBrains TeamCity 存储型XSS漏洞 |
中危 |
4.6 |
2025-12-11 |
| CVE-2025-67740 |
JetBrains TeamCity 不当访问控制导致GitHub App令牌元数据泄露 |
低危 |
2.7 |
2025-12-11 |
| CVE-2025-67739 |
JetBrains TeamCity 路径遍历导致本地路径泄露漏洞 |
低危 |
3.1 |
2025-12-11 |
| CVE-2025-67738 |
Webmin Squid Cache Manager命令注入漏洞 |
高危 |
8.5 |
2025-12-11 |
| CVE-2025-67720 |
Pyrofork download_media路径遍历漏洞 |
中危 |
6.5 |
2025-12-11 |
| CVE-2025-67717 |
ZITADEL CVE-2025-67717 信息泄露漏洞 |
中危 |
4.3 |
2025-12-11 |
| CVE-2025-67716 |
Auth0 Next.js SDK returnTo参数注入漏洞 (CVE-2025-67716) |
中危 |
5.7 |
2025-12-11 |
| CVE-2025-67713 |
Miniflux 2 登录重定向钓鱼漏洞 |
中危 |
6.1 |
2025-12-11 |
| CVE-2025-67648 |
Shopware AuthController.php 反射型XSS漏洞 (CVE-2025-676... |
高危 |
7.1 |
2025-12-11 |
| CVE-2025-67646 |
TableProgressTracking MediaWiki扩展CSRF漏洞 |
低危 |
3.5 |
2025-12-11 |
| CVE-2025-67644 |
LangGraph SQLite Checkpoint SQL注入漏洞 |
高危 |
7.3 |
2025-12-11 |
| CVE-2025-67511 |
Cybersecurity AI run_ssh_command_with_credentials(... |
严重 |
9.6 |
2025-12-11 |
| CVE-2025-66918 |
edoc-doctor-appointment-system XSS漏洞 |
高危 |
8.8 |
2025-12-11 |
| CVE-2025-66590 |
AzeoTech DAQFactory 20.7 缓冲区溢出漏洞导致远程代码执行 |
严重 |
9.8 |
2025-12-11 |
| CVE-2025-66589 |
AzeoTech DAQFactory越界读取漏洞 |
严重 |
9.1 |
2025-12-11 |
| CVE-2025-66588 |
AzeoTech DAQFactory 未初始化指针访问漏洞导致远程代码执行 |
严重 |
9.8 |
2025-12-11 |
| CVE-2025-66586 |
AzeoTech DAQFactory特制.ctl文件内存损坏漏洞 |
高危 |
7.8 |
2025-12-11 |
| CVE-2025-66585 |
AzeoTech DAQFactory 20.7 Use After Free远程代码执行漏洞 |
高危 |
7.8 |
2025-12-11 |
| CVE-2025-66452 |
LibreChat JSON解析错误导致的XSS漏洞 |
中危 |
6.1 |
2025-12-11 |
| CVE-2025-66451 |
LibreChat提示组权限提升漏洞 |
中危 |
6.5 |
2025-12-11 |