漏洞列表 352231
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-68129
Auth0-PHP SDK has Improper Audience Validation
MEDIUM 6.8 2025-12-17
auth0 auth0-PHP
CVE NVD
CVE-2025-14832
itsourcecode Online Cake Ordering System updateproduct.php sql injection
MEDIUM 6.9 2025-12-17
itsourcecode Online Cake Ordering System admerc online_cake_ordering_system
CVE NVD
CVE-2025-68118
FreeRDP 缓冲区错误漏洞
MEDIUM 6.6 2025-12-17
FreeRDP FreeRDP freerdp freerdp
CVE NVD +1
CVE-2025-68275
ChurchCRM 跨站脚本漏洞
CRITICAL 9.2 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD +1
CVE-2025-68401
ChurchCRM 跨站脚本漏洞
MEDIUM 6.2 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD +1
CVE-2025-68400
ChurchCRM SQL注入漏洞
CRITICAL 9.3 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD +1
CVE-2025-68399
ChurchCRM 跨站脚本漏洞
LOW 2.0 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD +1
CVE-2025-68112
ChurchCRM has SQL injection in EditEventAttendees.php
CRITICAL 9.6 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD
CVE-2025-68111
ChurchCRM has SQL Injection in eGive Import Feature
HIGH 7.2 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD
CVE-2025-68110
ChurchCRM discloses database information on error message
CRITICAL 10.0 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD
CVE-2025-68109
ChurchCRM vulnerable to RCE with database restore functionality
CRITICAL 9.1 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD
CVE-2025-67877
ChurchCRM SQL注入漏洞
HIGH 7.4 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD +1
CVE-2025-67876
ChurchCRM 跨站脚本漏洞
CRITICAL 9.3 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD +1
CVE-2025-67875
ChurchCRM 跨站脚本漏洞
HIGH 8.5 2025-12-17
ChurchCRM CRM churchcrm churchcrm
CVE NVD +1
CVE-2025-68114
Capstone doesn't check vsnprintf return in SStream_concat, allows stack buffer underflow and overflow
MEDIUM 4.8 2025-12-17
capstone-engine capstone capstone-engine capstone +1个
CVE NVD
CVE-2025-67873
Capstone doesn't check Skipdata length, leading to cs_insn.bytes heap buffer overflow
MEDIUM 4.8 2025-12-17
capstone-engine capstone capstone-engine capstone +1个
CVE NVD
CVE-2025-67493
Homarr issing input sanitization and possible privilege escalation through ldap search query injection
HIGH 7.5 2025-12-17
homarr-labs homarr
CVE NVD
CVE-2025-43514
The issue was addressed with improved handling of caches. This issue is fixed in macOS Tahoe 26.2. A...
MEDIUM 5.5 2025-12-17
Apple macOS apple macos
CVE NVD
CVE-2025-46281
A logic issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.2. An app ma...
HIGH 8.4 2025-12-17
Apple macOS apple macos
CVE NVD
CVE-2025-46278
The issue was addressed with improved handling of caches. This issue is fixed in macOS Tahoe 26.2. A...
MEDIUM 5.0 2025-12-17
Apple macOS apple macos
CVE NVD