漏洞列表 352348
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2023-53870
Jorani 跨站脚本漏洞
MEDIUM 5.1 2025-12-15
Jorani Jorani
CVE NVD +1
CVE-2023-53869
WEBIGniter 代码问题漏洞
HIGH 8.7 2025-12-15
WebIGniter WebIGniter
CVE NVD +1
CVE-2023-53868
Coppermine Photo Gallery 安全漏洞
HIGH 8.7 2025-12-15
Coppermine coppermine-gallery coppermine-gallery coppermine_photo_gallery
CVE NVD +1
CVE-2025-64725
Weblate 安全漏洞
LOW 1.0 2025-12-15
WeblateOrg weblate weblate weblate
CVE NVD +1
CVE-2025-59947
NanoMQ has Buffer Overflow
HIGH 8.5 2025-12-15
nanomq nanomq
CVE NVD
CVE-2025-13489
IBM DevOps Deploy is susceptible to a Cleartext Transmission of Sensitive Information
MEDIUM 5.9 2025-12-15
IBM UCD - IBM DevOps Deploy ibm devops_deploy
CVE NVD
CVE-2025-14503
Overly Permissive Trust Policy in Harmonix on AWS EKS
HIGH 8.6 2025-12-15
AWS Harmonix on AWS
CVE NVD
CVE-2025-14148
IBM DevOps Deploy is susceptible to a Insufficiently Protected Credentials vulnerability
MEDIUM 6.5 2025-12-15
IBM UCD - IBM DevOps Deploy ibm devops_deploy
CVE NVD
CVE-2025-12035
Bluetooth: Integer Overflow in Bluetooth Classic (BR/EDR) L2CAP
MEDIUM 6.5 2025-12-15
zephyrproject-rtos Zephyr
CVE NVD
CVE-2025-36360
IBM DevOps Deploy / IBM UrbanCode Deploy (UCD) is susceptible to an Insufficient Session Expiration vulnerability
MEDIUM 5.0 2025-12-15
IBM UCD - IBM UrbanCode Deploy IBM UCD - IBM DevOps Deploy +2个
CVE NVD
CVE-2025-14038
EnterpriseDB Hybrid Manager - LTS 安全漏洞
HIGH 7.0 2025-12-15
EnterpriseDB Hybrid Manager - LTS EnterpriseDB Hybrid Manager - Innovation
CVE NVD +1
CVE-2025-11393
Insights-runtimes-tech-preview/runtimes-inventory-rhel8-operator: improper proxy configuration allows unauthorized administrative commands
HIGH 8.7 2025-12-15
Red Hat Red Hat Lightspeed (formerly Insights) for Runtimes 1.0 Red Hat Red Hat Runtimes Inventory Operator
CVE NVD
CVE-2025-13888
Openshift-gitops-operator: openshift gitops: namespace admin cluster takeover via privileged jobs
CRITICAL 9.1 2025-12-15
redhat-developer gitops-operator Red Hat Red Hat OpenShift GitOps 1.16 +3个
CVE NVD
CVE-2025-14387
LearnPress – WordPress LMS Plugin <= 4.3.1 - Authenticated (Subscriber+) Stored Cross-Site Scripting via get_profile_social
MEDIUM 6.4 2025-12-15
thimpress LearnPress – WordPress LMS Plugin
CVE NVD
CVE-2025-13824
Rockwell Automation多款产品 安全漏洞
HIGH 8.7 2025-12-15
Rockwell Automation Micro820®, Micro850®, Micro870® Rockwell Automation Micro820®, Micro850®, Micro870® +1个
CVE NVD +1
CVE-2025-13823
Micro820®, Micro850®, Micro870® – Specialized Fuzzing Vulnerabilities
HIGH 7.1 2025-12-15
Rockwell Automation Micro820®, Micro850®, Micro870®
CVE NVD
CVE-2025-34412
NOT_EXTRACTED
LOW -1.0 2025-12-15
未知
CVE NVD
CVE-2025-34411
编号撤回
UNKNOWN N/A 2025-12-15
未知
CVE NVD +1
CVE-2025-34181
NetSupport Manager < 14.12.0001 Authenticated Path Traversal Arbitrary File Write RCE
HIGH 8.7 2025-12-15
NetSupport Software Manager
CVE NVD
CVE-2025-34180
NetSupport Manager < 14.12.0001 Gateway Key Reversible Encoding Credential Recovery
HIGH 8.4 2025-12-15
NetSupport Software Manager
CVE NVD