Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18839

18839 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2024-49572 Socomec DIRIS Digiware M-70 安全漏洞 — DIRIS Digiware M-70CWE-306 7.2 High2025-12-01
CVE-2024-48882 Socomec DIRIS Digiware M-70 安全漏洞 — DIRIS Digiware M-70CWE-306 8.6 High2025-12-01
CVE-2025-20085 Socomec DIRIS Digiware M-70 安全漏洞 — DIRIS Digiware M-70CWE-306 7.2 High2025-12-01
CVE-2025-23417 Socomec DIRIS Digiware M-70 安全漏洞 — DIRIS Digiware M-70CWE-306 8.6 High2025-12-01
CVE-2025-26858 Socomec DIRIS Digiware M-70 安全漏洞 — DIRIS Digiware M-70CWE-20 8.6 High2025-12-01
CVE-2025-54848 Socomec DIRIS Digiware M-70 访问控制错误漏洞 — DIRIS Digiware M-70CWE-306 7.5 High2025-12-01
CVE-2025-54849 Socomec DIRIS Digiware M-70 访问控制错误漏洞 — DIRIS Digiware M-70CWE-306 7.5 High2025-12-01
CVE-2025-54850 Socomec DIRIS Digiware M-70 访问控制错误漏洞 — DIRIS Digiware M-70CWE-306 7.5 High2025-12-01
CVE-2025-54851 Socomec DIRIS Digiware M-70 访问控制错误漏洞 — DIRIS Digiware M-70CWE-306 7.5 High2025-12-01
CVE-2025-55221 Socomec DIRIS Digiware M-70 访问控制错误漏洞 — DIRIS Digiware M-70CWE-306 8.6 High2025-12-01
CVE-2025-55222 Socomec DIRIS Digiware M-70 访问控制错误漏洞 — DIRIS Digiware M-70CWE-306 8.6 High2025-12-01
CVE-2025-41700 CODESYS Development System - Deserialization of Untrusted Data — CODESYS Development SystemCWE-502 7.8 High2025-12-01
CVE-2025-41738 CODESYS Control - Invalid type usage in visualization — CODESYS Control RTE (SL)CWE-843 7.5 High2025-12-01
CVE-2025-41739 CODESYS Control - Linux/QNX SysSocket flaw — CODESYS PLCHandlerCWE-125 5.9 Medium2025-12-01
CVE-2025-51683 mJobtime 安全漏洞 — n/a 9.8AICriticalAI2025-12-01
CVE-2024-39148 Kerlink KerOS 安全漏洞 — n/a 9.8AICriticalAI2025-12-01
CVE-2025-13615 StreamTube Core <= 4.78 - Unauthenticated Arbitrary User Password Change — StreamTube CoreCWE-639 9.8 Critical2025-11-30
CVE-2025-65112 PubNet Critical Authentication Bypass Allows Unauthenticated Package Upload and Identity Spoofing — PubNetCWE-862 9.4 Critical2025-11-29
CVE-2025-65113 ClipBucket v5 Unauthenticated Object Flagging Vulnerability — clipbucket-v5CWE-770 6.5 Medium2025-11-29
CVE-2025-65892 krpano 安全漏洞 — n/a 6.1 -2025-11-29
CVE-2025-13737 Nextend Social Login and Register <= 3.1.21 - Cross-Site Request Forgery to Unlink User Social Login — Nextend Social Login and RegisterCWE-352 4.3 Medium2025-11-28
CVE-2025-12140 RCE in Wirtualna Uczelnia — Wirtualna UczelniaCWE-95 9.8 -2025-11-27
CVE-2025-13692 Unlimited Elements For Elementor and Unlimited Elements For Elementor (Premium) <= 2.0 - Unauthenticated Stored Cross-Site Scripting via SVG File Upload — Unlimited Elements for Elementor (Premium)CWE-79 7.2 High2025-11-27
CVE-2025-13381 AI ChatBot with ChatGPT and Content Generator by AYS <= 2.7.0 - Missing Authorization to Unauthenticated Media File Uploads — AI ChatBot with ChatGPT and Content Generator by AYSCWE-862 5.3 Medium2025-11-27
CVE-2025-12584 Quick View for WooCommerce <= 2.2.17 - Unauthenticated Private Product Disclosure — Quick View for WooCommerceCWE-200 5.3 Medium2025-11-27
CVE-2025-13378 AI ChatBot with ChatGPT and Content Generator by AYS <= 2.7.0 - Unauthenticated Server-Side Request Forgery via 'pinecone_url' Parameter — AI ChatBot with ChatGPT and Content Generator by AYSCWE-918 6.5 Medium2025-11-27
CVE-2025-13157 QODE Wishlist for WooCommerce <= 1.2.7 - Unauthenticated Insecure Direct Object Reference to Wishlist Update — QODE Wishlist for WooCommerceCWE-639 5.3 Medium2025-11-27
CVE-2025-13441 Hide Category by User Role for WooCommerce <= 2.3.1 - Missing Authorization to Unauthenticated Cache Flushing — Hide Category by User Role for WooCommerceCWE-862 5.3 Medium2025-11-27
CVE-2025-13143 Poll, Survey & Quiz Maker Plugin by Opinion Stage <= 19.12.0 - Cross-Site Request Forgery to Account Disconnection — Quiz, Poll & Survey Maker by Opinion StageCWE-352 4.3 Medium2025-11-27
CVE-2025-13525 WP Directory Kit <= 1.4.5 - Reflected Cross-Site Scripting via 'order_by' Parameter — WP Directory KitCWE-79 6.1 Medium2025-11-27

Vulnerabilities classified as access:pre-auth represent 18839 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.