浏览 21+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-39918 | Vvveb < 1.0.8.1 Code Injection via Installation Endpoint | givanz | Vvveb | Critical | 9.8 | 2026-04-20 14:46:34 | Deep Dive |
| CVE-2026-34428 | Vvveb < 1.0.8.1 SSRF via oEmbedProxy | givanz | Vvveb | High | 7.7 | 2026-04-20 13:55:37 | Deep Dive |
| CVE-2026-34427 | Vvveb < 1.0.8.1 Privilege Escalation via admin/user/save | givanz | Vvveb | High | 8.8 | 2026-04-20 13:55:15 | Deep Dive |
| CVE-2026-34429 | Vvveb < 1.0.8.1 Stored XSS via Media Upload and Rename | givanz | Vvveb | Medium | 5.4 | 2026-04-20 13:54:37 | Deep Dive |
| CVE-2026-5615 | givanz Vvvebjs File Upload Endpoint upload.php cross site scripting | givanz | Vvvebjs | Medium | 4.3 | 2026-04-06 03:00:54 | Deep Dive |
| CVE-2025-12203 | givanz Vvveb Code Editor functions.php sanitizeFileName path traversal | givanz | Vvveb | Medium | 6.3 | 2025-10-27 02:02:06 | Deep Dive |
| CVE-2025-11944 | givanz Vvveb Raw SQL import.php import sql injection | givanz | Vvveb | Medium | 4.7 | 2025-10-19 20:02:07 | Deep Dive |
| CVE-2025-11029 | givanz Vvveb cross-site request forgery | givanz | Vvveb | Medium | 4.3 | 2025-09-26 16:32:06 | Deep Dive |
| CVE-2025-11028 | givanz Vvveb Image information disclosure | givanz | Vvveb | Medium | 5.3 | 2025-09-26 16:02:08 | Deep Dive |
| CVE-2025-11027 | givanz Vvveb SVG File cross site scripting | givanz | Vvveb | Low | 2.4 | 2025-09-26 16:02:06 | Deep Dive |
| CVE-2025-11026 | givanz Vvveb Configuration File information disclosure | givanz | Vvveb | Low | 3.5 | 2025-09-26 15:02:06 | Deep Dive |
| CVE-2025-9728 | givanz Vvveb login.tpl cross site scripting | givanz | Vvveb | Medium | 4.3 | 2025-08-31 12:02:07 | Deep Dive |
| CVE-2025-9397 | givanz Vvveb media.php unrestricted upload | givanz | Vvveb | Medium | 6.3 | 2025-08-24 23:02:06 | Deep Dive |
| CVE-2025-8976 | givanz Vvveb Endpoint post cross site scripting | givanz | Vvveb | Low | 3.5 | 2025-08-14 19:02:07 | Deep Dive |
| CVE-2025-8975 | givanz Vvveb edit.tpl cross site scripting | givanz | Vvveb | Low | 3.5 | 2025-08-14 18:32:07 | Deep Dive |
| CVE-2025-8522 | givanz Vvvebjs node.js save.php path traversal | givanz | Vvvebjs | Medium | 5.0 | 2025-08-04 19:02:06 | Deep Dive |
| CVE-2025-8521 | givanz Vvveb Add Type post-types cross site scripting | givanz | Vvveb | Low | 2.4 | 2025-08-04 18:32:06 | Deep Dive |
| CVE-2025-8520 | givanz Vvveb Drag-and-Drop Editor editor server-side request forgery | givanz | Vvveb | Medium | 4.7 | 2025-08-04 18:02:06 | Deep Dive |
| CVE-2025-8519 | givanz Vvveb Drag-and-Drop Editor editor information disclosure | givanz | Vvveb | Low | 2.7 | 2025-08-04 17:32:07 | Deep Dive |
| CVE-2025-8518 | givanz Vvveb Code Editor code.php save code injection | givanz | Vvveb | Medium | 4.7 | 2025-08-04 17:02:07 | Deep Dive |