快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 358424
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2025-50180 |
esm.sh is vulnerable to full-response SSRF
|
HIGH | 8.7 | 2026-02-25 |
esm-dev esm.sh
esm esm.sh
|
CVE NVD | |
| CVE-2026-3188 |
feiyuchuixue sz-boot-parent API templates path traversal
|
MEDIUM | 5.3 | 2026-02-25 |
feiyuchuixue sz-boot-parent
|
CVE NVD | |
| CVE-2025-1242 |
Administrative Credentials Can Be Extracted Through Gardyn API Responses
|
CRITICAL | 9.3 | 2026-02-25 |
Gardyn Home Kit
Gardyn Home Kit Mobile Application
+1个
|
CVE NVD | |
| CVE-2026-27704 |
Dart SDK and Flutter SDK have Zip slip in Dart Pub package extraction
|
MEDIUM | 6.6 | 2026-02-25 |
dart-lang sdk
dart-lang flutter
|
CVE NVD | |
| CVE-2026-27848 |
Missing neutralization in Linksys MR9600, Linksys MX4200
|
CRITICAL | 9.8 | 2026-02-25 |
Linksys MR9600
Linksys MX4200
|
CVE NVD | |
| CVE-2026-3206 |
Improper management of context cancelations
|
LOW | 1.3 | 2026-02-25 |
KrakenD KrakenD-CE
KrakenD KrakenD-EE
|
CVE NVD | |
| CVE-2026-27702 |
Budibase Vulnerable to Remote Code Execution via Unsafe eval() in View Filter Map Function (Budibase Cloud)
|
CRITICAL | 9.9 | 2026-02-25 |
Budibase budibase
budibase budibase
|
CVE NVD | |
| CVE-2026-27847 |
Missing authentication in Linksys MR9600, Linksys MX4200
|
CRITICAL | 9.8 | 2026-02-25 |
Linksys MR9600
Linksys MX4200
|
CVE NVD | |
| CVE-2026-27701 |
LiveCodes vulnerable to JavaScript Injection via untrusted PR title in i18n-update-pull workflow
|
HIGH | 8.8 | 2026-02-25 |
live-codes livecodes
|
CVE NVD | |
| CVE-2026-27846 |
Missing authentication in Linksys MR9600, Linksys MX4200
|
MEDIUM | 6.2 | 2026-02-25 |
Linksys MR9600
Linksys MX4200
|
CVE NVD | |
| CVE-2026-27700 |
Hono is Vulnerable to Authentication Bypass by IP Spoofing in AWS Lambda ALB conninfo
|
HIGH | 8.2 | 2026-02-25 |
honojs hono
hono hono
|
CVE NVD | |
| CVE-2026-27699 |
Basic FTP has Path Traversal Vulnerability in its downloadToDir() method
|
CRITICAL | 9.1 | 2026-02-25 |
patrickjuchli basic-ftp
patrickjuchli basic-ftp
|
CVE NVD | |
| CVE-2026-27695 |
zae-limiter: DynamoDB hot partition throttling enables per-entity Denial of Service
|
MEDIUM | 4.3 | 2026-02-25 |
zeroae zae-limiter
zeroae zae-limiter
|
CVE NVD | |
| CVE-2026-2878 |
Insufficient Entropy Vulnerability in Telerik UI for ASP.NET AJAX
|
MEDIUM | 5.3 | 2026-02-25 |
Progress Software Telerik UI for ASP.NET AJAX
progress telerik_ui_for_asp.net_ajax
|
CVE NVD | |
| CVE-2026-27692 |
iccDEV has HBO in CIccTagTextDescription::Release()
|
HIGH | 7.1 | 2026-02-25 |
InternationalColorConsortium iccDEV
color iccdev
|
CVE NVD | |
| CVE-2026-27691 |
iccDEV has SIO in parse3DTable() at iccFromCube.cpp Line 218
|
MEDIUM | 6.2 | 2026-02-25 |
InternationalColorConsortium iccDEV
color iccdev
|
CVE NVD | |
| CVE-2026-3203 |
Buffer Over-read in Wireshark
|
MEDIUM | 5.5 | 2026-02-25 |
Wireshark Foundation Wireshark
wireshark wireshark
|
CVE NVD | |
| CVE-2026-3202 |
NULL Pointer Dereference in Wireshark
|
MEDIUM | 4.7 | 2026-02-25 |
Wireshark Foundation Wireshark
wireshark wireshark
|
CVE NVD | |
| CVE-2026-3201 |
Improperly Controlled Sequential Memory Allocation in Wireshark
|
MEDIUM | 4.7 | 2026-02-25 |
Wireshark Foundation Wireshark
wireshark wireshark
|
CVE NVD | |
| CVE-2026-3187 |
feiyuchuixue sz-boot-parent API Endpoint upload unrestricted upload
|
MEDIUM | 5.3 | 2026-02-25 |
feiyuchuixue sz-boot-parent
szadmin sz-boot-parent
+14个
|
CVE NVD |