access:pre-auth 类型相关 18839 条 CVE 漏洞,含 AI 中文分析、CVSS、参考链接与 POC。
| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2025-7634 | WordPress plugin WP Travel Engine – Tour Booking Plugin – Tour Operator Software 安全漏洞 — WP Travel Engine – Tour Booking Plugin – Tour Operator SoftwareCWE-98 | 9.8 | Critical | 2025-10-09 |
| CVE-2025-7526 | WordPress plugin WP Travel Engine 路径遍历漏洞 — WP Travel Engine – Tour Booking Plugin – Tour Operator SoftwareCWE-22 | 9.8 | Critical | 2025-10-09 |
| CVE-2025-10496 | WordPress plugin Cookie Notice & Consent 安全漏洞 — Cookie Notice & ConsentCWE-80 | 7.2 | High | 2025-10-09 |
| CVE-2025-11166 | WordPress plugin WP Go Maps 跨站请求伪造漏洞 — WP Go Maps (formerly WP Google Maps)CWE-352 | 5.4 | Medium | 2025-10-09 |
| CVE-2025-61788 | Opencast 跨站脚本漏洞 — opencastCWE-79 | 5.4AI | MediumAI | 2025-10-08 |
| CVE-2025-9868 | Sonatype Nexus Repository 安全漏洞 — Nexus RepositoryCWE-918 | 7.5AI | HighAI | 2025-10-08 |
| CVE-2025-10352 | Melis Platform 安全漏洞 — Melis PlatformCWE-862 | 9.8AI | CriticalAI | 2025-10-08 |
| CVE-2025-48464 | DuckDuckGo Browser 安全漏洞 — DuckDuckGo BrowserCWE-200 | 4.7 | Medium | 2025-10-08 |
| CVE-2025-11171 | WordPress plugin Chartify 访问控制错误漏洞 — Chartify – WordPress Chart PluginCWE-306 | 5.3 | Medium | 2025-10-08 |
| CVE-2025-11204 | WordPress plugin RegistrationMagic SQL注入漏洞 — RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User LoginCWE-89 | 7.2 | High | 2025-10-08 |
| CVE-2025-53967 | Framelink Figma MCP Server 安全漏洞 — Figma MCP ServerCWE-420 | 8.0 | High | 2025-10-08 |
| CVE-2025-43727 | Dell PowerProtect Data Domain 安全漏洞 — PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature ReleaseCWE-303 | 7.5 | High | 2025-10-07 |
| CVE-2025-43909 | Dell PowerProtect Data Domain 加密问题漏洞 — PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature ReleaseCWE-327 | 3.7 | Low | 2025-10-07 |
| CVE-2025-43913 | Dell PowerProtect Data Domain 加密问题漏洞 — PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature ReleaseCWE-327 | 5.3 | Medium | 2025-10-07 |
| CVE-2025-43912 | Dell PowerProtect Data Domain 安全漏洞 — PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature ReleaseCWE-122 | 5.3 | Medium | 2025-10-07 |
| CVE-2025-43891 | Dell PowerProtect Data Domain 加密问题漏洞 — PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature ReleaseCWE-327 | 5.3 | Medium | 2025-10-07 |
| CVE-2025-43889 | Dell PowerProtect Data Domain 路径遍历漏洞 — PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature ReleaseCWE-22 | 5.3 | Medium | 2025-10-07 |
| CVE-2025-3449 | B&R Automation Runtime 安全漏洞 — Automation RuntimeCWE-340 | 4.2 | Medium | 2025-10-07 |
| CVE-2025-3450 | B&R Automation Runtime 安全漏洞 — Automation RuntimeCWE-413 | 10.0 | Critical | 2025-10-07 |
| CVE-2025-10645 | WordPress plugin WP Reset 日志信息泄露漏洞 — WP ResetCWE-532 | 5.3 | Medium | 2025-10-07 |
| CVE-2025-10162 | WordPress plugin OrderConvo 安全漏洞 — Admin and Customer Messages After Order for WooCommerce: OrderConvo | 7.5AI | HighAI | 2025-10-07 |
| CVE-2025-57564 | CubeAPM 安全漏洞 — n/a | 6.5AI | MediumAI | 2025-10-07 |
| CVE-2025-36354 | IBM Security Verify Access和IBM Security Verify Access Docker 操作系统命令注入漏洞 — Security Verify Access ApplianceCWE-78 | 7.3 | High | 2025-10-06 |
| CVE-2025-61777 | Flag Forge 访问控制错误漏洞 — flagForgeCWE-200 | 9.4 | Critical | 2025-10-06 |
| CVE-2025-58579 | SICK AG Baggage Analytics 安全漏洞 — Baggage AnalyticsCWE-497 | 5.3 | Medium | 2025-10-06 |
| CVE-2025-9710 | WordPress plugin Responsive Lightbox & Gallery 安全漏洞 — Responsive Lightbox & Gallery | 6.1AI | MediumAI | 2025-10-06 |
| CVE-2025-11311 | Tipray Data Leakage Prevention System SQL注入漏洞 — Data Leakage Prevention System 天锐数据泄露防护系统CWE-89 | 7.3 | High | 2025-10-06 |
| CVE-2025-11284 | Zytec Central Authentication Service 安全漏洞 — Central Authentication ServiceCWE-259 | 7.3 | High | 2025-10-05 |
| CVE-2025-61882 | Oracle E-Business Suite 安全漏洞 — Oracle Concurrent Processing | 9.8 | Critical | 2025-10-05 |
| CVE-2025-9886 | WordPress plugin Trinity Audio 跨站请求伪造漏洞 — Trinity Audio – Text to Speech AI audio player to convert content into audioCWE-352 | 4.3 | Medium | 2025-10-04 |
access:pre-auth 是常见的弱点类别,本平台收录该类弱点关联的 18839 条 CVE 漏洞。