CloudMap
漏洞情报库
漏洞库
厂商
产品
风险排行
开发者中心
开始检索
↗
VULNERABILITY INTELLIGENCE
漏洞情报库
组合风险、利用情报和受影响对象,快速定位需要优先处置的漏洞。
验证信息保护
仅展示 PoC 是否收录
不公开内容、路径和下载地址
⌕
/
搜索漏洞
10,858
条匹配记录
PoC
绿色表示已收录,灰色表示暂无
漏洞与影响对象
漏洞类型
风险等级
CVSS
EPSS
PoC 状态
披露时间
CVE-2025-11700
N-central - XML External Entities Injection
N-central
XML外部实体引用
高危
8.4
30.7%
PoC
2025/11/12
CVE-2025-9316
N-central - Authentication Bypass
N-central
身份验证绕过
中危
6.9
36.3%
PoC
2025/11/12
CVE-2025-11307
WP Google Maps < 9.0.48 - Cross-Site Scripting
wp-google-maps
跨站脚本攻击
高危
8.8
1.8%
PoC
2025/11/11
CVE-2025-12101
Citrix NetScaler ADC & Gateway - Reflected XSS / Open Redirect
netscaler_application_delivery_controller
开放重定向
中危
5.9
25.4%
PoC
2025/11/11
CVE-2021-4462
RCE
Employee Records System 1.0 - Unauthenticated File Upload RCE
employee_records_system
文件上传
严重
9.3
3.2%
PoC
2025/11/10
CVE-2025-12480
KEV
Triofox - Improper Access Control
Triofox
信息泄露
严重
9.1
95.4%
PoC
2025/11/10
CVE-2025-34299
RCE
Monsta FTP <= 2.11.2 - Unauthenticated Remote Code Execution
Monsta FTP
文件上传
严重
9.3
72.9%
PoC
2025/11/07
CVE-2025-11749
WordPress AI Engine Plugin - Token Exposure
ai_engine
ai_engine_pro
信息泄露
严重
9.8
74.8%
PoC
2025/11/05
CVE-2025-11833
Post SMTP <= 3.6.0 - Email Log Disclosure
post-smtp
信息泄露
严重
9.8
61.5%
PoC
2025/11/01
CVE-2025-10897
WooCommerce Designer Pro <= 1.9.28 - Arbitrary File Read
WooCommerce Designer Pro
文件包含
高危
8.6
1.9%
PoC
2025/10/31
CVE-2025-52665
UniFi Access - Broken Access Control
UniFi-OS
访问控制错误
严重
10.0
41.1%
PoC
2025/10/31
CVE-2025-64095
DNN - Unrestricted Arbitrary File Upload
DotNetNuke
文件上传
严重
9.8
47.0%
PoC
2025/10/28
CVE-2025-12055
MPDV Mikrolab GmbH HYDRA X, MIP 2 & FEDRA 2 - Path Traversal
MPDV
路径穿越
高危
7.5
3.8%
PoC
2025/10/27
CVE-2025-5605
WSO2 Management Console - Authentication Bypass
WSO2-Management-Console
身份验证绕过
中危
4.3
0.85%
PoC
2025/10/24
CVE-2025-8848
LibreChat <= 0.7.9 - HTML Injection via Accept-Language Header
LibreChat
跨站脚本攻击
中危
5.4
0.45%
PoC
2025/10/22
CVE-2025-11750
Dify - User Enumeration via "Account not found" Message
dify
信息泄露
中危
5.3
0.70%
PoC
2025/10/22
CVE-2025-61757
KEV
Oracle Identity Manager REST WebServices - Authentication Bypass
fusion_middleware
身份验证绕过
严重
9.8
88.6%
PoC
2025/10/21
CVE-2025-59287
KEV
RCE
Windows Server Update Service - Insecure Deserialization
Windows-Server-2012
Windows-Server-2016
远程代码执行
严重
9.8
100.0%
PoC
2025/10/14
CVE-2025-61884
KEV
Oracle E-Business Suite - Server-Side Request Forgery
e-business_suite
服务端请求伪造
高危
7.5
95.9%
PoC
2025/10/12
CVE-2025-9196
Trinity Audio <= 5.21.0 - Information Exposure
Trinity Audio
信息泄露
中危
5.3
1.0%
PoC
2025/10/11
← 上一页
80 / 543
下一页 →