CVE 列表 – 发现高风险与在野利用漏洞

聚合 NVD、CVE 及多源情报,深度解析 RCE 等高危风险。系统集成 CVSS 与 EPSS 模型,动态追踪 Exploit 资源与 PoC 公开状态,研判可利用性。结合官方补丁与修复方案,优化漏洞管理优先级,缩短响应周期,保障资产安全。

分配机构(CNA / 来源):[email protected] 移除此筛选

显示 61801222 条结果
CVE 描述 最高 CVSS EPSS % 公开时间 更新时间
CVE-2025-60236 Deserialization of Untrusted Data vulnerability in EMV Creatify allows Object Injection. This issue affects Creatify: from n/a through 1.5. 9.8 0.31% 2026-06-17 2026-06-17
CVE-2025-60231 Deserialization of Untrusted Data vulnerability in EMV The Hospital nrghospital allows Object Injection. This issue affects The Hospital: from n/a through 1.8.1. 9.8 0.31% 2026-06-17 2026-06-17
CVE-2025-60230 Deserialization of Untrusted Data vulnerability in Themeton The Barber Shop allows Object Injection. This issue affects The Barber Shop: from n/a through 1.9. 9.8 0.43% 2026-06-17 2026-06-17
CVE-2025-60229 Deserialization of Untrusted Data vulnerability in Themeton Lagom allows Object Injection. This issue affects Lagom: from n/a through 2.0. 9.8 0.43% 2026-06-17 2026-06-17
CVE-2025-59554 Unauthenticated SQL Injection in Advanced Ads – Tracking < 3.0.7 versions. 9.3 0.38% 2026-06-17 2026-06-17
CVE-2026-54811 Unauthenticated SQL Injection in WP eMember < v10.9.4 versions. 9.3 0.29% 2026-06-17 2026-06-17
CVE-2026-54807 Unauthenticated Privilege Escalation in Registration Form for WooCommerce <= 1.0.9 versions. 9.8 0.45% 2026-06-17 2026-06-17
CVE-2026-54806 Unauthenticated PHP Object Injection in WP Activity Log <= 5.6.3.1 versions. 9.8 0.66% 2026-06-17 2026-06-17
CVE-2026-54803 Subscriber Privilege Escalation in SMS Alert Order Notifications <= 3.9.4 versions. 9.8 0.45% 2026-06-17 2026-06-17
CVE-2026-54194 Contributor PHP Object Injection in Fusion Builder <= 3.15.4 versions. 9.8 0.39% 2026-06-17 2026-06-17
CVE-2026-54187 Unauthenticated SQL Injection in JetEngine <= 3.8.10.1 versions. 9.3 0.29% 2026-06-17 2026-06-17
CVE-2026-54186 Unauthenticated SQL Injection in JobSearch <= 3.2.9 versions. 9.3 0.30% 2026-06-17 2026-06-17
CVE-2026-52706 Unauthenticated PHP Object Injection in JetEngine <= 3.8.10 versions. 9.8 0.47% 2026-06-17 2026-06-17
CVE-2026-52705 Unauthenticated Arbitrary File Upload in SigmaForms Pro – AI Generated Forms <= 1.4.5 versions. 9.0 0.29% 2026-06-17 2026-06-17
CVE-2026-49767 Unauthenticated Broken Authentication in wpForo Forum <= 3.1.0 versions. 9.8 0.55% 2026-06-17 2026-06-17
CVE-2026-49107 Unauthenticated PHP Object Injection in Thrive Apprentice < 10.8.10.2 versions. 9.8 0.38% 2026-06-17 2026-06-17
CVE-2026-49084 Unauthenticated SQL Injection in JetEngine < 3.8.9.1 versions. 9.3 0.29% 2026-06-17 2026-06-17
CVE-2026-49080 Unauthenticated SQL Injection in wpDataTables <= 7.3.6 versions. 9.3 0.31% 2026-06-17 2026-06-17
CVE-2026-49079 Unauthenticated SQL Injection in JetSearch <= 3.5.17 versions. 9.3 0.35% 2026-06-17 2026-06-17
CVE-2026-49076 Unauthenticated SQL Injection in JetEngine <= 3.8.9.1 versions. 9.3 0.38% 2026-06-17 2026-06-17
cvelogic Threat Intelligence