浏览 30+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-28098 | WordPress Save Life theme <= 1.2.13 - Local File Inclusion vulnerability | ThemeREX | Save Life | 中危 | - | 2026-03-05 05:54:25 | Deep Dive |
| CVE-2026-0862 | Save as PDF Plugin by PDFCrowd <= 4.5.5 - Reflected Cross-Site Scripting via options | pdfcrowd | Save as PDF Plugin by PDFCrowd | Medium | 6.1 | 2026-01-24 15:34:07 | Deep Dive |
| CVE-2025-8397 | Save as PDF Button <= 1.9.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via restpackpdfbutton Shortcode | restpack | Save as PDF Button | Medium | 6.4 | 2025-11-13 08:27:47 | Deep Dive |
| CVE-2025-12087 | Wishlist and Save for later for Woocommerce <= 1.1.22 - Insecure Direct Object Reference to Authenticated (Subscriber+) Wishlist Item Deletion | acowebs | Wishlist and Save for later for Woocommerce | Medium | 4.3 | 2025-11-12 04:29:09 | Deep Dive |
| CVE-2025-59552 | WordPress Save as PDF Plugin <= 4.5.2 - Cross Site Scripting (XSS) Vulnerability | Pdfcrowd Dev Team | Save as PDF | Medium | 6.5 | 2025-09-22 18:26:06 | Deep Dive |
| CVE-2025-7843 | Auto Save Remote Images (Drafts) <= 1.0.9 - Authenticated (Contributor+) Server-Side Request Forgery | fernandiez | Auto Save Remote Images (Drafts) | Medium | 6.4 | 2025-09-10 06:38:49 | Deep Dive |
| CVE-2024-3062 | Save as PDF by Pdfcrowd < 3.2.2 - Admin+ Stored XSS | Unknown | Save as Image Plugin by Pdfcrowd | - | - | 2025-05-15 20:09:45 | Deep Dive |
| CVE-2024-13718 | Flexible Wishlist for WooCommerce – Ecommerce Wishlist & Save for later <= 1.2.26 - Cross-Site Request Forgery to Wishlist Creation/Modification | wpdesk | Flexible Wishlist for WooCommerce – Ecommerce Wishlist & Save for later | Medium | 4.3 | 2025-02-18 08:21:43 | Deep Dive |
| CVE-2024-13841 | Builder Shortcode Extras – WordPress Shortcodes Collection to Save You Time <= 1.0.0 - Authenticated (Contributor+) Post Disclosure | daveshine | Builder Shortcode Extras – WordPress Shortcodes Collection to Save You Time | Medium | 4.3 | 2025-02-07 06:59:58 | Deep Dive |
| CVE-2024-13696 | Flexible Wishlist for WooCommerce <= 1.2.25 - Unauthenticated Stored Cross-Site Scripting via wishlist_name Parameter | wpdesk | Flexible Wishlist for WooCommerce – Ecommerce Wishlist & Save for later | High | 7.2 | 2025-01-29 07:21:27 | Deep Dive |
| CVE-2025-24671 | WordPress Save as PDF Plugin by Pdfcrowd Plugin <= 4.4.0 - PHP Object Injection vulnerability | Pdfcrowd Dev Team | Save as PDF | Critical | 9.8 | 2025-01-27 14:22:17 | Deep Dive |
| CVE-2025-23960 | WordPress Save & Import Image from URL Plugin <= 0.7 - Reflected Cross Site Scripting (XSS) vulnerability | basteln3rk | Save & Import Image from URL | High | 7.1 | 2025-01-23 15:29:43 | Deep Dive |
| CVE-2024-10891 | Save as PDF Plugin by Pdfcrowd <= 4.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting | pdfcrowd | Save as PDF Plugin by PDFCrowd | Medium | 6.4 | 2024-11-20 09:31:54 | Deep Dive |
| CVE-2024-49689 | WordPress HD Quiz – Save Results Light plugin <= 0.5 - Broken Access Control vulnerability | Harmonic Design | HD Quiz – Save Results Light | Medium | 5.4 | 2024-11-19 16:30:40 | Deep Dive |
| CVE-2024-47634 | WordPress CartBounty plugin <= 8.2 - Cross Site Request Forgery (CSRF) vulnerability | Streamline | CartBounty – Save and recover abandoned carts for WooCommerce | Medium | 5.4 | 2024-10-20 10:29:42 | Deep Dive |
| CVE-2024-37549 | WordPress Save as PDF plugin by Pdfcrowd plugin <= 4.0.0 - Cross Site Scripting (XSS) vulnerability | Pdfcrowd | Save as PDF plugin by Pdfcrowd | Medium | 5.9 | 2024-07-21 07:00:24 | Deep Dive |
| CVE-2023-47845 | WordPress Grab & Save plugin <= 1.0.4 - Cross-Site Request Forgery (CSRF) vulnerability | Lim Kai Yang | Grab & Save | Medium | 4.3 | 2024-06-12 09:25:13 | Deep Dive |
| CVE-2024-35649 | WordPress Save as PDF Plugin by Pdfcrowd plugin <= 3.2.3 - Cross Site Scripting (XSS) vulnerability | Pdfcrowd | Save as PDF plugin by Pdfcrowd | Medium | 6.5 | 2024-06-04 14:17:07 | Deep Dive |
| CVE-2024-1324 | QQWorld Auto Save Images <= 1.9.8 - Missing Authorization to Arbitrary Post Content Retrieval | qqworld | QQWorld Auto Save Images | Medium | 5.3 | 2024-06-01 06:51:53 | Deep Dive |
| CVE-2023-5971 | Save as PDF < 3.2.0 - Admin+ Stored XSS | Unknown | Save as PDF Plugin by Pdfcrowd | 中危 | - | 2024-05-09 06:00:02 | Deep Dive |