浏览 37+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-2506 | EM Cost Calculator <= 2.3.1 - Unauthenticated Stored Cross-Site Scripting via 'customer_name' | motahar1 | EM Cost Calculator | Medium | 6.1 | 2026-02-26 01:24:14 | Deep Dive |
| CVE-2026-24630 | WordPress Stylish Cost Calculator plugin <= 8.2.9 - Cross Site Scripting (XSS) vulnerability | Design | Stylish Cost Calculator | Medium | 6.5 | 2026-01-23 14:29:08 | Deep Dive |
| CVE-2025-14757 | Cost Calculator Builder <= 3.6.9 - Missing Authorization to Unauthenticated Payment Status Bypass | stylemix | Cost Calculator Builder | Medium | 5.3 | 2026-01-16 08:38:30 | Deep Dive |
| CVE-2025-13696 | Zigaform <= 7.6.5 - Unauthenticated Form Submission Data Disclosure in rocket_front_payment_seesummary AJAX Endpoint | softdiscover | Zigaform – Price Calculator & Cost Estimation Form Builder Lite | Medium | 5.3 | 2025-12-02 07:24:31 | Deep Dive |
| CVE-2025-12529 | Cost Calculator Builder <= 3.6.3 - Unauthenticated Arbitrary File Deletion | stylemix | Cost Calculator Builder | High | 8.8 | 2025-12-02 01:51:56 | Deep Dive |
| CVE-2025-66091 | WordPress Stylish Cost Calculator plugin <= 8.1.5 - Cross Site Scripting (XSS) vulnerability | Design | Stylish Cost Calculator | 中危 | - | 2025-11-21 12:29:59 | Deep Dive |
| CVE-2025-62049 | WordPress Cost Calculator Builder plugin <= 3.5.32 - Broken Access Control vulnerability | Stylemix | Cost Calculator Builder | Medium | 6.5 | 2025-11-06 15:55:44 | Deep Dive |
| CVE-2025-9243 | Cost Calculator Builder <= 3.5.32 - Authenticated (Subscriber+) Missing Authorization via get_cc_orders/update_order_status Functions | stylemix | Cost Calculator Builder | High | 8.1 | 2025-10-04 02:24:36 | Deep Dive |
| CVE-2025-54046 | WordPress Cost Calculator Plugin <= 7.4 - Cross Site Scripting (XSS) Vulnerability | QuanticaLabs | Cost Calculator | Medium | 6.5 | 2025-08-20 08:02:57 | Deep Dive |
| CVE-2025-52775 | WordPress Project Cost Calculator Plugin <= 1.0.0 - Broken Access Control Vulnerability | Ronik@UnlimitedWP | Project Cost Calculator | High | 7.1 | 2025-08-14 10:34:00 | Deep Dive |
| CVE-2025-54047 | WordPress Cost Calculator plugin <= 7.4 - Broken Access Control Vulnerability | QuanticaLabs | Cost Calculator | Medium | 4.3 | 2025-07-16 10:36:52 | Deep Dive |
| CVE-2025-48277 | WordPress Cost Calculator Builder plugin <= 3.2.74 - Cross Site Scripting (XSS) Vulnerability | Stylemix | Cost Calculator Builder | Medium | 5.9 | 2025-05-19 14:45:26 | Deep Dive |
| CVE-2025-47476 | WordPress Cost Calculator for Elementor plugin <= 1.3.3 - Cross Site Scripting (XSS) Vulnerability | add-ons.org | Cost Calculator for Elementor | Medium | 6.5 | 2025-05-07 14:19:46 | Deep Dive |
| CVE-2025-39587 | WordPress Cost Calculator Builder plugin <= 3.2.65 - SQL Injection Vulnerability | Stylemix | Cost Calculator Builder | Critical | 9.3 | 2025-04-17 15:46:44 | Deep Dive |
| CVE-2025-2128 | Cost Calculator Builder <= 3.2.67 - Authenticated (Subscriber+) SQL Injection via order_ids Parameter | stylemix | Cost Calculator Builder | Medium | 6.5 | 2025-04-11 09:21:45 | Deep Dive |
| CVE-2025-31414 | WordPress Cost Calculator Builder plugin <= 3.2.65 - Cross Site Scripting (XSS) vulnerability | Stylemix | Cost Calculator Builder | Medium | 6.5 | 2025-03-31 06:07:12 | Deep Dive |
| CVE-2025-26994 | WordPress Zigaform – Price Calculator & Cost Estimation Form Builder Lite plugin <= 7.4.2 - Cross Site Scripting (XSS) vulnerability | softdiscover | Zigaform – Price Calculator & Cost Estimation Form Builder Lite | High | 7.1 | 2025-03-03 13:30:42 | Deep Dive |
| CVE-2024-13587 | Zigaform – Price Calculator & Cost Estimation Form Builder Lite <= 7.4.7 - Authenticated (Contributor+) Stored Cross-Site Scripting | softdiscover | Zigaform – Price Calculator & Cost Estimation Form Builder Lite | Medium | 6.4 | 2025-02-18 04:21:10 | Deep Dive |
| CVE-2024-11939 | Cost Calculator Builder PRO <= 3.2.15 - Unauthenticated SQL Injection via data | StylemixThemes | Cost Calculator Builder PRO | High | 7.5 | 2025-01-08 08:18:17 | Deep Dive |
| CVE-2024-10892 | Cost Calculator Builder < 3.2.43 - Settings update via CSRF | Unknown | Cost Calculator Builder | 中危 | - | 2024-12-18 06:00:16 | Deep Dive |