| CVE-2025-12528 |
WordPress Pie Forms插件任意文件上传漏洞 |
高危 |
8.1 |
2025-11-18 |
| CVE-2025-12524 |
WordPress Post Type Switcher插件IDOR漏洞 |
中危 |
5.4 |
2025-11-18 |
| CVE-2025-12481 |
WordPress WP Duplicate Page插件授权缺失漏洞 |
中危 |
4.3 |
2025-11-18 |
| CVE-2025-12457 |
WordPress Enable SVG WebP ICO Upload插件存储型XSS漏洞 |
中危 |
6.4 |
2025-11-18 |
| CVE-2025-12411 |
WordPress Premmerce Wholesale Pricing插件SQL注入漏洞 |
高危 |
7.1 |
2025-11-18 |
| CVE-2025-12406 |
WordPress Project Honey Pot插件CSRF漏洞 |
中危 |
6.1 |
2025-11-18 |
| CVE-2025-12404 |
WordPress Like-it插件CSRF漏洞导致XSS注入 |
中危 |
6.1 |
2025-11-18 |
| CVE-2025-12392 |
WordPress Cryptocurrency Payment Gateway插件未授权访问漏洞 |
中危 |
5.3 |
2025-11-18 |
| CVE-2025-12391 |
WordPress BuddyPress插件未授权数据修改漏洞 |
中危 |
5.3 |
2025-11-18 |
| CVE-2025-12383 |
Eclipse Jersey SSL竞态条件漏洞 |
高危 |
7.4 |
2025-11-18 |
| CVE-2025-12376 |
WordPress Icon List Block插件服务器端请求伪造漏洞 |
中危 |
6.4 |
2025-11-18 |
| CVE-2025-12372 |
WordPress Permalinks Cascade插件未授权访问漏洞 |
中危 |
4.3 |
2025-11-18 |
| CVE-2025-12173 |
WordPress WP Admin Microblog插件CSRF漏洞 |
中危 |
4.3 |
2025-11-18 |
| CVE-2025-12119 |
MongoDB C Driver 内存越界读取漏洞 |
中危 |
6.8 |
2025-11-18 |
| CVE-2025-12088 |
WordPress Meta Display Block插件存储型XSS漏洞 |
中危 |
6.4 |
2025-11-18 |
| CVE-2025-12079 |
WordPress WP Twitter Auto Publish插件PostMessage反射型X... |
中危 |
6.1 |
2025-11-18 |
| CVE-2025-12078 |
WordPress ArtiBot插件反射型XSS漏洞 |
中危 |
6.1 |
2025-11-18 |
| CVE-2025-11868 |
WordPress everviz插件存储型XSS漏洞 |
中危 |
6.4 |
2025-11-18 |
| CVE-2025-11734 |
WordPress Broken Link Checker插件授权缺失漏洞 |
中危 |
5.4 |
2025-11-18 |
| CVE-2025-11620 |
WordPress Multiple Roles per User插件权限绕过漏洞 |
高危 |
7.2 |
2025-11-18 |
| CVE-2025-11427 |
WP Migrate Lite插件Blind SSRF漏洞 |
中危 |
5.8 |
2025-11-18 |
| CVE-2025-11267 |
WordPress VK All in One Expansion Unit插件存储型XSS漏洞 |
中危 |
6.4 |
2025-11-18 |
| CVE-2025-11265 |
VK All in One Expansion Unit 存储型XSS漏洞 |
中危 |
6.4 |
2025-11-18 |
| CVE-2025-10158 |
rsync恶意客户端负数组索引导致堆缓冲区越界读取 |
中危 |
4.3 |
2025-11-18 |
| CVE-2025-10089 |
三菱MILCO.S照明控制应用DLL劫持漏洞 |
高危 |
7.7 |
2025-11-18 |
| CVE-2025-9501 |
W3 Total Cache命令注入漏洞分析 |
严重 |
9.0 |
2025-11-17 |
| CVE-2025-7711 |
WordPress Classified Listing插件任意短代码执行漏洞 |
中危 |
5.4 |
2025-11-17 |
| CVE-2025-65083 |
GoSign Desktop代理模式下TLS证书验证绕过漏洞 |
低危 |
3.2 |
2025-11-17 |
| CVE-2025-65073 |
OpenStack Keystone AWS签名认证绕过漏洞 (CVE-2025-65073) |
高危 |
7.5 |
2025-11-17 |
| CVE-2025-64766 |
NixOS OnlyOffice 硬编码密钥导致文档缓存泄露 |
中危 |
5.3 |
2025-11-17 |