Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
CVE-1999-0474
N/A
The ICQ Webserver allows remote attackers to use … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.427Z
CVE-1999-0475
N/A
A race condition in how procmail handles .procmai… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.003Z
CVE-1999-0478
N/A
Denial of service in HP-UX sendmail 8.8.6 related… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.965Z
CVE-1999-0479
N/A
Denial of service Netscape Enterprise Server with… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.311Z
CVE-1999-0481
N/A
Denial of service in "poll" in OpenBSD. n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.310Z
CVE-1999-0482
N/A
OpenBSD kernel crash through TSS handling, as cau… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:44.972Z
CVE-1999-0483
N/A
OpenBSD crash using nlink value in FFS and EXT2FS… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.438Z
CVE-1999-0484
N/A
Buffer overflow in OpenBSD ping. n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.184Z
CVE-1999-0485
N/A
Remote attackers can cause a system crash through… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.367Z
CVE-1999-0487
N/A
The DHTML Edit ActiveX control in Internet Explor… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.569Z
CVE-1999-0494
N/A
Denial of service in WinGate proxy through a buff… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.276Z
CVE-1999-0496
N/A
A Windows NT 4.0 user can gain administrative rig… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.298Z
CVE-1999-0513
N/A
ICMP messages to broadcast addresses are allowed,… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.411Z
CVE-1999-0514
N/A
UDP messages to broadcast addresses are allowed, … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.325Z
CVE-1999-0526
N/A
An X server's access control is disabled (e.g. th… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.611Z
CVE-1999-0551
N/A
HP OpenMail can be misconfigured to allow users t… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.651Z
CVE-1999-0566
N/A
An attacker can write to syslog files from any lo… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.668Z
CVE-1999-0612
N/A
A version of finger is running that exposes valid… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.686Z
CVE-1999-0626
N/A
A version of rusers is running that exposes valid… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.689Z
CVE-1999-0627
N/A
The rexd service is running, which uses weak auth… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.714Z
CVE-1999-0628
N/A
The rwho/rwhod service is running, which exposes … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:41:45.691Z
CVE-1999-0151
N/A
The SATAN session key may be disclosed if the use… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:27:57.696Z
CVE-1999-0212
N/A
Solaris rpc.mountd generates error messages that … n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:50.910Z
CVE-1999-0275
N/A
Denial of service in Windows NT DNS servers by fl… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:51.891Z
CVE-1999-0280
N/A
Remote command execution in Microsoft Internet Ex… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:51.880Z
CVE-1999-0290
N/A
The WinGate telnet proxy allows remote attackers … n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:51.794Z
CVE-1999-0291
N/A
The WinGate proxy is installed without a password… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:51.855Z
CVE-1999-0297
N/A
Buffer overflow in Vixie Cron library up to versi… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:51.897Z
CVE-1999-0304
N/A
mmap function in BSD allows local attackers in th… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:51.880Z
CVE-1999-0318
N/A
Buffer overflow in xmcd 2.0p12 allows local users… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:51.883Z
ID CVSS Description Vendor Product Published Updated
ID Severity Description Published Updated
ghsa-cq94-qf6q-mf2h
5.3 (3.1)
6.3 (4.0)
Pysaml2 improperly initializes encryption vector 2018-07-16T16:50:30Z 2024-10-14T15:36:52Z
ghsa-mm62-wxc8-cf7m
9.8 (3.1)
Code Execution Through IIFE in serialize-to-js 2018-07-18T18:27:41Z 2023-09-13T19:43:49Z
ghsa-q4v7-4rhw-9hqm
9.8 (3.1)
Code Execution through IIFE in node-serialize 2018-07-18T18:27:56Z 2021-06-23T15:41:17Z
ghsa-jcw8-r9xm-32c6
Command Injection in dns-sync 2018-07-18T18:28:02Z 2020-08-31T18:26:20Z
ghsa-ww6v-677g-p656
10.0 (3.1)
Sandbox Breakout in safe-eval 2018-07-18T18:28:10Z 2023-09-11T22:19:18Z
ghsa-85fq-56wq-gmcf
7.5 (3.1)
Withdrawn Advisory: mariadb was malware 2018-07-18T18:28:17Z 2024-04-19T18:09:24Z
ghsa-m85c-9mf8-m2m6
9.8 (3.1)
9.3 (4.0)
Unsafe deserialization in confire 2018-07-18T18:28:26Z 2024-09-13T18:29:06Z
ghsa-686g-3xr3-x4x6
5.3 (3.1)
Information Exposure on Case Insensitive File Systems in serve 2018-07-18T18:33:15Z 2021-09-01T22:46:06Z
ghsa-h24f-9mm4-w336
6.1 (3.1)
Cross-site Scripting (XSS) - Stored in crud-file-server 2018-07-18T18:34:27Z 2023-01-31T01:54:25Z
ghsa-qmm9-x5gr-4gfm
6.1 (3.1)
Open Redirect in hekto 2018-07-18T21:20:12Z 2023-01-31T01:42:14Z
ghsa-w4pv-w56c-mg4v
7.5 (3.1)
Path Traversal in stattic 2018-07-18T21:20:15Z 2023-01-31T01:40:33Z
ghsa-vfp9-gwrh-wq9g
7.5 (3.1)
Path Traversal in crud-file-server 2018-07-18T21:20:19Z 2023-03-01T01:14:15Z
ghsa-62g9-6hw5-rwfp
7.5 (3.1)
Path Traversal in resolve-path 2018-07-18T21:20:25Z 2023-03-01T01:46:15Z
ghsa-rwv8-jvff-jq28
7.5 (3.1)
Path Traversal in public 2018-07-18T21:20:30Z 2023-01-31T01:37:12Z
ghsa-mq6c-fh97-4gwv
7.5 (3.1)
Denial of Service vulnerability with large JSON payloads in fastify 2018-07-18T21:20:34Z 2023-03-01T01:17:45Z
ghsa-wrvr-8mpx-r7pp
7.5 (3.1)
mime Regular Expression Denial of Service when MIME lookup performed on untrusted user input 2018-07-20T16:20:52Z 2023-09-12T18:28:52Z
ghsa-rvj9-8cvx-3vq9
5.9 (3.1)
Invalid Curve Attack in node-jose 2018-07-20T21:10:14Z 2023-09-06T23:38:57Z
ghsa-6fcq-3cm2-j3j5
7.8 (3.1)
Kcapifony gem for Ruby places database user passwords on the command line 2018-07-23T19:50:11Z 2023-07-31T20:51:51Z
ghsa-g982-9r8g-6qxw
5.5 (3.1)
Ciborg gem for Ruby allows local users to write files and gain privileges via Symlink 2018-07-23T19:50:15Z 2023-07-05T17:57:47Z
ghsa-69mv-3642-wj3w
Low severity vulnerability that affects sensu 2018-07-23T19:50:22Z 2021-12-02T22:56:27Z
ghsa-pq3x-96c3-xgjg
Moderate severity vulnerability that affects Products.PlonePAS 2018-07-23T19:50:29Z 2025-04-09T19:45:47Z
ghsa-6h52-4vmh-8x4f
7.5 (3.1)
8.7 (4.0)
feedparser denial of service vulnerability 2018-07-23T19:50:33Z 2024-09-20T17:28:00Z
ghsa-pvhp-v9qp-xf5r
9.8 (3.1)
9.3 (4.0)
Django-piston and Django-tastypie do not properly deserialize YAML data 2018-07-23T19:50:48Z 2024-09-16T23:00:29Z
ghsa-pcwm-8jc3-qxvj
7.5 (3.1)
8.7 (4.0)
Plone Denial of Service vulnerability 2018-07-23T19:50:52Z 2024-10-11T21:04:36Z
ghsa-p7h9-vf92-5fj5
6.1 (3.1)
5.3 (4.0)
Cross-site scripting in Products.CMFPlone and Products.PasswordResetTool 2018-07-23T19:50:57Z 2024-10-14T21:44:29Z
ghsa-3qpr-7rmg-73v8
7.5 (3.1)
8.7 (4.0)
Plone and Zope2 affected by Race Condition 2018-07-23T19:51:02Z 2024-10-11T21:23:40Z
ghsa-5j2h-h5hg-3wf8
7.5 (3.1)
8.2 (4.0)
Cross-site request forgery in Django 2018-07-23T19:51:10Z 2024-09-16T21:30:38Z
ghsa-48vv-2pmq-9fvv
7.5 (3.1)
8.7 (4.0)
Plone and Zope2 do not reseed pseudo-random number generator 2018-07-23T19:51:14Z 2024-10-09T21:08:59Z
ghsa-h95j-h2rv-qrg4
7.5 (3.1)
8.7 (4.0)
Django Cross-Site Request Forgery vulnerability 2018-07-23T19:51:19Z 2024-09-16T22:05:38Z
ghsa-v7q8-wvvh-c97p
Moderate severity vulnerability that affects Zope2 2018-07-23T19:51:28Z 2020-06-16T21:57:13Z
ID Severity Description Package Published Updated
pysec-2014-104
FreeIPA 4.0.x before 4.0.5 and 4.1.x before 4.1.1, when 2FA is enabled, allows remote att… ipa 2014-11-19T18:59:00Z 2024-11-21T14:22:52.00819Z
pysec-2014-11
pip 1.3 through 1.5.6 allows local users to cause a denial of service (prevention of pack… pip 2014-11-24T15:59:00Z 2021-07-05T00:01:24.413265Z
pysec-2015-36
Buffer overflow in the RiffVideo::infoTagsHandler function in riffvideo.cpp in Exiv2 0.24… exiv2 2015-01-02T20:59:00Z 2024-11-21T14:22:45.931449Z
pysec-2015-16
Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed… pillow 2015-01-16T16:59:00Z 2021-07-05T00:01:23.853626Z
pysec-2015-4
Django before 1.4.18, 1.6.x before 1.6.10, and 1.7.x before 1.7.3 allows remote attackers… django 2015-01-16T16:59:00Z 2021-07-05T00:01:19.325962Z
pysec-2015-5
The django.util.http.is_safe_url function in Django before 1.4.18, 1.6.x before 1.6.10, a… django 2015-01-16T16:59:00Z 2021-07-05T00:01:19.540383Z
pysec-2015-6
The django.views.static.serve view in Django before 1.4.18, 1.6.x before 1.6.10, and 1.7.… django 2015-01-16T16:59:00Z 2021-07-05T00:01:19.682404Z
pysec-2015-7
ModelMultipleChoiceField in Django 1.6.x before 1.6.10 and 1.7.x before 1.7.3, when show_… django 2015-01-16T16:59:00Z 2021-07-05T00:01:19.802913Z
pysec-2015-29
RhodeCode before 2.2.7 and Kallithea 0.1 allows remote authenticated users to obtain API … kallithea 2015-02-16T15:59:00Z 2021-07-25T23:49:37.203310Z
pysec-2015-32
RhodeCode before 2.2.7 and Kallithea 0.1 allows remote authenticated users to obtain API … rhodecode 2015-02-16T15:59:00Z 2021-07-25T23:34:53.419876Z
pysec-2015-33
RhodeCode before 2.2.7 allows remote authenticated users to obtain API keys and other sen… rhodecode 2015-02-16T15:59:00Z 2021-07-25T23:34:53.466212Z
pysec-2015-37
OpenStack Image Registry and Delivery Service (Glance) 2014.2 through 2014.2.2 does not p… glance 2015-02-24T15:59:00Z 2024-11-25T18:35:18.357593Z
pysec-2015-38
OpenStack Image Registry and Delivery Service (Glance) 2014.2 through 2014.2.2 does not p… glance 2015-02-24T15:59:00Z 2024-11-25T18:35:18.357593Z
pysec-2015-8
Cross-site scripting (XSS) vulnerability in the contents function in admin/helpers.py in … django 2015-03-12T14:59:00Z 2021-07-05T00:01:19.894697Z
pysec-2015-17
The resolve_redirects function in sessions.py in requests 2.1.0 through 2.5.3 allows remo… requests 2015-03-18T16:59:00Z 2021-07-05T00:01:25.716066Z
pysec-2015-18
The utils.html.strip_tags function in Django 1.6.x before 1.6.11, 1.7.x before 1.7.7, and… django 2015-03-25T14:59:00Z 2021-09-01T08:35:41.398239Z
pysec-2015-9
The utils.http.is_safe_url function in Django before 1.4.20, 1.5.x, 1.6.x before 1.6.11, … django 2015-03-25T14:59:00Z 2021-09-01T08:35:43.249549Z
pysec-2015-14
The _validaterepo function in sshpeer in Mercurial before 3.2.4 allows remote attackers t… mercurial 2015-03-31T14:59:00Z 2021-07-05T00:01:22.697962Z
pysec-2015-34
The build_index_from_tree function in index.py in Dulwich before 0.9.9 allows remote atta… dulwich 2015-03-31T14:59:00Z 2021-08-27T03:22:03.389388Z
pysec-2015-35
Buffer overflow in the C implementation of the apply_delta function in _pack.c in Dulwich… dulwich 2015-03-31T14:59:00Z 2021-08-27T03:22:03.427700Z
pysec-2015-30
The s3_token middleware in OpenStack keystonemiddleware before 1.6.0 and python-keystonec… keystonemiddleware 2015-04-17T17:59:00Z 2021-07-25T23:34:39.021539Z
pysec-2015-31
The s3_token middleware in OpenStack keystonemiddleware before 1.6.0 and python-keystonec… python-keystoneclient 2015-04-17T17:59:00Z 2021-07-25T23:34:52.173858Z
pysec-2015-12
django-markupfield before 1.3.2 uses the default docutils RESTRUCTUREDTEXT_FILTER_SETTING… django-markupfield 2015-04-24T14:59:00Z 2021-07-05T00:01:17.695542Z
pysec-2015-15
The Jpeg2KImagePlugin plugin in Pillow before 2.5.3 allows remote attackers to cause a de… pillow 2015-05-01T15:59:00Z 2021-07-05T00:01:23.790243Z
pysec-2015-19
The session.flush function in the cached_db backend in Django 1.8.x before 1.8.2 does not… django 2015-06-02T14:59:00Z 2021-07-15T02:22:09.577532Z
pysec-2015-3
The admin command in ceph-deploy before 1.5.25 uses world-readable permissions for /etc/c… ceph-deploy 2015-06-08T14:59:00Z 2021-07-05T00:01:17.307671Z
pysec-2015-2
ceph-deploy before 1.5.23 uses weak permissions (644) for ceph/ceph.client.admin.keyring,… ceph-deploy 2015-06-16T16:59:00Z 2021-07-05T00:01:17.275200Z
pysec-2015-10
Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 use… django 2015-07-14T17:59:00Z 2021-07-05T00:01:20.182098Z
pysec-2015-20
The session backends in Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, an… django 2015-07-14T17:59:00Z 2021-08-11T21:51:02.776258Z
pysec-2015-21
validators.URLValidator in Django 1.8.x before 1.8.3 allows remote attackers to cause a d… django 2015-07-14T17:59:00Z 2021-07-15T02:22:09.798596Z
ID Description Type
ID Description Updated
ID Description Published Updated
mal-2022-6986 Malicious code in vt-blockchain-bootcamp-starter-frontend (npm) 2022-06-08T09:01:01Z 2022-06-08T09:01:07Z
mal-2022-899 Malicious code in ai-cluster-manager (npm) 2022-06-08T09:01:01Z 2022-06-08T09:01:07Z
mal-2022-4227 Malicious code in kruit (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:02Z
mal-2022-4608 Malicious code in misk-web-docs (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:02Z
mal-2022-4609 Malicious code in misk-web-tab-admin-dashboard (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:02Z
mal-2022-4610 Malicious code in misk-web-tab-app (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:02Z
mal-2022-4611 Malicious code in misk-web-tab-config (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:02Z
mal-2022-4612 Malicious code in misk-web-tab-database (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:07Z
mal-2022-4613 Malicious code in misk-web-tab-template-basic (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:02Z
mal-2022-4614 Malicious code in misk-web-tab-web-actions (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:07Z
mal-2022-4615 Malicious code in misk-webadmin (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:02Z
mal-2022-4735 Malicious code in multisig (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:07Z
mal-2022-4798 Malicious code in neo-savant (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:07Z
mal-2022-4971 Malicious code in nucleus-wallet (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:03Z
mal-2022-5965 Malicious code in scilla (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:03Z
mal-2022-5966 Malicious code in scilla-server (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:03Z
mal-2022-6415 Malicious code in tangerine-state-viewer (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:07Z
mal-2022-7372 Malicious code in z-wallet (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:03Z
mal-2022-7389 Malicious code in zilliqa-exchange-tutorial (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:03Z
mal-2022-7390 Malicious code in zilliqa-social-pay (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:07Z
mal-2022-7392 Malicious code in zilliqa-token-contract (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:03Z
mal-2022-7413 Malicious code in zrc2-wallet-zilliqa (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:03Z
mal-2022-898 Malicious code in ai-aws-manager (npm) 2022-06-08T09:01:02Z 2022-06-08T09:01:07Z
mal-2022-1001 Malicious code in angieslist-visitor-app-common (npm) 2022-06-08T09:02:07Z 2022-06-08T09:02:07Z
mal-2022-5072 Malicious code in on-running-script-context (npm) 2022-06-08T09:05:17Z 2022-06-08T09:05:18Z
mal-2022-1492 Malicious code in bebekair (npm) 2022-06-09T08:38:52Z 2022-06-09T08:38:52Z
mal-2022-1800 Malicious code in calc_testing (npm) 2022-06-09T08:38:52Z 2022-06-09T08:38:52Z
mal-2022-1015 Malicious code in anotherpackagefor101 (npm) 2022-06-09T08:46:50Z 2022-06-09T08:46:50Z
mal-2022-4822 Malicious code in newtestforme1007 (npm) 2022-06-09T08:46:50Z 2022-06-09T08:46:50Z
mal-2022-4823 Malicious code in newtestforme1008 (npm) 2022-06-09T08:46:50Z 2022-06-09T08:46:50Z
ID Description Published Updated
bit-gitlab-2023-6840 Missing Authorization in GitLab 2024-03-06T10:54:04.182Z 2025-05-20T10:02:07.006Z
bit-haproxy-2022-0711 2024-03-06T10:54:04.395Z 2025-04-03T14:40:37.652Z
bit-consul-2020-7219 2024-03-06T10:54:04.970Z 2025-04-03T14:40:37.652Z
bit-gitea-2021-45330 2024-03-06T10:54:05.371Z 2025-04-03T14:40:37.652Z
bit-elasticsearch-2021-22132 2024-03-06T10:54:05.664Z 2025-04-03T14:40:37.652Z
bit-helm-2022-23524 Helm vulnerable to Denial of service through string value parsing 2024-03-06T10:54:06.367Z 2025-05-20T10:02:07.006Z
bit-grafana-2023-0594 2024-03-06T10:54:07.303Z 2025-04-03T14:40:37.652Z
bit-drupal-2022-24729 Regular expression Denial of Service in dialog plugin 2024-03-06T10:54:08.369Z 2025-05-20T10:02:07.006Z
bit-apache-2021-44790 Possible buffer overflow when parsing multipart content in mod_lua of Apache HTTP Server 2.4.51 and earlier 2024-03-06T10:54:08.593Z 2025-05-20T10:02:07.006Z
bit-airflow-2023-37379 Apache Airflow: Exposure of sensitive connection information, DOS and SSRF on "test connection" feature 2024-03-06T10:54:08.760Z 2025-05-20T10:02:07.006Z
bit-django-2021-44420 2024-03-06T10:54:09.079Z 2025-04-03T14:40:37.652Z
bit-golang-2023-39321 Panic when processing post-handshake message on QUIC connections in crypto/tls 2024-03-06T10:54:10.069Z 2025-05-20T10:02:07.006Z
bit-dotnet-2023-36049 .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability 2024-03-06T10:54:10.094Z 2025-05-20T10:02:07.006Z
bit-jupyterhub-2020-36191 2024-03-06T10:54:10.265Z 2025-04-03T14:40:37.652Z
bit-envoy-2023-27491 Envoy forwards invalid Http2/Http3 downstream headers 2024-03-06T10:54:12.095Z 2025-05-20T10:02:07.006Z
bit-jupyterlab-2024-22420 Stored cross site scripting in Markdown Preview in JupyterLab 2024-03-06T10:54:13.085Z 2025-05-20T10:02:07.006Z
bit-gradle-2021-41586 2024-03-06T10:54:13.270Z 2025-04-03T14:40:37.652Z
bit-gitea-2021-45329 2024-03-06T10:54:13.704Z 2025-04-03T14:40:37.652Z
bit-gitlab-2023-6736 Inefficient Regular Expression Complexity in GitLab 2024-03-06T10:54:14.703Z 2025-05-20T10:02:07.006Z
bit-ghost-2021-39192 Privilege escalation: all users can access Admin-level API keys 2024-03-06T10:54:14.780Z 2025-05-20T10:02:07.006Z
bit-elasticsearch-2020-7021 2024-03-06T10:54:14.978Z 2025-04-03T14:40:37.652Z
bit-discourse-2023-41043 Discourse DoS via SvgSprite cache 2024-03-06T10:54:15.062Z 2025-05-20T10:02:07.006Z
bit-consul-2020-28053 2024-03-06T10:54:15.090Z 2025-04-03T14:40:37.652Z
bit-haproxy-2021-40346 2024-03-06T10:54:15.896Z 2025-04-03T14:40:37.652Z
bit-jenkins-2023-43498 2024-03-06T10:54:16.360Z 2025-04-03T14:40:37.652Z
bit-helm-2021-32690 Repository credentials passed to alternate domain 2024-03-06T10:54:16.903Z 2025-05-20T10:02:07.006Z
bit-apache-2021-44224 Possible NULL dereference or SSRF in forward proxy configurations in Apache HTTP Server 2.4.51 and earlier 2024-03-06T10:54:18.475Z 2025-05-20T10:02:07.006Z
bit-kafka-2022-34917 Unauthenticated clients may cause OutOfMemoryError on Apache Kafka Brokers 2024-03-06T10:54:18.506Z 2025-05-20T10:02:07.006Z
bit-airflow-2023-36543 Apache Airflow: ReDoS via dags function 2024-03-06T10:54:19.002Z 2025-05-20T10:02:07.006Z
bit-grafana-2023-0507 2024-03-06T10:54:19.173Z 2025-04-03T14:40:37.652Z
ID Description Published Updated
drupal-contrib-2025-003 2025-01-15T15:58:05.000Z 2025-03-31T22:03:43.000Z
drupal-contrib-2025-004 2025-01-22T16:50:12.000Z 2025-05-29T18:26:44.000Z
drupal-contrib-2025-005 2025-01-22T16:59:00.000Z 2025-03-31T22:23:08.000Z
drupal-contrib-2025-006 2025-01-22T17:00:11.000Z 2025-03-31T22:23:16.000Z
drupal-contrib-2025-007 2025-01-22T17:01:38.000Z 2025-03-31T22:04:03.000Z
drupal-contrib-2025-008 2025-01-29T08:51:50.000Z 2025-03-31T22:04:11.000Z
drupal-contrib-2025-009 2025-01-29T16:54:02.000Z 2025-03-31T22:04:22.000Z
drupal-contrib-2025-010 2025-01-29T16:57:22.000Z 2025-03-31T22:23:22.000Z
drupal-contrib-2025-011 2025-01-29T17:13:29.000Z 2025-03-31T22:04:35.000Z
drupal-contrib-2025-012 2025-01-29T17:16:19.000Z 2025-03-31T22:04:42.000Z
drupal-contrib-2025-013 2025-02-05T17:24:48.000Z 2025-03-31T22:04:51.000Z
drupal-contrib-2025-014 2025-02-12T17:37:40.000Z 2025-03-31T22:05:00.000Z
drupal-contrib-2025-015 2025-02-12T17:37:59.000Z 2025-03-31T22:05:08.000Z
drupal-contrib-2025-016 2025-02-12T17:38:09.000Z 2025-03-31T22:05:16.000Z
drupal-contrib-2025-017 2025-02-12T17:38:22.000Z 2025-03-31T22:05:40.000Z
drupal-contrib-2025-018 2025-02-26T18:34:59.000Z 2025-03-31T22:06:05.000Z
drupal-contrib-2025-019 2025-02-26T18:35:11.000Z 2025-03-31T22:06:12.000Z
drupal-contrib-2025-020 2025-02-26T18:35:21.000Z 2025-03-31T22:06:18.000Z
drupal-contrib-2025-021 2025-03-05T17:18:25.000Z 2025-03-31T22:06:37.000Z
drupal-contrib-2025-022 2025-03-05T17:27:19.000Z 2025-03-31T22:06:45.000Z
drupal-contrib-2025-023 2025-03-05T18:17:14.000Z 2025-03-31T22:06:55.000Z
drupal-contrib-2025-024 2025-03-19T18:52:53.000Z 2025-03-31T22:07:08.000Z
drupal-contrib-2025-025 2025-03-19T18:53:23.000Z 2025-03-31T22:07:15.000Z
drupal-contrib-2025-026 2025-03-19T18:53:42.000Z 2025-03-31T22:07:23.000Z
drupal-contrib-2025-027 2025-04-02T17:01:45.000Z 2025-04-02T17:01:45.000Z
drupal-contrib-2025-028 2025-04-02T17:02:32.000Z 2025-04-02T17:02:32.000Z
drupal-contrib-2025-029 2025-04-02T17:03:15.000Z 2025-04-02T17:03:15.000Z
drupal-contrib-2025-030 2025-04-09T17:04:09.000Z 2025-04-09T17:04:09.000Z
drupal-contrib-2025-031 2025-04-09T17:04:15.000Z 2025-04-10T16:01:51.000Z
drupal-contrib-2025-032 2025-04-09T17:04:46.000Z 2025-04-09T17:04:46.000Z
ID Description Updated
ID Description Published Updated
jvndb-2008-000005 Multiple Yamaha routers vulnerable to cross-site request forgery 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-000006 Cross-site scripting vulnerabilities in multiple Hal Networks shopping cart products 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-000007 RaidenHTTPD cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-000008 PC2M cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-000009 Apache Tomcat fails to properly handle cookie value 2008-05-21T00:00+09:00 2010-01-05T12:14+09:00
jvndb-2008-000010 Google Desktop cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T11:31+09:00
jvndb-2008-000011 Internet Scanner reporting engine vulnerable to cross-site scripting 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-000012 Cross-site scripting vulnerability in multiple Tor World CGI scripts 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-000013 FTP bounce vulnerability in multiple Canon digital multifunction copiers and laser beam printers 2008-05-21T00:00+09:00 2008-05-21T11:31+09:00
jvndb-2008-000014 Nagios cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-000015 BFup ActiveX Control buffer overflow vulnerability 2008-05-21T00:00+09:00 2008-05-21T11:32+09:00
jvndb-2008-000016 Sun Java Runtime Environment (JRE) contains a vulnerability in processing XSLT transformations 2008-05-21T00:00+09:00 2008-10-09T13:35+09:00
jvndb-2008-000017 Multiple I-O DATA DEVICE wireless LAN routers default configuration does not set authentication 2008-05-21T00:00+09:00 2008-05-21T11:32+09:00
jvndb-2008-000018 Namazu cross-site scripting vulnerability 2008-05-21T00:00+09:00 2009-10-27T13:43+09:00
jvndb-2008-000019 PerlMailer cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T11:33+09:00
jvndb-2008-000020 DesignForm cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T11:33+09:00
jvndb-2008-000021 Mozilla Firefox cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-07-29T14:54+09:00
jvndb-2008-000022 Lhaplus buffer overflow vulnerability 2008-05-21T00:00+09:00 2008-05-21T11:33+09:00
jvndb-2008-000023 Sony mylo COM-2 does not verify server SSL certificate 2008-05-21T00:00+09:00 2008-05-21T11:34+09:00
jvndb-2008-000027 Cross-site scripting vulnerabilities in multiple Bluemoon Inc. XOOPS modules 2008-05-21T00:00+09:00 2008-05-21T11:34+09:00
jvndb-2008-001096 EUR Print Manager Denial of Service Vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-001097 SEWB3/PLATFORM Denial of Service Vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-001150 JP1/HIBUN Encryption/Decryption and Removable Media Control Malfunction Problems 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2008-001311 Symantec Backup Exec for Windows Server ActiveX Control Multiple Buffer Overflow Vulnerabilities 2008-05-21T00:00+09:00 2008-11-21T12:20+09:00
jvndb-2008-001312 Symantec Backup Exec for Windows Server ActiveX Control Multiple Vulnerabilities 2008-05-21T00:00+09:00 2008-11-21T12:20+09:00
jvndb-2008-001313 JP1/Cm2/Network Node Manager Denial of Service Vulnerability 2008-05-21T00:00+09:00 2008-05-21T11:34+09:00
jvndb-2008-001347 JP1/Cm2/Network Node Manager Web Coordinated Function Multiple Vulnerabilities 2008-06-06T12:00+09:00 2008-06-06T12:00+09:00
jvndb-2008-001348 Groupmax World Wide Web Desktop/BUNSHOKANRI(=DocumentManagement) Cross-Site Scripting Vulnerability 2008-06-06T12:00+09:00 2008-06-06T12:00+09:00
jvndb-2008-001349 XMAP3 Denial of Service (DoS) Vulneability 2008-06-06T12:00+09:00 2008-06-06T12:00+09:00
jvndb-2008-001350 Hitachi Groupmax Collaboration Products Cross-Site Scripting Vulnerability 2008-06-06T12:00+09:00 2008-06-06T12:00+09:00
ID Description Updated
ID Description
ID Description Published Updated
cnvd-2015-00213 OpenSSL安全绕过漏洞 2015-01-09 2015-01-12
cnvd-2015-00214 OpenSSL中间人安全绕过漏洞(CNVD-2015-00214) 2015-01-09 2015-01-12
cnvd-2015-00215 OpenSSL中间人安全绕过漏洞(CNVD-2015-00215) 2015-01-09 2015-01-12
cnvd-2015-00216 OpenSSL Certificate fingerprints本地安全绕过漏洞 2015-01-09 2015-01-12
cnvd-2015-00220 OpenSSL存在未明漏洞 2015-01-09 2015-01-13
cnvd-2015-00221 OpenSSL no-ssl3选项空指针引用漏洞 2015-01-09 2015-01-13
cnvd-2015-00222 OpenSSL dtls1_get_record函数拒绝服务漏洞 2015-01-09 2015-01-10
cnvd-2015-00285 多个产品UEFI系统本地安全绕过漏洞 2015-01-09 2015-01-14
cnvd-2015-00286 Linux Kernel isofs信息泄露漏洞 2015-01-09 2015-01-14
cnvd-2015-00287 xbindkeys-config '/tmp/xbindkeysrc-tmp'本地临时文件创建漏洞 2015-01-09 2015-01-14
cnvd-2015-00288 Intel Chipsets本地竞争条件安全绕过漏洞 2015-01-09 2015-01-14
cnvd-2015-00290 多个BlackBerry产品本地安全绕过漏洞 2015-01-09 2015-01-14
cnvd-2015-00291 p7zip符号链接目录遍历漏洞 2015-01-09 2015-01-14
cnvd-2015-00218 WordPress插件Cdnvote SQL注入漏洞 2015-01-12 2015-01-13
cnvd-2015-00219 Redaxscript 'includes/password.php'存在多个SQL注入漏洞 2015-01-12 2015-01-13
cnvd-2015-00223 Cisco MDS 9000 NX-OS Software拒绝服务漏洞 2015-01-12 2015-01-13
cnvd-2015-00224 Cisco WebEx Meetings Server用户枚举漏洞(CNVD-2015-00224) 2015-01-12 2015-01-13
cnvd-2015-00225 Cisco WebEx Meetings Server用户枚举漏洞(CNVD-2015-00225) 2015-01-12 2015-01-13
cnvd-2015-00226 Cisco Unified Communications Domain Manager远程拒绝服务漏洞(CNVD-2015-00226) 2015-01-12 2015-01-13
cnvd-2015-00227 Cisco WebEx Meetings Server验证绕过漏洞 2015-01-12 2015-01-13
cnvd-2015-00228 Cisco Secure Access Control Server开放重定向漏洞 2015-01-12 2015-01-13
cnvd-2015-00229 Cisco WebEx Meetings Server加密密码泄露漏洞 2015-01-12 2015-01-13
cnvd-2015-00230 Cisco Secure Access Control Server存在多个跨站脚本漏洞(CNVD-2015-00230) 2015-01-12 2015-01-13
cnvd-2015-00231 Cisco WebEx Meetings Server跨站脚本漏洞 2015-01-12 2015-01-13
cnvd-2015-00232 Cisco Secure Access Control Server权限提升漏洞 2015-01-12 2015-01-13
cnvd-2015-00233 Cisco WebEx Meetings Server跨站请求伪造漏洞(CNVD-2015-00233) 2015-01-12 2015-01-13
cnvd-2015-00234 TYPO3 Content Rating SQL注入漏洞 2015-01-12 2015-01-13
cnvd-2015-00235 TYPO3 Content Rating跨站脚本漏洞 2015-01-12 2015-01-13
cnvd-2015-00236 TYPO3 Content Rating Extbase Extension存在多个输入验证漏洞 2015-01-12 2015-01-13
cnvd-2015-00237 TYPO3 LDAP/SSO Authentication Extension验证绕过漏洞 2015-01-12 2015-01-13
ID Description Published Updated
bdu:2015-02691 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02692 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02693 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02694 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02695 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02696 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02697 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02698 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02699 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02700 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02701 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02702 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02703 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02704 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02705 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02706 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02707 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02708 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02709 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02710 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 21.09.2020
bdu:2015-02711 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02712 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02713 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02714 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02715 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02716 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02717 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02718 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02719 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02720 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
ID Description Published Updated
certa-2002-avi-041 Vulnérabilité du contrôle ActiveX XMLHTTP 2002-02-22T00:00:00.000000 2002-02-22T00:00:00.000000
certa-2002-avi-042 Vulnérabilité de Internet Explorer liée aux VBScripts 2002-02-22T00:00:00.000000 2002-02-22T00:00:00.000000
certa-2002-avi-043 Multiples Vulnérabilités sur squid 2002-02-22T00:00:00.000000 2002-03-07T00:00:00.000000
certa-2002-avi-044 Vulnérabilité dans Microsoft Commerce Server 2000 2002-02-22T00:00:00.000000 2002-02-22T00:00:00.000000
certa-2002-avi-045 Vulnérabilité dans CISCO CEF 2002-02-28T00:00:00.000000 2002-02-28T00:00:00.000000
certa-2002-avi-046 Multiples vulnérabilités de SMTP pour Microsoft Windows 2002-02-28T00:00:00.000000 2002-02-28T00:00:00.000000
certa-2002-avi-047 Vulnérabilités de PHP 2002-02-28T00:00:00.000000 2002-02-28T00:00:00.000000
certa-2002-avi-048 Multiples implémentations du protocole RADIUS vulnérables 2002-03-05T00:00:00.000000 2002-03-05T00:00:00.000000
certa-2002-avi-049 Vulnérabilité SSL sous Apache 2002-03-05T00:00:00.000000 2002-03-05T00:00:00.000000
certa-2002-avi-050 Vulnérabilité de la machine virtuelle Java 2002-03-05T00:00:00.000000 2002-06-06T00:00:00.000000
certa-2002-avi-051 Vulnérabilité dans le shell Windows 2002-03-08T00:00:00.000000 2002-03-08T00:00:00.000000
certa-2002-avi-052 Vulnérabilité dans la librairie <TT>zlib / libz</TT> 2002-03-12T00:00:00.000000 2002-03-12T00:00:00.000000
certa-2002-avi-053 Débordement de mémoire dans OpenSSH v2 2002-03-12T00:00:00.000000 2002-03-12T00:00:00.000000
certa-2002-avi-054 Vulnérabilité dans Netscape Communicator 6.0 2002-03-15T00:00:00.000000 2002-03-15T00:00:00.000000
certa-2002-avi-055 Contournement de l'autentification pam-pgsql 2002-03-19T00:00:00.000000 2002-03-19T00:00:00.000000
certa-2002-avi-056 Vulnérabilité de la machine virtuelle Java 2002-03-19T00:00:00.000000 2003-04-01T00:00:00.000000
certa-2002-avi-057 Multiples vulnérabilités sur Lotus Domino 5.0 2002-03-20T00:00:00.000000 2002-03-20T00:00:00.000000
certa-2002-avi-058 Vulnérabilité de l'agent SNMP sous Lotus Domino 2002-03-20T00:00:00.000000 2002-03-20T00:00:00.000000
certa-2002-avi-059 Vulnérabilité sur les gestionnaires d'affichage X11 utilisant le protocole XDMCP 2002-03-21T00:00:00.000000 2002-03-22T00:00:00.000000
certa-2002-avi-060 Vulnérabilité dans le commutateur Alteon ACEdirector (AD) de Nortel Networks 2002-03-25T00:00:00.000000 2002-03-25T00:00:00.000000
certa-2002-avi-061 Vulnérabilité sur webmin 2002-03-25T00:00:00.000000 2002-03-25T00:00:00.000000
certa-2002-avi-062 Vulnérabilité dans le service d'accès Web <SPAN class="textit">XWebMail</SPAN> de la société XandMail 2002-03-26T00:00:00.000000 2002-03-26T00:00:00.000000
certa-2002-avi-063 Vulnérabilité dans GESTOR 2.21 2002-03-26T00:00:00.000000 2002-03-26T00:00:00.000000
certa-2002-avi-064 Vulnérabilité de CISCO CallManager 3.1 2002-03-28T00:00:00.000000 2002-03-28T00:00:00.000000
certa-2002-avi-065 Vulnérabilité du logiciel Analog 2002-03-29T00:00:00.000000 2002-03-29T00:00:00.000000
certa-2002-avi-066 Vulnérabilités dans Internet Explorer 2002-03-29T00:00:00.000000 2002-03-29T00:00:00.000000
certa-2002-avi-067 Dénis de service sous IRIX/SGI 2002-04-02T00:00:00.000000 2002-04-02T00:00:00.000000
certa-2002-avi-068 Vulnérabilité dans Squid 2002-04-02T00:00:00.000000 2002-04-02T00:00:00.000000
certa-2002-avi-069 Vulnérabilités des agents SNMP sous IRIX 2002-04-04T00:00:00.000000 2002-04-25T00:00:00.000000
certa-2002-avi-070 Vulnérabilités dans Cisco Secure ACS pour Windows 2002-04-05T00:00:00.000000 2002-04-05T00:00:00.000000
ID Description Published Updated
certfr-2020-ale-022 [MàJ] Vulnérabilité dans Oracle Weblogic 2020-10-30T00:00:00.000000 2020-12-17T00:00:00.000000
certfr-2020-ale-023 Multiples vulnérabilités dans Google Chrome 2020-11-12T00:00:00.000000 2020-12-04T00:00:00.000000
certfr-2020-ale-024 [MaJ] Vulnérabilité dans les produits VMware 2020-11-24T00:00:00.000000 2020-12-17T00:00:00.000000
certfr-2020-ale-025 Vulnérabilité dans Fortinet FortiOS SSL-VPN 2020-11-27T00:00:00.000000 2021-02-08T00:00:00.000000
certfr-2020-ale-026 [MaJ] Présence de code malveillant dans SolarWinds Orion 2020-12-14T00:00:00.000000 2021-04-15T00:00:00.000000
certfr-2021-ale-001 |MàJ] Vulnérabilité dans SonicWall SMA100 2021-02-02T00:00:00.000000 2021-05-12T00:00:00.000000
certfr-2021-ale-002 [MàJ] Vulnérabilité dans Google Chrome et Microsoft Edge 2021-02-05T00:00:00.000000 2021-03-11T00:00:00.000000
certfr-2021-ale-003 [MàJ] Vulnérabilité dans VMware vCenter Server 2021-02-25T00:00:00.000000 2021-05-12T00:00:00.000000
certfr-2021-ale-004 [MàJ] Multiples vulnérabilités dans Microsoft Exchange Server 2021-03-03T00:00:00.000000 2021-07-16T00:00:00.000000
certfr-2021-ale-005 Multiples vulnérabilités dans Microsoft DNS server 2021-03-12T00:00:00.000000 2021-05-12T00:00:00.000000
certfr-2021-ale-006 [MàJ] Vulnérabilité dans F5 BIG-IP 2021-03-22T00:00:00.000000 2021-04-15T00:00:00.000000
certfr-2021-ale-007 [MàJ] Vulnérabilité dans Pulse Connect Secure 2021-04-20T00:00:00.000000 2021-06-21T00:00:00.000000
certfr-2021-ale-008 Multiples vulnérabilités dans Exim 2021-05-05T00:00:00.000000 2021-06-10T00:00:00.000000
certfr-2021-ale-009 [MàJ] Vulnérabilité dans Microsoft Windows 2021-05-12T00:00:00.000000 2021-06-10T00:00:00.000000
certfr-2021-ale-010 Vulnérabilité dans Adobe Acrobat et Acrobat Reader 2021-05-12T00:00:00.000000 2021-06-29T00:00:00.000000
certfr-2021-ale-011 Vulnérabilité dans VMware vCenter Server 2021-06-07T00:00:00.000000 2021-10-19T00:00:00.000000
certfr-2021-ale-012 Multiples vulnérabilités dans Microsoft Windows 2021-06-09T00:00:00.000000 2021-10-19T00:00:00.000000
certfr-2021-ale-013 [MaJ] Vulnérabilité dans Microsoft Windows 2021-06-30T00:00:00.000000 2021-07-02T00:00:00.000000
certfr-2021-ale-014 [MaJ] Multiples vulnérabilités dans Microsoft Windows 2021-07-02T00:00:00.000000 2022-01-05T00:00:00.000000
certfr-2021-ale-015 Multiples vulnérabilités dans SolarWinds Serv-U 2021-07-13T00:00:00.000000 2021-10-19T00:00:00.000000
certfr-2021-ale-016 Vulnérabilité dans SonicWall 2021-07-15T00:00:00.000000 2021-08-19T00:00:00.000000
certfr-2021-ale-017 Multiples vulnérabilités dans Microsoft Exchange 2021-08-27T00:00:00.000000 2022-05-04T00:00:00.000000
certfr-2021-ale-018 Vulnérabilité dans Atlassian Confluence Server et Data Center 2021-09-06T00:00:00.000000 2022-01-05T00:00:00.000000
certfr-2021-ale-019 [MaJ] Vulnérabilité dans Microsoft Windows 2021-09-08T00:00:00.000000 2022-05-04T00:00:00.000000
certfr-2021-ale-020 [Maj] Multiples vulnérabilités dans Microsoft Azure Open Management Infrastructure 2021-09-17T00:00:00.000000 2022-01-05T00:00:00.000000
certfr-2021-ale-021 Vulnérabilité dans Microsoft Exchange 2021-11-10T00:00:00.000000 2022-05-04T00:00:00.000000
certfr-2021-ale-022 [MaJ] Vulnérabilité dans Apache Log4j 2021-12-10T00:00:00.000000 2022-05-04T00:00:00.000000
certfr-2022-ale-001 [MaJ] Vulnérabilité dans Microsoft Windows 2022-01-12T00:00:00.000000 2022-05-04T00:00:00.000000
certfr-2022-ale-002 Vulnérabilité dans VMware Spring Cloud Gateway 2022-03-03T00:00:00.000000 2022-10-07T00:00:00.000000
certfr-2022-ale-003 [MàJ] Vulnérabilité dans l'implémentation du protocole RPC par Microsoft 2022-04-13T00:00:00.000000 2022-05-04T00:00:00.000000
ID Description Published Updated
osv-2020-516 Heap-buffer-overflow in hb_array_t<OT::IntType<unsigned short, 2u> const> hb_array_t<OT::IntType<unsigne 2020-07-01T00:00:14.009148Z 2022-04-13T03:04:33.219722Z
osv-2020-518 Global-buffer-overflow in perfetto::trace_processor::ParseSystraceTracePoint 2020-07-01T00:00:14.117573Z 2022-04-13T03:04:41.951762Z
osv-2020-519 Use-of-uninitialized-value in MOS65XX_group_name 2020-07-01T00:00:14.210861Z 2022-04-13T03:04:39.894964Z
osv-2020-521 Heap-buffer-overflow in acommon::ObjStack::dup_top 2020-07-01T00:00:14.312168Z 2022-04-13T03:04:33.269949Z
osv-2020-522 Heap-buffer-overflow in buf_bytes_read 2020-07-01T00:00:14.376484Z 2022-04-13T03:04:36.699395Z
osv-2020-523 Heap-buffer-overflow in check_buffer 2020-07-01T00:00:14.409944Z 2022-04-13T03:04:36.545958Z
osv-2020-525 UNKNOWN READ in parse_sec_attr_44 2020-07-01T00:00:14.612318Z 2022-04-13T03:04:41.629362Z
osv-2020-526 Use-of-uninitialized-value in Mat_VarRead4 2020-07-01T00:00:14.729759Z 2022-04-13T03:04:43.129699Z
osv-2020-528 Stack-buffer-overflow in ot::Message::Read 2020-07-01T00:00:14.832074Z 2022-04-13T03:04:39.076661Z
osv-2020-530 Stack-buffer-overflow in ares_parse_aaaa_reply 2020-07-01T00:00:14.958697Z 2022-04-13T03:04:36.401229Z
osv-2020-531 Stack-buffer-overflow in ot::MeshCoP::DatasetManager::HandleSet 2020-07-01T00:00:14.991959Z 2022-04-13T03:04:38.914540Z
osv-2020-533 Heap-buffer-overflow in r_utf8_strlen 2020-07-01T00:00:15.106987Z 2022-04-13T03:04:36.604999Z
osv-2020-535 Heap-buffer-overflow in looks_ucs32 2020-07-01T00:00:15.186923Z 2022-04-13T03:04:30.865616Z
osv-2020-540 Heap-buffer-overflow in byte_from_wkb_state 2020-07-01T00:00:15.605041Z 2022-04-13T03:04:39.447294Z
osv-2020-541 UNKNOWN READ in _fini 2020-07-01T00:00:15.713830Z 2022-04-13T03:04:36.426296Z
osv-2020-543 Heap-buffer-overflow in circular_memcpy 2020-07-01T00:00:15.879739Z 2022-04-13T03:04:41.184010Z
osv-2020-546 Heap-buffer-overflow in ih264d_decode_slice_thread 2020-07-01T00:00:16.058420Z 2022-04-13T03:23:55.649834Z
osv-2020-548 Heap-buffer-overflow in acommon::DecodeDirect<unsigned short>::decode 2020-07-01T00:00:16.159762Z 2022-04-13T03:04:33.275580Z
osv-2020-552 Heap-buffer-overflow in varlink_enqueue_json 2020-07-01T00:00:16.498284Z 2022-04-13T03:04:40.088782Z
osv-2020-555 Heap-use-after-free in WelsDec::CWelsDecoder::SetOption 2020-07-01T00:00:16.726929Z 2022-04-13T03:04:37.579466Z
osv-2020-557 Global-buffer-overflow in dissect_snmp_PDUs 2020-07-01T00:00:16.823057Z 2022-04-13T03:04:37.855035Z
osv-2020-559 Use-of-uninitialized-value in parser_get_next_char 2020-07-01T00:00:16.957587Z 2022-04-13T03:04:34.158183Z
osv-2020-560 Heap-use-after-free in cin_get 2020-07-01T00:00:16.991378Z 2022-04-13T03:04:36.556729Z
osv-2020-562 UNKNOWN READ in local_add_lv 2020-07-01T00:00:17.111214Z 2022-04-13T03:04:39.775341Z
osv-2020-564 Heap-buffer-overflow in ihevcd_parse_slice_data 2020-07-01T00:00:17.229396Z 2022-04-13T03:04:30.945013Z
osv-2020-565 Use-of-uninitialized-value in OT::AxisValue::sanitize 2020-07-01T00:00:17.279338Z 2022-04-13T03:04:33.006791Z
osv-2020-567 Heap-buffer-overflow in _iri_unescape_inline 2020-07-01T00:00:17.414112Z 2022-04-13T03:04:41.727444Z
osv-2020-568 Heap-use-after-free in proc_plaintext 2020-07-01T00:00:17.473815Z 2022-04-13T03:04:32.464454Z
osv-2020-569 Null-dereference READ 2020-07-01T00:00:17.505856Z 2022-04-13T03:04:36.385776Z
osv-2020-570 Global-buffer-overflow in decode_tlv 2020-07-01T00:00:17.578359Z 2022-04-13T03:04:37.816713Z
ID Description Published Updated
rustsec-2021-0030 move_elements can double-free objects on panic 2021-02-18T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0049 `through` and `through_and` causes a double free if the map function panics 2021-02-18T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0028 Multiple memory safety issues in insert_row 2021-02-19T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0047 SliceDeque::drain_filter can double drop an element if the predicate panics 2021-02-19T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0048 StackVec::extend can write out of bounds when size_hint is incorrect 2021-02-19T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0026 XSS in `comrak` 2021-02-21T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0033 push_cloned can drop uninitialized memory or double free on panic 2021-02-22T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0050 swap_index can write out of bounds and return uninitialized memory 2021-02-24T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0052 Multiple functions can cause double-frees 2021-02-26T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0062 project abandoned; migrate to the `aes-siv` crate 2021-02-28T12:00:00Z 2021-05-03T19:05:09Z
rustsec-2021-0032 Deserializing an array can drop uninitialized memory on panic 2021-03-01T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0036 Intern<T>: Data race allowed on T 2021-03-03T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0035 `quinn` invalidly assumes the memory layout of std::net::SocketAddr 2021-03-04T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0037 Fix a use-after-free bug in diesels Sqlite backend 2021-03-05T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0038 Multiple memory safety issues 2021-03-06T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0053 'merge_sort::merge()' crashes with double-free for `T: Drop` 2021-03-07T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0041 Denial of service through parsing payloads with too big exponent 2021-03-18T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0140 rusttype is Unmaintained 2021-04-01T12:00:00Z 2023-02-09T03:11:29Z
rustsec-2021-0113 AtomicBucket<T> unconditionally implements Send/Sync 2021-04-07T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0136 `sass-rs` has been deprecated 2021-04-07T12:00:00Z 2023-02-09T03:11:29Z
rustsec-2021-0054 Archives may contain uninitialized memory 2021-04-28T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0059 `aesni` has been merged into the `aes` crate 2021-04-29T12:00:00Z 2021-05-04T01:28:43Z
rustsec-2021-0060 `aes-soft` has been merged into the `aes` crate 2021-04-29T12:00:00Z 2021-05-04T01:28:43Z
rustsec-2021-0061 `aes-ctr` has been merged into the `aes` crate 2021-04-29T12:00:00Z 2021-05-04T01:28:43Z
rustsec-2021-0055 NULL pointer deref in signature_algorithms processing 2021-05-01T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0056 CA certificate check bypass with X509_V_FLAG_X509_STRICT 2021-05-01T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0057 Integer overflow in CipherUpdate 2021-05-01T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0058 Null pointer deref in `X509_issuer_and_serial_hash()` 2021-05-01T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0063 XSS in `comrak` 2021-05-04T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0064 `cpuid-bool` has been renamed to `cpufeatures` 2021-05-06T12:00:00Z 2021-05-06T23:45:32Z
ID Description Published Updated
alsa-2021:4649 Moderate: gcc-toolset-10-binutils security update 2021-11-15T10:00:59Z 2021-11-16T08:43:55Z
alsa-2021:4743 Moderate: llvm-toolset:rhel8 security update 2021-11-18T16:29:15Z 2021-11-21T06:08:08Z
alsa-2021:4826 Important: mailman:2.1 security update 2021-11-23T20:17:35Z 2021-11-24T20:52:59Z
alsa-2021:4903 Critical: nss security update 2021-12-01T17:52:10Z 2021-12-03T21:33:22Z
alsa-2021:4916 Important: mailman:2.1 security update 2021-12-02T15:57:01Z 2021-12-03T11:06:49Z
alsa-2021:5013 Important: firefox security update 2021-12-08T09:42:58Z 2021-12-08T21:17:36Z
alsa-2021:5045 Important: thunderbird security update 2021-12-09T12:14:59Z 2021-12-10T10:58:24Z
alsa-2021:5082 Important: samba security update 2021-12-13T08:15:38Z 2021-12-13T23:46:50Z
alsa-2021:5142 Moderate: idm:DL1 security update 2021-12-15T07:39:49Z 2021-12-15T23:07:56Z
alsa-2021:5160 Important: go-toolset:rhel8 security and bug fix update 2021-12-15T16:11:05Z 2021-12-16T11:29:11Z
alsa-2021:5171 Moderate: nodejs:16 security, bug fix, and enhancement update 2021-12-15T19:09:29Z 2021-12-16T11:29:15Z
alsa-2021:5227 Moderate: kernel security and bug fix update 2021-12-21T09:07:34Z 2023-09-15T13:41:48Z
alsa-2021:5235 Moderate: postgresql:12 security update 2021-12-21T09:10:31Z 2021-12-22T08:30:47Z
alsa-2021:5236 Moderate: postgresql:13 security update 2021-12-21T09:10:35Z 2021-12-22T08:23:18Z
alsa-2021:5238 Low: virt:rhel and virt-devel:rhel security update 2021-12-21T09:11:21Z 2021-12-23T15:15:26Z
alsa-2022:0001 Important: grafana security update 2022-01-03T07:30:31Z 2022-01-07T20:56:35Z
alsa-2022:0129 Important: thunderbird security update 2022-01-12T11:29:46Z 2022-01-13T09:06:45Z
alsa-2022:0130 Important: firefox security update 2022-01-12T11:30:14Z 2022-01-13T09:06:41Z
alsa-2022:0161 Moderate: java-17-openjdk security update 2022-01-19T08:53:42Z 2022-01-20T12:33:38Z
alsa-2022:0177 Important: gegl04 security update 2022-01-19T09:43:42Z 2022-01-20T12:33:39Z
alsa-2022:0188 Important: kernel security and bug fix update 2022-01-19T13:59:09Z 2023-09-15T13:41:48Z
alsa-2022:0199 Important: libreswan security update 2022-01-19T19:11:04Z 2022-01-20T15:36:09Z
alsa-2022:0185 Moderate: java-11-openjdk security update 2022-01-24T09:03:13Z 2022-01-25T08:27:40Z
alsa-2022:0258 Important: httpd:2.4 security update 2022-01-25T12:49:42Z 2022-01-26T07:27:24Z
alsa-2022:0267 Important: polkit security update 2022-01-25T17:38:41Z 2022-01-25T17:38:41Z
alsa-2022:0290 Important: parfait:0.5 security update 2022-01-26T14:27:19Z 2022-01-27T20:23:26Z
alsa-2022:0307 Moderate: java-1.8.0-openjdk security and bug fix update 2022-01-27T13:47:36Z 2022-01-28T08:22:06Z
alsa-2022:0323 Important: nginx:1.20 security update 2022-01-31T09:52:06Z 2022-01-31T21:06:57Z
alsa-2022:0332 Critical: samba security and bug fix update 2022-01-31T15:40:41Z 2022-02-01T09:11:06Z
alsa-2022:0350 Moderate: nodejs:14 security, bug fix, and enhancement update 2022-02-01T20:08:39Z 2022-02-04T16:13:42Z