浏览 21+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-32522 | WordPress WooCommerce Support Ticket System plugin < 18.5 - Arbitrary File Deletion vulnerability | vanquish | WooCommerce Support Ticket System | 中危 | - | 2026-03-25 16:15:08 | Deep Dive |
| CVE-2026-27374 | WordPress WooCommerce Order Details plugin <= 3.1 - Broken Access Control vulnerability | vanquish | WooCommerce Order Details | 中危 | - | 2026-03-05 05:53:56 | Deep Dive |
| CVE-2025-69381 | WordPress WooCommerce Bulk Product Editor plugin <= 3.0 - Broken Access Control vulnerability | vanquish | WooCommerce Bulk Product Editor | - | - | 2026-02-20 15:46:54 | Deep Dive |
| CVE-2025-69380 | WordPress Upload Files Anywhere plugin <= 2.8 - Arbitrary File Download vulnerability | vanquish | Upload Files Anywhere | - | - | 2026-02-20 15:46:53 | Deep Dive |
| CVE-2025-69379 | WordPress Upload Files Anywhere plugin <= 2.8 - Arbitrary File Deletion vulnerability | vanquish | Upload Files Anywhere | - | - | 2026-02-20 15:46:53 | Deep Dive |
| CVE-2025-69377 | WordPress User Extra Fields plugin <= 17.0 - Arbitrary File Deletion vulnerability | vanquish | User Extra Fields | - | - | 2026-02-20 15:46:53 | Deep Dive |
| CVE-2025-69376 | WordPress User Extra Fields plugin <= 17.0 - Arbitrary File Deletion vulnerability | vanquish | User Extra Fields | - | - | 2026-02-20 15:46:52 | Deep Dive |
| CVE-2025-67991 | WordPress User Extra Fields plugin <= 16.8 - Cross Site Scripting (XSS) vulnerability | vanquish | User Extra Fields | - | - | 2026-02-20 15:46:32 | Deep Dive |
| CVE-2025-22713 | WordPress WooCommerce Orders & Customers Exporter plugin <= 5.4 - SQL Injection vulnerability | vanquish | WooCommerce Orders & Customers Exporter | High | 8.5 | 2026-01-08 09:17:39 | Deep Dive |
| CVE-2025-67579 | WordPress User Extra Fields plugin <= 16.8 - Broken Access Control vulnerability | vanquish | User Extra Fields | - | - | 2025-12-09 14:14:15 | Deep Dive |
| CVE-2025-7846 | WordPress User Extra Fields <= 16.7 - Authenticated (Subscriber+) Arbitrary File Deletion via save_fields Function | vanquish | WordPress User Extra Fields | High | 8.8 | 2025-10-31 06:42:56 | Deep Dive |
| CVE-2025-53424 | WordPress WooCommerce Orders & Customers Exporter plugin <= 5.4 - Broken Access Control vulnerability | vanquish | WooCommerce Orders & Customers Exporter | Medium | 6.5 | 2025-10-22 14:32:33 | Deep Dive |
| CVE-2025-48331 | WordPress WooCommerce Orders & Customers Exporter <= 5.0 - Sensitive Data Exposure Vulnerability | vanquish | WooCommerce Orders & Customers Exporter | High | 7.5 | 2025-05-30 14:01:39 | Deep Dive |
| CVE-2024-13775 | WooCommerce Support Ticket System <= 17.8 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Deletion and Information Exposure | vanquish | WooCommerce Support Ticket System | Medium | 5.4 | 2025-02-01 12:21:31 | Deep Dive |
| CVE-2024-13343 | WooCommerce Customers Manager <= 31.3 - Missing Authorization to Authenticated (Subscriber+) Privilege Escalation | Vanquish | WooCommerce Customers Manager | High | 8.8 | 2025-02-01 03:21:11 | Deep Dive |
| CVE-2024-11150 | WordPress User Extra Fields <= 16.6 - Unauthenticated Arbitrary File Deletion | vanquish | WordPress User Extra Fields | Critical | 9.8 | 2024-11-13 04:29:07 | Deep Dive |
| CVE-2024-10800 | WordPress User Extra Fields <= 16.6 - Missing Authorization to Authenticated (Subscriber+) Privilege Escalation | vanquish | WordPress User Extra Fields | High | 8.8 | 2024-11-13 04:29:06 | Deep Dive |
| CVE-2024-10801 | WordPress User Extra Fields <= 16.5 - Unauthenticated Arbitrary File Upload | vanquish | WordPress User Extra Fields | Critical | 9.8 | 2024-11-09 07:35:06 | Deep Dive |
| CVE-2024-10627 | WooCommerce Support Ticket System <= 17.7 - Unauthenticated Arbitrary File Upload | vanquish | WooCommerce Support Ticket System | Critical | 9.8 | 2024-11-09 03:30:47 | Deep Dive |
| CVE-2024-10625 | WooCommerce Support Ticket System <= 17.7 - Unauthenticated Arbitrary File Deletion | vanquish | WooCommerce Support Ticket System | Critical | 9.8 | 2024-11-09 03:18:15 | Deep Dive |