快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 358424
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2026-3186 |
feiyuchuixue sz-boot-parent Password Reset password default password
|
MEDIUM | 5.3 | 2026-02-25 |
feiyuchuixue sz-boot-parent
szadmin sz-boot-parent
+14个
|
CVE NVD | |
| CVE-2026-3185 |
feiyuchuixue sz-boot-parent API Endpoint sys-message authorization
|
MEDIUM | 6.9 | 2026-02-25 |
feiyuchuixue sz-boot-parent
szadmin sz-boot-parent
+14个
|
CVE NVD | |
| CVE-2026-28196 |
In JetBrains TeamCity before 2025.11.3 disabling versioned settings left a credentials config on dis...
|
LOW | 2.3 | 2026-02-25 |
JetBrains TeamCity
jetbrains teamcity
|
CVE NVD | |
| CVE-2026-28195 |
In JetBrains TeamCity before 2025.11.3 missing authorization allowed project developers to add param...
|
MEDIUM | 4.3 | 2026-02-25 |
JetBrains TeamCity
jetbrains teamcity
|
CVE NVD | |
| CVE-2026-28194 |
In JetBrains TeamCity before 2025.11.3 open redirect was possible in the React project creation flow
|
MEDIUM | 4.3 | 2026-02-25 |
JetBrains TeamCity
jetbrains teamcity
|
CVE NVD | |
| CVE-2026-28193 |
In JetBrains YouTrack before 2025.3.121962 apps were able to send requests to the app permissions en...
|
HIGH | 8.8 | 2026-02-25 |
JetBrains YouTrack
jetbrains youtrack
|
CVE NVD | |
| CVE-2026-2624 |
Authentication Bypass in ePati's Antikor NGFW
|
CRITICAL | 9.8 | 2026-02-25 |
ePati Cyber Security Technologies Inc. Antikor Next Generation Firewall (NGFW)
epati antikor_next_generation_firewall
|
CVE NVD | |
| CVE-2026-21725 |
Authorization Bypass via TOCTOU in Grafana Datasource Deletion by Name
|
LOW | 2.6 | 2026-02-25 |
Grafana Grafana
grafana grafana
|
CVE NVD | |
| CVE-2026-0704 |
In affected version of Octopus Deploy it was possible to remove files and/or contents of files on th...
|
MEDIUM | 5.9 | 2026-02-25 |
Octopus Deploy Octopus Server
octopus octopus_server
|
CVE NVD | |
| CVE-2026-3118 |
Rhdh: graphql injection leading to platform-wide denial of service (dos) in rh developer hub orchestrator plugin
|
MEDIUM | 6.5 | 2026-02-25 |
Red Hat Red Hat Developer Hub
redhat developer_hub
|
CVE NVD | |
| CVE-2026-25701 |
An Insecure Temporary File vulnerability in openSUSE sdbootutil allows local users to pre-create a d...
|
HIGH | 7.0 | 2026-02-25 |
openSUSE sdbootutil
|
CVE NVD | |
| CVE-2026-26104 |
Udisks: missing authorization check allows unprivileged users to back up luks headers via udisks d-bus api
|
MEDIUM | 5.5 | 2026-02-25 |
Red Hat Red Hat Enterprise Linux 10
Red Hat Red Hat Enterprise Linux 6
+5个
|
CVE NVD | |
| CVE-2025-62878 |
Local Path Provisioner vulnerable to Path Traversal via parameters.pathPattern
|
CRITICAL | 9.9 | 2026-02-25 |
SUSE Rancher
|
CVE NVD | |
| CVE-2025-67601 |
Rancher CLI skips TLS verification on Rancher CLI login command
|
HIGH | 8.3 | 2026-02-25 |
SUSE rancher
suse rancher
|
CVE NVD | |
| CVE-2025-67860 |
NeuVector scanner insecurely handles passwords as command arguments
|
LOW | 3.8 | 2026-02-25 |
SUSE harvester
|
CVE NVD | |
| CVE-2026-26103 |
Udisks: missing authorization check allows unprivileged users to restore luks headers via udisks d-bus api
|
HIGH | 7.1 | 2026-02-25 |
Red Hat Red Hat Enterprise Linux 10
Red Hat Red Hat Enterprise Linux 6
+5个
|
CVE NVD | |
| CVE-2026-2367 |
Secure Copy Content Protection and Content Locking <= 5.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attribute
|
MEDIUM | 6.4 | 2026-02-25 |
ays-pro Secure Copy Content Protection and Content Locking
|
CVE NVD | |
| CVE-2026-2301 |
Post Duplicator <= 3.0.8 - Missing Authorization to Authenticated (Contributor+) Protected Post Meta Insertion via 'customMetaData' Parameter
|
MEDIUM | 4.3 | 2026-02-25 |
metaphorcreations Post Duplicator
|
CVE NVD | |
| CVE-2026-2410 |
Disable Admin Notices – Hide Dashboard Notifications <= 1.4.2 - Cross-Site Request Forgery to Plugin Settings Update
|
MEDIUM | 4.3 | 2026-02-25 |
themeisle Disable Admin Notices – Hide Dashboard Notifications
|
CVE NVD | |
| CVE-2025-14742 |
WP Recipe Maker <= 10.2.3 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure
|
MEDIUM | 4.3 | 2026-02-25 |
brechtvds WP Recipe Maker
|
CVE NVD |