插件搜索

ID名称产品系列发布时间最近更新时间严重程度
114797发现MCP检查员Web App ScanningArtificial Intelligence2025/5/222025/5/22
info
114793检测到MCP清单Web App ScanningArtificial Intelligence2025/5/222025/5/22
info
114928MCP服务器提示注入Web App ScanningArtificial Intelligence2025/7/312025/7/31
high
114965检测到MCP服务器工具Web App ScanningArtificial Intelligence2025/9/192025/9/19
info
114803检测到MCP客户端配置文件Web App ScanningArtificial Intelligence2025/5/232025/5/23
medium
114790已检测到 MCP 服务器Web App ScanningArtificial Intelligence2025/5/222026/4/22
info
114921MCP服务器工具中毒Web App ScanningArtificial Intelligence2025/7/182026/4/30
high
114791MCP 服务器未经认证的访问Web App ScanningArtificial Intelligence2025/6/112025/6/18
info
114918检测到OAuth动态客户端注册Web App ScanningWeb Applications2025/7/182025/7/18
info
114885MCP服务器SSE的DNS重绑定Web App ScanningArtificial Intelligence2025/6/202025/7/3
medium
115226MCP服务器认证绕过Web App ScanningArtificial Intelligence2026/4/302026/4/30
high
114919OAuth 动态客户端注册许可重定向 URIWeb App ScanningWeb Applications2025/7/182025/7/18
low
115146检测到Claude代码设置文件Web App ScanningArtificial Intelligence2026/2/172026/4/14
medium
114920OAuth 动态客户端注册允许元数据字段Web App ScanningWeb Applications2025/7/182025/7/18
low
114906MCP 检查器< 0.14.1 远程代码执行Web App ScanningArtificial Intelligence2025/7/42025/7/4
critical
115212Nginx UI < 2.3.5 未经认证的 MCP 端点Web App ScanningComponent Vulnerability2026/4/32026/4/3
critical
98780Java 对象反序列化Web App ScanningWeb Applications2020/10/72023/12/1
critical
98117SQL 盲注(差异分析)Web App ScanningInjection2017/3/312025/3/18
high
98119NoSQL 盲注(差异分析)Web App ScanningInjection2017/3/312025/1/20
high
98122代码注入(时序攻击)Web App ScanningCode Execution2017/3/312023/1/23
critical
98118SQL 盲注漏洞(时序攻击)Web App ScanningInjection2017/3/312023/2/8
high
114135反射的输入Web App ScanningInjection2023/12/182023/12/18
info
113317表达式语言注入Web App ScanningInjection2022/8/82023/7/6
high
98125本地文件包含Web App ScanningFile Inclusion2017/3/312025/4/17
high
98124操作系统命令注入(时序攻击)Web App ScanningCode Execution2017/3/312022/7/18
critical
98126远程文件包含Web App ScanningFile Inclusion2017/3/312023/7/13
critical
98123操作系统命令注入Web App ScanningCode Execution2017/3/312025/4/17
critical
113229Python 对象反序列化Web App ScanningWeb Applications2022/5/182022/5/18
critical
113310XPath 盲注(差异分析)Web App ScanningInjection2022/8/82025/7/24
high
112697JSON Web Token 弱密钥Web App ScanningWeb Applications2021/2/112024/7/1
high
114503检测到虚拟主机Web App ScanningWeb Applications2024/11/202024/11/26
info
113237PHP 对象反序列化Web App ScanningWeb Applications2022/6/282024/2/8
critical
98127LDAP 注入Web App ScanningInjection2017/3/312023/8/9
high
98115SQL 注入Web App ScanningInjection2017/3/312026/3/5
high
112550完整路径泄露Web App ScanningData Exposure2018/12/132024/10/3
info
114116XML 注入Web App ScanningInjection2023/12/12026/1/19
high
98120代码注入Web App ScanningCode Execution2017/3/312022/5/25
critical
98100路径遍历Web App ScanningWeb Applications2017/3/312025/4/17
high
98611错误消息Web App ScanningData Exposure2019/5/262025/11/4
info
98920泄露的美国社会安全号码Web App ScanningData Exposure2019/7/172025/4/3
medium
112686检测到 JSON Web TokenWeb App ScanningWeb Applications2021/2/82026/2/11
info
98114XPath 注入Web App ScanningInjection2017/3/312024/8/12
high
98116NoSQL 注入Web App ScanningInjection2017/3/312023/8/9
high
112439服务器端请求伪造Web App ScanningWeb Applications2020/6/92025/7/3
high
98098源代码泄露Web App ScanningData Exposure2017/3/312023/11/22
medium
98779源代码被动泄露Web App ScanningData Exposure2019/12/192025/9/3
medium
112703JSON Web Token None 哈希算法Web App ScanningWeb Applications2021/2/162026/2/11
high
113555SQL 语句泄露Web App ScanningData Exposure2023/2/82023/3/8
medium
98050有趣的响应Web App ScanningWeb Applications2017/3/312021/6/14
info
114615用户名泄露Web App ScanningData Exposure2025/3/112025/4/29
low