CloudMap漏洞情报库
漏洞库厂商产品风险排行
开发者中心开始检索 ↗
CloudMap漏洞情报库

面向安全研究者与技术团队的公开漏洞情报检索平台。

漏洞库厂商产品风险排行
© 2026 CloudMap数据仅供安全研究与风险评估参考
VULNERABILITY INTELLIGENCE

漏洞情报库

组合风险、利用情报和受影响对象,快速定位需要优先处置的漏洞。

利用情报保护仅展示 PoC / EXP 是否收录不公开内容、路径和下载地址
⌕/
筛选条件重置
3,060条匹配记录
PoCEXP绿色表示已收录,灰色表示暂无
漏洞与影响对象风险等级CVSSEPSS利用情报披露时间
CVE-2026-8732
WP Maps Pro (wp-google-map-gold) <= 6.1.0 - Unauthenticated Administrator Account Creation
WP Maps Pro
严重——
PoCEXP
2026/07/28
CVE-2026-46442
Flowise < 3.1.2 - node-custom-function Unauthorized RCE
Flowise
严重——
PoCEXP
2026/07/28
CVE-2026-23696
Windmill < 1.603.3 - SQL Injection
Windmill
严重——
PoCEXP
2026/07/28
CVE-2026-58455
Dockwatch <= 0.6.567 - OS Command Injection
Dockwatch
严重——
PoCEXP
2026/07/28
CVE-2026-42796
Arelle < 2.39.10 - Remote Code Execution
Arelle
严重——
PoCEXP
2026/07/28
CVE-2026-3296KEV
Everest Forms WordPress Plugin <= 3.4.3 - PHP Object Injection
everest-forms
严重——
PoCEXP
2026/07/28
CVE-2026-9198RCE
IBM Langflow - Remote Code Execution
Langflow
严重——
PoCEXP
2026/07/28
CVE-2026-6875
ServiceNow AI Platform - Pre-Auth JavaScript Sandbox Escape RCE
ServiceNow
严重——
PoCEXP
2026/07/28
CVE-2026-48908KEV
Joomla SP Page Builder <= 6.6.1 - Unauthenticated Arbitrary File Upload RCE
SP Page Builder
严重——
PoCEXP
2026/07/28
CVE-2026-15409KEV
SonicWall SMA1000 - Server-Side Request Forgery
SonicWall SMA
严重——
PoCEXP
2026/07/28
CVE-2026-48909
Joomla SP LMS <= 4.1.3 - Remote Code Execution
Joomla
严重——
PoCEXP
2026/07/28
CVE-2025-29927
Next.js Middleware Authorization Bypass
next.js
严重——
PoCEXP
2026/07/28
CVE-2026-24207
NVIDIA Triton Inference Server <= 26.02 - Authentication Bypass
NVIDIA Triton Inference Server
严重——
PoCEXP
2026/07/19
CVE-2026-56291KEVRCE
Balbooa Forms < 2.4.1 - Unauthenticated Arbitrary File Upload
forms
严重——
PoCEXP
2026/07/19
CVE-2026-59801
9Router - Unauthenticated LLM Provider API Exposure
9Router
严重——
PoCEXP
2026/07/19
CVE-2026-56782
Gorse < 0.5.10 - Unauthenticated Database Dump
Gorse
严重——
PoCEXP
2026/07/19
CVE-2026-22778
vLLM 0.8.3 - 0.14.0 - Information Disclosure
vLLM
严重——
PoCEXP
2026/07/19
CVE-2026-63030
WordPress Core 6.9-7.0.1 - Pre-Auth Blind SQL Injection (Batch-Route Confusion)
wordpress
严重——
PoCEXP
2026/07/19
CVE-2026-48611
phpBB < 3.3.17 - Authentication Bypass
phpbb
严重——
PoCEXP
2026/07/19
CVE-2026-48282
Adobe ColdFusion - RDS Arbitrary File Write
ColdFusion
严重——
PoCEXP
2026/07/19
← 上一页8 / 153下一页 →