浏览 28+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-1314 | 3D FlipBook – PDF Embedder, PDF Flipbook Viewer, Flipbook Image Gallery <= 1.16.17 - Missing Authorization to Unauthenticated Private/Draft Flipbook Data Exposure | iberezansky | 3D FlipBook – PDF Embedder, PDF Flipbook Viewer, Flipbook Image Gallery | Medium | 5.3 | 2026-04-14 23:26:08 | Deep Dive |
| CVE-2026-32349 | WordPress Embed PDF Viewer plugin <= 2.4.7 - Server Side Request Forgery (SSRF) vulnerability | Andy Fragen | Embed PDF Viewer | 中危 | - | 2026-03-13 11:41:59 | Deep Dive |
| CVE-2026-2569 | Dear Flipbook <= 2.4.20 - Authenticated (Auhtor+) Stored Cross-Site Scripting via PDF Page Labels | dearhive | Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer | Medium | 6.4 | 2026-03-10 23:21:12 | Deep Dive |
| CVE-2025-58226 | WordPress 3D FlipBook – PDF Flipbook Viewer, Flipbook Image Gallery Plugin <= 1.16.16 - Sensitive Data Exposure Vulnerability | iberezansky | 3D FlipBook – PDF Flipbook Viewer, Flipbook Image Gallery | Medium | 5.3 | 2025-09-22 18:23:45 | Deep Dive |
| CVE-2025-5314 | Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer <= 2.3.65 - DOM-Based Reflected Cross-Site Scripting via 'pdf-source' | dearhive | Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer | Medium | 6.1 | 2025-07-01 11:27:12 | Deep Dive |
| CVE-2025-5289 | 3D FlipBook - Lite Edition <= 1.16.15 - Authenticated (Contributor+) Stored Cross-Site Scripting via style and mode Parameters | iberezansky | 3D FlipBook – PDF Embedder, PDF Flipbook Viewer, Flipbook Image Gallery | Medium | 6.4 | 2025-06-21 11:09:40 | Deep Dive |
| CVE-2025-30922 | WordPress Simplebooklet PDF Viewer and Embedder plugin <= 1.1.1 - Cross Site Scripting (XSS) vulnerability | simplebooklet | Simplebooklet PDF Viewer and Embedder | Medium | 6.5 | 2025-03-27 10:55:58 | Deep Dive |
| CVE-2024-13588 | Simplebooklet PDF Viewer and Embedder <= 1.1.2 - Authenticated (Contributor+) Stored Cross-Site Scripting | kenkwasnicki | Simplebooklet PDF Viewer and Embedder | Medium | 6.4 | 2025-02-18 04:21:16 | Deep Dive |
| CVE-2024-11830 | Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer <= 2.3.52 - Authenticated (Contributor+) Stored Cross-Site Scripting | dearhive | Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer | Medium | 6.4 | 2025-01-08 11:09:25 | Deep Dive |
| CVE-2024-56256 | WordPress Embed PDF Viewer plugin <= 2.3.1 - Cross Site Scripting (XSS) vulnerability | Andy Fragen | Embed PDF Viewer | Medium | 5.9 | 2024-12-31 10:15:37 | Deep Dive |
| CVE-2024-9849 | Real3D Flipbook Lite – 3D FlipBook, PDF Viewer, PDF Embedder <= 4.8 - Authenticated (Author+) Arbitrary File Upload | creativeinteractivemedia | Real 3D Flipbook – 3D FlipBook, PDF FlipBook, PDF Viewer, PDF Embedder | High | 8.8 | 2024-11-16 03:20:43 | Deep Dive |
| CVE-2024-8717 | PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer – DearFlip <= 2.3.32 - Reflected Cross-Site Scripting | dearhive | Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer | Medium | 6.1 | 2024-10-24 08:32:22 | Deep Dive |
| CVE-2024-9451 | Embed PDF Viewer <= 2.4.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via height and width Parameters | afragen | Embed PDF Viewer | Medium | 6.4 | 2024-10-09 07:33:36 | Deep Dive |
| CVE-2024-47372 | WordPress TNC PDF viewer plugin <= 3.1.0 - Cross Site Scripting (XSS) vulnerability | ThemeNcode LLC | TNC PDF viewer | Medium | 5.9 | 2024-10-05 15:18:39 | Deep Dive |
| CVE-2024-43152 | WordPress 3D FlipBook plugin <= 1.15.6 - Cross Site Scripting (XSS) vulnerability | iberezansky | 3D FlipBook – PDF Flipbook Viewer, Flipbook Image Gallery | Medium | 5.9 | 2024-08-12 22:09:41 | Deep Dive |
| CVE-2024-0845 | PDF Viewer for Elementor <= 2.9.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via render | redlettuce | PDF Viewer for Elementor | Medium | 6.4 | 2024-06-18 02:37:12 | Deep Dive |
| CVE-2024-34561 | WordPress Real3D Flipbook PDF Viewer Lite plugin <= 3.71 - Cross Site Scripting (XSS) vulnerability | Creative interactive media | 3D FlipBook, PDF Viewer, PDF Embedder – Real 3D FlipBook WordPress Plugin | Medium | 5.9 | 2024-05-08 11:09:42 | Deep Dive |
| CVE-2024-32694 | WordPress 3D FlipBook, PDF Viewer, PDF Embedder plugin <= 3.62 - Reflected Cross Site Scripting (XSS) vulnerability | Creative interactive media | 3D FlipBook, PDF Viewer, PDF Embedder – Real 3D FlipBook WordPress Plugin | High | 7.1 | 2024-04-22 07:48:43 | Deep Dive |
| CVE-2024-30524 | WordPress PDF Viewer for Elementor plugin <= 2.9.3 - Cross Site Scripting (XSS) vulnerability | RedLettuce Plugins | PDF Viewer for Elementor | Medium | 6.5 | 2024-03-31 20:08:20 | Deep Dive |
| CVE-2024-25097 | WordPress TNC PDF viewer Plugin <= 2.8.0 is vulnerable to Cross Site Scripting (XSS) | ThemeNcode LLC | TNC PDF viewer | Medium | 6.5 | 2024-03-13 15:58:37 | Deep Dive |