CloudMap漏洞情报库
漏洞库厂商产品风险排行
开发者中心开始检索 ↗
CloudMap漏洞情报库

面向安全研究者与技术团队的公开漏洞情报检索平台。

漏洞库厂商产品风险排行
© 2026 CloudMap数据仅供安全研究与风险评估参考
VULNERABILITY INTELLIGENCE

漏洞情报库

组合风险、利用情报和受影响对象,快速定位需要优先处置的漏洞。

利用情报保护仅展示 PoC / EXP 是否收录不公开内容、路径和下载地址
⌕/
筛选条件重置
10,857条匹配记录
PoCEXP绿色表示已收录,灰色表示暂无
漏洞与影响对象漏洞类型风险等级CVSSEPSS利用情报披露时间
CVE-2026-61808
LightRAG <= 1.5.4 - Missing Authentication
文件包含高危—2.5%
PoCEXP
2026/09/30
CVE-2026-12898
All-in-One WP Migration and Backup < 7.106 - Arbitrary Log File Write
all-in-one_wp_migration
未分类中危—1.4%
PoCEXP
2026/09/30
CVE-2026-86206
N-able N-central - Access Control Bypass via Path Confusion and Forwarded Header Spoofing
访问控制错误严重—1.1%
PoCEXP
2026/09/30
CVE-2026-65694
Microweber CMS <= 2.0.20 - Unauthenticated Arbitrary File Read
米可微伯
文件包含高危—3.4%
PoCEXP
2026/09/30
CVE-2026-85200
GEO my WP <=4.5.5.3 - Unauthenticated Local File Inclusion
未授权访问高危—3.2%
PoCEXP
2026/09/30
CVE-2026-56681
9router <=0.5.4 - Authentication Bypass
未授权访问高危—0.97%
PoCEXP
2026/09/30
CVE-2026-84434
WordPress Gravity Forms Plugin <=3.1.0.4 - Unauthenticated Arbitrary File Upload
未授权访问严重—3.9%
PoCEXP
2026/09/30
CVE-2026-17594
Sonatype Nexus Repository < 3.95.0 - Privilege Escalation via Repository Format Mismatch
未分类高危—0.74%
PoCEXP
2026/09/30
CVE-2026-1281KEV
Ivanti EPMM <=12.7.0.0 - Unauthenticated Code Injection
endpoint_manager_mobile
未授权访问严重—98.7%
PoCEXP
2026/09/30
CVE-2026-67208
Juggle <= 1.6.0 - Unauthenticated Exposed H2 Database Console
未授权访问严重—4.3%
PoCEXP
2026/09/30
CVE-2026-89063
Bookly <=28.1 - IDOR Unauthenticated Sensitive Data Access
未授权访问高危—1.6%
PoCEXP
2026/09/30
CVE-2026-59774
Gitea 1.22.1-1.27.0 - Unauthenticated Arbitrary File Read
文件包含严重——
PoCEXP
2026/09/30
VictoriaMetrics vmagent - Unauthenticated Targets Exposure
未授权访问低危——
PoCEXP
2026/09/30
Grafana Loki - Unauthenticated API Access
未授权访问中危——
PoCEXP
2026/09/30
Langflow - Unauthenticated API Exposure
未授权访问高危——
PoCEXP
2026/09/30
Flowise AI - Unauthenticated Chatflows API Exposure
Flowise
未授权访问高危——
PoCEXP
2026/09/30
Directus Server Info - Unauthenticated Fingerprint
未授权访问低危——
PoCEXP
2026/09/30
MCP Streamable HTTP Server - Unauthenticated Initialize
未授权访问未知——
PoCEXP
2026/09/30
Claude Code Project Settings Exposure
信息泄露中危——
PoCEXP
2026/09/30
Python .pypirc Credentials - Exposure
信息泄露高危——
PoCEXP
2026/09/30
← 上一页13 / 543下一页 →