漏洞列表 360895
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-22385
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
HIGH 8.1 2026-03-05
未知
NVD
CVE-2025-69411
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Robe
HIGH 7.5 2026-03-05
未知
NVD
CVE-2025-69343
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i
MEDIUM 6.5 2026-03-05
未知
NVD
CVE-2025-69340
Missing Authorization vulnerability in BuddhaThemes WeDesignTech Ultimate Booking Addon wedesigntech
HIGH 7.5 2026-03-05
未知
NVD
CVE-2025-69339
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
HIGH 8.1 2026-03-05
未知
NVD
CVE-2025-69338
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i
CRITICAL 9.3 2026-03-05
未知
NVD
CVE-2025-69090
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
HIGH 8.1 2026-03-05
未知
NVD
CVE-2025-68555
Unrestricted Upload of File with Dangerous Type vulnerability in zozothemes Nutrie nutrie allows Upl
CRITICAL 9.9 2026-03-05
未知
NVD
CVE-2025-68554
Unrestricted Upload of File with Dangerous Type vulnerability in zozothemes Keenarch keenarch allows
CRITICAL 9.9 2026-03-05
未知
NVD
CVE-2025-68553
Unrestricted Upload of File with Dangerous Type vulnerability in zozothemes Lendiz lendiz allows Upl
CRITICAL 9.9 2026-03-05
未知
NVD
CVE-2025-68515
Insertion of Sensitive Information Into Sent Data vulnerability in Roland Murg WP Booking System wp-
MEDIUM 5.8 2026-03-05
未知
NVD
CVE-2025-54001
Deserialization of Untrusted Data vulnerability in ThemeREX Classter classter allows Object Injectio
CRITICAL 9.8 2026-03-05
未知
NVD
CVE-2025-53335
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio
HIGH 8.1 2026-03-05
未知
NVD
CVE-2026-3523
The Apocalypse Meow plugin for WordPress is vulnerable to SQL Injection via the 'type' parameter in
MEDIUM 4.9 2026-03-05
未知
NVD
CVE-2026-3034
The OoohBoi Steroids for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting
MEDIUM 6.4 2026-03-05
未知
NVD
CVE-2026-2899
The Fluent Forms Pro Add On Pack plugin for WordPress is vulnerable to Missing Authorization in all
MEDIUM 6.5 2026-03-05
未知
NVD
CVE-2026-2365
The Fluent Forms Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `flue
HIGH 7.2 2026-03-05
未知
NVD
CVE-2026-29127
The IDC SFX2100 Satellite Receiver sets overly permissive file system permissions on the monitor use
HIGH 7.8 2026-03-05
datacast sfx2100_firmware
NVD
CVE-2026-26034
UPS Multi-UPS Management Console (MUMC) version 01.06.0001 (A03) contains an Incorrect Default Permi
HIGH 7.8 2026-03-05
dell ups_multi-ups_management_console
NVD
CVE-2026-26033
UPS Multi-UPS Management Console (MUMC) version 01.06.0001 (A03) contains an Unquoted Search Path or
MEDIUM 6.7 2026-03-05
dell ups_multi-ups_management_console
NVD