Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

漏洞数据库 - AI 增强中文 CVE 平台 与情报

浏览 29+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。

Found 29 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-33896 Forge has a basicConstraints bypass in its certificate chain verification (RFC 5280 violation) digitalbazaarforge High 7.4 2026-03-27 20:50:03 Deep Dive
CVE-2026-33895 Forge has signature forgery in Ed25519 due to missing S > L check digitalbazaarforge High 7.5 2026-03-27 20:47:54 Deep Dive
CVE-2026-33894 Forge has signature forgery in RSA-PKCS due to ASN.1 extra field digitalbazaarforge High 7.5 2026-03-27 20:45:50 Deep Dive
CVE-2026-33891 Forge has Denial of Service via Infinite Loop in BigInteger.modInverse() with Zero Input digitalbazaarforge High 7.5 2026-03-27 20:43:38 Deep Dive
CVE-2025-66030 node-forge ASN.1 OID Integer Truncation digitalbazaarforge--2025-11-26 22:23:42 Deep Dive
CVE-2025-66031 node-forge ASN.1 Unbounded Recursion digitalbazaarforge--2025-11-26 22:23:26 Deep Dive
CVE-2025-12816 CVE-2025-12816 Digital Bazaarnode-forge--2025-11-25 19:15:50 Deep Dive
CVE-2025-58361 Promptcraft Forge Studio's incomplete URL check is vulnerable to XSS via SVG MarceloTessaropromptcraft-forge-studio Critical 9.3 2025-09-04 19:43:44 Deep Dive
CVE-2025-58353 Promptcraft Forge Studio: Complete Sanitizer Bypass Enables XSS via Overlapping Patterns MarceloTessaropromptcraft-forge-studio High 8.2 2025-09-04 19:39:24 Deep Dive
CVE-2025-49824 conda-smithy Insecure Encryption Vulnerable to Oracle Padding Attack conda-forgeconda-smithy--2025-06-17 20:40:02 Deep Dive
CVE-2025-49843 conda-smithy Has Incorrect Default File Permissions conda-forgeconda-smithy--2025-06-17 20:39:53 Deep Dive
CVE-2025-49842 conda-forge-webservices Privilege Escalation Risk via Default Docker Root User conda-forgeconda-forge-webservices--2025-06-17 14:02:37 Deep Dive
CVE-2025-49598 conda-forge-ci-setup Allows Arbitrary Code Execution via Insecure Version Parsing conda-forgeconda-forge-ci-setup-feedstock--2025-06-13 20:22:38 Deep Dive
CVE-2025-35471 conda-forge openssl-feedstock writable OPENSSLDIR conda-forgeopenssl-feedstock High 7.3 2025-05-13 01:13:15 Deep Dive
CVE-2025-32784 conda-forge-webservices has an Unauthorized Artifact Modification Race Condition conda-forgeconda-forge-webservices--2025-04-15 21:56:28 Deep Dive
CVE-2025-31484 conda-forge infrastructure uses a bad token for Azure's cf-staging access conda-forgeinfrastructure--2025-04-02 21:38:03 Deep Dive
CVE-2025-27510 RCE in the package conda-forge-metadata conda-forgeconda-forge-metadata 超危 -2025-03-04 21:48:13 Deep Dive
CVE-2025-22703 WordPress Forge – Front-End Page Builder plugin <= 1.4.6 - CSRF to Stored Cross Site Scripting (XSS) vulnerability manuelvicedoForge – Front-End Page Builder High 7.1 2025-02-03 14:23:53 Deep Dive
CVE-2025-23027 BASEHUB_TOKEN commited in next-forge haydenbleaselnext-forge 中危 -2025-01-13 19:41:44 Deep Dive
CVE-2024-9160 Security Misconfiguration in Forge module PEADM PuppetPEADM Forge Module--2024-09-27 18:58:43 Deep Dive