漏洞列表 352348
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-14691
Mayan EDMS authentication cross site scripting
MEDIUM 5.3 2025-12-14
Mayan EDMS Mayan EDMS
CVE NVD
CVE-2025-67900
NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environment variable.
HIGH 8.1 2025-12-14
NXLog NXLog Agent
CVE NVD
CVE-2025-67899
uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMu...
LOW 2.9 2025-12-14
uriparser project uriparser
CVE NVD
CVE-2025-67898
MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="c...
MEDIUM 4.5 2025-12-14
MJML MJML
CVE NVD
CVE-2025-13281
Portworx Half-Blind SSRF in kube-controller-manager
MEDIUM 5.8 2025-12-14
Kubernetes Kubernetes
CVE NVD
CVE-2025-14674
aizuda snail-job QLExpressEngine.java QLExpressEngine.doEval injection
MEDIUM 5.3 2025-12-14
aizuda snail-job aizuda snail-job +5个
CVE NVD
CVE-2025-14673
gmg137 snap7-rs client.rs as_ct_write heap-based overflow
MEDIUM 6.9 2025-12-14
gmg137 snap7-rs gmg137 snap7-rs +1个
CVE NVD
CVE-2025-14672
gmg137 snap7-rs s7_micro_client.cpp opWriteArea heap-based overflow
MEDIUM 6.9 2025-12-14
gmg137 snap7-rs gmg137 snap7-rs +1个
CVE NVD
CVE-2025-14668
campcodes Advanced Online Examination System loginExe.php sql injection
MEDIUM 6.9 2025-12-14
campcodes Advanced Online Examination System campcodes advanced_online_examination_system
CVE NVD
CVE-2025-14667
itsourcecode COVID Tracking System page sql injection
MEDIUM 6.9 2025-12-14
itsourcecode COVID Tracking System angeljudesuarez covid_tracking_system
CVE NVD
CVE-2025-14666
itsourcecode COVID Tracking System page sql injection
MEDIUM 6.9 2025-12-14
itsourcecode COVID Tracking System angeljudesuarez covid_tracking_system
CVE NVD
CVE-2025-14665
Tenda WH450 HTTP Request DhcpListClient stack-based overflow
CRITICAL 9.3 2025-12-14
Tenda WH450 tenda wh450_firmware
CVE NVD
CVE-2025-14664
Campcodes Supplier Management System view_unit.php sql injection
MEDIUM 6.9 2025-12-14
Campcodes Supplier Management System campcodes supplier_management_system
CVE NVD
CVE-2025-14663
code-projects Student File Management System update_student.php cross site scripting
MEDIUM 4.8 2025-12-14
code-projects Student File Management System fabian student_file_management_system
CVE NVD
CVE-2025-14662
code-projects Student File Management System Update User update_user.php cross site scripting
MEDIUM 4.8 2025-12-14
code-projects Student File Management System fabian student_file_management_system
CVE NVD
CVE-2025-14661
itsourcecode Student Managemen System advisers.php sql injection
MEDIUM 6.9 2025-12-14
itsourcecode Student Managemen System angeljudesuarez student_management_system
CVE NVD
CVE-2025-14660
DecoCMS Mesh Workspace Domain api.ts createTool access control
MEDIUM 6.3 2025-12-14
DecoCMS Mesh DecoCMS Mesh +30个
CVE NVD
CVE-2025-14659
D-Link DIR-860LB1/DIR-868LB1 DHCP command injection
HIGH 8.7 2025-12-14
D-Link DIR-860LB1 D-Link DIR-860LB1 +2个
CVE NVD
CVE-2025-14656
Tenda AC20 openSchedWifi httpd buffer overflow
HIGH 8.7 2025-12-14
Tenda AC20 tenda ac20_firmware
CVE NVD
CVE-2025-14655
Tenda AC20 httpd SetSysAutoRebbotCfg formSetRebootTimer stack-based overflow
HIGH 8.7 2025-12-14
Tenda AC20 tenda ac20_firmware
CVE NVD