Related VulnerabilitiesPoCCVE-2026-12227: Visual Composer <= 45.16.0 - Unauthenticated LFIPoCwordpress-click2shell: WordPress Click2Shell Theme Preview Selector InjectionPoCCVE-2026-58644: Microsoft SharePoint Server - WS-Federation BinaryFormatter Deserialization RCEMicrosoft SharePoint /_layouts/15/ToolPane.aspx 代码执行漏洞(CVE-2025-53770)Microsoft SharePoint Server /_trust/default.aspx 代码执行漏洞(CVE-2026-50522)Microsoft SharePoint Server JWT 权限绕过漏洞(CVE-2026-55040)北京中科聚网一体化运营平台 /manage/tplresource/importVisualModuleImg 文件上传漏洞时空智友ERP系统 /formservice updater.uploadStudioFile 文件上传漏洞PoCCVE-2025-25296: Label Studio < 1.16.0 - Cross-Site ScriptingPoCCVE-2025-47783: Label Studio < 1.18.0 - Reflected XSSLabel Studio存在XSS漏洞(CVE-2025-25296)PoCsupabase-studio-exposure: Supabase Studio - ExposureElestio Memos /api/v1/markdown/link:metadata 服务器端请求伪造漏洞(CVE-2025-22952)