漏洞列表 359799
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-67438
A Stored Cross-Site Scripting (XSS) vulnerability in Sync-in Server before 1.9.3 allows an authentic...
MEDIUM 6.1 2026-02-20
未知
CVE NVD
CVE-2025-70831
A Remote Code Execution (RCE) vulnerability was found in Smanga 3.2.7 in the /php/path/rescan.php in...
CRITICAL 9.8 2026-02-20
lkw199711 smanga
CVE NVD
CVE-2025-70833
An Authentication Bypass vulnerability in Smanga 3.2.7 allows an unauthenticated attacker to reset t...
CRITICAL 9.4 2026-02-20
lkw199711 smanga
CVE NVD
CVE-2026-26721
An issue in Key Systems Inc Global Facilities Management Software v.20230721a allows a remote attack...
HIGH 7.1 2026-02-20
keystorage global_facilities_management_software
CVE NVD
CVE-2026-26722
An issue in Key Systems Inc Global Facilities Management Software v.20230721a allows a remote attack...
CRITICAL 9.4 2026-02-20
keystorage global_facilities_management_software
CVE NVD
CVE-2026-26723
Cross Site Scripting vulnerability in Key Systems Inc Global Facilities Management Software v. 20230...
HIGH 8.2 2026-02-20
keystorage global_facilities_management_software
CVE NVD
CVE-2026-26724
Cross Site Scripting vulnerability in Key Systems Inc Global Facilities Management Software v. 20230...
HIGH 7.6 2026-02-20
keystorage global_facilities_management_software
CVE NVD
CVE-2026-26725
An issue in edu Business Solutions Print Shop Pro WebDesk v.18.34 allows a remote attacker to escala...
CRITICAL 9.8 2026-02-20
edubusinesssolutions print_shop_pro_webdesk
CVE NVD
CVE-2026-26745
OpenSourcePOS 3.4.1 has a second order SQL Injection vulnerability in the handling of the currency_s...
MEDIUM 5.3 2026-02-20
opensourcepos open_source_point_of_sale
CVE NVD
CVE-2026-26746
OpenSourcePOS 3.4.1 contains a Local File Inclusion (LFI) vulnerability in the Sales.php::getInvoice...
HIGH 8.8 2026-02-20
opensourcepos open_source_point_of_sale
CVE NVD
CVE-2026-26747
A Host Header Poisoning vulnerability exists in Monica 4.1.2 due to improper handling of the HTTP Ho...
CRITICAL 9.1 2026-02-20
monicahq monica
CVE NVD
CVE-2026-26964
Windmill Exposes Workspace Slack OAuth Client Secrets to Non-Admin Workspace Members
LOW 2.7 2026-02-19
windmill-labs windmill
CVE NVD
CVE-2026-26963
Cilium may not enforce host firewall policies when Native Routing, WireGuard and Node Encryption are enabled
MEDIUM 6.1 2026-02-19
cilium cilium cilium cilium
CVE NVD
CVE-2026-26957
Libredesk has an SSRF Vulnerability via Webhooks
MEDIUM 6.9 2026-02-19
abhinavxd github.com/abhinavxd/libredesk
CVE NVD
CVE-2026-27009
OpenClaw affected by Stored XSS in Control UI via unsanitized assistant name/avatar in inline script injection
MEDIUM 5.8 2026-02-19
openclaw openclaw openclaw openclaw
CVE NVD
CVE-2026-27008
OpenClaw hardened the skill download target directory validation
MEDIUM 6.8 2026-02-19
openclaw openclaw openclaw openclaw
CVE NVD
CVE-2026-27007
OpenClaw's sandbox config hash sorted primitive arrays and suppressed needed container recreation
MEDIUM 4.8 2026-02-19
openclaw openclaw openclaw openclaw
CVE NVD
CVE-2026-27004
OpenClaw session tool visibility hardening and Telegram webhook secret fallback
MEDIUM 6.9 2026-02-19
openclaw openclaw openclaw openclaw
CVE NVD
CVE-2026-26959
ADB Explorer Vulnerable to RCE via Insufficient Input Validation
HIGH 7.8 2026-02-19
Alex4SSB ADB-Explorer
CVE NVD
CVE-2026-27003
OpenClaw: Telegram bot token exposure via logs
MEDIUM 6.9 2026-02-19
openclaw openclaw openclaw openclaw
CVE NVD