浏览 37+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-62066 | WordPress Revolution theme < 2.5.8 - Local File Inclusion vulnerability | fuelthemes | Revolution | High | 7.5 | 2025-11-06 15:55:54 | Deep Dive |
| CVE-2025-10249 | Slider Revolution <= 6.7.37 - Missing Authorization to Authenticated (Contributor+) Arbitrary File Read | Revolution Slider | Slider Revolution | Medium | 6.5 | 2025-10-09 11:20:56 | Deep Dive |
| CVE-2025-9217 | Slider Revolution <= 6.7.36 - Authenticated (Contributor+) Arbitrary File Read via 'used_svg' and 'used_images' | Revolution Slider | Slider Revolution | Medium | 6.5 | 2025-08-29 10:54:03 | Deep Dive |
| CVE-2025-53212 | WordPress Revolution Video Player With Bottom Playlist <= 2.9.2 - Cross Site Scripting (XSS) Vulnerability | LambertGroup | Revolution Video Player With Bottom Playlist | High | 7.1 | 2025-08-20 08:03:18 | Deep Dive |
| CVE-2025-31058 | WordPress Revolution Video Player plugin <= 2.9.2 - Reflected Cross Site Scripting (XSS) vulnerability | LambertGroup | Revolution Video Player | High | 7.1 | 2025-06-09 15:56:44 | Deep Dive |
| CVE-2025-41646 | RevPi Webstatus application is vulnerable to an authentication bypass | Kunbus | Revolution Pi webstatus | Critical | 9.8 | 2025-06-06 14:42:31 | Deep Dive |
| CVE-2025-36558 | KUNBUS Revolution Pi Improper Neutralization of Server-Side Includes (SSI) Within a Web Page | KUNBUS GmbH | Revolution Pi PiCtory | Medium | 6.1 | 2025-05-01 18:44:22 | Deep Dive |
| CVE-2025-35996 | KUNBUS Revolution Pi Improper Neutralization of Server-Side Includes (SSI) Within a Web Page | KUNBUS GmbH | Revolution Pi PiCtory | Critical | 9.0 | 2025-05-01 18:42:50 | Deep Dive |
| CVE-2025-32011 | KUNBUS Revolution Pi Authentication Bypass by Primary Weakness | KUNBUS GmbH | Revolution Pi PiCtory | Critical | 9.8 | 2025-05-01 18:40:28 | Deep Dive |
| CVE-2025-24522 | KUNBUS Revolution Pi Authentication Bypass by Primary Weakness | KUNBUS GmbH | Revolution Pi OS Bookworm | Critical | 10.0 | 2025-05-01 18:37:37 | Deep Dive |
| CVE-2024-8685 | Path-Traversal vulnerability in Revolution Pi | KUNBUS GmbH | Revolution Pi | Medium | 4.3 | 2025-02-10 12:46:28 | Deep Dive |
| CVE-2024-8684 | OS Command Injection vulnerability in Revolution Pi | KUNBUS GmbH | Revolution Pi | High | 8.3 | 2025-02-10 12:45:35 | Deep Dive |
| CVE-2024-12043 | Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) <= 3.16.5 - Authenticated (Contributor+) Stored Cross-Site Scripting | bdthemes | Prime Slider – Addons for Elementor | Medium | 6.4 | 2025-01-23 11:13:27 | Deep Dive |
| CVE-2024-8442 | Prime Slider - Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider <= 3.15.18 - Authenticated (Contributor+) Stored Cross-Site Scripting via Blog Widget | bdthemes | Prime Slider – Addons for Elementor | Medium | 6.4 | 2024-11-07 12:30:53 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2024-8107 | Slider Revolution <= 6.7.18 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload | Revolution Slider | Slider Revolution | Medium | 6.4 | 2024-10-01 06:39:52 | Deep Dive |
| CVE-2024-37449 | WordPress Slider Revolution plugin <= 6.7.13 - Cross Site Scripting (XSS) vulnerability | ThemePunch OHG | Slider Revolution | Medium | 5.9 | 2024-07-21 22:14:08 | Deep Dive |
| CVE-2024-34444 | WordPress Slider Revolution plugin < 6.7.0 - Unauthenticated Broken Access Control vulnerability | ThemePunch OHG | Slider Revolution | High | 7.1 | 2024-06-19 14:57:09 | Deep Dive |
| CVE-2024-34443 | WordPress Slider Revolution plugin < 6.7.11 - Cross Site Scripting (XSS) vulnerability | ThemePunch OHG | Slider Revolution | Medium | 5.9 | 2024-06-19 14:53:55 | Deep Dive |
| CVE-2024-5640 | Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) <= 3.14.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via Pacific Widget | bdthemes | Prime Slider – Addons for Elementor | Medium | 6.4 | 2024-06-07 04:33:25 | Deep Dive |