CloudMap漏洞情报库
漏洞库厂商产品风险排行
开发者中心开始检索 ↗
CloudMap漏洞情报库

面向安全研究者与技术团队的公开漏洞情报检索平台。

漏洞库厂商产品风险排行
© 2026 CloudMap数据仅供安全研究与风险评估参考
VULNERABILITY INTELLIGENCE

漏洞情报库

组合风险、利用情报和受影响对象,快速定位需要优先处置的漏洞。

利用情报保护仅展示 PoC / EXP 是否收录不公开内容、路径和下载地址
⌕/
筛选条件重置
10,857条匹配记录
PoCEXP绿色表示已收录,灰色表示暂无
漏洞与影响对象漏洞类型风险等级CVSSEPSS利用情报披露时间
CVE-2026-86426
LibreNMS <= 26.7.0 - Unauthenticated API Access
未授权访问严重——
PoCEXP
2026/09/30
CVE-2026-3395
MaxSite CMS <=109.1 - Remote Code Execution
远程代码执行高危——
PoCEXP
2026/09/30
CVE-2026-49952
Discuz! X5.0 - Authentication Bypass
身份验证绕过严重——
PoCEXP
2026/09/30
CVE-2026-32475
Elementor Pro <=4.2.1 - Unauthenticated Arbitrary File Upload via Form Handler
未授权访问严重——
PoCEXP
2026/09/30
CVE-2026-63077KEV
JetBrains TeamCity < 2026.1.3, 2025.11.7 - Remote Code Execution
TeamCity
远程代码执行严重——
PoCEXP
2026/09/30
CVE-2026-42221
Nginx UI <= 2.3.7 - Unauthenticated Installer Exposure
Nginx UI
未授权访问高危——
PoCEXP
2026/09/30
CVE-2026-80099
Newfold WordPress Plugins - Unauthenticated Admin Bypass via Empty HMAC Secret
未分类高危——
PoCEXP
2026/09/30
CVE-2026-71362
Adobe Commerce/Magento - Customer Session Identity Switch
magento
未分类严重——
PoCEXP
2026/09/30
CVE-2026-5032
W3 Total Cache <= 2.9.3 - Unauthenticated Dynamic Security Token Disclosure
w3_total_cache
未授权访问高危——
PoCEXP
2026/09/30
CVE-2026-69251
Flowise < 3.1.3 - Remote Code Execution
Flowise
远程代码执行严重——
PoCEXP
2026/09/30
CVE-2026-19900
LB-LINK Routers - Unauthenticated Command Injection
未授权访问严重——
PoCEXP
2026/09/30
CVE-2026-6639
AI Copilot Content Generator <=1.4.6 - Unauthenticated Task Data Exposure
未授权访问高危——
PoCEXP
2026/09/30
CVE-2026-65442
FormCraft3 <= 3.9.15 - Server-Side Request Forgery
服务端请求伪造高危——
PoCEXP
2026/09/30
CVE-2026-34908KEV
UniFi OS - Authentication Bypass via Path Traversal (..%2f)
未授权访问严重——
PoCEXP
2026/09/30
CVE-2026-2614
MLflow <= 3.9.0 - Arbitrary File Read
文件包含高危——
PoCEXP
2026/09/30
CVE-2026-28141
NextGEN Gallery <= 4.2.3 - Reflected Cross-Site Scripting
nextgen_gallery
跨站脚本攻击高危——
PoCEXP
2026/09/30
CVE-2026-69085
SiYuan <=3.7.2 - SQL Injection
SQL注入严重——
PoCEXP
2026/09/30
CVE-2026-40281RCE
Gotenberg <= 8.30.1 - Remote Code Execution
Gotenberg
未授权访问严重——
PoCEXP
2026/09/30
CVE-2026-86218
N-able N-central <2026.3.1.14 - Pre-Authentication Remote Code Execution
未授权访问严重——
PoCEXP
2026/09/30
CVE-2026-73034
DB-GPT <= 0.8.1 - Arbitrary File Write
文件包含严重——
PoCEXP
2026/09/30
← 上一页11 / 543下一页 →