CloudMap
漏洞情报库
漏洞库
厂商
产品
风险排行
开发者中心
开始检索
↗
VULNERABILITY INTELLIGENCE
漏洞情报库
组合风险、利用情报和受影响对象,快速定位需要优先处置的漏洞。
利用情报保护
仅展示 PoC / EXP 是否收录
不公开内容、路径和下载地址
⌕
/
搜索漏洞
3,060
条匹配记录
PoC
EXP
绿色表示已收录,灰色表示暂无
漏洞与影响对象
漏洞类型
风险等级
CVSS
EPSS
利用情报
披露时间
CVE-2026-4810
RCE
Google ADK-Python - Unauthenticated Builder Endpoint
Google ADK-Python
未授权访问
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-3300
Everest Forms Pro <= 1.9.12 - Unauthenticated RCE via Calculation Formula Injection
everest-forms-pro
未授权访问
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-1306
WordPress midi-Synth <= 1.1.0 - Unauthenticated Arbitrary File Upload
midi-synth
远程代码执行
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-33057
Mesop AI Sandbox <= 1.2.2 - Remote Code Execution
Mesop
远程代码执行
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-49777
WordPress Product Slider Pro for WooCommerce < 3.5.4 - Supply Chain Backdoor RCE
woo-product-slider-pro
未授权访问
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-33439
OpenAM <= 16.0.5 - Pre-Auth RCE via jato.clientSession Deserialization
openam
远程代码执行
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-28496
FOSSBilling - Server-Side Template Injection
fossbilling
远程代码执行
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-39339
ChurchCRM - API Authentication Bypass via URL Injection
churchcrm
身份验证绕过
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-42271
LiteLLM - Command Injection
litellm
远程代码执行
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-20253
RCE
Splunk Enterprise & Cloud Platform - Unrestricted File Upload
Splunk
文件上传
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-1581
wpForo Forum <= 2.4.14 - SQL Injection
wpforo
未授权访问
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-26190
Milvus - Unauthenticated Metrics API Access
Milvus
未授权访问
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-27944
Nginx UI < 2.3.3 - Information Disclosure
Nginx UI
未授权访问
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-40887
Vendure Core - SQL Injection
Vendure
SQL注入
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-1492
RCE
WordPress User Registration & Membership <= 5.1.2 - Unauthenticated Privilege Escalation
user-registration
未分类
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-41179
RClone RC - Command Injection
Rclone
未授权访问
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-29014
MetInfo CMS <= 8.1 - Remote Code Execution
MetInfo
远程代码执行
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-1357
WPvivid Backup & Migration <= 0.9.123 - Arbitrary File Upload
wpvivid-backuprestore
远程代码执行
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-34486
RCE
Apache Tomcat Tribes EncryptInterceptor Bypass - Remote Code Execution
Apache Tomcat
远程代码执行
严重
—
—
PoC
EXP
2026/06/25
CVE-2026-42589
Gotenberg - Command Injection
Gotenberg
未授权访问
严重
—
—
PoC
EXP
2026/06/25
← 上一页
12 / 153
下一页 →