最近六个月的全部 CVE,每天更新。
直接来自 National Vulnerability Database 的已公开漏洞,附带严重程度、CWE 类别和受影响产品。可搜索、可筛选,今天新增的也能马上看到。
- 过去 24 小时 450 条
- 过去 7 天 2,964 条
- 过去六个月 58,450 条
来源:NVD(National Vulnerability Database) · 更新于 2026年9月23日
显示 2 条中的 2 条
Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges.
CubeCart is an ecommerce software solution. Prior to 6.7.2, CubeCart 6.6.x – 6.7.1 builds CC_STORE_URL directly from the Host request header at bootstrap, with no allowlist. The constant is embedded verbatim into transactional email links, most critically the