| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-13160 KEV 📌 💣 | Ivanti EPM 安全漏洞 EPSS 0.91 | Ivanti | Endpoint Manager | Critical | 9.8 | 2025-01-14 17:12:23 | Deep Dive |
| CVE-2024-13161 KEV 📌 💣 | Ivanti EPM 安全漏洞 EPSS 0.90 | Ivanti | Endpoint Manager | Critical | 9.8 | 2025-01-14 17:11:32 | Deep Dive |
| CVE-2024-55591 KEV 📌 💣 | Fortinet FortiOS和FortiProxy 安全漏洞 EPSS 0.98 | Fortinet | FortiOS | Critical | 9.8 | 2025-01-14 14:08:34 | Deep Dive |
| CVE-2025-0107 📌 💣 | Expedition: OS Command Injection Vulnerability EPSS 0.79 | Palo Alto Networks | Cloud NGFW | 中危 | - | 2025-01-11 03:02:50 | Deep Dive |
| CVE-2024-53704 KEV 📌 💣 | SonicWALL SSLVPN 安全漏洞 EPSS 0.95 | SonicWall | SonicOS | 中危 | - | 2025-01-09 06:52:17 | Deep Dive |
| CVE-2025-0282 KEV 📌 💣 | Ivanti多款产品 安全漏洞 EPSS 1.00 | Ivanti | Connect Secure | Critical | 9.0 | 2025-01-08 22:15:09 | Deep Dive |
| CVE-2024-50603 KEV 📌 💣 | Aviatrix Controller 操作系统命令注入漏洞 EPSS 0.99 | Aviatrix | Controller | Critical | 10.0 | 2025-01-08 00:00:00 | Deep Dive |
| CVE-2024-12856 📌 | Four-Faith Industrial Router adjust_sys_time OS Command Injection EPSS 0.82 | Four-Faith | F3x24 | High | 7.2 | 2024-12-27 16:03:05 | Deep Dive |
| CVE-2024-12987 KEV 📌 💣 | DrayTek Vigor2960/Vigor300B Web Management Interface apmcfgupload os command injection EPSS 0.98 | DrayTek | Vigor2960 | High | 7.3 | 2024-12-27 16:00:14 | Deep Dive |
| CVE-2024-55947 | Gogs has a Path Traversal in file update API EPSS 0.75 | gogs | gogs | 高危 | - | 2024-12-23 15:26:48 | Deep Dive |
| CVE-2024-56145 KEV 📌 💣 | RCE when PHP `register_argc_argv` config setting is enabled in craftcms/cms EPSS 0.97 | craftcms | cms | 超危 | - | 2024-12-18 20:37:34 | Deep Dive |
| CVE-2024-12356 KEV 📌 💣 | Command Injection Vulnerability in Remote Support(RS) & Privileged Remote Access (PRA) EPSS 0.88 | BeyondTrust | Remote Support | Critical | 9.8 | 2024-12-17 04:29:08 | Deep Dive |
| CVE-2024-55956 KEV 📌 💣 | Cleo多款产品 安全漏洞 EPSS 0.94 | - | - | 高危 | - | 2024-12-13 00:00:00 | Deep Dive |
| CVE-2024-53677 📌 | Apache Struts: Mixing setters for uploaded files and normal fields can allow bypass file upload checks EPSS 0.78 | Apache Software Foundation | Apache Struts | 超危 | - | 2024-12-11 15:35:43 | Deep Dive |
| CVE-2024-49113 📌 | Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability EPSS 0.83 | Microsoft | Windows 10 Version 1507 | High | 7.5 | 2024-12-10 17:49:45 | Deep Dive |
| CVE-2024-49112 📌 | Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability EPSS 0.71 | Microsoft | Windows 10 Version 1507 | Critical | 9.8 | 2024-12-10 17:49:45 | Deep Dive |
| CVE-2024-54003 | Jenkins Plugin Simple Queue 跨站脚本漏洞 EPSS 0.80 | Jenkins Project | Jenkins Simple Queue Plugin | 高危 | - | 2024-11-27 17:03:51 | Deep Dive |
| CVE-2024-42327 📌 💣 | SQL injection in user.get API EPSS 0.79 | Zabbix | Zabbix | Critical | 9.9 | 2024-11-27 12:04:32 | Deep Dive |
| CVE-2024-53675 | Hewlett Packard Enterprise Insight Remote Support 安全漏洞 EPSS 0.84 | Hewlett Packard Enterprise (HPE) | HPE Insight Remote Support | High | 7.3 | 2024-11-26 22:01:13 | Deep Dive |
| CVE-2024-11680 KEV 🧪 💣 | ProjectSend Unauthenticated Configuration Modification EPSS 0.92 | ProjectSend | ProjectSend | Critical | 9.8 | 2024-11-26 09:55:24 | Deep Dive |