| CVE-2025-13856 |
WordPress Extra Post Images插件存储型XSS漏洞 |
中危 |
6.4 |
2025-12-06 |
| CVE-2025-13748 |
| Fluent Forms WordPress插件IDOR漏洞导致未授权提交状态篡改 |
中危 |
5.3 |
2025-12-06 |
| CVE-2025-13666 |
| WordPress Helloprint插件未授权订单状态修改漏洞 |
中危 |
5.3 |
2025-12-06 |
| CVE-2025-13656 |
WordPress Cute News Ticker插件存储型XSS漏洞 |
中危 |
6.4 |
2025-12-06 |
| CVE-2025-13629 |
WordPress WP Landing Page插件CSRF漏洞 |
中危 |
4.3 |
2025-12-06 |
| CVE-2025-13626 |
WordPress myLCO插件反射型XSS漏洞 |
中危 |
6.1 |
2025-12-06 |
| CVE-2025-13377 |
| WordPress 10Web Booster插件任意文件夹删除漏洞 |
严重 |
9.6 |
2025-12-06 |
| CVE-2025-13358 |
WordPress CodeConfig Accessibility插件未授权页面创建漏洞 |
中危 |
5.3 |
2025-12-06 |
| CVE-2025-13309 |
WordPress Accessiy插件授权绕过漏洞 |
中危 |
4.3 |
2025-12-06 |
| CVE-2025-13308 |
WordPress Application Passwords插件反射型XSS漏洞 |
中危 |
5.4 |
2025-12-06 |
| CVE-2025-13137 |
WordPress Woomotiv插件反射型XSS漏洞 |
中危 |
6.1 |
2025-12-06 |
| CVE-2025-13065 |
WordPress Starter Templates插件任意文件上传漏洞 |
高危 |
8.8 |
2025-12-06 |
| CVE-2025-12966 |
WordPress All-in-One Video Gallery插件任意文件上传漏洞 |
高危 |
8.8 |
2025-12-06 |
| CVE-2025-12721 |
WordPress g-FFL Cockpit插件/server_status端点敏感信息泄露漏洞 |
中危 |
5.3 |
2025-12-06 |
| CVE-2025-12720 |
WordPress g-FFL Cockpit插件未授权任意产品删除漏洞 |
中危 |
5.3 |
2025-12-06 |
| CVE-2025-12717 |
WordPress List Attachments Shortcode插件存储型XSS漏洞 |
中危 |
6.4 |
2025-12-06 |
| CVE-2025-12715 |
WordPress Canadian Nutrition Facts Label插件存储型XSS漏洞 |
中危 |
6.4 |
2025-12-06 |
| CVE-2025-12673 |
WordPress Flex QR Code Generator任意文件上传漏洞 |
严重 |
9.8 |
2025-12-06 |
| CVE-2025-12577 |
WordPress Listar插件REST API未授权修改漏洞 |
中危 |
4.3 |
2025-12-06 |
| CVE-2025-12574 |
WordPress Listar插件未授权任意文章删除漏洞 |
中危 |
4.3 |
2025-12-06 |
| CVE-2025-12510 |
WordPress Google Reviews插件存储型XSS漏洞 |
高危 |
7.2 |
2025-12-06 |
| CVE-2025-12505 |
weDocs WordPress插件权限绕过漏洞 |
中危 |
5.4 |
2025-12-06 |
| CVE-2025-12499 |
WordPress Google Reviews插件存储型XSS漏洞 |
高危 |
7.2 |
2025-12-06 |
| CVE-2025-12091 |
WordPress WooCommerce搜索插件权限绕过漏洞 |
中危 |
4.3 |
2025-12-06 |
| CVE-2025-11263 |
WordPress Link Whisper Free插件反射型XSS漏洞 |
中危 |
6.1 |
2025-12-06 |
| CVE-2025-8148 |
GoAnywhere MFT SFTP服务访问控制绕过漏洞 |
中危 |
4.2 |
2025-12-05 |
| CVE-2025-6966 |
python-apt TagSection空指针解引用拒绝服务漏洞 |
中危 |
5.5 |
2025-12-05 |
| CVE-2025-66644 |
ArrayOS AG命令注入漏洞 |
高危 |
7.2 |
2025-12-05 |
| CVE-2025-66629 |
HedgeDoc OAuth2 CSRF跨站请求伪造漏洞 |
低危 |
3.7 |
2025-12-05 |
| CVE-2025-66624 |
BACnet Protocol Stack 越界读取拒绝服务漏洞 |
高危 |
7.5 |
2025-12-05 |