漏洞列表 360566
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-28436
Frappe is a full-stack web application framework. Prior to versions 16.11.0 and 15.102.0, an attacke
HIGH 7.2 2026-03-05
frappe frappe
NVD
CVE-2026-28413
Products.isurlinportal is a replacement for isURLInPortal method in Plone. Prior to versions 2.1.0,
MEDIUM 5.3 2026-03-05
未知
NVD
CVE-2026-28410
The Graph is an indexing protocol for querying networks like Ethereum, IPFS, Polygon, and other bloc
HIGH 8.1 2026-03-05
thegraph graph_protocol_contracts
NVD
CVE-2026-28405
MarkUs is a web application for the submission and grading of student assignments. Prior to version
HIGH 8.0 2026-03-05
markusproject markus
NVD
CVE-2026-22723
Inappropriate user token revocation due to a logic error in the token revocation endpoint implementa
MEDIUM 6.5 2026-03-05
未知
NVD
CVE-2026-0848
NLTK versions <=3.9.2 are vulnerable to arbitrary code execution due to improper input validation in
CRITICAL 10.0 2026-03-05
未知
NVD
CVE-2025-70995
An issue in Aranda Service Desk Web Edition (ASDK API 8.6) allows authenticated attackers to achieve
HIGH 8.8 2026-03-05
未知
NVD
CVE-2025-70949
An observable timing discrepancy in @perfood/couch-auth v0.26.0 allows attackers to access sensitive
HIGH 7.5 2026-03-05
未知
NVD
CVE-2025-70948
A host header injection vulnerability in the mailer component of @perfood/couch-auth v0.26.0 allows
CRITICAL 9.3 2026-03-05
未知
NVD
CVE-2025-70614
OpenCode Systems OC Messaging / USSD Gateway OC Release 6.32.2 contains a broken access control vuln
HIGH 8.1 2026-03-05
未知
NVD
CVE-2025-55208
Chamilo is a learning management system. Versions prior to 1.11.34 have a Stored XSS through insecur
CRITICAL 9.0 2026-03-05
chamilo chamilo_lms
NVD
CVE-2026-28790
OliveTin gives access to predefined shell commands from a web interface. Prior to version 3000.11.0,
HIGH 7.5 2026-03-05
olivetin olivetin
NVD
CVE-2026-28789
OliveTin gives access to predefined shell commands from a web interface. Prior to version 3000.10.3,
HIGH 7.5 2026-03-05
olivetin olivetin
NVD
CVE-2026-28353
Trivy Vulnerability Scanner is a VS Code extension that helps find vulnerabilities. In Trivy VSCode
UNKNOWN N/A 2026-03-05
未知
NVD
CVE-2026-28350
lxml_html_clean is a project for HTML cleaning functionalities copied from `lxml.html.clean`. Prior
MEDIUM 6.1 2026-03-05
fedoralovespython lxml_html_clean
NVD
CVE-2026-28348
lxml_html_clean is a project for HTML cleaning functionalities copied from `lxml.html.clean`. Prior
MEDIUM 6.1 2026-03-05
fedoralovespython lxml_html_clean
NVD
CVE-2026-28343
CKEditor 5 is a modern JavaScript rich-text editor with an MVC architecture. Prior to version 47.6.0
MEDIUM 6.4 2026-03-05
未知
NVD
CVE-2026-28342
OliveTin gives access to predefined shell commands from a web interface. Prior to version 3000.10.2,
HIGH 7.5 2026-03-05
olivetin olivetin
NVD
CVE-2026-28277
LangGraph SQLite Checkpoint is an implementation of LangGraph CheckpointSaver that uses SQLite DB (b
MEDIUM 6.8 2026-03-05
未知
NVD
CVE-2026-28223
Wagtail is an open source content management system built on Django. Prior to versions 6.3.8, 7.0.6,
MEDIUM 6.1 2026-03-05
torchbox wagtail torchbox wagtail
NVD