| 漏洞ID | 标题 | 厂商 | 产品 | 风险等级 | CVSS 评分 | 发布日期 | AI 分析 |
|---|---|---|---|---|---|---|---|
| CVE-2026-73560 | vLLM MiMoV2 跨站脚本与本地文件读取漏洞 | vllm-project | vllm | 中危 | 6.5 | 2026-08-17 20:17:26 | 深度分析 |
| CVE-2026-71486 | vLLM 缺少输出边界检查 | vllm-project | vllm | 中危 | 4.3 | 2026-08-17 20:13:06 | 深度分析 |
| CVE-2026-57233🧪 | Notepad++ WinGup 插件路径遍历漏洞 | notepad-plus-plus | notepad-plus-plus | 高危 | 8.1 | 2026-08-17 20:10:38 | 深度分析 |
| CVE-2026-52886 | Notepad++ session.xml备份文件路径检查绕过漏洞 | notepad-plus-plus | notepad-plus-plus | 中危 | 5.1 | 2026-08-17 20:09:32 | 深度分析 |
| CVE-2026-71858 | Notepad++ shortcuts.xml 宏HMAC绕过导致条件提升命令执行漏洞 | notepad-plus-plus | notepad-plus-plus | 中危 | 5.4 | 2026-08-17 20:08:21 | 深度分析 |
| CVE-2026-54758🧪 | Notepad++ expandNppEnvironmentStrs栈缓冲区溢出漏洞 | notepad-plus-plus | notepad-plus-plus | 高危 | 7.8 | 2026-08-17 20:05:52 | 深度分析 |
| CVE-2026-19650 | GitLab 跨站请求伪造漏洞 | GitLab | GitLab | 高危 | 7.1 | 2026-08-17 20:04:56 | 深度分析 |
| CVE-2026-19478 | GitLab 代码生成控制不当导致代码注入漏洞 | GitLab | GitLab | 超危 | 9.4 | 2026-08-17 20:04:46 | 深度分析 |
| CVE-2026-71553🧪 | ApostropheCMS 通过 PATCH 导致原型污染及持久化 DoS 漏洞 | apostrophecms | apostrophe | 高危 | 7.1 | 2026-08-17 20:03:38 | 深度分析 |
| CVE-2026-63667 | ApostropheCMS 导入导出附件路径遍历导致任意文件读取 | apostrophecms | apostrophe | 中危 | 6.5 | 2026-08-17 19:56:07 | 深度分析 |
| CVE-2026-63670 | ApostropheCMS 跨站脚本漏洞:通过`</textarea/>`绕过allowedTags | apostrophecms | apostrophe | 中危 | 6.1 | 2026-08-17 19:49:52 | 深度分析 |
| CVE-2026-75014🧪 | SourceCodester Pet Grooming Management Software get_barcode_data.php SQL注入漏洞 | SourceCodester | Pet Grooming Management Software | 高危 | 7.3 | 2026-08-17 19:45:09 | 深度分析 |
| CVE-2026-63669 | ApostropheCMS 页面移动权限绕过漏洞 | apostrophecms | apostrophe | 中危 | 6.5 | 2026-08-17 19:41:53 | 深度分析 |
| CVE-2026-74234 | Legora 2026-08-14 前版本 Mermaid XSS漏洞 | Legora | Legora | 高危 | 7.7 | 2026-08-17 19:38:06 | 深度分析 |
| CVE-2026-57485🧪 | Stirling-PDF 管道端点泄露内部服务账户 API 密钥 | Stirling-Tools | Stirling-PDF | 高危 | 8.5 | 2026-08-17 19:31:31 | 深度分析 |
| CVE-2026-75013 | TOTOLINK EX1200L cstecgi.cgi 空指针解引用漏洞 | TOTOLINK | EX1200L | 中危 | 6.5 | 2026-08-17 19:30:11 | 深度分析 |
| CVE-2026-71472 | Acm-search-v2-rhel9 PostgreSQL 脚本命令注入与 SQL 注入漏洞 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | 超危 | 9.1 | 2026-08-17 19:28:43 | 深度分析 |
| CVE-2026-70495 | Search-v2-operator 集群级权限提升漏洞 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | 高危 | 8.8 | 2026-08-17 19:28:38 | 深度分析 |
| CVE-2026-75012 | TOTOLINK EX1200L 远程代码执行漏洞 | TOTOLINK | EX1200L | 中危 | 6.5 | 2026-08-17 19:15:09 | 深度分析 |
| CVE-2026-17639 | HP Smart Tank多功能一体机潜在拒绝服务漏洞 | HP Inc | HP Smart Tank 5101 All-in-One Printer | 中危 | 6.9 | 2026-08-17 18:35:32 | 深度分析 |