漏洞列表 359799
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-2820
Fujian Smart Integrated Management Platform System XAccessPermissionPlus.ashx sql injection
MEDIUM 6.9 2026-02-20
Fujian Smart Integrated Management Platform System Fujian Smart Integrated Management Platform System +4个
CVE NVD
CVE-2026-26065
calibre: Path Traversal can Lead to Arbitrary File Write and Potential Code Execution
CRITICAL 9.3 2026-02-20
kovidgoyal calibre calibre-ebook calibre
CVE NVD
CVE-2026-26064
calibre: Path Traversal Vulnerability Enables Arbitrary File Write and Remote Code Execution
CRITICAL 9.3 2026-02-20
kovidgoyal calibre calibre-ebook calibre
CVE NVD
CVE-2026-27016
LibreNMS has Stored XSS in Custom OID - unit parameter missing strip_tags()
MEDIUM 5.4 2026-02-20
librenms librenms librenms librenms
CVE NVD
CVE-2026-2819
Dromara RuoYi-Vue-Plus Workflow deleteByInstanceIds SaServletFilter authorization
MEDIUM 5.3 2026-02-20
Dromara RuoYi-Vue-Plus Dromara RuoYi-Vue-Plus +2个
CVE NVD
CVE-2026-26990
LibreNMS has Time-Based Blind SQL Injection in address-search.inc.php
HIGH 8.8 2026-02-20
librenms librenms librenms librenms
CVE NVD
CVE-2026-26989
LibreNMS has Stored XSS in Alert Rule
MEDIUM 4.3 2026-02-20
librenms librenms librenms librenms
CVE NVD
CVE-2026-26988
LibreNMS: SQL Injection in ajax_table.php spreads through a covert data stream
CRITICAL 9.3 2026-02-20
librenms librenms librenms librenms
CVE NVD
CVE-2026-26987
LibreNMS affected by reflected XSS via email field
MEDIUM 5.3 2026-02-20
librenms librenms librenms librenms
CVE NVD
CVE-2026-26960
node-tar has Arbitrary File Read/Write via Hardlink Target Escape Through Symlink Chain in Extraction
HIGH 7.1 2026-02-20
isaacs node-tar isaacs tar
CVE NVD
CVE-2026-26980
Ghost has a SQL Injection in its Content API
CRITICAL 9.4 2026-02-20
TryGhost Ghost ghost ghost
CVE NVD
CVE-2026-26977
Frappe Learning Management System exposes details of unpublished courses to unauthorized users
MEDIUM 6.9 2026-02-20
frappe lms frappe learning
CVE NVD
CVE-2026-26975
Music Assistant Server Path Traversal in Playlist Update API Allows Remote Code Execution
HIGH 8.8 2026-02-20
music-assistant server
CVE NVD
CVE-2026-26974
Sylde has Improper Control of Generation of Code
HIGH 7.6 2026-02-20
Tygo-van-den-Hurk Slyde slyde.js slyde
CVE NVD
CVE-2025-30416
Sensitive data disclosure and manipulation due to missing authorization. The following products are ...
CRITICAL 10.0 2026-02-20
Acronis Acronis Cyber Protect 16 Acronis Acronis Cyber Protect 15
CVE NVD
CVE-2025-30410
Sensitive data disclosure and manipulation due to missing authentication. The following products are...
CRITICAL 9.8 2026-02-20
Acronis Acronis Cyber Protect Cloud Agent Acronis Acronis Cyber Protect 16 +1个
CVE NVD
CVE-2025-30412
Sensitive data disclosure and manipulation due to improper authentication. The following products ar...
CRITICAL 10.0 2026-02-20
Acronis Acronis Cyber Protect 16 Acronis Acronis Cyber Protect 15
CVE NVD
CVE-2025-30411
Sensitive data disclosure and manipulation due to improper authentication. The following products ar...
CRITICAL 10.0 2026-02-20
Acronis Acronis Cyber Protect 16 Acronis Acronis Cyber Protect 15
CVE NVD
CVE-2026-26967
PJSIP has a Heap-based Buffer Overflow vulnerability in its H.264 unpacketizer
HIGH 8.1 2026-02-20
pjsip pjproject pjsip pjsip
CVE NVD
CVE-2021-35402
PROLiNK PRC2402M 20190909 before 2021-06-13 allows live_api.cgi?page=satellite_list OS command injec...
CRITICAL 10.0 2026-02-20
PROLiNK PRC2402M
CVE NVD