CloudMap
漏洞情报库
漏洞库
厂商
产品
风险排行
开发者中心
开始检索
↗
VULNERABILITY INTELLIGENCE
漏洞情报库
组合风险、利用情报和受影响对象,快速定位需要优先处置的漏洞。
利用情报保护
仅展示 PoC / EXP 是否收录
不公开内容、路径和下载地址
⌕
/
搜索漏洞
8,272
条匹配记录
PoC
EXP
绿色表示已收录,灰色表示暂无
漏洞与影响对象
漏洞类型
风险等级
CVSS
EPSS
利用情报
披露时间
CVE-2026-61808
LightRAG <= 1.5.4 - Missing Authentication
文件包含
高危
—
2.5%
PoC
EXP
2026/09/30
CVE-2026-12898
All-in-One WP Migration and Backup < 7.106 - Arbitrary Log File Write
all-in-one_wp_migration
未分类
中危
—
1.4%
PoC
EXP
2026/09/30
CVE-2026-86206
N-able N-central - Access Control Bypass via Path Confusion and Forwarded Header Spoofing
访问控制错误
严重
—
1.1%
PoC
EXP
2026/09/30
CVE-2026-65694
Microweber CMS <= 2.0.20 - Unauthenticated Arbitrary File Read
米可微伯
文件包含
高危
—
3.4%
PoC
EXP
2026/09/30
CVE-2026-85200
GEO my WP <=4.5.5.3 - Unauthenticated Local File Inclusion
未授权访问
高危
—
3.2%
PoC
EXP
2026/09/30
CVE-2026-56681
9router <=0.5.4 - Authentication Bypass
未授权访问
高危
—
0.97%
PoC
EXP
2026/09/30
CVE-2026-84434
WordPress Gravity Forms Plugin <=3.1.0.4 - Unauthenticated Arbitrary File Upload
未授权访问
严重
—
3.9%
PoC
EXP
2026/09/30
CVE-2026-17594
Sonatype Nexus Repository < 3.95.0 - Privilege Escalation via Repository Format Mismatch
未分类
高危
—
0.74%
PoC
EXP
2026/09/30
CVE-2026-1281
KEV
Ivanti EPMM <=12.7.0.0 - Unauthenticated Code Injection
endpoint_manager_mobile
未授权访问
严重
—
98.7%
PoC
EXP
2026/09/30
CVE-2026-67208
Juggle <= 1.6.0 - Unauthenticated Exposed H2 Database Console
未授权访问
严重
—
4.3%
PoC
EXP
2026/09/30
CVE-2026-89063
Bookly <=28.1 - IDOR Unauthenticated Sensitive Data Access
未授权访问
高危
—
1.6%
PoC
EXP
2026/09/30
CVE-2026-59774
Gitea 1.22.1-1.27.0 - Unauthenticated Arbitrary File Read
文件包含
严重
—
—
PoC
EXP
2026/09/30
VictoriaMetrics vmagent - Unauthenticated Targets Exposure
未授权访问
低危
—
—
PoC
EXP
2026/09/30
Grafana Loki - Unauthenticated API Access
未授权访问
中危
—
—
PoC
EXP
2026/09/30
Langflow - Unauthenticated API Exposure
未授权访问
高危
—
—
PoC
EXP
2026/09/30
Flowise AI - Unauthenticated Chatflows API Exposure
Flowise
未授权访问
高危
—
—
PoC
EXP
2026/09/30
Directus Server Info - Unauthenticated Fingerprint
未授权访问
低危
—
—
PoC
EXP
2026/09/30
MCP Streamable HTTP Server - Unauthenticated Initialize
未授权访问
未知
—
—
PoC
EXP
2026/09/30
Claude Code Project Settings Exposure
信息泄露
中危
—
—
PoC
EXP
2026/09/30
Python .pypirc Credentials - Exposure
信息泄露
高危
—
—
PoC
EXP
2026/09/30
← 上一页
13 / 414
下一页 →