漏洞列表 360566
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-20064
Improper input validation in the UEFI FlashUcAcmSmm module for some Intel(R) reference platforms may
UNKNOWN N/A 2026-03-10
未知
NVD
CVE-2025-20028
Time-of-check time-of-use race condition in the WheaERST SMM module for some Intel(R) reference plat
UNKNOWN N/A 2026-03-10
未知
NVD
CVE-2025-20027
Improper input validation in the UEFI WheaERST module for some Intel(R) reference platforms may allo
UNKNOWN N/A 2026-03-10
未知
NVD
CVE-2025-20005
Improper buffer restrictions in some UEFI firmware for some Intel(R) reference platforms may allow a
UNKNOWN N/A 2026-03-10
未知
NVD
CVE-2026-31838
Istio is an open platform to connect, manage, and secure microservices. Prior to 1.29.1, 1.28.5, and
UNKNOWN N/A 2026-03-10
未知
NVD
CVE-2026-31837
Istio is an open platform to connect, manage, and secure microservices. Prior to 1.29.1, 1.28.5, and
UNKNOWN N/A 2026-03-10
未知
NVD
CVE-2026-31834
Umbraco is an ASP.NET CMS. From 15.3.1 to before 16.5.1 and 17.2.2, A privilege escalation vulnerabi
HIGH 7.2 2026-03-10
未知
NVD
CVE-2026-31833
Umbraco is an ASP.NET CMS. From 16.2.0 to before 16.5.1 and 17.2.2, An authenticated backoffice user
MEDIUM 6.7 2026-03-10
未知
NVD
CVE-2026-31832
Umbraco is an ASP.NET CMS. From 14.0.0 to before 16.5.1 and 17.2.2, A broken object-level authorizat
MEDIUM 5.4 2026-03-10
未知
NVD
CVE-2026-31830
sigstore-ruby is a pure Ruby implementation of the sigstore verify command from the sigstore/cosign
HIGH 7.5 2026-03-10
未知
NVD
CVE-2026-31829
Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.
HIGH 7.1 2026-03-10
flowiseai flowise
NVD
CVE-2026-31828
Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.
HIGH 8.8 2026-03-10
parseplatform parse-server parseplatform parse-server
NVD
CVE-2026-31827
Alienbin is an anonymous code and text sharing web service. In 1.0.0 and earlier, the /save endpoint
UNKNOWN N/A 2026-03-10
未知
NVD
CVE-2026-31826
pypdf is a free and open-source pure-python PDF library. Prior to 6.8.0, an attacker who uses this v
UNKNOWN N/A 2026-03-10
未知
NVD
CVE-2026-31825
Sylius is an Open Source eCommerce Framework on Symfony. Sylius API filters ProductPriceOrderFilter
MEDIUM 5.3 2026-03-10
未知
NVD
CVE-2026-31824
Sylius is an Open Source eCommerce Framework on Symfony. A Time-of-Check To Time-of-Use (TOCTOU) rac
HIGH 8.2 2026-03-10
sylius sylius
NVD
CVE-2026-31823
Sylius is an Open Source eCommerce Framework on Symfony. An authenticated stored cross-site scriptin
MEDIUM 4.8 2026-03-10
sylius sylius
NVD
CVE-2026-31822
Sylius is an Open Source eCommerce Framework on Symfony. A cross-site scripting (XSS) vulnerability
MEDIUM 6.1 2026-03-10
sylius sylius
NVD
CVE-2026-31821
Sylius is an Open Source eCommerce Framework on Symfony. The POST /api/v2/shop/orders/{tokenValue}/i
MEDIUM 5.3 2026-03-10
sylius sylius
NVD
CVE-2026-31820
Sylius is an Open Source eCommerce Framework on Symfony. An authenticated Insecure Direct Object Ref
MEDIUM 6.5 2026-03-10
sylius sylius
NVD