相关漏洞推荐 MindsDB /api/sql/query 未授权访问漏洞(CVE-2025-68472) 微力同步 /rest/f/api/resources/f96956469e7be39d 文件读取漏洞 Frappe /api/method/frappe.automation.doctype.auto_repeat.auto_repeat.generate_message_preview SQL 注入漏洞(CVE-2025-68929) POC ambassador-api-diagnostics-exposure: Ambassador API Gateway Diagnostics - Exposure phpMyFAQ /api/setup/backup 信息泄露漏洞(CVE-2025-69200) Yealink T53 Phone /api/auth/login 默认口令漏洞 RuoYi AI /prod-api/system/model/list 信息泄露漏洞(CVE-2025-3199) POC JNPF快速开发平台 /api/file/Image/userAvatar/aa 文件读取漏洞 ERPNext /api/method/erpnext.crm.doctype.contract_template.contract_template.get_contract_template SQL 注入漏洞(CVE-2025-66435) ERPNext /api/method/erpnext.accounts.doctype.dunning.dunning.get_dunning_letter_text SQL 注入漏洞(CVE-2025-66434) 微力同步 /rest/f/api/raw/f96956469e7be39d 文件读取漏洞(CVE-2025-14197) POC CVE-2024-28253: OpenMetaData - SpEL Injection in PUT /api/v1/policies POC sharepoint-lists-api-disclosure: Microsoft SharePoint - List API Disclosure