| 
                        
                            AVD-2025-59287
                         | 
                    Windows 服务器更新服务 (WSUS) 远程代码执行漏洞(CVE-2025-59287) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-10-14
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-52472
                         | 
                    xwiki orderField HQL注入漏洞(CVE-2025-52472) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-10-06
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-49844
                         | 
                    Redis LUA UAF 远程代码执行漏洞(CVE-2025-49844) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-10-04
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-61666
                         | 
                    Traccar 任意文件读取漏洞(CVE-2025-61666) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-10-03
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-1817596
                         | 
                    Flowise get-upload-file 任意文件读取漏洞 | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-09-14
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-58434
                         | 
                    Flowise reset-password 任意用户密码重置漏洞(CVE-2025-58434) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-09-13
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-59037
                         | 
                    DuckDB NPM 包供应链投毒事件(CVE-2025-59037) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-09-10
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-25231
                         | 
                    Omnissa Workspace ONE UEM 敏感信息泄漏漏洞(CVE-2025-25231) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-08-12
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-23319
                         | 
                    Triton Inference Server 越界内存写入致代码执行漏洞(CVE-2025-23319) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-08-05
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-54424
                         | 
                    1Panel 证书验证绕过导致任意命令执行漏洞(CVE-2025-54424) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-08-02
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-8266
                         | 
                    ChanCMS getArticle 代码注入漏洞(CVE-2025-8266) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-07-28
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-53770
                         | 
                    Microsoft SharePoint Server 远程代码执行漏洞(CVE-2025-53770) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-07-19
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-23266
                         | 
                    NVIDIA Container Toolkit 容器逃逸漏洞(CVE-2025-23266) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-07-18
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-53689
                         | 
                    Apache Jackrabbit XXE漏洞(CVE-2025-53689) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-07-14
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-25257
                         | 
                    Fortinet FortiWeb Fabric Connector SQL注入漏洞(CVE-2025-25257) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-07-14
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-32023
                         | 
                    Redis hyperloglog 越界写入致远程代码执行漏洞(CVE-2025-32023) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-07-08
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-32462
                         | 
                    sudo < 1.9.17p1 host 选项本地提权漏洞(CVE-2025-32462) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-07-01
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-32463
                         | 
                    sudo < 1.9.17p1 chroot 本地提权漏洞(CVE-2025-32463) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-07-01
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-49493
                         | 
                    Akamai CloudTest soap XXE漏洞(CVE-2025-49493) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-07-01
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-53002
                         | 
                    Llama-Factory vhead_file 代码执行漏洞(CVE-2025-53002) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-26
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2024-56731
                         | 
                    Gogs 符号连接致远程命令注入漏洞(CVE-2024-56731) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-24
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-49132
                         | 
                    Pterodactyl locale.json 代码执行漏洞(CVE-2025-49132) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-21
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-6019
                         | 
                    libblockdev 权限提升漏洞(CVE-2025-6019) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-19
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-6018
                         | 
                    SUSE 15 PAM 本地提权漏洞(CVE-2025-6018) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-19
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-49596
                         | 
                    MCP Inspector 未授权访问致代码执行漏洞(CVE-2025-49596) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-14
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-30220
                         | 
                    Geoserver GeoTools XXE漏洞(CVE-2025-30220) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-11
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2024-29198
                         | 
                    GeoServer TestWFSpost SSRF 漏洞(CVE-2024-29198) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-10
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-27817
                         | 
                    Apache Kafka Client 任意文件读取与SSRF 漏洞(CVE-2025-27817) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-10
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-27818
                         | 
                    Apache Kafka Client LdapLoginModule 配置代码执行漏洞(CVE-2025-27818) | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-10
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         | 
                
                
                
                    | 
                        
                            AVD-2025-49001
                         | 
                    Dataease JWT 认证绕过漏洞(CVE-2025-49001)	 | 
                    
                        
                        
                        
                     | 
                    
                        
                        2025-06-04
                        
                     | 
                    
                            
                            
                            
                            
                            
                            
                         |