Nessus 的 CGI abuses 系列

ID名稱嚴重性
306731Quest KACE SMA 13.0.x < 13.0.385 / 13.1.x < 13.1.81 / 13.2.x < 13.2.183 / 14.0.x < 14.0.341 / 14.1.x < 14.1.101 多個弱點
critical
306602Drupal 10.5.x < 10.5.9 / 10.6.x < 10.6.7 / 11.2.x < 11.2.11 / 11.3.x < 11.3.7 多個弱點 (drupal-2026-04-15)
medium
306561Splunk Enterprise 9.3.0 < 9.3.11、9.4.0 < 9.4.10、10.0.0 < 10.0.5、10.2.0 < 10.2.2 (SVD-2026-0401)
medium
306560Splunk Enterprise 9.3.0 < 9.3.11、9.4.0 < 9.4.10、10.0.0 < 10.0.5、10.2.0 < 10.2.2 (SVD-2026-0402)
medium
306556Splunk Enterprise 9.3.0 < 9.3.11、9.4.0 < 9.4.10、10.0.0 < 10.0.5、10.2.0 < 10.2.1 (SVD-2026-0403)
high
306393Adobe Connect <= 12.10 多個弱點 (APSB26-37)
critical
306169Dotnetnuke < 10.2.2 已觸發安全性程式碼分析規則 (GHSA-fcpv-w245-r2q7)
high
306168Dotnetnuke < 10.2.2 透過 SVG 上傳發生已儲存跨網站指令碼 (XSS) (CVE-2026-40321)
high
305982Dotnetnuke < 10.2.2 所有新安裝的 HostGUID 相同 (CVE-2026-40306)
high
305981Dotnetnuke 6.0.x < 10.2.2 Force Friend 要求接受 (CVE-2026-40305)
medium
305964Dotnetnuke < 10.2.2 所有新安裝的 HostGUID 相同 (GHSA-2rhw-gw3f-477j)
high
305963Dotnetnuke < 10.2.2 透過 SVG 上傳的已存跨網站指令碼 (XSS) (GHSA-ffq7-898w-9jc4)
high
305962Dotnetnuke 6.0.x < 10.2.2 Force Friend 要求接受 (GHSA-fpj4-9qhx-5m6m)
high
305955Apache ActiveMQ < 5.19.4 / 6.x < 6.2.3 不當輸入驗證程式碼插入
high
305954Apache ActiveMQ < 5.19.3 / 5.19.4, 6.x < 6.2.2 / 6.2.3 Classpath 路徑遊走
medium
305940SonicWall SMA 1000 系列 <= 12.4.3-03245 / 12.5.x <= 12.5.0-02283 多個弱點 (SNWLID-2026-0003)
high
305938Kibana 8.x < 8.19.14 / 9.0.x < 9.2.8 / 9.3.x < 9.3.3 多個弱點 (ESA-2026-21 / ESA-2026-24 / ESA-2026-25 / ESA-2026-26)
high
305638GitLab 18.2 <18.8.9/18.9 < 18.9.5/18.10 < 18.10.3 (CVE-2026-1101)
medium
305637GitLab 11.3 <18.8.9/18.9 < 18.9.5/18.10 < 18.10.3 (CVE-2026-1752)
medium
305636GitLab 16.9.6 <18.8.9/18.9 < 18.9.5/18.10 < 18.10.3 (CVE-2026-5173)
high
305635GitLab 18.0.0 <18.8.9/18.9 < 18.9.5/18.10 < 18.10.3 (CVE-2026-1516)
medium
305634GitLab 18.2 <18.8.9/18.9 < 18.9.5/18.10 < 18.10.3 (CVE-2026-4332)
medium
305633GitLab 18.6 <18.8.9/18.9 < 18.9.5/18.10 < 18.10.3 (CVE-2026-2619)
medium
305632GitLab 18.2 <18.8.9/18.9 < 18.9.5/18.10 < 18.10.3 (CVE-2026-4916)
low
305631GitLab 12.10 <18.8.9/18.9 < 18.9.5/18.10 < 18.10.3 (CVE-2026-1092)
high
305630GitLab 18.2 <18.8.9/18.9 < 18.9.5/18.10 < 18.10.3 (CVE-2026-2104)
medium
305301Atlassian Confluence 9.0.1 < 9.0.2 / 9.2.5 < 9.2.15 / 9.5.1 < 10.2.7 (CONFSERVER-102542)
high
304414Joomla 4.0.x < 5.4.4 / 6.0.x < 6.0.4 Joomla 6.0.4 和 5.4.4 安全性和錯誤修正版本 (5944-joomla-6-0-4-5-4-4-security-bugfix-release)
high
304390Metabase Enterprise < 1.54.22 / 1.55.x < 1.55.22 / 1.56.x < 1.56.22 / 1.57.x < 1.57.16 / 1.58.x < 1.58.10 / 1.59.x < 1.59.4 RCE (GHSA-fppj-vcm3-w229)
high
304265GitLab 14.3 <18.8.7/18.9 < 18.9.3/18.10 < 18.10.1 (CVE-2026-2370)
high
303800NetScaler ADC 和 NetScaler Gateway 記憶體過度讀取 (CTX696300 / CVE-2026-3055)
critical
303799NetScaler ADC 和 NetScaler Gateway 爭用情形 (CTX696300 / CVE-2026-4368)
high
303627GitLab 17.10 <18.8.7/18.9 < 18.9.3/18.10 < 18.10.1 (CVE-2026-3857)
high
303626GitLab 18.5 <18.8.7/18.9 < 18.9.3/18.10 < 18.10.1 (CVE-2026-1724)
high
303625GitLab 11.10 <18.8.7/18.9 < 18.9.3/18.10 < 18.10.1 (CVE-2026-2726)
medium
303624GitLab 15.4 <18.8.7/18.9 < 18.9.3/18.10 < 18.10.1 (CVE-2026-2995)
medium
303623GitLab 7.11 <18.8.7/18.9 < 18.9.3/18.10 < 18.10.1 (CVE-2026-2745)
high
303622GitLab 18.1 <18.8.7/18.9 < 18.9.3/18.10 < 18.10.1 (CVE-2026-4363)
low
303621GitLab 18.5 <18.8.7/18.9 < 18.9.3/18.10 < 18.10.1 (CVE-2026-3988)
high
303620GitLab 17.7 <18.8.7/18.9 < 18.9.3/18.10 < 18.10.1 (CVE-2026-2973)
medium
303601Atlassian Bamboo 9.6.x < 9.6.24 / 10.x < 10.2.16 / 11.x / 12.x < 12.1.3 多個弱點
high
303587Kibana 8.x < 8.19.12 / 9.x < 9.2.6 / 9.3.x < 9.3.1 缺少授權 (ESA-2026-19)
medium
303586Kibana 8.x < 8.19.13 / 9.x < 9.2.7 / 9.3.x < 9.3.2 DoS (ESA-2026-20)
medium
303451Unraid < 7.2.4 多個弱點 (ZDI-26-171 / ZDI-26-172)
high
303449MantisBT < 2.28.1 SOAP API 驗證繞過 (GHSA-phrq-pc6r-f6gh)
critical
303195Cockpit < 2.13.5 SQLi (GHSA-7x5c-vfhj-9628)
medium
303190Dell iDRAC9 < 7.00.00.174 / 7.10.90.00 資訊洩漏 (DSA-2026-113)
medium
302915Splunk Universal Forwarder 10.0.0 < 10.0.4、10.2 < 10.2.1 (SVD-2026-0314)
high
302903Jenkins 外掛程式多個弱點 (2026-03-18)
high
302902Jenkins LTS < 2.541.3/Jenkins 每週版 < 2.555 多個弱點
high