浏览 37+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2019-25591 | DNSS Domain Name Search Software 2.1.8 Denial of Service | nsauditor | DNSS Domain Name Search Software | Medium | 6.2 | 2026-03-22 13:38:30 | Deep Dive |
| CVE-2026-1503 | login_register <= 1.2.0 - Cross-Site Request Forgery to Stored Cross-Site Scripting | frankkoenen | Plugin Name: login_register | Medium | 4.3 | 2026-03-21 03:26:55 | Deep Dive |
| CVE-2026-3178 | Name Directory <= 1.32.1 - Unauthenticated Stored Cross-Site Scripting via 'name_directory_name' | jeroenpeters1986 | Name Directory | High | 7.2 | 2026-03-11 11:09:11 | Deep Dive |
| CVE-2020-37197 | Dnss Domain Name Search Software - 'Name' Denial of Service | Nsasoft | Nsauditor Dnss Domain Name Search Software | High | 7.5 | 2026-02-11 20:37:18 | Deep Dive |
| CVE-2020-37196 | Dnss Domain Name Search Software - 'Key' Denial of Service | Nsasoft | Nsauditor Dnss Domain Name Search Software | High | 7.5 | 2026-02-11 20:37:17 | Deep Dive |
| CVE-2026-1893 | Orbisius Random Name Generator <= 1.0.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'btn_label' Shortcode Attribute | lordspace | Orbisius Random Name Generator | Medium | 6.4 | 2026-02-11 04:36:06 | Deep Dive |
| CVE-2026-1866 | Name Directory <= 1.32.0 - Unauthenticated Stored Cross-Site Scripting via Double HTML-Entity Encoding in Submission Form | jeroenpeters1986 | Name Directory | High | 7.2 | 2026-02-10 09:26:05 | Deep Dive |
| CVE-2025-15283 | Name Directory <= 1.30.3 - Unauthenticated Stored Cross-Site Scripting via Multiple Parameters | jeroenpeters1986 | Name Directory | High | 7.2 | 2026-01-14 05:28:07 | Deep Dive |
| CVE-2025-12115 | WPC Name Your Price for WooCommerce <= 2.1.9 - Unauthenticated Price Alteration | wpclever | WPC Name Your Price for WooCommerce | High | 7.5 | 2025-10-31 09:27:22 | Deep Dive |
| CVE-2025-11810 | Print Button Shortcode <= 1.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | chrishurst | Name: Print Button Shortcode | Medium | 6.4 | 2025-10-22 08:27:07 | Deep Dive |
| CVE-2025-59145 | color-name@2.0.1 contains malware after npm account takeover | colorjs | color-name | - | - | 2025-09-15 20:32:44 | Deep Dive |
| CVE-2025-24764 | WordPress (Simply) Guest Author Name plugin <= 4.36 - Cross Site Scripting (XSS) Vulnerability | A. Jones | (Simply) Guest Author Name | Medium | 6.5 | 2025-07-04 08:42:07 | Deep Dive |
| CVE-2025-39454 | WordPress Name Directory plugin <= 1.30.0 - Broken Access Control vulnerability | Jeroen Peters | Name Directory | Medium | 4.3 | 2025-05-19 17:31:37 | Deep Dive |
| CVE-2025-30607 | WordPress Quick Localization plugin <= 0.1.0 - Reflected Cross Site Scripting (XSS) vulnerability | Name.ly | Quick Localization | High | 7.1 | 2025-04-01 05:31:35 | Deep Dive |
| CVE-2025-28927 | WordPress Display Template Name plugin <= 1.7.1 - Cross Site Request Forgery (CSRF) vulnerability | A. Chappard | Display Template Name | Medium | 4.3 | 2025-03-11 21:01:07 | Deep Dive |
| CVE-2024-11202 | Multiple Plugins <= (Various Versions) - Reflected Cross-Site Scripting via cminds_free_guide Shortcode | creativemindssolutions | CM Header and Footer – Add custom scripts and styles to your header and footer with ease | Medium | 6.1 | 2024-11-26 07:31:32 | Deep Dive |
| CVE-2024-51911 | WordPress Featured product by category name plugin <= 1.1 - Cross Site Scripting (XSS) vulnerability | Ketan Patel | Featured product by category name | Medium | 6.5 | 2024-11-19 16:31:02 | Deep Dive |
| CVE-2024-47136 | JTEKT Kostac PLC Programming Software 安全漏洞 | JTEKT ELECTRONICS CORPORATION | Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) | High | 7.8 | 2024-10-03 02:54:16 | Deep Dive |
| CVE-2024-47135 | JTEKT Kostac PLC Programming Software 安全漏洞 | JTEKT ELECTRONICS CORPORATION | Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) | High | 7.8 | 2024-10-03 02:53:46 | Deep Dive |
| CVE-2024-47134 | JTEKT Kostac PLC Programming Software 安全漏洞 | JTEKT ELECTRONICS CORPORATION | Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) | High | 7.8 | 2024-10-03 02:53:20 | Deep Dive |