漏洞列表 353043
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-64055
An issue was discovered in Fanvil x210 V2 2.12.20 allowing unauthenticated attackers on the local ne...
CRITICAL 9.8 2025-12-03
fanvil x210_firmware
CVE NVD
CVE-2025-65267
In ERPNext v15.83.2 and Frappe Framework v15.86.0, improper validation of uploaded SVG avatar images...
CRITICAL 9.0 2025-12-03
frappe erpnext frappe frappe
CVE NVD
CVE-2025-65320
Abacre Restaurant Point of Sale (POS) up to 15.0.0.1656 are vulnerable to Cleartext Storage of Sensi...
HIGH 7.5 2025-12-03
abacre restaurant_point_of_sale
CVE NVD
CVE-2025-65345
alexusmai laravel-file-manager 3.3.1 and below is vulnerable to Directory Traversal. The zip/archivi...
MEDIUM 6.5 2025-12-03
alexusmai laravel_file_manager
CVE NVD
CVE-2025-65841
Aquarius Desktop 3.0.069 for macOS stores user authentication credentials in the local file ~/Librar...
MEDIUM 6.2 2025-12-03
acustica-audio aquarius
CVE NVD
CVE-2025-65842
The Aquarius HelperTool (1.0.003) privileged XPC service on macOS contains multiple flaws that allow...
MEDIUM 5.1 2025-12-03
acustica-audio aquarius_helpertool
CVE NVD
CVE-2025-65843
Aquarius Desktop 3.0.069 for macOS contains an insecure file handling vulnerability in its support d...
HIGH 7.7 2025-12-03
acustica-audio aquarius
CVE NVD
CVE-2025-65868
XML external entity (XXE) injection in eyoucms v1.7.1 allows remote attackers to cause a denial of s...
CRITICAL 9.1 2025-12-03
eyoucms eyoucms
CVE NVD
CVE-2025-66431
WebPros Plesk before 18.0.73.5 and 18.0.74 before 18.0.74.2 on Linux allows remote authenticated use...
HIGH 7.8 2025-12-03
Plesk Plesk
CVE NVD
CVE-2025-65955
ImageMagick has a use-after-free/double-free risk in Options::fontFamily when clearing family
MEDIUM 4.9 2025-12-02
ImageMagick ImageMagick ImageMagick ImageMagick +1个
CVE NVD
CVE-2025-55181
Sending an HTTP request/response body with greater than 2^31 bytes triggers an infinite loop in prox...
MEDIUM 5.3 2025-12-02
Facebook proxygen facebook proxygen
CVE NVD
CVE-2025-66476
Vim for Windows Uncontrolled Search Path Element Remote Code Execution Vulnerability
HIGH 7.8 2025-12-02
vim vim vim vim
CVE NVD
CVE-2025-62575
Mirion Medical EC2 Software NMIS BioDose Incorrect Permission Assignment for Critical Resource
HIGH 8.7 2025-12-02
Mirion Medical EC2 Software NMIS BioDose mirion biodose\/nmis
CVE NVD
CVE-2025-64778
Mirion Medical EC2 Software NMIS BioDose Use of Hard-coded Credentials
HIGH 8.4 2025-12-02
Mirion Medical EC2 Software NMIS BioDose mirion biodose\/nmis
CVE NVD
CVE-2025-61940
Mirion Medical EC2 Software NMIS BioDose Use of Client-Side Authentication
HIGH 8.7 2025-12-02
Mirion Medical EC2 Software NMIS BioDose mirion biodose\/nmis
CVE NVD
CVE-2025-64298
Mirion Medical EC2 Software NMIS BioDose Incorrect Permission Assignment for Critical Resource
HIGH 8.6 2025-12-02
Mirion Medical EC2 Software NMIS BioDose mirion biodose\/nmis
CVE NVD
CVE-2025-64642
Mirion Medical EC2 Software NMIS BioDose Incorrect Permission Assignment for Critical Resource
HIGH 7.1 2025-12-02
Mirion Medical EC2 Software NMIS BioDose mirion biodose\/nmis
CVE NVD
CVE-2025-13658
Industrial Video & Control Longwatch has a Code Injection vulnerability
CRITICAL 9.3 2025-12-02
Industrial Video & Control Longwatch
CVE NVD
CVE-2025-13510
Iskra iHUB and iHUB Lite has a Missing Authentication for Critical Function vulnerabilitiy
CRITICAL 9.3 2025-12-02
Iskra iHUB and iHUB Lite
CVE NVD
CVE-2025-13542
DesignThemes LMS <= 1.0.4 - Unauthenticated Privilege Escalation
CRITICAL 9.8 2025-12-02
DesignThemes DesignThemes LMS
CVE NVD