CloudMap
漏洞情报库
漏洞库
厂商
产品
风险排行
开发者中心
开始检索
↗
VULNERABILITY INTELLIGENCE
漏洞情报库
组合风险、利用情报和受影响对象,快速定位需要优先处置的漏洞。
利用情报保护
仅展示 PoC / EXP 是否收录
不公开内容、路径和下载地址
⌕
/
搜索漏洞
10,857
条匹配记录
PoC
EXP
绿色表示已收录,灰色表示暂无
漏洞与影响对象
漏洞类型
风险等级
CVSS
EPSS
利用情报
披露时间
CVE-2026-86426
LibreNMS <= 26.7.0 - Unauthenticated API Access
未授权访问
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-3395
MaxSite CMS <=109.1 - Remote Code Execution
远程代码执行
高危
—
—
PoC
EXP
2026/09/30
CVE-2026-49952
Discuz! X5.0 - Authentication Bypass
身份验证绕过
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-32475
Elementor Pro <=4.2.1 - Unauthenticated Arbitrary File Upload via Form Handler
未授权访问
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-63077
KEV
JetBrains TeamCity < 2026.1.3, 2025.11.7 - Remote Code Execution
TeamCity
远程代码执行
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-42221
Nginx UI <= 2.3.7 - Unauthenticated Installer Exposure
Nginx UI
未授权访问
高危
—
—
PoC
EXP
2026/09/30
CVE-2026-80099
Newfold WordPress Plugins - Unauthenticated Admin Bypass via Empty HMAC Secret
未分类
高危
—
—
PoC
EXP
2026/09/30
CVE-2026-71362
Adobe Commerce/Magento - Customer Session Identity Switch
magento
未分类
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-5032
W3 Total Cache <= 2.9.3 - Unauthenticated Dynamic Security Token Disclosure
w3_total_cache
未授权访问
高危
—
—
PoC
EXP
2026/09/30
CVE-2026-69251
Flowise < 3.1.3 - Remote Code Execution
Flowise
远程代码执行
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-19900
LB-LINK Routers - Unauthenticated Command Injection
未授权访问
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-6639
AI Copilot Content Generator <=1.4.6 - Unauthenticated Task Data Exposure
未授权访问
高危
—
—
PoC
EXP
2026/09/30
CVE-2026-65442
FormCraft3 <= 3.9.15 - Server-Side Request Forgery
服务端请求伪造
高危
—
—
PoC
EXP
2026/09/30
CVE-2026-34908
KEV
UniFi OS - Authentication Bypass via Path Traversal (..%2f)
未授权访问
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-2614
MLflow <= 3.9.0 - Arbitrary File Read
文件包含
高危
—
—
PoC
EXP
2026/09/30
CVE-2026-28141
NextGEN Gallery <= 4.2.3 - Reflected Cross-Site Scripting
nextgen_gallery
跨站脚本攻击
高危
—
—
PoC
EXP
2026/09/30
CVE-2026-69085
SiYuan <=3.7.2 - SQL Injection
SQL注入
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-40281
RCE
Gotenberg <= 8.30.1 - Remote Code Execution
Gotenberg
未授权访问
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-86218
N-able N-central <2026.3.1.14 - Pre-Authentication Remote Code Execution
未授权访问
严重
—
—
PoC
EXP
2026/09/30
CVE-2026-73034
DB-GPT <= 0.8.1 - Arbitrary File Write
文件包含
严重
—
—
PoC
EXP
2026/09/30
← 上一页
11 / 543
下一页 →