CloudMap漏洞情报库
漏洞库厂商产品风险排行
开发者中心开始检索 ↗
CloudMap漏洞情报库

面向安全研究者与技术团队的公开漏洞情报检索平台。

漏洞库厂商产品风险排行
© 2026 CloudMap数据仅供安全研究与风险评估参考
VULNERABILITY INTELLIGENCE

漏洞情报库

组合风险、利用情报和受影响对象,快速定位需要优先处置的漏洞。

验证信息保护仅展示 PoC 是否收录不公开内容、路径和下载地址
⌕/
筛选条件重置
10,858条匹配记录
PoC绿色表示已收录,灰色表示暂无
漏洞与影响对象漏洞类型风险等级CVSSEPSSPoC 状态披露时间
CVE-2025-25296
Label Studio < 1.16.0 - Cross-Site Scripting
label_studio
跨站脚本攻击中危—1.9%
PoC
2026/06/25
CVE-2025-59582
Ajax Load More < 7.6.1 - Unauthenticated Sensitive Information Exposure
ajax-load-more
未授权访问中危—0.71%
PoC
2026/06/25
CVE-2025-48157
WordPress Formality Plugin <= 1.5.9 - Local File Inclusion
Formality
文件包含严重—2.7%
PoC
2026/06/25
CVE-2025-68043
LottieFiles WordPress Plugin <= 3.0.0 - Missing Authorization
LottieFiles
访问控制错误高危—0.59%
PoC
2026/06/25
CVE-2025-53533
Pi-hole Reflected XSS in 404-Error Page
Pi-hole
跨站脚本攻击中危—0.59%
PoC
2026/06/25
CVE-2025-64328KEVRCE
FreePBX >= 17.0.2.36 && < 17.0.3 - Authenticated Command Injection
freepbx
远程代码执行严重—84.6%
PoC
2026/06/25
CVE-2025-62168
Squid Proxy - HTTP Authentication Credentials Disclosure
Squid
信息泄露严重—63.4%
PoC
2026/06/25
CVE-2025-4524
WordPress Madara Theme < 2.2.2.1 - Local File Inclusion
Madara
未授权访问高危—10.4%
PoC
2026/06/25
CVE-2025-55150
Stirling-PDF < 1.1.0 - Server-Side Request Forgery
stirling_pdf
服务端请求伪造高危—1.7%
PoC
2026/06/25
CVE-2025-32778RCE
Web-Check < 2.0.1 Screenshot API - OS Command Injection
web-check
未授权访问严重—19.6%
PoC
2026/06/25
CVE-2025-46565
Vite Dev Server - Information Exposure
Vite
信息泄露中危—1.2%
PoC
2026/06/25
CVE-2025-58226
WordPress 3D FlipBook Plugin <= 1.16.17 - Sensitive Information Exposure
interactive-3d-flipbook-powered-physics-engine
未授权访问中危—0.75%
PoC
2026/06/25
CVE-2025-59342
esm.sh <= v136 - Arbitrary File Write via Path Traversal
esm.sh
未授权访问中危—3.0%
PoC
2026/06/25
CVE-2025-71257
BMC FootPrints - Authentication Bypass
BMCFootPrints
身份验证绕过中危—44.6%
PoC
2026/06/25
CVE-2025-71258
BMC FootPrints 'searchWeb' - Server-Side Request Forgery
BMCFootPrints
服务端请求伪造高危—17.4%
PoC
2026/06/25
CVE-2025-34030RCE
sar2html <=3.2.2 Plot Parameter - Remote Code Execution
sar2html
远程代码执行严重—54.4%
PoC
2026/06/25
CVE-2025-62126
WordPress Varnish/Nginx Proxy Caching <= 1.8.3 - Information Exposure
Varnish Nginx Proxy Caching
信息泄露中危—0.71%
PoC
2026/06/25
CVE-2025-71259
BMC FootPrints 'feedUrl' - Server-Side Request Forgery
BMCFootPrints
服务端请求伪造高危—12.9%
PoC
2026/06/25
CVE-2025-58044
JumpServer - Open Redirect via Referer Header
Jumpserver
不安全的重定向中危—0.49%
PoC
2026/06/25
CVE-2025-47783
Label Studio < 1.18.0 - Reflected XSS
label_studio
跨站脚本攻击中危—0.59%
PoC
2026/06/25
← 上一页26 / 543下一页 →