漏洞列表 360566
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-32248
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.
CRITICAL 9.8 2026-03-12
parseplatform parse-server parseplatform parse-server
NVD
CVE-2026-32240
Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, when using
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32239
Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, a negative
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-1525
Undici allows duplicate HTTP Content-Length headers when they are provided in an array with case-var
MEDIUM 6.5 2026-03-12
未知
NVD
CVE-2026-3497
Vulnerability in the OpenSSH GSSAPI delta included in various Linux distributions. This vulnerabilit
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32247
Graphiti is a framework for building and querying temporal context graphs for AI agents. Graphiti ve
HIGH 8.1 2026-03-12
未知
NVD
CVE-2026-32246
Tinyauth is an authentication and authorization server. Prior to 5.0.3, the OIDC authorization endpo
HIGH 8.5 2026-03-12
未知
NVD
CVE-2026-32245
Tinyauth is an authentication and authorization server. Prior to 5.0.3, the OIDC token endpoint does
MEDIUM 6.5 2026-03-12
未知
NVD
CVE-2026-32242
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.
HIGH 7.4 2026-03-12
parseplatform parse-server parseplatform parse-server
NVD
CVE-2026-32237
Backstage is an open framework for building developer portals. Prior to 3.1.5, authenticated users w
MEDIUM 4.4 2026-03-12
未知
NVD
CVE-2026-32236
Backstage is an open framework for building developer portals. Prior to 0.27.1, a Server-Side Reques
LOW N/A 2026-03-12
未知
NVD
CVE-2026-32235
Backstage is an open framework for building developer portals. Prior to 0.27.1, the experimental OID
MEDIUM 5.9 2026-03-12
未知
NVD
CVE-2026-32232
ZeptoClaw is a personal AI assistant. Prior to 0.7.6, there is a Dangling Symlink Component Bypass,
UNKNOWN N/A 2026-03-12
未知
NVD
CVE-2026-32231
ZeptoClaw is a personal AI assistant. Prior to 0.7.6, the generic webhook channel trusts caller-supp
HIGH 8.2 2026-03-12
未知
NVD
CVE-2026-32230
Uptime Kuma is an open source, self-hosted monitoring tool. From 2.0.0 to 2.1.3 , the GET /api/badge
MEDIUM 5.3 2026-03-12
未知
NVD
CVE-2026-32142
Shopware is an open commerce platform. /api/_info/config route exposes information about licenses. T
MEDIUM 5.3 2026-03-12
未知
NVD
CVE-2026-32138
NEXULEAN is a cybersecurity portfolio & service platform for an Ethical Hacker, AI Enthusiast, and P
HIGH 8.2 2026-03-12
未知
NVD
CVE-2026-2376
A flaw was found in mirror-registry where an authenticated user can trick the system into accessing
MEDIUM 4.9 2026-03-12
未知
NVD
CVE-2026-26793
GL-iNet GL-AR300M16 v4.3.11 was discovered to contain a command injection vulnerability via the set_
CRITICAL 9.8 2026-03-12
gl-inet ar300m16_firmware
NVD
CVE-2025-70873
An information disclosure issue in the zipfileInflate function in the zipfile extension in SQLite v3
UNKNOWN N/A 2026-03-12
未知
NVD