Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
CVE-1999-0405
N/A
A buffer overflow in lsof allows local users to o… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:52.138Z
CVE-1999-0410
N/A
The cancel command in Solaris 2.6 (i386) has a bu… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.195Z
CVE-1999-0412
N/A
In IIS and other web servers, an attacker can att… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.212Z
CVE-1999-0413
N/A
A buffer overflow in the SGI X server allows loca… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.181Z
CVE-1999-0414
N/A
In Linux before version 2.0.36, remote attackers … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.203Z
CVE-1999-0417
N/A
64 bit Solaris 7 procfs allows local users to per… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.227Z
CVE-1999-0420
N/A
umapfs allows local users to gain root privileges… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.240Z
CVE-1999-0422
N/A
In some cases, NetBSD 1.3.3 mount allows local us… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.227Z
CVE-1999-0423
N/A
Vulnerability in hpterm on HP-UX 10.20 allows loc… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.222Z
CVE-1999-0424
N/A
talkback in Netscape 4.5 allows a local user to o… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.234Z
CVE-1999-0425
N/A
talkback in Netscape 4.5 allows a local user to k… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.872Z
CVE-1999-0430
N/A
Cisco Catalyst LAN switches running Catalyst 5000… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.562Z
CVE-1999-0432
N/A
ftp on HP-UX 11.00 allows local users to gain pri… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.634Z
CVE-1999-0433
N/A
XFree86 startx command is vulnerable to a symlink… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.834Z
CVE-1999-0436
N/A
Domain Enterprise Server Management System (DESMS… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.982Z
CVE-1999-0437
N/A
Remote attackers can perform a denial of service … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.731Z
CVE-1999-0438
N/A
Remote attackers can perform a denial of service … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.886Z
CVE-1999-0441
N/A
Remote attackers can perform a denial of service … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.453Z
CVE-1999-0442
N/A
Solaris ff.core allows local users to modify files. n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.889Z
CVE-1999-0445
N/A
In Cisco routers under some versions of IOS 12.0 … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.885Z
CVE-1999-0446
N/A
Local users can perform a denial of service in Ne… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.840Z
CVE-1999-0447
N/A
Local users can gain privileges using the debug u… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.932Z
CVE-1999-0448
N/A
IIS 4.0 and Apache log HTTP request methods, rega… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.992Z
CVE-1999-0449
N/A
The ExAir sample site in IIS 4 allows remote atta… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.902Z
CVE-1999-0457
N/A
Linux ftpwatch program allows local users to gain… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.847Z
CVE-1999-0458
N/A
L0phtcrack 2.5 used temporary files in the system… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.986Z
CVE-1999-0463
N/A
Remote attackers can perform a denial of service … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.930Z
CVE-1999-0466
N/A
The SVR4 /dev/wabi special device file in NetBSD … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.248Z
CVE-1999-0471
N/A
The remote proxy server in Winroute allows a remo… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.031Z
CVE-1999-0473
N/A
The rsync command before rsync 2.3.1 may inadvert… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.981Z
ID CVSS Description Vendor Product Published Updated
ID Severity Description Published Updated
ghsa-qh2h-chj9-jffq
9.8 (3.1)
Growl before 1.10.0 vulnerable to Command Injection 2018-06-08T12:43:43Z 2022-08-03T21:32:55Z
ghsa-pr3h-jjhj-573x
7.5 (3.1)
Sprockets path traversal leads to information leak 2018-06-20T22:18:58Z 2023-09-05T21:05:18Z
ghsa-6cwv-x26c-w2q4
7.8 (3.1)
8.4 (4.0)
Jupyter Notebook file bypasses sanitization, executes JavaScript 2018-07-12T12:00:00Z 2024-09-27T19:51:01Z
ghsa-p5wr-vp8g-q5p4
4.3 (3.1)
5.3 (4.0)
Plone Sandbox Escape 2018-07-12T14:45:15Z 2024-10-18T21:39:21Z
ghsa-w4vg-rf63-f3j3
7.8 (3.1)
8.7 (4.0)
Arbitrary code using "crafted image file" approach affecting Pillow 2018-07-12T14:45:42Z 2024-10-08T13:00:28Z
ghsa-hxxf-q3w9-4xgw
9.1 (3.1)
Malicious Package in eslint-scope 2018-07-12T19:52:02Z 2021-09-14T17:35:41Z
ghsa-p6h9-gw49-rqm4
6.1 (3.1)
5.3 (4.0)
markdown2 is vulnerable to cross-site scripting 2018-07-12T20:29:21Z 2024-09-30T17:00:47Z
ghsa-6528-wvf6-f6qg
7.5 (3.1)
8.7 (4.0)
Pycrypto generates weak key parameters 2018-07-12T20:29:26Z 2024-10-18T21:58:31Z
ghsa-232r-66cg-79px
9.8 (3.1)
9.3 (4.0)
Paramiko not properly checking authentication before processing other requests 2018-07-12T20:29:30Z 2024-10-09T19:47:17Z
ghsa-8jxq-75rw-fhj9
9.8 (3.1)
9.3 (4.0)
Eve allows execution of arbitrary code 2018-07-12T20:29:35Z 2024-09-20T17:17:54Z
ghsa-6mww-xvh7-fq4f
9.1 (3.1)
9.3 (4.0)
Koji hub call does not perform correct access checks 2018-07-12T20:29:40Z 2024-09-27T19:25:29Z
ghsa-3hq4-f2v6-q338
8.8 (3.1)
8.7 (4.0)
Kotti CSRF in the local roles implementation 2018-07-12T20:30:30Z 2024-09-27T21:18:49Z
ghsa-qc55-vm3j-74gp
5.5 (3.1)
7.1 (4.0)
JSNAPy allows unprivileged local users to alter files under the directory 2018-07-12T20:30:36Z 2024-09-24T21:02:12Z
ghsa-hxf9-7h4c-f5jv
9.1 (3.1)
9.3 (4.0)
Django-Anymail prone to a timing attack 2018-07-12T20:30:40Z 2024-09-16T21:24:24Z
ghsa-cwh5-3cw7-4286
5.9 (3.1)
8.2 (4.0)
tlslite-ng off-by-one error on mac checking 2018-07-12T20:30:44Z 2024-11-13T22:51:51Z
ghsa-32pc-xphx-q4f6
7.5 (3.1)
8.7 (4.0)
Gunicorn contains Improper Neutralization of CRLF sequences in HTTP headers 2018-07-12T20:30:49Z 2024-09-20T21:11:57Z
ghsa-xcp8-hh74-f6mc
5.5 (3.1)
7.1 (4.0)
oslo.middleware Information Disclosure vulnerability 2018-07-13T15:16:45Z 2024-10-07T21:21:51Z
ghsa-c2w9-48qc-qpj4
7.8 (3.1)
8.5 (4.0)
Code injection in ansible 2018-07-13T15:16:54Z 2024-09-03T21:23:13Z
ghsa-9pv8-q5rx-c8gq
9.8 (3.1)
9.3 (4.0)
django_make_app is vulnerable to Code Injection 2018-07-13T15:16:59Z 2024-09-16T22:58:59Z
ghsa-m242-wc86-8768
6.1 (3.1)
5.3 (4.0)
python-fedora vulnerable to an open redirect resulting in loss of CSRF protection 2018-07-13T15:17:05Z 2024-10-25T21:16:44Z
ghsa-ghjx-3jg5-h6r2
8.8 (3.1)
8.7 (4.0)
Mercurial has Incorrect Permission Assignment for Critical Resource 2018-07-13T15:17:10Z 2024-10-01T19:23:42Z
ghsa-p7xc-35m8-57pr
7.5 (3.1)
8.7 (4.0)
FedMsg not properly completing message validation 2018-07-13T15:17:14Z 2024-09-20T17:36:12Z
ghsa-xp5m-4c9f-498q
6.1 (3.1)
5.3 (4.0)
django-epiceditor vulnerable to XSS in form field 2018-07-13T15:17:18Z 2024-09-16T23:02:16Z
ghsa-5mc5-5j6c-qmf9
8.8 (3.1)
8.7 (4.0)
cfscrape Improper Input Validation vulnerability 2018-07-13T16:01:01Z 2024-09-13T14:35:01Z
ghsa-xpm8-98mx-h4c5
9.8 (3.1)
9.3 (4.0)
Unsafe deserialization in MLAlchemy 2018-07-13T16:01:07Z 2024-09-24T20:32:18Z
ghsa-ccmq-qvcp-5mrm
9.8 (3.1)
9.3 (4.0)
Unsafe deserialization in owlmixin 2018-07-13T16:01:12Z 2024-10-07T21:07:56Z
ghsa-924m-4pmx-c67h
8.1 (3.1)
9.2 (4.0)
pysaml2 Improper Authentication vulnerability 2018-07-13T16:01:17Z 2024-10-21T21:09:04Z
ghsa-8p5c-f328-9fvv
9.8 (3.1)
9.3 (4.0)
Diffoscope may write to arbitrary locations due to an untrusted archive 2018-07-13T16:01:21Z 2024-09-16T13:49:58Z
ghsa-gcr6-rf47-jrgf
9.8 (3.1)
9.3 (4.0)
Loaded Databook of Tablib prone to python insertion resulting in command execution 2018-07-13T16:01:25Z 2024-10-27T15:36:24Z
ghsa-c2vx-49jm-h3f6
7.5 (3.1)
8.7 (4.0)
Pysaml2 does not sanitize XML responses 2018-07-16T16:50:12Z 2024-10-21T21:08:33Z
ID Severity Description Package Published Updated
pysec-2014-38
kupu_spellcheck.py in Kupu in Plone before 4.0 allows remote attackers to cause a denial … plone 2014-09-30T14:55:00Z 2021-07-25T23:34:44.340105Z
pysec-2014-39
membership_tool.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to… plone 2014-09-30T14:55:00Z 2021-09-01T08:44:30.107520Z
pysec-2014-40
queryCatalog.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to by… plone 2014-09-30T14:55:00Z 2021-09-01T08:44:30.217052Z
pysec-2014-41
python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to … plone 2014-09-30T14:55:00Z 2021-09-01T08:44:30.342149Z
pysec-2014-43
at_download.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to rea… plone 2014-09-30T14:55:00Z 2021-09-01T08:44:30.552304Z
pysec-2014-44
Cross-site scripting (XSS) vulnerability in safe_html.py in Plone before 4.2.3 and 4.3 be… plone 2014-09-30T14:55:00Z 2021-09-01T08:44:30.658658Z
pysec-2014-45
ftp.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to read hidden… plone 2014-09-30T14:55:00Z 2021-09-01T08:44:30.766279Z
pysec-2014-46
Cross-site scripting (XSS) vulnerability in widget_traversal.py in Plone before 4.2.3 and… plone 2014-09-30T14:55:00Z 2021-09-01T08:44:30.873895Z
pysec-2014-47
atat.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to read priva… plone 2014-09-30T14:55:00Z 2021-09-01T08:44:30.978910Z
pysec-2014-48
python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to … plone 2014-09-30T14:55:00Z 2021-09-01T08:44:31.097145Z
pysec-2014-49
AccessControl/AuthEncoding.py in Zope before 2.13.19, as used in Plone before 4.2.3 and 4… plone 2014-09-30T14:55:00Z 2021-09-01T08:44:31.212307Z
pysec-2014-73
ZPublisher.HTTPRequest._scrubHeader in Zope 2 before 2.13.19, as used in Plone before 4.3… zope2 2014-09-30T14:55:00Z 2021-07-25T23:34:58.778006Z
pysec-2014-74
The App.Undo.UndoSupport.get_request_var_or_attr function in Zope before 2.12.21 and 2.13… zope2 2014-09-30T14:55:00Z 2021-07-25T23:34:58.895470Z
pysec-2014-75
AccessControl/AuthEncoding.py in Zope before 2.13.19, as used in Plone before 4.2.3 and 4… zope2 2014-09-30T14:55:00Z 2021-07-25T23:34:58.957854Z
pysec-2014-26
OpenStack keystonemiddleware (formerly python-keystoneclient) 0.x before 0.11.0 and 1.x b… keystonemiddleware 2014-10-02T14:55:00Z 2021-07-25T23:34:38.976180Z
pysec-2014-71
OpenStack keystonemiddleware (formerly python-keystoneclient) 0.x before 0.11.0 and 1.x b… python-keystoneclient 2014-10-02T14:55:00Z 2021-07-25T23:34:52.128374Z
pysec-2014-13
Requests (aka python-requests) before 2.3.0 allows remote servers to obtain a netrc passw… requests 2014-10-15T14:55:00Z 2021-07-05T00:01:25.632991Z
pysec-2014-14
Requests (aka python-requests) before 2.3.0 allows remote servers to obtain sensitive inf… requests 2014-10-15T14:55:00Z 2021-07-05T00:01:25.679942Z
pysec-2014-90
The shell_quote function in python-gnupg 0.3.5 does not properly quote strings, which all… python-gnupg 2014-10-25T21:55:00Z 2021-08-27T03:22:18.134121Z
pysec-2014-91
The shell_quote function in python-gnupg 0.3.5 does not properly escape characters, which… python-gnupg 2014-10-25T21:55:00Z 2021-08-27T03:22:18.180710Z
pysec-2014-92
python-gnupg 0.3.5 and 0.3.6 allows context-dependent attackers to have an unspecified im… python-gnupg 2014-10-25T21:55:00Z 2021-08-27T03:22:18.219373Z
pysec-2014-77
Bottle 0.10.x before 0.10.12, 0.11.x before 0.11.7, and 0.12.x before 0.12.6 does not pro… bottle 2014-10-25T22:55:00Z 2021-08-27T03:21:56.361083Z
pysec-2014-24
emitters.py in Django Piston before 0.2.3 and 0.2.x before 0.2.2.1 does not properly dese… django-piston 2014-10-27T01:55:00Z 2021-07-25T23:34:28.692113Z
pysec-2014-25
The from_yaml method in serializers.py in Django Tastypie before 0.9.10 does not properly… django-tastypie 2014-10-27T01:55:00Z 2021-07-25T23:34:28.733002Z
pysec-2014-42
The batch id change script (renameObjectsByPaths.py) in Plone before 4.2.3 and 4.3 before… plone 2014-11-03T22:55:00Z 2021-09-01T08:44:30.447394Z
pysec-2014-50
The error pages in Plone before 4.2.3 and 4.3 before beta 1 allow remote attackers to obt… plone 2014-11-03T22:55:00Z 2021-09-01T08:44:31.321280Z
pysec-2014-51
Zope before 2.13.19, as used in Plone before 4.2.3 and 4.3 before beta 1, does not reseed… plone 2014-11-03T22:55:00Z 2021-09-01T08:44:31.427296Z
pysec-2014-76
Zope before 2.13.19, as used in Plone before 4.2.3 and 4.3 before beta 1, does not reseed… zope2 2014-11-03T22:55:00Z 2021-07-25T23:34:59.010626Z
pysec-2014-80
Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connectio… docker-py 2014-11-17T16:59:00Z 2021-08-27T03:22:03.349219Z
pysec-2014-101
FreeIPA 4.0.x before 4.0.5 and 4.1.x before 4.1.1, when 2FA is enabled, allows remote att… freeipa 2014-11-19T18:59:00Z 2024-11-21T14:22:50.589801Z
ID Description Type
ID Description Updated
ID Description Published Updated
mal-2022-3749 Malicious code in icepond (npm) 2022-06-08T08:38:46Z 2022-06-08T08:38:47Z
mal-2022-3868 Malicious code in internal-scripts (npm) 2022-06-08T08:38:46Z 2022-06-08T08:38:47Z
mal-2022-2319 Malicious code in dai-monorepo (npm) 2022-06-08T08:39:19Z 2022-06-08T08:39:19Z
mal-2022-2483 Malicious code in discord-js-v13 (npm) 2022-06-08T08:43:52Z 2022-06-08T08:43:53Z
mal-2022-5314 Malicious code in pgk (npm) 2022-06-08T08:43:52Z 2022-06-08T08:43:53Z
mal-2022-6389 Malicious code in sync-express (npm) 2022-06-08T08:43:52Z 2022-06-08T08:43:52Z
mal-2022-1490 Malicious code in beachlean (npm) 2022-06-08T08:43:53Z 2022-06-08T08:43:53Z
mal-2022-3815 Malicious code in informationbadges (npm) 2022-06-08T08:43:53Z 2022-06-08T08:43:53Z
mal-2022-4719 Malicious code in ms-2.0.0 (npm) 2022-06-08T08:43:53Z 2022-06-08T08:43:53Z
mal-2022-6333 Malicious code in stripe-ms (npm) 2022-06-08T08:43:53Z 2022-06-08T08:43:53Z
mal-2022-1613 Malicious code in blockchain-explorer-sdk (npm) 2022-06-08T08:44:23Z 2022-06-08T08:44:24Z
mal-2022-7328 Malicious code in yarn-design-system-logos (npm) 2022-06-08T08:44:23Z 2022-06-08T08:44:24Z
mal-2022-2777 Malicious code in erc-20-lib (npm) 2022-06-08T08:44:24Z 2022-06-08T08:44:24Z
mal-2022-2889 Malicious code in even-more-externals (npm) 2022-06-08T08:44:24Z 2022-06-08T08:44:24Z
mal-2022-4083 Malicious code in jubilee-flag-wave (npm) 2022-06-08T08:45:14Z 2022-06-08T08:45:14Z
mal-2022-6217 Malicious code in sorareshshsjs (npm) 2022-06-08T08:49:45Z 2022-06-08T08:50:22Z
mal-2022-2679 Malicious code in eg-clickstream-sdk-js (npm) 2022-06-08T08:52:00Z 2022-06-08T08:52:10Z
mal-2022-7085 Malicious code in web3-upgrade (npm) 2022-06-08T08:52:50Z 2022-06-08T08:52:50Z
mal-2022-2243 Malicious code in cron-mail (npm) 2022-06-08T08:53:25Z 2022-06-08T08:53:26Z
mal-2022-124 Malicious code in @blackice12/tiny (npm) 2022-06-08T08:54:15Z 2022-06-08T08:54:21Z
mal-2022-6476 Malicious code in test-depss (npm) 2022-06-08T08:56:16Z 2022-06-08T08:56:16Z
mal-2022-2660 Malicious code in ecobeeesss (npm) 2022-06-08T08:57:06Z 2022-06-08T08:57:06Z
mal-2022-4884 Malicious code in node-dvnr (npm) 2022-06-08T08:57:06Z 2022-06-08T08:57:06Z
mal-2022-7358 Malicious code in yoti_2020 (npm) 2022-06-08T09:00:11Z 2022-06-08T09:00:12Z
mal-2022-1160 Malicious code in atlassian-sketch-plugin (npm) 2022-06-08T09:01:01Z 2022-06-08T09:01:06Z
mal-2022-4031 Malicious code in jira-cloud-for-sketch (npm) 2022-06-08T09:01:01Z 2022-06-08T09:01:07Z
mal-2022-4032 Malicious code in jira-frontend (npm) 2022-06-08T09:01:01Z 2022-06-08T09:01:02Z
mal-2022-5077 Malicious code in onepassword_events_api (npm) 2022-06-08T09:01:01Z 2022-06-08T09:01:07Z
mal-2022-6723 Malicious code in ual-reactjs-renderer-example (npm) 2022-06-08T09:01:01Z 2022-06-08T09:01:02Z
mal-2022-6791 Malicious code in universal-authenticator-library-js-example (npm) 2022-06-08T09:01:01Z 2022-06-08T09:01:02Z
ID Description Published Updated
bit-golang-2023-39323 Arbitrary code execution during build via line directives in cmd/go 2024-03-06T10:53:48.482Z 2025-05-20T10:02:07.006Z
bit-drupal-2022-25270 2024-03-06T10:53:49.081Z 2025-04-03T14:40:37.652Z
bit-grafana-2023-1410 Stored XSS in Graphite FunctionDescription tooltip 2024-03-06T10:53:49.160Z 2025-05-20T10:02:07.006Z
bit-dotnet-2023-36558 ASP.NET Core Security Feature Bypass Vulnerability 2024-03-06T10:53:49.580Z 2025-05-20T10:02:07.006Z
bit-django-2021-45116 2024-03-06T10:53:49.679Z 2025-04-03T14:40:37.652Z
bit-haproxy-2023-0836 2024-03-06T10:53:49.889Z 2025-04-03T14:40:37.652Z
bit-ghost-2022-28397 2024-03-06T10:53:51.564Z 2025-04-03T14:40:37.652Z
bit-gradle-2021-41588 2024-03-06T10:53:51.879Z 2025-04-03T14:40:37.652Z
bit-discourse-2023-43814 Exposure of poll options and votes to unauthorized users in Discourse 2024-03-06T10:53:52.288Z 2025-11-06T13:25:46.476Z
bit-gitea-2021-45331 2024-03-06T10:53:52.704Z 2025-04-03T14:40:37.652Z
bit-jenkins-2024-23897 2024-03-06T10:53:54.098Z 2025-10-22T09:08:25.162Z
bit-gitlab-2023-6955 Missing Authorization in GitLab 2024-03-06T10:53:55.060Z 2025-05-20T10:02:07.006Z
bit-consul-2020-7955 2024-03-06T10:53:55.191Z 2025-04-03T14:40:37.652Z
bit-helm-2022-23525 Helm vulnerable to Denial of service via NULL Pointer Dereference 2024-03-06T10:53:55.402Z 2025-05-20T10:02:07.006Z
bit-elasticsearch-2021-22134 2024-03-06T10:53:55.889Z 2025-04-03T14:40:37.652Z
bit-apache-2022-22719 mod_lua Use of uninitialized value of in r:parsebody 2024-03-06T10:53:56.107Z 2025-05-20T10:02:07.006Z
bit-airflow-2023-39441 Apache Airflow SMTP Provider, Apache Airflow IMAP Provider, Apache Airflow: SMTP/IMAP client components allowed MITM due to missing Certificate Validation 2024-03-06T10:53:58.103Z 2025-05-20T10:02:07.006Z
bit-django-2021-45115 2024-03-06T10:53:58.206Z 2025-04-03T14:40:37.652Z
bit-grafana-2023-1387 2024-03-06T10:53:58.577Z 2025-04-03T14:40:37.652Z
bit-harbor-2020-13788 2024-03-06T10:53:58.690Z 2025-04-03T14:40:37.652Z
bit-golang-2023-39322 Memory exhaustion in QUIC connection handling in crypto/tls 2024-03-06T10:53:58.705Z 2025-05-20T10:02:07.006Z
bit-drupal-2022-24775 Improper Input Validation in guzzlehttp/psr7 2024-03-06T10:53:59.062Z 2025-05-20T10:02:07.006Z
bit-jupyterhub-2021-41247 incomplete logout in JupyterHub 2024-03-06T10:53:59.095Z 2025-05-20T10:02:07.006Z
bit-dotnet-2023-36435 Microsoft QUIC Denial of Service Vulnerability 2024-03-06T10:54:00.604Z 2025-05-20T10:02:07.006Z
bit-envoy-2023-27492 Envoy may crash when a large request body is processed in Lua filter 2024-03-06T10:54:01.303Z 2025-05-20T10:02:07.006Z
bit-gradle-2021-41587 2024-03-06T10:54:01.977Z 2025-04-03T14:40:37.652Z
bit-ghost-2022-27139 2024-03-06T10:54:02.089Z 2025-04-03T14:40:37.652Z
bit-discourse-2023-43659 Cross-site Scripting via email preview when CSP disabled in Discourse 2024-03-06T10:54:02.887Z 2025-11-06T13:25:46.476Z
bit-jenkins-2023-44487 2024-03-06T10:54:03.578Z 2026-02-11T09:09:18.507Z
bit-jupyterlab-2024-22421 Potential authentication and CSRF tokens leak in JupyterLab 2024-03-06T10:54:03.685Z 2025-05-20T10:02:07.006Z
ID Description Published Updated
drupal-contrib-2024-042 2024-10-02T16:15:59.000Z 2025-02-20T19:27:15.000Z
drupal-contrib-2024-043 2024-10-02T16:20:48.000Z 2025-02-20T19:27:03.000Z
drupal-contrib-2024-044 2024-10-02T16:27:12.000Z 2025-02-20T19:26:51.000Z
drupal-contrib-2024-045 2024-10-09T15:48:10.000Z 2025-02-20T19:26:40.000Z
drupal-contrib-2024-046 2024-10-09T15:48:11.000Z 2025-02-20T19:26:30.000Z
drupal-contrib-2024-047 2024-10-09T15:54:27.000Z 2025-02-20T19:26:17.000Z
drupal-contrib-2024-048 2024-10-09T15:56:35.000Z 2025-02-20T19:26:05.000Z
drupal-contrib-2024-049 2024-10-09T16:40:07.000Z 2025-02-20T19:25:53.000Z
drupal-contrib-2024-050 2024-10-23T12:09:48.000Z 2025-02-20T19:25:41.000Z
drupal-contrib-2024-051 2024-10-23T15:45:41.000Z 2025-02-20T20:08:44.000Z
drupal-contrib-2024-052 2024-10-23T15:45:47.000Z 2025-02-20T20:05:19.000Z
drupal-contrib-2024-055 2024-10-30T17:07:09.000Z 2025-02-20T20:05:30.000Z
drupal-contrib-2024-056 2024-10-30T17:11:24.000Z 2025-02-20T20:05:41.000Z
drupal-contrib-2024-058 2024-11-06T16:28:56.000Z 2025-02-20T20:05:57.000Z
drupal-contrib-2024-059 2024-11-13T17:36:48.000Z 2025-02-20T20:06:05.000Z
drupal-contrib-2024-060 2024-11-13T17:37:36.000Z 2025-02-20T20:06:18.000Z
drupal-contrib-2024-062 2024-11-20T17:36:55.000Z 2025-02-20T20:06:35.000Z
drupal-contrib-2024-064 2024-11-27T16:41:51.000Z 2025-02-20T20:06:49.000Z
drupal-contrib-2024-067 2024-12-04T14:40:50.000Z 2025-02-20T20:07:11.000Z
drupal-contrib-2024-068 2024-12-04T14:46:03.000Z 2025-02-20T20:07:26.000Z
drupal-contrib-2024-069 2024-12-04T15:13:14.000Z 2025-02-20T20:07:35.000Z
drupal-contrib-2024-070 2024-12-04T15:51:12.000Z 2025-02-20T20:07:46.000Z
drupal-contrib-2024-071 2024-12-04T16:20:57.000Z 2025-02-20T20:07:52.000Z
drupal-contrib-2024-072 2024-12-11T07:44:40.000Z 2025-02-20T20:08:00.000Z
drupal-contrib-2024-073 2024-12-11T12:36:29.000Z 2025-02-20T20:08:10.000Z
drupal-contrib-2024-074 2024-12-11T14:27:22.000Z 2025-02-20T20:08:21.000Z
drupal-contrib-2024-075 2024-12-11T14:31:11.000Z 2025-02-20T20:08:28.000Z
drupal-contrib-2024-076 2024-12-11T16:53:22.000Z 2025-02-20T20:08:37.000Z
drupal-contrib-2025-001 2025-01-08T17:22:11.000Z 2025-06-19T22:05:09.000Z
drupal-contrib-2025-002 2025-01-08T17:54:04.000Z 2025-03-31T22:22:59.000Z
ID Description Updated
ID Description Published Updated
jvndb-2007-000808 Lhaplus buffer overflow vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000809 SonicStage CP buffer overflow vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000810 JP1/Cm2/Network Node Manager vulnerable to cross-site scripting 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000811 HttpLogger vulnerable to cross-site scripting 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000812 Cybozu Office denial of service (DoS) vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000813 Multiple Cybozu products vulnerable to cross-site scripting 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000814 Multiple Cybozu products vulnerable to HTTP header injection 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000815 Multiple Cybozu products vulnerable to cross-site scripting 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000816 Rainboard cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000817 Flash Player vulnerable in handling cross-domain policy files 2008-05-21T00:00+09:00 2009-02-10T11:32+09:00
jvndb-2007-000818 Flash Player allows to send arbitrary HTTP headers 2008-05-21T00:00+09:00 2008-06-20T13:34+09:00
jvndb-2007-000819 Cross-site scripting vulnerability in Apache HTTP Server "mod_imap" and "mod_imagemap" 2008-05-21T00:00+09:00 2013-07-18T18:58+09:00
jvndb-2007-000820 Google Web Toolkit vulnerable to cross-site scripting 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000822 WinAce buffer overflow vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000823 Cross-site scripting in Sun Java System Web Server and Sun Java System Web Proxy Server 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000824 GreaseKit and Creammonkey allows execution of userscript functions 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000875 AirStation series and BroadStation series vulnerable to cross-site request forgery 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000876 Ichitaro series buffer overflow vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000877 Ichitaro series buffer overflow vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000878 Ichitaro series buffer overflow vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000921 Groupmax Collaboration Schedule Information Disclosure Vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000999 Hitachi JP1/File Transmission Server/FTP Authentication Bypass Vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-001000 Hitachi JP1/File Transmission Server/FTP Denial of Service Vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-001022 Apache UTF-7 Encoding Cross-Site Scripting Vulnerability 2008-05-21T00:00+09:00 2009-11-16T11:52+09:00
jvndb-2007-001091 Cosminexus Application Server Incorrect Group Permission Handling Vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-001092 JP1/Cm2/Network Node Manager Arbitrary Code Execution Vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-001133 Cosminexus Component Container Session Handling Vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-000001 Multiple JustSystems products vulnerable to buffer overflow 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-000003 MTCMS WYSIWYG Editor cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T11:30+09:00
jvndb-2008-000004 Zimbra Collaboration Suite script execution vulnerability 2008-05-21T00:00+09:00 2008-05-21T11:30+09:00
ID Description Updated
ID Description
ID Description Published Updated
cnvd-2015-00197 Mini-stream RM-MP3 Converter缓冲区溢出漏洞(CNVD-2015-00197) 2015-01-08 2015-01-12
cnvd-2015-00198 VDG Security SENSE目录遍历漏洞 2015-01-08 2015-01-12
cnvd-2015-00204 WordPress插件Simple Sticky Footer存在多个跨站请求伪造漏洞 2015-01-08 2015-01-12
cnvd-2015-00217 WordPress插件AJAX Post Search 'the_search_function' SQL注入漏洞 2015-01-08 2015-01-12
cnvd-2015-00240 IPCop跨站脚本漏洞 2015-01-08 2015-01-13
cnvd-2015-00241 PHPDug存在多个跨站脚本漏洞 2015-01-08 2015-01-13
cnvd-2015-00242 PHPDug跨站请求伪造漏洞(CNVD-2015-00242) 2015-01-08 2015-01-13
cnvd-2015-00243 poMMo Aardvark跨站请求伪造漏洞 2015-01-08 2015-01-13
cnvd-2015-00244 poMMo Aardvark存在多个跨站脚本漏洞 2015-01-08 2015-01-13
cnvd-2015-00245 Viralheat Argyle Social存在多个跨站请求伪造漏洞 2015-01-08 2015-01-13
cnvd-2015-00246 TTChat存在多个跨站脚本漏洞 2015-01-08 2015-01-13
cnvd-2015-00247 Happy Chat跨站脚本漏洞 2015-01-08 2015-01-13
cnvd-2015-00248 Gogago YouTube Video Converter缓冲区溢出漏洞 2015-01-08 2015-01-13
cnvd-2015-00249 Kofax e-Transactions Sender Sendbox文件注入漏洞 2015-01-08 2015-01-13
cnvd-2015-00250 WordPress PhotoSmash插件跨站脚本漏洞 2015-01-08 2015-01-13
cnvd-2015-00261 WordPress插件Sliding Social Icons存在多个跨站请求伪造漏洞 2015-01-08 2015-01-13
cnvd-2015-00262 WordPress插件Lightbox Photo Gallery存在多个跨站请求伪造漏洞 2015-01-08 2015-01-13
cnvd-2015-00199 ZfcUser 'redirect'参数跨站脚本漏洞 2015-01-09 2015-01-12
cnvd-2015-00200 PHP '/ext/opcache/zend_shared_alloc.c'内存错误引用拒绝服务漏洞 2015-01-09 2015-01-12
cnvd-2015-00201 Drupal Htaccess模块跨站请求伪造漏洞 2015-01-09 2015-01-12
cnvd-2015-00202 Drupal Context模块开放重定向漏洞 2015-01-09 2015-01-12
cnvd-2015-00203 Zurmo CRM存在多个跨站脚本漏洞 2015-01-09 2015-01-12
cnvd-2015-00205 Wireshark SMTP解析器'packet-smtp.c'远程拒绝服务漏洞 2015-01-09 2015-01-12
cnvd-2015-00206 Wireshark LPP解析器远程拒绝服务漏洞 2015-01-09 2015-01-12
cnvd-2015-00207 Wireshark WCCP解析器远程拒绝服务漏洞(CNVD-2015-00207) 2015-01-09 2015-01-12
cnvd-2015-00208 Wireshark WCCP解析器远程拒绝服务漏洞(CNVD-2015-00208) 2015-01-09 2015-01-12
cnvd-2015-00209 Wireshark DEC DNA Routing Protocol解析器远程拒绝服务漏洞 2015-01-09 2015-01-12
cnvd-2015-00210 Wireshark TLS/SSL解密拒绝服务漏洞 2015-01-09 2015-01-12
cnvd-2015-00211 OpenSSL 'dtls1_get_record()'函数空指针拒绝服务漏洞 2015-01-09 2015-01-12
cnvd-2015-00212 OpenSSL 'dtls1_buffer_record()'函数拒绝服务漏洞 2015-01-09 2015-01-12
ID Description Published Updated
bdu:2015-02661 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02662 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02663 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02664 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02665 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02666 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02667 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02668 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02669 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02670 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02671 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02672 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02673 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02674 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02675 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02676 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02677 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02678 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02679 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02680 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02681 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02682 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02683 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02684 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02685 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02686 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02687 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02688 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02689 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02690 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 28.11.2016
ID Description Published Updated
certa-2002-avi-011 Vulnérabilités dans la fonction libgtop 2002-01-24T00:00:00.000000 2002-01-24T00:00:00.000000
certa-2002-avi-012 Débordement de mémoire dans ICQ 2002-01-25T00:00:00.000000 2002-01-25T00:00:00.000000
certa-2002-avi-013 Vulnérabilité de OpenLDAP 2002-01-25T00:00:00.000000 2002-01-25T00:00:00.000000
certa-2002-avi-014 Vulnérabilité dans les cookies sous Netscape et Mozilla 2002-01-28T00:00:00.000000 2002-01-28T00:00:00.000000
certa-2002-avi-015 Vulnérabilité dans rsync 2002-01-28T00:00:00.000000 2002-01-28T00:00:00.000000
certa-2002-avi-016 Vulnérabilité de ptrace dans les systèmes BSD 2002-01-28T00:00:00.000000 2002-01-28T00:00:00.000000
certa-2002-avi-017 Vulnérabilité de <TT>telnet</TT> sur les commutateurs Catalyst CISCO 2002-01-30T00:00:00.000000 2002-01-30T00:00:00.000000
certa-2002-avi-018 Mauvaise gestion de l'appartenance à un domaine lors de l'authentification par SID sous Windows NT/2000 2002-01-31T00:00:00.000000 2002-01-31T00:00:00.000000
certa-2002-avi-019 Vulnérabilités de gzip 2002-02-01T00:00:00.000000 2002-02-01T00:00:00.000000
certa-2002-avi-020 Débordement de mémoire de RealPlayer 2002-02-01T00:00:00.000000 2002-02-01T00:00:00.000000
certa-2002-avi-021 Mise à jour de la gestion des fragments dans Ipfilter 2002-02-01T00:00:00.000000 2002-03-06T00:00:00.000000
certa-2002-avi-022 Vulnérabilités du serveur ProFTPD 2002-02-04T00:00:00.000000 2002-02-04T00:00:00.000000
certa-2002-avi-023 Vulnérabilité dans le serveur Web Lotus Domino 2002-02-07T00:00:00.000000 2002-02-07T00:00:00.000000
certa-2002-avi-024 Vulnérabilité dans Microsoft Office v.X pour Mac OS X 2002-02-07T00:00:00.000000 2002-02-07T00:00:00.000000
certa-2002-avi-025 Vulnérabilité dans le serveur Telnet Microsoft 2002-02-08T00:00:00.000000 2002-02-08T00:00:00.000000
certa-2002-avi-026 Vulnérabilité dans l'authentification sur Cisco Secure Access Control Server 2002-02-08T00:00:00.000000 2002-02-08T00:00:00.000000
certa-2002-avi-027 Déni de service dans Realsecure Server Sensor d'ISS 2002-02-08T00:00:00.000000 2002-02-08T00:00:00.000000
certa-2002-avi-028 Multiples vulnérabilités sur Oracle 9iAS v1.0.2.x 2002-02-11T00:00:00.000000 2002-02-11T00:00:00.000000
certa-2002-avi-029 Vulnérabilité de groff 2002-02-12T00:00:00.000000 2002-02-12T00:00:00.000000
certa-2002-avi-030 Multiples vulnérabilités d'Internet Explorer 2002-02-12T00:00:00.000000 2002-02-21T00:00:00.000000
certa-2002-avi-031 Vulnérabilité de l'agent SNMP sous Solaris 2002-02-13T00:00:00.000000 2002-02-13T00:00:00.000000
certa-2002-avi-032 vulnérabilité de SNMP sur CISCO 2002-02-13T00:00:00.000000 2002-02-13T00:00:00.000000
certa-2002-avi-033 Vulnérabilité du service <TT>SNMP</TT> sous Microsoft Windows 2002-02-13T00:00:00.000000 2002-03-15T00:00:00.000000
certa-2002-avi-034 Multiples vulnérabilités du paquetage ucd-snmp 2002-02-18T00:00:00.000000 2002-05-23T00:00:00.000000
certa-2002-avi-035 Débordement de mémoire dans CUPS 2002-02-18T00:00:00.000000 2002-03-19T00:00:00.000000
certa-2002-avi-037 Vulnérabilité des équipements HP AdvanceStack 2002-02-19T00:00:00.000000 2002-02-19T00:00:00.000000
certa-2002-avi-036 Vulnérabilité de setrlimit sous HP-UX 11.11 2002-02-20T00:00:00.000000 2002-02-20T00:00:00.000000
certa-2002-avi-038 Vulnérabilité des agents SNMP pour les équipements HP 2002-02-21T00:00:00.000000 2002-02-21T00:00:00.000000
certa-2002-avi-039 Vulnérabilité de SNMP sur Compaq 2002-02-21T00:00:00.000000 2002-04-23T00:00:00.000000
certa-2002-avi-040 Vulnérabilité dans Microsoft SQL Server 7.0 et 2000 2002-02-21T00:00:00.000000 2002-02-21T00:00:00.000000
ID Description Published Updated
certfr-2019-ale-006 Vulnérabilité dans Microsoft Remote Desktop Services 2019-05-22T00:00:00.000000 2019-10-25T00:00:00.000000
certfr-2019-ale-008 Vulnérabilité dans Microsoft SharePoint Server 2019-05-29T00:00:00.000000 2019-07-23T00:00:00.000000
certfr-2019-ale-009 Vulnérabilité dans Exim 2019-06-11T00:00:00.000000 2019-07-23T00:00:00.000000
certfr-2019-ale-010 Vulnérabilité dans Mozilla Firefox 2019-06-20T00:00:00.000000 2019-07-23T00:00:00.000000
certfr-2019-ale-011 Vulnérabilité dans Oracle WebLogic 2019-06-20T00:00:00.000000 2019-07-23T00:00:00.000000
certfr-2019-ale-012 Multiples vulnérabilités dans Microsoft Remote Desktop Services 2019-08-14T00:00:00.000000 2019-10-25T00:00:00.000000
certfr-2019-ale-013 Vulnérabilité dans Microsoft Internet Explorer 2019-09-24T00:00:00.000000 2019-10-25T00:00:00.000000
certfr-2019-ale-014 Vulnérabilité dans PHP 2019-10-29T00:00:00.000000 2020-01-08T00:00:00.000000
certfr-2019-ale-015 Multiples vulnérabilités dans Google Chrome 2019-11-04T00:00:00.000000 2020-01-08T00:00:00.000000
certfr-2020-ale-001 Multiples vulnérabilités dans les produits de Pulse Secure 2020-01-09T00:00:00.000000 2020-05-05T00:00:00.000000
certfr-2020-ale-002 Vulnérabilité dans les produits Citrix ADC et Citrix Gateway 2020-01-09T00:00:00.000000 2020-07-31T00:00:00.000000
certfr-2020-ale-003 Vulnérabilité dans les produits Mozilla 2020-01-09T00:00:00.000000 2020-01-20T00:00:00.000000
certfr-2020-ale-004 Vulnérabilité dans Microsoft Windows 2020-01-14T00:00:00.000000 2020-01-17T00:00:00.000000
certfr-2020-ale-005 Multiples vulnérabilités dans le serveur de passerelle RDP de Windows 2020-01-14T00:00:00.000000 2020-02-19T00:00:00.000000
certfr-2020-ale-006 Vulnérabilité dans Microsoft Internet Explorer 2020-01-20T00:00:00.000000 2020-02-19T00:00:00.000000
certfr-2020-ale-007 Vulnérabilité dans Microsoft Exchange Server 2020-02-27T00:00:00.000000 2020-05-05T00:00:00.000000
certfr-2020-ale-008 Vulnérabilité dans l'implémentation du protocole SMB par Microsoft 2020-03-11T00:00:00.000000 2020-07-31T00:00:00.000000
certfr-2020-ale-009 Multiples vulnérabilités dans Microsoft Windows 2020-03-24T00:00:00.000000 2020-06-23T00:00:00.000000
certfr-2020-ale-010 Multiples vulnérabilités dans Mozilla Firefox 2020-04-06T00:00:00.000000 2020-05-05T00:00:00.000000
certfr-2020-ale-011 Multiples vulnérabilités dans les produits Microsoft qui utilisent la bibliothèque Autodesk FBX 2020-04-22T00:00:00.000000 2020-06-23T00:00:00.000000
certfr-2020-ale-012 Multiples vulnérabilités dans SaltStack 2020-05-04T00:00:00.000000 2020-07-31T00:00:00.000000
certfr-2020-ale-013 Multiples vulnérabilités dans Microsoft Windows 2020-07-01T00:00:00.000000 2020-07-05T00:00:00.000000
certfr-2020-ale-014 Vulnérabilité dans Palo Alto Networks PAN-OS 2020-07-03T00:00:00.000000 2020-07-31T00:00:00.000000
certfr-2020-ale-015 Vulnérabilité dans F5 BIG-IP 2020-07-05T00:00:00.000000 2020-09-15T00:00:00.000000
certfr-2020-ale-016 Vulnérabilité dans Microsoft Domain Name System (DNS) Server 2020-07-15T00:00:00.000000 2020-10-12T00:00:00.000000
certfr-2020-ale-017 Multiples vulnérabilités dans SAP Netweaver AS JAVA 2020-07-15T00:00:00.000000 2020-10-12T00:00:00.000000
certfr-2020-ale-018 Vulnérabilité dans Cisco ASA et FTD 2020-07-28T00:00:00.000000 2020-11-05T00:00:00.000000
certfr-2020-ale-019 Recrudescence d'activité Emotet en France 2020-09-07T00:00:00.000000 2021-02-09T00:00:00.000000
certfr-2020-ale-020 [MàJ] Vulnérabilité dans Microsoft Netlogon 2020-09-15T00:00:00.000000 2021-03-11T00:00:00.000000
certfr-2020-ale-021 Vulnérabilité dans Samba 2020-09-18T00:00:00.000000 2021-03-11T00:00:00.000000
ID Description Published Updated
osv-2020-462 Global-buffer-overflow in strsep_char 2020-07-01T00:00:10.876736Z 2022-04-13T03:04:31.758468Z
osv-2020-466 Heap-buffer-overflow in LzmaDec_DecodeToDic 2020-07-01T00:00:11.093231Z 2022-04-13T03:04:40.509192Z
osv-2020-467 UNKNOWN READ in ot::MessageQueue::GetTail 2020-07-01T00:00:11.176081Z 2022-04-13T03:04:38.847365Z
osv-2020-468 Stack-buffer-overflow in ot::Ip6::Address::FromString 2020-07-01T00:00:11.286088Z 2022-04-13T03:04:38.893804Z
osv-2020-471 Stack-buffer-overflow in ot::Cli::Interpreter::ProcessService 2020-07-01T00:00:11.530819Z 2022-04-13T03:04:39.040405Z
osv-2020-473 Heap-use-after-free in Envoy::Server::InitManagerImpl::initializeTarget 2020-07-01T00:00:11.677829Z 2022-04-13T03:31:47.875856Z
osv-2020-474 Bad-free in spss_varinfo_free 2020-07-01T00:00:11.710738Z 2022-04-13T03:04:40.630289Z
osv-2020-475 Heap-use-after-free in String_clear 2020-07-01T00:00:11.741452Z 2022-04-13T03:04:41.298842Z
osv-2020-480 Use-of-uninitialized-value in _idn2_punycode_decode 2020-07-01T00:00:12.075127Z 2022-04-13T03:04:41.455759Z
osv-2020-481 Heap-buffer-overflow in sctp_handle_asconf 2020-07-01T00:00:12.106212Z 2022-04-13T03:04:42.618925Z
osv-2020-483 Heap-buffer-overflow in run_arm_filter 2020-07-01T00:00:12.210263Z 2022-04-13T03:04:41.211464Z
osv-2020-484 Heap-buffer-overflow in AAT::KerxSubTableFormat4<AAT::KerxSubTableHeader>::driver_context_t::transition 2020-07-01T00:00:12.297418Z 2022-04-13T03:04:32.842142Z
osv-2020-486 Heap-buffer-overflow in _iri_unescape_inline 2020-07-01T00:00:12.407779Z 2022-04-13T03:04:41.732522Z
osv-2020-487 UNKNOWN READ in crc32 2020-07-01T00:00:12.477818Z 2022-04-13T03:04:41.162898Z
osv-2020-489 UNKNOWN READ in ot::Dhcp6::Dhcp6Client::ProcessNextIdentityAssociation 2020-07-01T00:00:12.614826Z 2022-04-13T03:04:38.831330Z
osv-2020-490 Heap-double-free in _free_resources 2020-07-01T00:00:12.658645Z 2022-04-13T03:04:36.610309Z
osv-2020-491 Stack-buffer-overflow in Mat_VarReadNextInfo5 2020-07-01T00:00:12.708028Z 2022-04-13T03:04:43.112894Z
osv-2020-494 Use-of-uninitialized-value in Variant_decodeJson 2020-07-01T00:00:12.896994Z 2022-04-13T03:04:41.381133Z
osv-2020-496 Stack-buffer-overflow in ot::Mle::Mle::HandleParentResponse 2020-07-01T00:00:13.016987Z 2022-04-13T03:04:38.857861Z
osv-2020-497 Heap-buffer-overflow in str_table_entry 2020-07-01T00:00:13.107969Z 2022-04-13T03:04:42.182726Z
osv-2020-502 Heap-use-after-free in WelsDec::SetUnRef 2020-07-01T00:00:13.377454Z 2022-04-13T03:04:37.542309Z
osv-2020-503 Heap-use-after-free in WelsDec::SetUnRef 2020-07-01T00:00:13.407780Z 2022-04-13T03:04:37.478395Z
osv-2020-504 Global-buffer-overflow in lwan_parse_rfc_time 2020-07-01T00:00:13.515175Z 2022-04-13T03:04:31.767885Z
osv-2020-506 Stack-buffer-overflow in parse_file_extra_owner 2020-07-01T00:00:13.588403Z 2022-04-13T03:04:41.136226Z
osv-2020-508 Use-of-uninitialized-value in pe_rva_to_offset 2020-07-01T00:00:13.673641Z 2022-04-13T03:04:42.212292Z
osv-2020-509 Use-of-uninitialized-value in hb_hashmap_t<hb_serialize_context_t::object_t const*, unsigned int, 2020-07-01T00:00:13.704856Z 2022-04-13T03:04:32.820071Z
osv-2020-510 UNKNOWN READ in ot::Timer::GetFireTime 2020-07-01T00:00:13.757263Z 2022-04-13T03:04:39.081813Z
osv-2020-513 Use-of-uninitialized-value in icalcomponent_remove_component 2020-07-01T00:00:13.868635Z 2022-04-13T03:04:34.146558Z
osv-2020-514 UNKNOWN READ in asn1_item_print_ctx 2020-07-01T00:00:13.902833Z 2022-04-13T03:04:38.813418Z
osv-2020-515 Use-of-uninitialized-value in bool std::__1::equal<std::__1::__wrap_iter<unsigned char const*>, std::__1::__wr 2020-07-01T00:00:13.977406Z 2022-04-13T03:04:35.049761Z
ID Description Published Updated
rustsec-2021-0083 QueryInterface should call AddRef before returning pointer 2021-01-20T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0089 Optional `Deserialize` implementations lacking validation 2021-01-20T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0152 `out_reference::Out::from_raw` should be `unsafe` 2021-01-20T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0135 Improper validation of Windows paths could lead to directory traversal attack 2021-01-21T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0014 Record::read : Custom `Read` on uninitialized buffer may cause UB 2021-01-26T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0016 `IoReader::read()`: user-provided `Read` on uninitialized buffer may cause UB 2021-01-26T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0042 insert_many can drop elements twice on panic 2021-01-26T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0092 Deserialization functions pass uninitialized memory to user-provided Read 2021-01-26T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0148 nphysics3d is unmaintained 2021-01-29T12:00:00Z 2023-03-11T22:34:14Z
rustsec-2021-0149 nphysics2d is unmaintained 2021-01-29T12:00:00Z 2023-03-11T22:34:14Z
rustsec-2021-0150 ncollide3d is unmaintained 2021-01-29T12:00:00Z 2023-03-12T06:47:41Z
rustsec-2021-0151 ncollide2d is unmaintained 2021-01-29T12:00:00Z 2023-03-12T06:47:41Z
rustsec-2021-0017 `Read` on uninitialized buffer may cause UB (`impl Walue for Vec<u8>`) 2021-01-30T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0031 split_at allows obtaining multiple mutable references to the same data 2021-01-31T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0051 KeyValueReader passes uninitialized memory to Read instance 2021-01-31T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0018 insert_slice_clone can double drop if Clone panics. 2021-02-03T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0094 Window can read out of bounds if Read instance returns more bytes than buffer size 2021-02-03T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0019 Multiple soundness issues 2021-02-04T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0034 office is unmaintained, use calamine instead 2021-02-04T12:00:00Z 2021-03-03T18:06:07Z
rustsec-2021-0020 Multiple Transfer-Encoding headers misinterprets request payload 2021-02-05T12:00:00Z 2021-10-19T22:14:35Z
rustsec-2021-0022 Use-after-free in `subscript_next` and `subscript_prev` wrappers 2021-02-09T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0044 Use after free possible in `uri::Formatter` on panic 2021-02-09T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0023 Incorrect check on buffer length when seeding RNGs 2021-02-12T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0021 `nb-connect` invalidly assumes the memory layout of std::net::SocketAddr 2021-02-14T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0024 crate has been renamed to `sn_api` 2021-02-15T12:00:00Z 2021-02-15T16:43:30Z
rustsec-2021-0025 crate has been renamed to `qjsonrpc` 2021-02-15T12:00:00Z 2021-02-15T16:43:30Z
rustsec-2021-0029 Tape::take_bytes exposes uninitialized memory to a user-provided Read 2021-02-17T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0043 PartialReader passes uninitialized memory to user-provided Read 2021-02-17T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0046 misc::vec_with_size() can drop uninitialized memory if clone panics 2021-02-17T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0112 `Read` on uninitialized buffer may cause UB ('tectonic_xdv' crate) 2021-02-17T12:00:00Z 2023-06-13T13:10:24Z
ID Description Published Updated
alsa-2021:4399 Moderate: python3 security update 2021-11-09T09:17:02Z 2021-11-18T09:21:01Z
alsa-2021:4408 Low: libsolv security and bug fix update 2021-11-09T09:18:39Z 2021-11-12T10:21:01Z
alsa-2021:4409 Moderate: libgcrypt security and bug fix update 2021-11-09T09:18:49Z 2021-11-09T13:12:33Z
alsa-2021:4413 Moderate: tpm2-tools security and enhancement update 2021-11-09T09:19:19Z 2021-11-09T13:12:47Z
alsa-2021:4426 Moderate: ncurses security update 2021-11-09T09:21:17Z 2023-03-13T16:33:51Z
alsa-2021:4451 Moderate: gnutls and nettle security, bug fix, and enhancement update 2021-11-09T09:23:20Z 2021-11-12T10:20:56Z
alsa-2021:4455 Low: python-pip security update 2021-11-09T09:24:55Z 2021-11-12T10:20:56Z
alsa-2021:4464 Moderate: dnf security and bug fix update 2021-11-09T09:25:37Z 2021-11-12T10:21:01Z
alsa-2021:4489 Low: rpm security, bug fix, and enhancement update 2021-11-09T09:32:33Z 2021-11-12T10:20:56Z
alsa-2021:4510 Low: lua security update 2021-11-09T09:37:44Z 2021-11-12T10:21:01Z
alsa-2021:4511 Moderate: curl security and bug fix update 2021-11-09T09:38:13Z 2021-11-09T13:21:26Z
alsa-2021:4513 Moderate: libsepol security update 2021-11-09T09:39:50Z 2023-03-13T16:33:57Z
alsa-2021:4519 Moderate: autotrace security update 2021-11-09T09:40:34Z 2021-11-12T10:21:01Z
alsa-2021:4526 Important: mingw-glib2 security, bug fix, and enhancement update 2021-11-09T09:43:49Z 2021-11-12T10:21:01Z
alsa-2021:4162 Moderate: python38:3.8 and python38-devel:3.8 security update 2021-11-09T12:47:54Z 2021-11-09T12:47:25Z
alsa-2021:4382 Moderate: json-c security and bug fix update 2021-11-09T13:10:09Z 2021-11-12T10:21:01Z
alsa-2021:4517 Moderate: vim security update 2021-11-09T13:22:45Z 2021-11-12T10:20:56Z
alsa-2021:4537 Important: httpd:2.4 security update 2021-11-09T19:25:44Z 2022-01-26T07:27:24Z
alsa-2021:4135 Important: java-17-openjdk security update 2021-11-09T19:26:37Z 2021-11-12T16:36:03Z
alsa-2021:4585 Moderate: gcc-toolset-10-gcc security update 2021-11-10T08:31:42Z 2021-11-12T16:20:50Z
alsa-2021:4586 Moderate: gcc-toolset-11-gcc security update 2021-11-10T08:32:49Z 2021-11-12T16:17:39Z
alsa-2021:4587 Moderate: gcc security update 2021-11-10T08:34:56Z 2021-11-18T09:31:35Z
alsa-2021:4590 Moderate: rust-toolset:rhel8 security update 2021-11-10T08:37:57Z 2021-11-12T17:54:17Z
alsa-2021:4591 Moderate: gcc-toolset-11-annobin security update 2021-11-10T08:38:54Z 2021-11-12T16:17:39Z
alsa-2021:4592 Moderate: gcc-toolset-10-annobin security update 2021-11-10T08:39:32Z 2021-11-12T16:17:39Z
alsa-2021:4593 Moderate: annobin security update 2021-11-10T08:39:41Z 2021-11-12T16:17:39Z
alsa-2021:4594 Moderate: gcc-toolset-11-binutils security update 2021-11-10T08:40:25Z 2021-11-12T16:17:39Z
alsa-2021:4595 Moderate: binutils security update 2021-11-10T08:41:52Z 2021-11-16T08:43:55Z
alsa-2021:4622 Important: freerdp security update 2021-11-11T09:34:33Z 2021-11-12T17:48:53Z
alsa-2021:4647 Important: kernel security update 2021-11-15T09:57:15Z 2021-11-15T18:21:40Z