漏洞列表 360566
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-0940
A potential improper initialization vulnerability was reported in the BIOS of some ThinkPads that co
MEDIUM 6.7 2026-03-11
未知
NVD
CVE-2026-0520
A potential vulnerability was reported in the Lenovo FileZ Android application that, under certain c
LOW 2.8 2026-03-11
未知
NVD
CVE-2025-70041
An issue pertaining to CWE-259: Use of Hard-coded Password was discovered in oslabs-beta ThermaKube
CRITICAL 9.8 2026-03-11
未知
NVD
CVE-2025-70024
An issue pertaining to CWE-89: Improper Neutralization of Special Elements used in an SQL Command wa
CRITICAL 9.8 2026-03-11
未知
NVD
CVE-2025-66956
Insecure Access Control in Contact Plan, E-Mail, SMS and Fax components in Asseco SEE Live 2.0 allow
CRITICAL 9.9 2026-03-11
未知
NVD
CVE-2026-3954
A weakness has been identified in OpenBMB XAgent 1.0.0. Affected by this vulnerability is the functi
MEDIUM 6.5 2026-03-11
未知
NVD
CVE-2026-3951
A security flaw has been discovered in LockerProject Locker 0.0.0/0.0.1/0.1.0. Affected is the funct
MEDIUM 4.3 2026-03-11
未知
NVD
CVE-2026-3950
A vulnerability was identified in strukturag libheif up to 1.21.2. This impacts the function Track::
LOW 3.3 2026-03-11
未知
NVD
CVE-2026-32234
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.
MEDIUM 4.7 2026-03-11
parseplatform parse-server parseplatform parse-server
NVD
CVE-2026-32098
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.
HIGH 7.5 2026-03-11
parseplatform parse-server parseplatform parse-server
NVD
CVE-2026-32097
PingPong is a platform for using large language models (LLMs) for teaching and learning. Prior to 7.
UNKNOWN N/A 2026-03-11
未知
NVD
CVE-2026-32096
Plunk is an open-source email platform built on top of AWS SES. Prior to 0.7.0, a Server-Side Reques
CRITICAL 9.3 2026-03-11
未知
NVD
CVE-2026-32095
Plunk is an open-source email platform built on top of AWS SES. Prior to 0.7.1, Plunk's image upload
MEDIUM 5.4 2026-03-11
未知
NVD
CVE-2026-32094
Shescape is a simple shell escape library for JavaScript. Prior to 2.1.10, Shescape#escape() does no
UNKNOWN N/A 2026-03-11
未知
NVD
CVE-2026-31979
Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. Prior to 3.1.0 and
HIGH 8.8 2026-03-11
未知
NVD
CVE-2026-31976
xygeni-action is the GitHub Action for Xygeni Scanner. On March 3, 2026, an attacker with access to
UNKNOWN N/A 2026-03-11
未知
NVD
CVE-2026-31974
OpenProject is an open-source, web-based project management software. Prior to 17.2.0, OpenProject S
LOW 3.0 2026-03-11
未知
NVD
CVE-2026-31961
Quill provides simple mac binary signing and notarization from any platform. Quill before version v0
MEDIUM 5.5 2026-03-11
未知
NVD
CVE-2026-31960
Quill provides simple mac binary signing and notarization from any platform. Quill before version v0
MEDIUM 5.3 2026-03-11
未知
NVD
CVE-2026-31959
Quill provides simple mac binary signing and notarization from any platform. Quill before version v0
MEDIUM 5.3 2026-03-11
未知
NVD