目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

安全情报专区 959+

精选漏洞公告、利用分析、安全博客、GHSA Advisory 等情报来源,已自动清洗 + 中英双语呈现,持续更新。

218
已接入情报源
97
当前稳定在线
623
24 小时新增
959+
AI 处理情报
持续监听、清洗、翻译并进行 AI 分析 监听情报
示例:RCE · SSRF · GHSA · 反序列化
筛选
清除筛选
Medium
WordPress Calendar插件存储型XSS漏洞(CVE-2026-14827)
CVE-2026-14827 · wpscan.com · 2026-07-27
Calendar < 1.3.18
Read more
Low
WordPress Download Manager 可重用密钥导致未授权文件下载漏洞
CVE-2026-14235 · wpscan.com · 2026-07-27
WordPress Download Manager < 3.3.62
Read more
Medium
Sina Extension for Elementor 未认证反射型XSS漏洞(CVE-2026-14190)
CVE-2026-14190 · wpscan.com · 2026-07-27
Sina Extension for Elementor < 3.10.2
Read more
Critical
WP FacturaONE < 5.37 未授权RCE漏洞通告
CVE-2026-14289 · wpscan.com · 2026-07-27
wp-facturaone < 5.37
Read more
Medium
WordPress Contact Form 7 PayPal & Stripe Add-on 未验证重定向漏洞
CVE-2026-14236 · wpscan.com · 2026-07-27
Contact Form 7 – PayPal & Stripe Add-on < 2.5
Read more
Medium
WordPress Quiz And Survey Master 未授权用户枚举与密码预言机漏洞
CVE-2026-14820 · wpscan.com · 2026-07-27
quiz-master-next < 11.1.3
Read more
Medium
Smart Manager < 8.92.0 贡献者级存储型XSS漏洞
CVE-2026-14203 · wpscan.com · 2026-07-27
Smart Manager < 8.92.0 · smart-manager-for-wp-e-commerce < 8.92.0
Read more
Medium
WP User Frontend 4.3.8 前未授权删除附件漏洞 (CVE-2026-14568)
CVE-2026-14568 · wpscan.com · 2026-07-27
wp-user-frontend < 4.3.8
Read more
Medium
Advanced Ads WordPress插件Contributor+权限XSS漏洞通报
CVE-2026-10082 · wpscan.com · 2026-07-27
Advanced Ads < 2.0.23
Read more
High
WordPress Clover Payment Gateway未授权支付绕过漏洞(CVE-2026-12493)
CVE-2026-12493 · wpscan.com · 2026-07-27
Clover Payment Gateway by Zaytech for WooCommerce < 1.3.6
Read more
Critical
MemberGlut WordPress插件未授权权限提升(CVE-2026-12394)
CVE-2026-12394 · wpscan.com · 2026-07-27
MemberGlut < 1.1.5
Read more
High
MainWP Child 插件未认证管理员身份验证绕过 (CVE-2026-12255)
CVE-2026-12255 · wpscan.com · 2026-07-27
MainWP Child < 6.1.2
Read more
High
Document Gallery <5.1.1 未授权反射型XSS漏洞(CVE-2026-12982)通告
CVE-2026-12982 · wpscan.com · 2026-07-27
Document Gallery < 5.1.1
Read more
Medium
The Events Calendar 未授权导入状态操纵漏洞
CVE-2026-13390 · wpscan.com · 2026-07-27
the-events-calendar < 6.16.5.1
Read more
High
WooCommerce Custom Fields插件未认证权限提升漏洞(CVE-2026-13152)
CVE-2026-13152 · wpscan.com · 2026-07-27
Custom Fields Account Registration For WooCommerce < 1.4
Read more
Low
WordPress Masteriyo LMS插件未认证会话终止漏洞分析
CVE-2026-13332 · wpscan.com · 2026-07-27
Masteriyo LMS < 2.3.1
Read more
Critical
WordPress Realtyna/WPL插件未认证任意文件上传导致RCE (CVE-2026-13714)
CVE-2026-13714 · wpscan.com · 2026-07-27
real-estate-listing-realtyna-wpl < 5.3.0
Read more
High
Multiple Page Generator插件CVE-2026-13726反射型XSS漏洞公告
CVE-2026-13726 · wpscan.com · 2026-07-27
Multiple Page Generator Plugin – MPG < 4.1.8
Read more
High
WordPress插件Simply Schedule Appointments未授权存储型XSS漏洞分析
CVE-2026-13400 · wpscan.com · 2026-07-27
Simply Schedule Appointments < 1.6.12.4
Read more
Critical
WordPress QRcode Login for WeChat 插件未授权账户接管漏洞 (CVE-2026-13597)
CVE-2026-13597 · wpscan.com · 2026-07-27
QRcode Login for WeChat <= 1.3
Read more

每篇文章经过自动 HTML→Markdown 清洗 + LLM 去噪 + 中英双语翻译。原始链接保留在文章末尾。

想看哪个安全博客 / 公告源?邮件告诉我们,每周新接 1-2 个。