最新预警列表

MEDIUM NVD Recent 2026-09-08

CVE-2026-18445:There is an integer overflow vulnerability resulting in an out-of-bounds write recently discovered in NI LabVIEW.  This

There is an integer overflow vulnerability resulting in an out-of-bounds write recently discovered in NI LabVIEW.  This may result in information disclosure or arbitrary code execution.  Successful exploitation requires an attacker to get a user to open a

MEDIUM NVD Recent 2026-09-08

CVE-2026-18444:There is an integer conversion vulnerability resulting in an out-of-bounds read when loading images recently discovered

There is an integer conversion vulnerability resulting in an out-of-bounds read when loading images recently discovered in NI LabVIEW.  This may result in information disclosure or arbitrary code execution.  Successful exploitation requires an attacker to

HIGH NVD Recent 2026-09-08

CVE-2026-16234:There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure o

There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure or arbitrary code execution.  Successful exploitation requires an attacker to get a user to open a specially crafted VI.  This vulnerabi

MEDIUM NVD Recent 2026-09-08

CVE-2026-14350:IBM Cloud Pak for Data System 11.3.0.2 through Interim Fix 001 could allow an unauthorized user to inject data into log

IBM Cloud Pak for Data System 11.3.0.2 through Interim Fix 001 could allow an unauthorized user to inject data into log messages due to improper neutralization of special elements when written to log files.

CRITICAL NVD Recent 2026-09-07

CVE-2026-84238:Unauthenticated Broken Access Control in YITH Request a Quote for WooCommerce Premium < 4.46.0 versions.

Unauthenticated Broken Access Control in YITH Request a Quote for WooCommerce Premium < 4.46.0 versions.

HIGH NVD Recent 2026-09-07

CVE-2026-81295:Unauthenticated Cross Site Scripting (XSS) in Under Construction <= 5.82 versions.

Unauthenticated Cross Site Scripting (XSS) in Under Construction <= 5.82 versions.

HIGH NVD Recent 2026-09-05

CVE-2026-81773:Unauthenticated Cross Site Scripting (XSS) in Ninja Forms File Uploads Extension <= 3.3.26 versions.

Unauthenticated Cross Site Scripting (XSS) in Ninja Forms File Uploads Extension <= 3.3.26 versions.

MEDIUM NVD Recent 2026-09-05

CVE-2026-81281:Subscriber Cross Site Scripting (XSS) in Graphene <= 2.9.4 versions.

Subscriber Cross Site Scripting (XSS) in Graphene <= 2.9.4 versions.

HIGH NVD Recent 2026-09-04

CVE-2026-52022:An issue in kamailio v.6.1.1 and before allows a remote attacker to cause a denial of service via the IMS P-CSCF registr

An issue in kamailio v.6.1.1 and before allows a remote attacker to cause a denial of service via the IMS P-CSCF registration handling components

HIGH NVD Recent 2026-09-04

CVE-2026-58566:Dell PowerStore, an Incorrect Authorization vulnerability. A low privileged attacker with remote access could potentiall

Dell PowerStore, an Incorrect Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

HIGH NVD Recent 2026-09-04

CVE-2026-81776:Unauthenticated Cross Site Scripting (XSS) in WP QuickLaTeX <= 3.8.8 versions.

Unauthenticated Cross Site Scripting (XSS) in WP QuickLaTeX <= 3.8.8 versions.

MEDIUM NVD Recent 2026-09-04

CVE-2026-81282:Subscriber Cross Site Scripting (XSS) in Product Variations Swatches for WooCommerce <= 1.1.18 versions.

Subscriber Cross Site Scripting (XSS) in Product Variations Swatches for WooCommerce <= 1.1.18 versions.

HIGH NVD Recent 2026-09-03

CVE-2026-84752:Contributor PHP Object Injection in RTMKit <= 2.1.5 versions.

Contributor PHP Object Injection in RTMKit <= 2.1.5 versions.

HIGH NVD Recent 2026-09-03

CVE-2026-84736:In the current development version of Eclipse aeriOS, for which no official release has yet been published, the Federato

In the current development version of Eclipse aeriOS, for which no official release has yet been published, the Federator component disables TLS certificate validation for outbound HTTPS connections by default. When the TLS_CERTIFICATE_VALIDATION environm

MEDIUM NVD Recent 2026-09-03

CVE-2026-84215:Unauthenticated Broken Access Control in Timetics <= 1.0.61 versions.

Unauthenticated Broken Access Control in Timetics <= 1.0.61 versions.

站内所有资源、漏洞预警、工具与专题内容仅面向企业授权自测、合规研究与安全运维使用。本站不提供可直接用于非法攻击的程序、载荷或黑产平台入口。