CloudMap
漏洞情报库
漏洞库
厂商
产品
风险排行
开发者中心
开始检索
↗
VULNERABILITY INTELLIGENCE
漏洞情报库
组合风险、利用情报和受影响对象,快速定位需要优先处置的漏洞。
验证信息保护
仅展示 PoC 是否收录
不公开内容、路径和下载地址
⌕
/
搜索漏洞
10,858
条匹配记录
PoC
绿色表示已收录,灰色表示暂无
漏洞与影响对象
漏洞类型
风险等级
CVSS
EPSS
PoC 状态
披露时间
CVE-2020-27615
WordPress Loginizer < 1.6.4 – Unauthenticated SQL Injection via `log` Parameter
loginizer
SQL注入
严重
9.8
52.3%
PoC
2025/10/04
CVE-2020-23814
XXL-JOB v2.2.0 — Stored Cross Site Scripting
xxl-job
跨站脚本攻击
中危
6.1
1.2%
PoC
2025/10/04
CVE-2024-36857
Jan v0.4.12 'readFileSync' - Path Traversal
jan
文件包含
高危
7.5
2.1%
PoC
2025/10/04
CVE-2024-2771
RCE
Contact Form Plugin by Fluent Forms < 5.1.17 - Unauthenticated Limited Privilege Escalation
contact_form
未授权访问
严重
9.8
2.3%
PoC
2025/10/04
CVE-2024-43441
Apache HugeGraph-Server <1.5.0 - Authentication Bypass
HugeGraph
身份验证绕过
严重
9.8
72.8%
PoC
2025/10/04
CVE-2024-47533
RCE
Cobbler 'XML-RPC' - Authentication Bypass
cobbler
身份验证绕过
严重
9.8
4.0%
PoC
2025/10/04
CVE-2024-28000
RCE
WordPress LiteSpeed Cache - Unauthenticated Privilege Escalation to Admin
Litespeed Cache
不正确的权限分配
严重
9.8
68.3%
PoC
2025/10/04
CVE-2024-4898
WordPress InstaWP Connect <= 0.1.0.38 - Unauthenticated User Creation
instawp_connect
远程代码执行
严重
9.8
4.2%
PoC
2025/10/04
CVE-2024-8353
RCE
GiveWP Donation Plugin <= 3.16.1 - Unauthenticated PHP Object Injection
givewp
未授权访问
严重
9.8
28.7%
PoC
2025/10/04
CVE-2024-2782
WordPress FluentForms <= 5.1.16 - Broken Access Control
contact_form
访问控制错误
高危
7.5
1.2%
PoC
2025/10/04
CVE-2019-9881
WPEngine WPGraphQL 0.2.3 - Unauthenticated Comment Posting
wpgraphql
未授权访问
中危
5.3
18.8%
PoC
2025/10/04
CVE-2019-17232
WordPress Ultimate FAQs <= 1.8.24 – Unauthenticated Options Import and Export
ultimate_faq
未授权访问
高危
7.5
3.5%
PoC
2025/10/04
CVE-2019-17230
WordPress OneTone theme <= 3.0.6 – Unauthenticated Options Changes
onetone
安全逻辑漏洞
中危
5.3
2.4%
PoC
2025/10/04
CVE-2019-15774
RCE
ND Booking < 2.5 - Unauthenticated Options Change
nd-booking
开放重定向
中危
6.1
1.7%
PoC
2025/10/04
CVE-2019-17233
RCE
WordPress Ultimate FAQs <= 1.8.24 – Unauthenticated HTML Content Injection
ultimate_faq
跨站脚本攻击
中危
6.1
1.8%
PoC
2025/10/04
CVE-2019-18952
RCE
Xfilesharing 2.5.1 - Arbitrary File Upload
xfilesharing
文件上传
严重
9.8
45.4%
PoC
2025/10/04
CVE-2019-9880
WPEngine WPGraphQL 0.2.3 - Unauthenticated User Information Disclosure
wpgraphql
未授权访问
严重
9.1
34.8%
PoC
2025/10/04
CVE-2025-27225
TRUfusion Enterprise <= 7.10.4.0 - Admin Contact Portal
TRUfusion
信息泄露
高危
7.5
18.4%
PoC
2025/10/04
CVE-2025-27223
TRUfusion Enterprise <= 7.10.4.0 - Authentication Bypass
TRUfusion
身份验证绕过
高危
7.5
2.2%
PoC
2025/10/04
CVE-2025-49825
Teleport - Authentication Bypass
Teleport
身份验证绕过
严重
9.8
7.9%
PoC
2025/10/04
← 上一页
82 / 543
下一页 →