Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Vulnerability List - Page 19

CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-24751🧪 Kiteworks Secure Data Forms Vulnerable to Cross-site Scripting kiteworksSecure Data Forms High 8.2 2026-06-01 18:50:08 Deep Dive
CVE-2026-43625 CodexBar < 0.32.0 Session Cookie Exposure via HTTP Redirect steipeteCodexBar Medium 5.9 2026-06-01 18:46:09 Deep Dive
CVE-2026-10283 Bottelet DaybydayCRM Setting missing authentication BotteletDaybydayCRM Medium 6.3 2026-06-01 18:45:13 Deep Dive
CVE-2026-10282 Bottelet DaybydayCRM DocumentsController.php view improper authorization BotteletDaybydayCRM Medium 4.3 2026-06-01 18:30:13 Deep Dive
CVE-2026-47294 Microsoft SharePoint Server Remote Code Execution Vulnerability MicrosoftMicrosoft SharePoint Enterprise Server 2016 High 8.0 2026-06-01 18:26:43 Deep Dive
CVE-2026-43624 F5-TTS 1.1.20 Path Traversal via finetune_gradio.py create_data_project() SWividF5-TTS High 8.2 2026-06-01 18:16:10 Deep Dive
CVE-2026-10281🧪 Enderfga claw-orchestrator API Endpoint embedded-server.ts EmbeddedServer missing authentication Enderfgaclaw-orchestrator High 7.3 2026-06-01 18:15:11 Deep Dive
CVE-2026-23638 Kiteworks Secure Data Forms is vulnerable to Authorization Bypass Through User-Controlled Key kiteworksSecure Data Forms Medium 6.5 2026-06-01 18:11:36 Deep Dive
CVE-2026-43623🧪 microtar 0.1.0 Stack-Based Buffer Overflow via raw_to_header() rximicrotar High 8.8 2026-06-01 18:04:14 Deep Dive
CVE-2026-9330 IBM WebSphere Application Server is affected by remote code execution IBMWebSphere Application Server High 8.5 2026-06-01 18:01:06 Deep Dive
CVE-2026-30963 Capsule Namespace Hijacking via subresource projectcapsulecapsule Low 3.9 2026-06-01 18:00:44 Deep Dive
CVE-2026-10280🧪 horizon921 mcpilot MCP API Call Endpoint route.ts server-side request forgery horizon921mcpilot High 7.3 2026-06-01 18:00:12 Deep Dive
CVE-2026-9319 IBM WebSphere Application Server is affected by a remote code execution vulnerability IBMWebSphere Application Server Critical 9.0 2026-06-01 17:59:44 Deep Dive
CVE-2026-9614 Ivanti Neurons for ITSM权限控制漏洞 IvantiNeurons for ITSM (On-Premises) High 8.8 2026-06-01 17:50:03 Deep Dive
CVE-2026-9311 IBM WebSphere Application Server is affected by remote code execution IBMWebSphere Application Server Critical 9.0 2026-06-01 17:49:42 Deep Dive
CVE-2026-40990 Unbounded cache for function definitions SpringSpring Cloud Function Medium 5.7 2026-06-01 17:49:16 Deep Dive
CVE-2026-40989 Self Routing guard bypassed via function composition SpringSpring Cloud Function Medium 5.7 2026-06-01 17:49:14 Deep Dive
CVE-2026-8644 IBM WebSphere Application Server is affected by an identity spoofing vulnerability IBMWebSphere Application Server Critical 9.1 2026-06-01 17:46:05 Deep Dive
CVE-2026-10279 hiraishikentaro wezterm-mcp switch_pane/write_to_specific_pane wezterm_executor.ts os command injection hiraishikentarowezterm-mcp Medium 6.3 2026-06-01 17:45:07 Deep Dive
CVE-2026-7770 IBM i Access Client Solutions (ACS) is vulnerable to remote code execution when configured to listen for requests from IBM i Navigator IBMi Access Family High 8.8 2026-06-01 17:45:01 Deep Dive