漏洞列表 358424
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-14577
PHP Function Injection in Slican NPC/IPL/IPM/IPU
CRITICAL 9.3 2026-02-24
Slican NCP Slican IPL +6个
CVE NVD
CVE-2026-1773
IEC 60870-5-104: Potential Denial of Service impact on reception of invalid U-format frame. Product ...
HIGH 8.7 2026-02-24
Hitachi Energy RTU500 series CMU firmware hitachienergy rtu540_firmware +7个
CVE NVD
CVE-2026-1772
RTU500 web interface: An unprivileged user can read user management information. The information can...
MEDIUM 5.3 2026-02-24
Hitachi Energy RTU500 series CMU firmware hitachienergy rtu520_firmware +7个
CVE NVD
CVE-2026-23969
Apache Superset: Exposure of Sensitive Information via Incomplete ClickHouse Function Filtering
MEDIUM 5.3 2026-02-24
Apache Software Foundation Apache Superset apache superset
CVE NVD
CVE-2026-23980
Apache Superset: Improper Neutralization of Special Elements used in a SQL Command
MEDIUM 5.3 2026-02-24
Apache Software Foundation Apache Superset apache superset
CVE NVD
CVE-2026-23982
Apache Superset: Improper Authorization in Dataset Creation Allows Access Control Bypass
HIGH 7.1 2026-02-24
Apache Software Foundation Apache Superset apache superset
CVE NVD
CVE-2026-23983
Apache Superset: Sensitive Data Exposure via REST API (disabled by default)
LOW 2.3 2026-02-24
Apache Software Foundation Apache Superset apache superset
CVE NVD
CVE-2026-23984
Apache Superset: SQLLab Read-Only Bypass on PostgreSQL
HIGH 7.1 2026-02-24
Apache Software Foundation Apache Superset apache superset
CVE NVD
CVE-2025-27555
Apache Airflow: Connection Secrets not masked in UI when Connection are added via Airflow cli
MEDIUM 6.5 2026-02-24
Apache Software Foundation Apache Airflow apache airflow
CVE NVD
CVE-2026-2664
Out of bounds read vulnerability in grpcfuse kernel module
MEDIUM 6.8 2026-02-24
Docker Docker Desktop docker desktop
CVE NVD
CVE-2024-56373
Apache Airflow: SSTI to Code Execution in Airflow through Shared DB Information
HIGH 8.4 2026-02-24
Apache Software Foundation Apache Airflow apache airflow
CVE NVD
CVE-2024-1524
A local user can be impersonated when using federated authentication with Silent JIT Provisioning.
HIGH 7.7 2026-02-24
WSO2 WSO2 API Manager WSO2 WSO2 Identity Server +2个
CVE NVD
CVE-2025-11165
A sandbox escape vulnerability exists in dotCMS’s Velocity scripting engine (VTools) that allows aut...
CRITICAL 9.4 2026-02-24
dotCMS dotCMS dotCMS dotCMS +1个
CVE NVD
CVE-2026-1229
Incorrect calculation in CIRCL secp384r1 CombinedMult
LOW 2.9 2026-02-24
Cloudflare CIRCL cloudflare circl
CVE NVD
CVE-2025-40541
SolarWinds Serv-U Insecure Direct Object Reference (IDOR) Remote Code Execution Vulnerability
CRITICAL 9.1 2026-02-24
SolarWinds Serv-U solarwinds serv-u
CVE NVD
CVE-2025-40540
SolarWinds Serv-U Type Confusion Remote Code Execution Vulnerability
CRITICAL 9.1 2026-02-24
SolarWinds Serv-U solarwinds serv-u
CVE NVD
CVE-2025-40539
SolarWinds Serv-U Type Confusion Remote Code Execution Vulnerability
CRITICAL 9.1 2026-02-24
SolarWinds Serv-U solarwinds serv-u
CVE NVD
CVE-2025-40538
SolarWinds Serv-U Broken Access Control Remote Code Execution Vulnerability
CRITICAL 9.1 2026-02-24
SolarWinds Serv-U solarwinds serv-u
CVE NVD
CVE-2025-15386
Responsive Lightbox & Gallery < 2.6.1 - Unauthenticated Stored XSS
HIGH 8.8 2026-02-24
Unknown Responsive Lightbox & Gallery
CVE NVD
CVE-2025-15589
MuYuCMS Template Management Template.php delete_dir_file path traversal
MEDIUM 5.1 2026-02-24
muyucms muyucms
CVE NVD