神龙漏洞库
- AI
POC 列表
漏洞复现
恶意包
安全情报
资源
API 文档
AI 精选 POC
赏金情报
统计
关于
搜索
升级 Pro
设置
中文
中文
English
日本語
主题
默认
二次元粉色
壕无人性
登录
目标达成
感谢每一位支持者 — 我们达成了 100% 目标!
目标: 1000 元 · 已筹:
1359
元
100%
请我们喝杯咖啡
漏洞列表 - 第 8
风险等级
严重
高危
中危
低危
时间
7d
30d
90d
1y
KEV
限定
🧪 有 PoC
💣 有利用
EPSS ≥
全部
0.10 (低危)
0.30
0.50
0.70
0.90 (极高)
排序
最新
EPSS 分(高 → 低)
KEV 收录时间(新 → 旧)
漏洞ID
标题
厂商
产品
风险等级
CVSS 评分
发布日期
AI 分析
CVE-2026-103482
Simple Newsletter Plugin <=4.3.10 未授权存储型XSS漏洞
picocodes
Noptin – Newsletter, New Post Notifications & Email Automation
中危
5.4
2026-10-10 05:31:06
深度分析
CVE-2026-14877
Supsystic Data Tables Generator <=1.12.03 存储型XSS漏洞
supsysticcom
Data Tables Generator by Supsystic
中危
6.4
2026-10-10 05:31:05
深度分析
CVE-2026-93775
Podlove Podcast Publisher 4.5.6及以下版本存在未授权存储型跨站脚本漏洞
eteubert
Podlove Podcast Publisher
高危
7.2
2026-10-10 05:31:05
深度分析
CVE-2026-97643
GiveWP 4.17.0 及之前版本 Contributor+用户存储型XSS漏洞
stellarwp
GiveWP – Donation Plugin and Fundraising Platform
中危
6.4
2026-10-10 05:31:05
深度分析
CVE-2026-104762
Kadence Blocks <=3.7.12 认证作者存储型XSS漏洞
stellarwp
Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
中危
6.4
2026-10-10 05:31:04
深度分析
CVE-2026-104723
LifterLMS <= 10.2.1 认证用户PHP对象注入漏洞
lifterlms
LifterLMS – WP LMS for eLearning, Online Courses, & Quizzes
高危
8.8
2026-10-10 05:31:04
深度分析
CVE-2026-96682
Presto Player <= 4.5.1 未授权存储型跨站脚本漏洞
2winfactor
Presto Player
高危
7.2
2026-10-10 05:31:04
深度分析
CVE-2026-92975
Groundhogg <=4.8.3 未授权权限提升致身份混淆漏洞
trainingbusinesspros
Groundhogg — CRM, Newsletters, and Marketing Automation
高危
8.1
2026-10-10 05:31:03
深度分析
CVE-2026-104899
GeoDirectory <= 2.8.187 未授权本地文件包含漏洞
paoltaia
GeoDirectory – WP Business Directory Plugin and Classified Listings Directory
高危
8.1
2026-10-10 05:31:03
深度分析
CVE-2026-77183
FooSales <=1.43.0 权限提升漏洞
foosales
FooSales – Point of Sale (POS) for WooCommerce
高危
8.8
2026-10-10 05:31:02
深度分析
CVE-2026-18558
Embed Any Document <= 2.7.13 存储型XSS漏洞
awsmin
Embed Any Document – Embed PDF, Word, PowerPoint and Excel Files
中危
6.4
2026-10-10 05:31:02
深度分析
CVE-2026-91862
Getwid <= 3.0.1 通过 'data-image-points' 存储型 XSS 漏洞
jetmonsters
Getwid – Gutenberg Blocks
中危
6.4
2026-10-10 05:31:02
深度分析
CVE-2026-94421
Church Admin <= 5.1.2 邮件参数存储型XSS漏洞
andy_moyle
Church Admin
中危
6.4
2026-10-10 05:31:01
深度分析
CVE-2026-96667
Real Estate Manager 7.3 通过 first_name 参数存储型跨站脚本漏洞
rameez_iqbal
Real Estate Manager – Property Listing and Agent Management
高危
7.2
2026-10-10 05:31:01
深度分析
CVE-2026-94375
WooCommerce Order Export 2.7.8 未授权敏感文件泄露漏洞
webtoffee
Order Export & Order Import for WooCommerce
中危
5.3
2026-10-10 05:31:00
深度分析
CVE-2026-103520
HivePress ≤1.7.31 存储型跨站脚本漏洞
hivepress
HivePress – Business Directory, Listings & Classified Ads Plugin
中危
6.4
2026-10-10 05:31:00
深度分析
CVE-2026-104763
Post Export Import with Media 1.17.1 路径遍历致任意文件读取漏洞
wpazleen
Post Export Import with Media
中危
4.9
2026-10-10 05:31:00
深度分析
CVE-2026-14379
GamiPress 7.9.4及以下版本 存储型跨站脚本漏洞
rubengc
GamiPress – Gamification plugin to reward points, badges & ranks in WordPress, now with AI
中危
6.4
2026-10-10 05:30:59
深度分析
CVE-2026-104725
Groundhogg <=4.9 认证用户权限提升漏洞
trainingbusinesspros
Groundhogg — CRM, Newsletters, and Marketing Automation
高危
8.8
2026-10-10 05:30:59
深度分析
CVE-2026-83526
FV Player 8.0-8.1.7 任意文件上传漏洞
foliovision
FV Player 8
高危
8.8
2026-10-10 05:30:58
深度分析
«
1
2
…
6
7
8
(current)
9
10
11
12
…
19271
19272
»