收录 382,041+ 条 CVE,聚合 NVD、MITRE、CNNVD、CISA KEV、EPSS 与公开 PoC,每日更新;支持中文关键词、厂商、产品、严重等级和 CWE 检索。
| 漏洞ID | 标题 | 厂商 | 产品 | 风险等级 | CVSS 评分 | 发布日期 | AI 分析 |
|---|---|---|---|---|---|---|---|
| CVE-2026-96780 | figlet is vulnerable to denial of service via unbounded loop when whitespaceBreak is used with a small width | patorjk | figlet.js | 高危 | 8.2 | 2026-10-01 20:21:54 | 深度分析 |
| CVE-2026-104183 | stream-json: Prototype pollution: Assembler writes this.current[this.key] on plain objects | uhop | stream-json | 中危 | 5.1 | 2026-10-01 20:17:22 | 深度分析 |
| CVE-2026-104182 | stream-json: JSONC parser and verifier re-scan the whole accumulated comment on every input chunk | uhop | stream-json | 中危 | 6.2 | 2026-10-01 20:15:39 | 深度分析 |
| CVE-2026-104181 | Filament: Multi-factor authentication (app) management actions do not require password reauthentication | filamentphp | filament | 中危 | 5.4 | 2026-10-01 20:02:31 | 深度分析 |
| CVE-2026-102514 | Out-of-bounds write in PeaZip PEA extractor allows code execution via a crafted .pea archive | PeaZip | PeaZip | 高危 | 8.4 | 2026-10-01 20:00:52 | 深度分析 |
| CVE-2026-55396 | Unencrypted UDP Control Traffic in Teledyne FLIR Robots running Aware2 | Teledyne FLIR | Aware2 | 高危 | 8.5 | 2026-10-01 19:59:40 | 深度分析 |
| CVE-2026-55395 | Hardcoded Passwords in Teledyne FLIR Robots running Aware2 | Teledyne FLIR | Aware2 | 超危 | 9.4 | 2026-10-01 19:59:33 | 深度分析 |
| CVE-2026-55394 | Unencrypted 802.11 Network in Teledyne FLIR Robots running Aware2 | Teledyne FLIR | Aware2 | 中危 | 5.3 | 2026-10-01 19:59:28 | 深度分析 |
| CVE-2026-55393 | Local File Inclusion in Teledyne FLIR Robots running Aware2 | Teledyne FLIR | Aware2 | 超危 | 10.0 | 2026-10-01 19:59:20 | 深度分析 |
| CVE-2026-14984 | Cleartext HTTP for Control Traffic in Teledyne FLIR Robots running Aware2 | Teledyne FLIR | Aware2 | 超危 | 9.4 | 2026-10-01 19:59:09 | 深度分析 |
| CVE-2026-14983 | Missing Authentication in Teledyne FLIR Robots running Aware2 | Teledyne FLIR | Aware2 | 高危 | 7.1 | 2026-10-01 19:59:00 | 深度分析 |
| CVE-2026-53964 | Document Merge Service vulnerable to RCE via SSTI (xlsx tempaltes) | adfinis | document-merge-service | 高危 | 7.2 | 2026-10-01 19:55:08 | 深度分析 |
| CVE-2026-55252 | OpenRun: Redirect URL validation bypass using //host paths leads to Open Redirect | openrundev | openrun | 中危 | 5.1 | 2026-10-01 19:52:31 | 深度分析 |
| CVE-2026-55251 | NetBox Device Type Library: Arbitrary Code Execution on CI Runner Through Malicious requirements.txt, .pre-commit-hooks-config.yaml, and .gitmodules Files | netbox-community | devicetype-library | 中危 | 6.5 | 2026-10-01 19:49:33 | 深度分析 |
| CVE-2026-103484 | pgvector buffer overflow in IVFFlat index build | - | pgvector | 高危 | 8.8 | 2026-10-01 19:49:04 | 深度分析 |
| CVE-2026-102628 | Cadmos LTI exposure of sensitive information via debug mode | Eummena | Cadmos LTI | 超危 | 9.3 | 2026-10-01 19:44:41 | 深度分析 |
| CVE-2026-100251 | Wormhole.app SSRF | Wormhole App | Wormhole | 中危 | 6.5 | 2026-10-01 19:44:16 | 深度分析 |
| CVE-2026-93832 | CVE-2026-93832 | Motorola | Setup App | 中危 | 4.4 | 2026-10-01 19:44:12 | 深度分析 |
| CVE-2026-102671 | Joyland AI WebView accepts invalid SSL certificates | Joyland | Joyland.ai | 中危 | 5.3 | 2026-10-01 19:43:45 | 深度分析 |
| CVE-2026-102670 | Joyland AI enables HTTP | Joyland | Joyland.ai | 中危 | 4.3 | 2026-10-01 19:43:27 | 深度分析 |
神龙漏洞库持续同步公开 CVE 数据,并关联 CVSS 严重度、CWE 弱点类型、EPSS 利用概率、CISA KEV 已在野利用目录、公开 PoC 与厂商安全公告。你可以通过 CVE 编号直达详情,也可以使用中文漏洞类型、厂商或产品名称检索。
页面会明确区分上游原始数据、AI 辅助翻译、AI 分析和公开利用证据,并展示数据更新时间。基础漏洞查询免费开放;如发现标题、受影响产品或修复信息有误,可通过详情页反馈协助修订。