漏洞列表 360566
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-13723
IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could al
MEDIUM 5.3 2026-03-13
未知
NVD
CVE-2025-13718
IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could al
LOW 3.7 2026-03-13
未知
NVD
CVE-2025-13702
IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 is vulne
MEDIUM 6.1 2026-03-13
未知
NVD
CVE-2025-13337
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
UNKNOWN N/A 2026-03-13
未知
NVD
CVE-2025-12455
Observable response discrepancy vulnerability in OpenText™ Vertica allows Password Brute Forcing.  
UNKNOWN N/A 2026-03-13
未知
NVD
CVE-2025-12454
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability i
UNKNOWN N/A 2026-03-13
未知
NVD
CVE-2025-12453
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability i
UNKNOWN N/A 2026-03-13
未知
NVD
CVE-2023-40693
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, and 6.2.0.0 thr
MEDIUM 5.4 2026-03-13
未知
NVD
CVE-2026-3611
The Honeywell IQ4x building management controller, exposes its full web-based HMI without authentica
CRITICAL 10.0 2026-03-12
未知
NVD
CVE-2026-2581
This is an uncontrolled resource consumption vulnerability (CWE-400) that can lead to Denial of Serv
MEDIUM 5.9 2026-03-12
未知
NVD
CVE-2026-2229
ImpactThe undici WebSocket client is vulnerable to a denial-of-service attack due to improper valida
HIGH 7.5 2026-03-12
未知
NVD
CVE-2026-1528
ImpactA server can reply with a WebSocket frame using the 64-bit length form and an extremely large
HIGH 7.5 2026-03-12
未知
NVD
CVE-2026-1527
ImpactWhen an application passes user-controlled input to the upgrade option of client.request(), an
MEDIUM 4.6 2026-03-12
未知
NVD
CVE-2026-1526
The undici WebSocket client is vulnerable to a denial-of-service attack via unbounded memory consump
HIGH 7.5 2026-03-12
未知
NVD
CVE-2026-32274
Black is the uncompromising Python code formatter. Prior to 26.3.1, Black writes a cache file, the n
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32269
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.
MEDIUM 6.5 2026-03-12
parseplatform parse-server parseplatform parse-server
NVD
CVE-2026-32260
Deno is a JavaScript, TypeScript, and WebAssembly runtime. From 2.7.0 to 2.7.1, A command injection
HIGH 8.1 2026-03-12
未知
NVD
CVE-2026-32259
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior
MEDIUM 6.7 2026-03-12
未知
NVD
CVE-2026-32251
Tolgee is an open-source localization platform. Prior to 3.166.3, the XML parsers used for importing
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32249
Vim is an open source, command line text editor. From 9.1.0011 to before 9.2.0137, Vim's NFA regex c
MEDIUM 5.3 2026-03-12
未知
NVD