CloudMap
漏洞情报库
漏洞库
厂商
产品
风险排行
开发者中心
开始检索
↗
VULNERABILITY INTELLIGENCE
漏洞情报库
组合风险、利用情报和受影响对象,快速定位需要优先处置的漏洞。
利用情报保护
仅展示 PoC / EXP 是否收录
不公开内容、路径和下载地址
⌕
/
搜索漏洞
3,060
条匹配记录
PoC
EXP
绿色表示已收录,灰色表示暂无
漏洞与影响对象
漏洞类型
风险等级
CVSS
EPSS
利用情报
披露时间
CVE-2026-4257
WordPress Contact Form by Supsystic - Server-Side Template Injection
contact_form
模板注入
严重
—
32.8%
PoC
EXP
2026/06/25
CVE-2026-29059
Windmill/Nextcloud Flow < 1.603.3 - Unauthenticated Path Traversal
Windmill
未授权访问
严重
—
2.1%
PoC
EXP
2026/06/25
CVE-2026-3055
Citrix NetScaler SAML IDP - Memory Overread
Citrix-NetScaler
Citrix Gateway
Citrix-ADC
+1
信息泄露
严重
—
4.0%
PoC
EXP
2026/06/25
CVE-2026-34413
Xerte Online Toolkits <= 3.15 - Remote Code Execution
Xerte Online Toolkits
未授权访问
严重
—
3.1%
PoC
EXP
2026/06/25
CVE-2026-10520
RCE
Ivanti Sentry - OS Command Injection
Ivanti Sentry
远程代码执行
严重
—
99.9%
PoC
EXP
2026/06/25
CVE-2026-33478
AVideo <= 26.0 - WWBN AVideo - Remote Code Execution
avideo
未授权访问
严重
—
11.2%
PoC
EXP
2026/06/25
CVE-2026-38360
dash-uploader 0.1.0 - 0.7.0a2 - Unauthenticated Arbitrary File Write via Path Traversal
Dash Uploader
未授权访问
严重
—
6.1%
PoC
EXP
2026/06/25
CVE-2026-0545
MLflow Job API - Authentication Bypass
mlflow
身份验证绕过
严重
—
4.4%
PoC
EXP
2026/06/25
CVE-2026-48907
Joomla! JCE extension < 2.9.99.5 unauthenticated RCE
Joomla
未授权访问
严重
—
16.2%
PoC
EXP
2026/06/25
CVE-2026-42281
MagicMirror <= 2.35.0 - Server-Side Request Forgery
MagicMirror²
服务端请求伪造
严重
—
1.7%
PoC
EXP
2026/06/25
CVE-2026-47668
DbGate - Remote Code Execution via Anonymous JWT
DbGate
未授权访问
严重
—
3.9%
PoC
EXP
2026/06/25
CVE-2026-48710
Starlette - Improper Validation of Unsafe Equivalence in Input
Starlette
未分类
严重
—
7.1%
PoC
EXP
2026/06/25
CVE-2026-33017
Langflow < 1.9.0 - Remote Code Execution
Langflow
远程代码执行
严重
—
24.8%
PoC
EXP
2026/06/25
CVE-2026-22557
RCE
UniFi Network Application - Path Traversal
UniFi-Network
未授权访问
严重
—
28.1%
PoC
EXP
2026/06/25
CVE-2026-50751
Check Point IKEv1 Remote-Access VPN - Certificate Authentication Bypass
quantum_security_gateway
身份验证绕过
严重
—
6.3%
PoC
EXP
2026/06/25
CVE-2026-27971
Qwik - Unauthenticated RCE via server$ Deserialization
Qwik
远程代码执行
严重
—
2.9%
PoC
EXP
2026/06/25
CVE-2026-6433
FlipperCode Custom CSS, JS & PHP <= 2.0.7 - Remote Code Execution
custom-css-js-php
未授权访问
严重
—
0.81%
PoC
EXP
2026/06/25
CVE-2026-5718
RCE
Drag and Drop Multiple File Upload - CF7 <= 1.3.9.6 - Remote Code Execution
drag-and-drop-multiple-file-upload-contact-form-7
未授权访问
严重
—
3.5%
PoC
EXP
2026/06/25
CVE-2026-25512
Group-Office < 26.0.5 - Remote Code Execution
GroupOffice
远程代码执行
严重
—
3.8%
PoC
EXP
2026/06/25
CVE-2026-44262
Scramble Laravel - Remote Code Execution
Scramble for Laravel
远程代码执行
严重
—
3.9%
PoC
EXP
2026/06/25
← 上一页
13 / 153
下一页 →