快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 352190
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2025-66493 |
Foxit PDF Reader AcroForm Use-After-Free Remote Code Execution Vulnerability
|
HIGH | 7.8 | 2025-12-19 |
Foxit Software Inc. Foxit PDF Editor
Foxit Software Inc. Foxit PDF Editor
+6个
|
CVE NVD | |
| CVE-2025-13008 |
M-Files Server 安全漏洞
|
HIGH | 8.6 | 2025-12-19 |
M-Files Corporation M-Files Server
|
CVE NVD +1 | |
| CVE-2025-13999 |
HTML5 Audio Player – The Ultimate No-Code Podcast, MP3 & Audio Player 2.4.0 - 2.5.1 - Unauthenticated Server-Side Request Forgery
|
HIGH | 7.2 | 2025-12-19 |
bplugins HTML5 Audio Player – The Ultimate No-Code Podcast, MP3 & Audio Player
|
CVE NVD | |
| CVE-2025-14449 |
BA Book Everything <= 1.8.14 - Authenticated (Contributor+) Stored Cross-Site Scripting via babe-search-form Shortcode
|
MEDIUM | 6.4 | 2025-12-19 |
bookingalgorithms BA Book Everything
|
CVE NVD | |
| CVE-2025-13754 |
Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin <= 1.6.9.16 - Missing Authorization to Unauthenticated Sensitive Information Exposure
|
MEDIUM | 5.3 | 2025-12-19 |
croixhaug Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin
|
CVE NVD | |
| CVE-2025-66174 |
There is an improper authentication vulnerability in some Hikvision DVR products. Due to the imprope...
|
MEDIUM | 6.5 | 2025-12-19 |
Hikvision DS-7104HGHI-F1
Hikvision DS-7204HGHI-F1
+2个
|
CVE NVD | |
| CVE-2025-66173 |
There is a privilege escalation vulnerability in some Hikvision DVR products. Due to the improper im...
|
MEDIUM | 6.2 | 2025-12-19 |
Hikvision DS-7104HGHI-F1
Hikvision DS-7204HGHI-F1
+2个
|
CVE NVD | |
| CVE-2025-14267 |
Unintended temporary cached data included in a structure only copy intended to be empty of data
|
MEDIUM | 5.6 | 2025-12-19 |
M-Files Corporation M-Files Server
m-files m-files_server
|
CVE NVD | |
| CVE-2025-13307 |
WordPress plugin Ocean Modal Window 安全漏洞
|
HIGH | 7.2 | 2025-12-19 |
Unknown Ocean Modal Window
|
CVE NVD +1 | |
| CVE-2025-14546 |
FastAPI SSO 安全漏洞
|
MEDIUM | 6.9 | 2025-12-19 |
未知
|
CVE NVD +1 | |
| CVE-2025-14940 |
code-projects Scholars Tracking System delete_user.php sql injection
|
MEDIUM | 6.9 | 2025-12-19 |
code-projects Scholars Tracking System
fabian scholars_tracking_system
|
CVE NVD | |
| CVE-2025-14939 |
code-projects Online Appointment Booking System deletemanager.php sql injection
|
MEDIUM | 5.1 | 2025-12-19 |
code-projects Online Appointment Booking System
anisha online_appointment_booking_system
|
CVE NVD | |
| CVE-2025-13941 |
Foxit PDF Reader Update Service Incorrect Permission Assignment Local Privilege Escalation Vulnerability
|
HIGH | 8.8 | 2025-12-19 |
Foxit Software Inc. Foxit PDF Reader
Foxit Software Inc. Foxit PDF Reader
+6个
|
CVE NVD | |
| CVE-2025-52692 |
Bypass Authentication
|
HIGH | 8.8 | 2025-12-19 |
Linksys Linksys E9450-SG
linksys e9450-sg_firmware
|
CVE NVD | |
| CVE-2025-14910 |
Edimax BR-6208AC FTP Daemon Service handle_retr path traversal
|
MEDIUM | 5.3 | 2025-12-19 |
Edimax BR-6208AC
edimax br-6208ac_firmware
|
CVE NVD | |
| CVE-2025-14909 |
JeecgBoot SysUserOnlineController.java SysUserOnlineController user session
|
MEDIUM | 5.3 | 2025-12-19 |
jeecg jeecg_boot
|
CVE NVD | |
| CVE-2025-14908 |
JeecgBoot Multi-Tenant Management SysTenantController.java improper authentication
|
MEDIUM | 5.3 | 2025-12-19 |
jeecg jeecg_boot
|
CVE NVD | |
| CVE-2025-11774 |
Malicious Code Execution Vulnerability in the Software Keyboard Function of GENESIS64, ICONICS Suite, Mobile HMI, and MC Works64
|
HIGH | 8.2 | 2025-12-19 |
Mitsubishi Electric Corporation GENESIS64
Mitsubishi Electric Iconics Digital Solutions GENESIS64
+5个
|
CVE NVD | |
| CVE-2025-14900 |
CodeAstro Real Estate Management System Administrator Endpoint userdelete.php sql injection
|
MEDIUM | 5.1 | 2025-12-19 |
CodeAstro Real Estate Management System
codeastro real_estate_management_system
|
CVE NVD | |
| CVE-2025-14899 |
CodeAstro Real Estate Management System Administrator Endpoint stateadd.php sql injection
|
MEDIUM | 5.1 | 2025-12-19 |
CodeAstro Real Estate Management System
codeastro real_estate_management_system
|
CVE NVD |