| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-11762 | HubSpot All-In-One Marketing - Forms, Popups, Live Chat <= 11.3.32 - Missing Authorization to Authenticated (Contributor+) Installed Plugin Disclosure | hubspotdev | HubSpot All-In-One Marketing – Forms, Popups, Live Chat | Medium | 4.3 | 2026-04-24 07:45:07 | Deep Dive |
| CVE-2026-6840 | ONE 输入验证错误漏洞 | Samsung Open Source | ONE | Medium | 5.5 | 2026-04-22 06:08:32 | Deep Dive |
| CVE-2026-6839 | ONE 安全漏洞 | Samsung Open Source | ONE | Medium | 6.6 | 2026-04-22 06:07:07 | Deep Dive |
| CVE-2026-41667 | ONE 输入验证错误漏洞 | Samsung Open Source | ONE | Medium | 6.6 | 2026-04-22 05:57:29 | Deep Dive |
| CVE-2026-41666 | ONE 输入验证错误漏洞 | Samsung Open Source | ONE | Medium | 6.6 | 2026-04-22 05:56:19 | Deep Dive |
| CVE-2026-41665 | ONE 输入验证错误漏洞 | Samsung Open Source | ONE | Medium | 6.1 | 2026-04-22 05:55:17 | Deep Dive |
| CVE-2026-41664 | ONE 输入验证错误漏洞 | Samsung Open Source | ONE | Medium | 6.6 | 2026-04-22 05:54:11 | Deep Dive |
| CVE-2026-40450 | ONE 输入验证错误漏洞 | Samsung Open Source | ONE | Medium | 6.6 | 2026-04-22 05:53:11 | Deep Dive |
| CVE-2026-40449 | ONE 输入验证错误漏洞 | Samsung Open Source | ONE | Medium | 6.6 | 2026-04-22 05:51:35 | Deep Dive |
| CVE-2026-40448 | ONE 输入验证错误漏洞 | Samsung Open Source | ONE | Medium | 5.3 | 2026-04-22 05:40:26 | Deep Dive |
| CVE-2025-36579 | Dell Client Platform BIOS 安全漏洞 | Dell | Dell Pro 14 Essential PV14250 | Medium | 5.1 | 2026-04-16 16:05:33 | Deep Dive |
| CVE-2026-4682 | Certain HP DeskJet All In One (AIO) Devices – Potential Remote Code Execution & Potential Buffer Overflow | HP Inc | HP DeskJet 2800e All-in-One Printer series | 中危 | - | 2026-04-15 14:32:31 | Deep Dive |
| CVE-2024-33618 | Bosch VMS Central Server 安全漏洞 | Bosch | BVMS | High | 7.5 | 2026-04-15 09:51:53 | Deep Dive |
| CVE-2026-4059 | ShopLentor <= 3.3.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'button_text' Shortcode Attribute | devitemsllc | ShopLentor – All-in-One WooCommerce Growth & Store Enhancement Plugin | Medium | 6.4 | 2026-04-14 03:37:34 | Deep Dive |
| CVE-2026-39483 | WordPress VK All in One Expansion Unit plugin <= 9.113.3 - Cross Site Scripting (XSS) vulnerability | Hidekazu Ishikawa | VK All in One Expansion Unit | - | - | 2026-04-08 08:30:11 | Deep Dive |
| CVE-2026-39466 | WordPress Broken Link Checker plugin <= 2.4.7 - SQL Injection vulnerability | WPMU DEV - Your All-in-One WordPress Platform | Broken Link Checker | - | - | 2026-04-08 08:30:07 | Deep Dive |
| CVE-2018-25242 | One Search 1.1.0.0 Denial of Service | OneSearch | One Search | Medium | 6.2 | 2026-04-04 13:51:09 | Deep Dive |
| CVE-2026-0626 | WPFunnels <= 3.7.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'wpf_optin_form' Shortcode | getwpfunnels | WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell | Medium | 6.4 | 2026-04-04 11:16:14 | Deep Dive |
| CVE-2018-25237 | Hirschmann HiSecOS Buffer Overflow via HTTPS Login | Belden | Hirschmann HiSecOS Classic Firewall (EAGLE, EAGLE One) | Critical | 9.8 | 2026-04-03 21:22:41 | Deep Dive |
| CVE-2026-24370 | WordPress The Grid plugin < 2.8.0 - Cross Site Scripting (XSS) vulnerability | Theme-one | The Grid | Medium | 6.5 | 2026-03-25 16:14:32 | Deep Dive |