浏览 63+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-41044 | Apache ActiveMQ, Apache ActiveMQ Broker, Apache ActiveMQ All: Authenticated user can perform RCE via DestinationView MBean exposed by Jolokia | Apache Software Foundation | Apache ActiveMQ | - | - | 2026-04-24 10:16:54 | Deep Dive |
| CVE-2026-40466 | Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Possible bypass of CVE-2026-34197 via HTTP discovery second-stage URI | Apache Software Foundation | Apache ActiveMQ Broker | - | - | 2026-04-24 10:15:44 | Deep Dive |
| CVE-2026-39304 | Apache ActiveMQ Client, Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Incorrect handling of TLSv1.3 KeyUpdate can be exploited to cause DoS via OOM | Apache Software Foundation | Apache ActiveMQ Client | 高危 | - | 2026-04-10 10:54:04 | Deep Dive |
| CVE-2026-33227 | Apache ActiveMQ Client, Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ Web, Apache ActiveMQ: Improper Limitation of a Pathname to a Restricted Classpath Directory | Apache Software Foundation | Apache ActiveMQ Client | - | - | 2026-04-07 07:50:59 | Deep Dive |
| CVE-2026-34197 | Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeans | Apache Software Foundation | Apache ActiveMQ Broker | - | - | 2026-04-07 07:50:11 | Deep Dive |
| CVE-2026-0231 | Cortex XDR Broker VM: Sensitive Information Disclosure Vulnerability | Palo Alto Networks | Cortex XDR Broker VM | - | - | 2026-03-11 18:03:21 | Deep Dive |
| CVE-2026-0603 | Org.hibernate/hibernate-core: hibernate: information disclosure and data deletion via second-order sql injection | - | - | High | 8.3 | 2026-01-23 06:31:39 | Deep Dive |
| CVE-2025-58712 | Amq: privilege escalation via excessive /etc/passwd permissions | apache | activemq-artemis | Medium | 6.4 | 2025-10-22 18:19:07 | Deep Dive |
| CVE-2025-59449 | YoSmart YoLink MQTT broker 安全漏洞 | YoSmart | YoLink MQTT broker | Medium | 4.9 | 2025-10-06 00:00:00 | Deep Dive |
| CVE-2025-2184 | Cortex XDR Broker VM: Secrets Shared Across Multiple Broker VM Images | Palo Alto Networks | Cortex XDR Broker VM | - | - | 2025-08-13 17:05:31 | Deep Dive |
| CVE-2025-4228 | Cortex XDR Broker VM: Privilege Escalation (PE) Vulnerability | Palo Alto Networks | Cortex XDR Broker VM | - | - | 2025-06-12 23:41:37 | Deep Dive |
| CVE-2025-4057 | Activemq-artemis-operator: amq broker operator starting credentials reuse | - | - | Medium | 5.5 | 2025-05-26 08:53:04 | Deep Dive |
| CVE-2025-0134 | Cortex XDR Broker VM: Authenticated Code Injection Vulnerability in Broker VM | Palo Alto Networks | Cortex XDR Broker VM | - | - | 2025-05-14 18:07:55 | Deep Dive |
| CVE-2025-0132 | Cortex XDR Broker VM: Unauthenticated User Can Disable Internal Services | Palo Alto Networks | Cortex XDR Broker VM | - | - | 2025-05-14 18:07:15 | Deep Dive |
| CVE-2025-0119 | Cortex XDR Broker VM: Authenticated Command Injection Vulnerability in Broker VM | Palo Alto Networks | Cortex XDR Broker VM | - | - | 2025-04-11 17:37:54 | Deep Dive |
| CVE-2025-31556 | WordPress IMPress for IDX Broker plugin <= 3.2.3 - Cross Site Scripting (XSS) vulnerability | IDX Broker | IMPress for IDX Broker | Medium | 6.5 | 2025-03-31 12:55:17 | Deep Dive |
| CVE-2025-0113 | Cortex XDR Broker VM: Unauthorized Access to Broker VM Docker Containers | Palo Alto Networks | Cortex XDR Broker VM | 高危 | - | 2025-02-12 21:05:09 | Deep Dive |
| CVE-2024-53726 | WordPress RealtyCandy IDX Broker Extended plugin <= 1.5.1 - CSRF to Stored Cross Site Scripting (XSS) vulnerability | RealtyCandy.com | RealtyCandy IDX Broker Extended | High | 7.1 | 2024-12-02 13:48:41 | Deep Dive |
| CVE-2023-1932 | Hibernate-validator: rendering of invalid html with safehtml leads to html injection and xss | Red Hat | A-MQ Clients 2 | Medium | 6.1 | 2024-11-07 10:00:52 | Deep Dive |
| CVE-2024-44047 | WordPress IMPress for IDX Broker plugin <= 3.2.2 - Cross Site Scripting (XSS) vulnerability | IDX Broker | IMPress for IDX Broker | Medium | 6.5 | 2024-09-17 23:00:55 | Deep Dive |