快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 353043
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2025-64057 |
Directory traversal vulnerability in Fanvil x210 V2 2.12.20 allows unauthenticated attackers on the ...
|
HIGH | 8.3 | 2025-12-05 |
fanvil x210_firmware
|
CVE NVD | |
| CVE-2025-65730 |
Authentication Bypass via Hardcoded Credentials GoAway up to v0.62.18, fixed in 0.62.19, uses a hard...
|
HIGH | 8.8 | 2025-12-05 |
pommee goaway
|
CVE NVD | |
| CVE-2025-65878 |
Warehouse Management System 安全漏洞
|
HIGH | 7.5 | 2025-12-05 |
yeqifu warehouse_management_system
|
CVE NVD +1 | |
| CVE-2025-65879 |
Warehouse Management System 安全漏洞
|
HIGH | 8.1 | 2025-12-05 |
yeqifu warehouse_management_system
|
CVE NVD +1 | |
| CVE-2025-65897 |
zdh_web is a data collection, processing, monitoring, scheduling, and management platform. In zdh_we...
|
HIGH | 8.8 | 2025-12-05 |
zhaoyachao zdh_web
|
CVE NVD | |
| CVE-2025-66270 |
The KDE Connect protocol 8 before 2025-11-28 does not correlate device IDs across two packets. This ...
|
MEDIUM | 4.7 | 2025-12-05 |
KDE KDE Connect protocol
|
CVE NVD | |
| CVE-2025-66644 |
Array Networks ArrayOS AG before 9.4.5.9 allows command injection, as exploited in the wild in Augus...
|
HIGH | 7.2 | 2025-12-05 |
Array Networks ArrayOS AG
arraynetworks arrayos_ag
|
CVE NVD | |
| CVE-2025-13373 |
Advantech iView SQL Injection
|
HIGH | 8.7 | 2025-12-04 |
Advantech iView
|
CVE NVD | |
| CVE-2025-66564 |
Sigstore Timestamp Authority allocates excessive memory during request parsing
|
HIGH | 7.5 | 2025-12-04 |
sigstore timestamp-authority
|
CVE NVD | |
| CVE-2025-66563 |
Monkeytype vulnerable to stored XSS in approve quotes page
|
HIGH | 7.1 | 2025-12-04 |
monkeytypegame monkeytype
monkeytype monkeytype
|
CVE NVD | |
| CVE-2025-14051 |
youlaitech youlai-mall addresses deleteAddress improper control of dynamically-identified variables
|
MEDIUM | 5.3 | 2025-12-04 |
youlaitech youlai-mall
youlaitech youlai-mall
+2个
|
CVE NVD | |
| CVE-2025-66561 |
SysReptor Vulnerable to an Authenticated Stored Cross-Site Scripting (XSS)
|
HIGH | 7.3 | 2025-12-04 |
Syslifters sysreptor
syslifters sysreptor
|
CVE NVD | |
| CVE-2025-66559 |
Taiko Alethia Pacaya inbox verification pointer corruption
|
HIGH | 8.0 | 2025-12-04 |
taikoxyz taiko-mono
|
CVE NVD | |
| CVE-2025-1547 |
WatchGuard Firebox Authenticated Stack Overflow in Certificate Request Command
|
HIGH | 7.5 | 2025-12-04 |
WatchGuard Fireware OS
watchguard fireware
|
CVE NVD | |
| CVE-2025-66509 |
LaraDashboard: 1-Click Pre-Auth RCE via Host Header + Module Installation Chain
|
HIGH | 8.9 | 2025-12-04 |
laradashboard laradashboard
|
CVE NVD | |
| CVE-2025-66506 |
Fulcio allocates excessive memory during token parsing
|
HIGH | 7.5 | 2025-12-04 |
sigstore fulcio
|
CVE NVD | |
| CVE-2025-1910 |
WatchGuard Mobile VPN with SSL Local Privilege Escalation via Update Package
|
MEDIUM | 6.3 | 2025-12-04 |
WatchGuard Mobile VPN with SSL Client
|
CVE NVD | |
| CVE-2025-12986 |
Denial of Service Vulnerability in Silicon Labs WF200 and WGM160P Devices
|
MEDIUM | 6.0 | 2025-12-04 |
silabs.com Gecko SDK
|
CVE NVD | |
| CVE-2025-6946 |
WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in IPS Configuration
|
MEDIUM | 4.8 | 2025-12-04 |
WatchGuard Fireware OS
watchguard fireware
|
CVE NVD | |
| CVE-2025-1545 |
WatchGuard Firebox XPath Injection Vulnerability in Web CGI
|
HIGH | 8.2 | 2025-12-04 |
WatchGuard Fireware OS
watchguard fireware
|
CVE NVD |