Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
CVE-2026-3135
6.9 (4.0)
7.3 (3.1)
7.3 (3.0)
itsourcecode News Portal Project add-category.php sql … itsourcecode
News Portal Project
2026-02-25T00:02:08.161Z 2026-02-25T00:02:08.161Z
CVE-2026-26717
N/A
An issue in OpenFUN Richie (LMS) in src/richie/ap… n/a
n/a
2026-02-25T00:00:00.000Z 2026-02-25T16:23:19.179Z
CVE-2025-69771
N/A
An arbitrary file upload vulnerability in the sub… n/a
n/a
2026-02-25T00:00:00.000Z 2026-02-25T15:28:56.880Z
CVE-2026-3134
6.9 (4.0)
7.3 (3.1)
7.3 (3.0)
itsourcecode News Portal Project edit-category.php sql… itsourcecode
News Portal Project
2026-02-24T23:32:11.537Z 2026-02-24T23:32:11.537Z
CVE-2026-3133
6.9 (4.0)
7.3 (3.1)
7.3 (3.0)
itsourcecode Document Management System Login loging.p… itsourcecode
Document Management System
2026-02-24T23:32:08.553Z 2026-02-24T23:32:08.553Z
CVE-2026-26351
4.8 (4.0)
GetSimpleCMS-CE < 3.3.22 Stored XSS via components.php GetSimpleCMS-CE
GetSimpleCMS-CE
2026-02-24T22:05:54.420Z 2026-02-24T22:05:54.420Z
CVE-2026-27117
5.5 (3.1)
bit7z has a path traversal vulnerability rikyoz
bit7z
2026-02-24T21:46:12.714Z 2026-02-24T21:46:12.714Z
CVE-2026-27593
9.3 (3.1)
Statamic is vulnerable to account takeover via passwor… statamic
cms
2026-02-24T21:38:17.354Z 2026-02-24T21:38:17.354Z
CVE-2026-27572
6.9 (4.0)
Wasmtime can panic when adding excessive fields to a `… bytecodealliance
wasmtime
2026-02-24T21:31:50.186Z 2026-02-24T21:31:50.186Z
CVE-2026-27204
6.9 (4.0)
Wasmtime WASI implementations are vulnerable to guest-… bytecodealliance
wasmtime
2026-02-24T21:23:47.007Z 2026-02-24T21:23:47.007Z
CVE-2026-27195
6.9 (4.0)
Wasmtime is vulnerable to panic when dropping a `[Type… bytecodealliance
wasmtime
2026-02-24T21:15:20.366Z 2026-02-24T21:36:54.122Z
CVE-2026-25899
7.5 (3.1)
Fiber is Vulnerable to Denial of Service via Flash Coo… gofiber
fiber
2026-02-24T21:11:17.804Z 2026-02-24T21:37:33.970Z
CVE-2026-25891
7.7 (4.0)
Fiber has an Arbitrary File Read in Static Middleware … gofiber
fiber
2026-02-24T21:08:48.675Z 2026-02-24T21:39:11.118Z
CVE-2026-25882
5.5 (4.0)
Fiber has a Denial of Service Vulnerability via Route … gofiber
fiber
2026-02-24T21:05:28.211Z 2026-02-24T21:39:51.170Z
CVE-2026-22553
9.8 (3.1)
9.3 (4.0)
InSAT MasterSCADA BUK-TS OS Command Injection InSAT
MasterSCADA BUK-TS
2026-02-24T20:56:14.099Z 2026-02-24T21:00:29.951Z
CVE-2026-21410
9.8 (3.1)
9.3 (4.0)
InSAT MasterSCADA BUK-TS SQL Injection InSAT
MasterSCADA BUK-TS
2026-02-24T20:53:55.150Z 2026-02-24T21:00:53.595Z
CVE-2025-46320
6.1 (3.1)
A cross-site scripting (XSS) vulnerability in a F… Claris
FileMaker Server
2026-02-24T20:30:26.139Z 2026-02-24T21:19:06.285Z
CVE-2026-24443
8.6 (4.0)
EventSentry < 6.0.1.20 Web Reports Unverified Password… NETIKUS.NET ltd
EventSentry
2026-02-24T20:14:44.688Z 2026-02-24T21:40:48.632Z
CVE-2026-23859
2.7 (3.1)
Dell Wyse Management Suite, versions prior to WMS… Dell
Wyse Management Suite
2026-02-24T19:35:02.937Z 2026-02-24T21:41:09.368Z
CVE-2026-23858
5.4 (3.1)
Dell Wyse Management Suite, versions prior to WMS… Dell
Wyse Management Suite
2026-02-24T19:31:31.325Z 2026-02-24T21:45:53.723Z
CVE-2026-22766
7.2 (3.1)
Dell Wyse Management Suite, versions prior to WMS… Dell
Wyse Management Suite
2026-02-24T19:28:14.566Z 2026-02-26T04:56:00.899Z
CVE-2026-22765
8.8 (3.1)
Dell Wyse Management Suite, versions prior to WMS… Dell
Wyse Management Suite
2026-02-24T19:24:21.497Z 2026-02-26T04:55:59.574Z
CVE-2026-3131
N/A
Improper access control in multiple DVLS REST AP… Devolutions
Server
2026-02-24T19:01:29.096Z 2026-02-24T19:01:29.096Z
CVE-2026-1768
N/A
A permission cache poisoning vulnerability in Dev… Devolutions
Devolutions Server
2026-02-24T19:01:07.640Z 2026-02-24T19:01:07.640Z
CVE-2026-27477
4.6 (4.0)
Mastodon has SSRF via unvalidated FASP Provider base_url mastodon
mastodon
2026-02-24T19:00:20.590Z 2026-02-24T19:00:20.590Z
CVE-2025-1789
5.8 (4.0)
Local privilege escalation in Genetec Update Serv… Genetec Inc.
Genetec Update Service
2026-02-24T18:47:24.913Z 2026-02-26T04:56:02.750Z
CVE-2025-1787
5.8 (4.0)
Local admin could to leak information from the Ge… Genetec Inc.
Genetec Update Service
2026-02-24T18:44:36.705Z 2026-02-26T04:56:04.700Z
CVE-2026-24241
4.3 (3.1)
NVIDIA Delegated Licensing Service for all applia… NVIDIA
DLS component of NVIDIA License System
2026-02-24T18:42:56.703Z 2026-02-24T21:26:40.416Z
CVE-2025-33181
7.3 (3.1)
NVIDIA Cumulus Linux and NVOS products contain a … NVIDIA
Cumulus Linux GA
2026-02-24T18:42:04.490Z 2026-02-24T21:29:14.387Z
CVE-2025-33180
8 (3.1)
NVIDIA Cumulus Linux and NVOS products contain a … NVIDIA
Cumulus Linux GA
2026-02-24T18:41:48.632Z 2026-02-24T21:31:41.482Z
ID CVSS Description Vendor Product Published Updated
ID Severity Description Published Updated
ghsa-hwjj-g6g7-p8cf
9.1 (3.1)
Uninitialized memory in the Graphics: Text component. This vulnerability affects Firefox < 148. 2026-02-24T15:30:32Z 2026-02-25T21:31:18Z
ghsa-hjq8-wc3q-9xf3
9.8 (3.1)
Privilege escalation in the Messaging System component. This vulnerability affects Firefox < 148, F… 2026-02-24T15:30:32Z 2026-02-25T18:31:35Z
ghsa-h79p-mfpr-8qm4
9.8 (3.1)
Use-after-free in the Graphics: ImageLib component. This vulnerability affects Firefox < 148, Firef… 2026-02-24T15:30:32Z 2026-02-25T15:31:37Z
ghsa-h4vm-j32v-95qm
9.8 (3.1)
Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148. 2026-02-24T15:30:32Z 2026-02-25T21:31:18Z
ghsa-gvhp-5j8m-528x
9.8 (3.1)
Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148. 2026-02-24T15:30:32Z 2026-02-25T21:31:18Z
ghsa-gjwv-rvwj-p62j
9.8 (3.1)
Incorrect boundary conditions in the Web Audio component. This vulnerability affects Firefox < 148,… 2026-02-24T15:30:32Z 2026-02-25T18:31:34Z
ghsa-g9cv-cvhp-755f
9.8 (3.1)
Privilege escalation in the Netmonitor component. This vulnerability affects Firefox < 148 and Fire… 2026-02-24T15:30:32Z 2026-02-25T18:31:35Z
ghsa-fvj5-5qvq-g8wf
8.8 (3.1)
Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148. 2026-02-24T15:30:32Z 2026-02-24T21:31:45Z
ghsa-cgrc-pwqf-64v8
9.8 (3.1)
Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability affects Firefox… 2026-02-24T15:30:32Z 2026-02-25T15:31:37Z
ghsa-c5fj-xq9f-fjxm
9.8 (3.1)
Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 148 and Fir… 2026-02-24T15:30:32Z 2026-02-25T18:31:35Z
ghsa-c3q8-4689-m4p6
9.8 (3.1)
JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148. 2026-02-24T15:30:32Z 2026-02-25T21:31:18Z
ghsa-94rx-4fcc-c849
9.8 (3.1)
Incorrect boundary conditions in the Networking: JAR component. This vulnerability affects Firefox … 2026-02-24T15:30:32Z 2026-02-25T18:31:35Z
ghsa-8g7m-g6r7-rqcp
9.8 (3.1)
Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148. 2026-02-24T15:30:32Z 2026-02-25T21:31:18Z
ghsa-839v-3vpr-fpgf
9.8 (3.1)
Privilege escalation in the Netmonitor component. This vulnerability affects Firefox < 148 and Fire… 2026-02-24T15:30:32Z 2026-02-25T18:31:35Z
ghsa-7xqm-gm4h-p23x
7.5 (3.1)
Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component. This vuln… 2026-02-24T15:30:32Z 2026-02-25T18:31:35Z
ghsa-7cfj-7vv8-r64h
7.5 (3.1)
Information disclosure, mitigation bypass in the Settings UI component. This vulnerability affects … 2026-02-24T15:30:32Z 2026-02-25T21:31:18Z
ghsa-6rcf-f85p-pmgj
9.8 (3.1)
Memory safety bugs present in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird… 2026-02-24T15:30:32Z 2026-02-25T18:31:35Z
ghsa-62xf-gv4m-h3vc
9.8 (3.1)
Invalid pointer in the DOM: Core & HTML component. This vulnerability affects Firefox < 148. 2026-02-24T15:30:32Z 2026-02-25T21:31:18Z
ghsa-48q6-99pr-mcvm
9.8 (3.1)
Memory safety bugs present in Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox… 2026-02-24T15:30:32Z 2026-02-25T18:31:35Z
ghsa-3wfp-66x3-wgq2
7.5 (3.1)
Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability affects … 2026-02-24T15:30:32Z 2026-02-25T21:31:18Z
ghsa-3qgm-jcxp-m9m6
10.0 (3.1)
Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component. This vulnera… 2026-02-24T15:30:32Z 2026-02-25T18:31:35Z
ghsa-3px2-2xc4-mxr2
9.8 (3.1)
Invalid pointer in the JavaScript Engine component. This vulnerability affects Firefox < 148 and Fi… 2026-02-24T15:30:32Z 2026-02-25T18:31:35Z
ghsa-3922-j2hh-9qcf
5.4 (3.1)
Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148. 2026-02-24T15:30:32Z 2026-02-24T18:31:02Z
ghsa-x8jx-9xwq-xwq6
9.8 (3.1)
Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148 a… 2026-02-24T15:30:31Z 2026-02-25T18:31:35Z
ghsa-wwg9-hv2r-mj8w
9.8 (3.1)
Integer overflow in the Audio/Video component. This vulnerability affects Firefox < 148, Firefox ES… 2026-02-24T15:30:31Z 2026-02-25T18:31:35Z
ghsa-v49m-r4w3-2p5x
9.8 (3.1)
Integer overflow in the JavaScript: Standard Library component. This vulnerability affects Firefox … 2026-02-24T15:30:31Z 2026-02-25T18:31:33Z
ghsa-v33x-35cm-8gjc
10.0 (3.1)
Sandbox escape due to incorrect boundary conditions in the Telemetry component in External Software… 2026-02-24T15:30:31Z 2026-02-25T18:31:35Z
ghsa-r2q9-885m-j92q
9.8 (3.1)
Incorrect boundary conditions in the WebRTC: Audio/Video component. This vulnerability affects Fire… 2026-02-24T15:30:31Z 2026-02-25T18:31:31Z
ghsa-qmr7-46p8-4c5r
9.8 (3.1)
Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 148, Firefo… 2026-02-24T15:30:31Z 2026-02-25T18:31:34Z
ghsa-mg9m-c3pr-5p64
7.6 (4.0)
A vulnerability exists in REB500 for an authenticated user with low-level privileges to access and … 2026-02-24T15:30:31Z 2026-02-24T15:30:31Z
ID Severity Description Package Published Updated
pysec-2024-8
The JSON loader in Embedchain before 0.1.57 allows a ReDoS (regular expression denial of … embedchain 2024-01-21T17:15:00+00:00 2024-01-21T20:21:00.544327+00:00
pysec-2024-7
The OpenAPI loader in Embedchain before 0.1.57 allows attackers to execute arbitrary code… embedchain 2024-01-21T17:15:00+00:00 2024-01-21T20:21:00.484037+00:00
pysec-2024-15
3.7 (3.1)
changedetection.io is an open source tool designed to monitor websites for content chang… changedetection-io 2024-01-19T20:15:00+00:00 2024-01-26T22:21:10.756741+00:00
pysec-2024-103
9.8 (3.1)
Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine. The `concat… vyper 2024-01-18T19:15:00+00:00 2024-10-09T23:22:49.818476+00:00
pysec-2024-17
8.8 (3.1)
pyLoad is a free and open-source Download Manager written in pure Python. The `pyload` AP… pyload-ng 2024-01-18T00:15:00+00:00 2024-01-29T20:20:58.389168+00:00
pysec-2024-11
9.8 (3.1)
Remote Code Execution vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from… apache-iotdb 2024-01-15T11:15:00+00:00 2024-01-22T22:21:02.620877+00:00
pysec-2024-10
9.8 (3.1)
In Gentoo Portage before 3.0.47, there is missing PGP validation of executed code: the st… portage 2024-01-12T03:15:00+00:00 2024-01-22T18:22:47.599296+00:00
pysec-2024-6
2.8 (3.1)
cdo-local-uuid project provides a specialized UUID-generating function that can, on user … cdo-local-uuid 2024-01-11T03:15:00+00:00 2024-01-19T22:21:07.454006+00:00
pysec-2024-5
2.8 (3.1)
cdo-local-uuid project provides a specialized UUID-generating function that can, on user … case-utils 2024-01-11T03:15:00Z 2024-01-25T14:03:52.279077Z
pysec-2024-4
7.8 (3.1)
GitPython is a python library used to interact with Git repositories. There is an incompl… gitpython 2024-01-11T02:15:00+00:00 2024-01-18T16:22:52.190857+00:00
pysec-2024-2
5.5 (3.1)
In Appwrite CLI before 3.0.0, when using the login command, the credentials of the Appwri… appwrite 2024-01-09T09:15:00+00:00 2024-01-17T11:19:17.695321+00:00
pysec-2024-3
5.9 (3.1)
PyCryptodome and pycryptodomex before 3.19.1 allow side-channel leakage for OAEP decrypti… pycryptodomex 2024-01-05T04:15:00+00:00 2024-01-17T11:19:18.629304+00:00
pysec-2024-1
gratient is a user-facing library for generating color gradients of text. Version 0.5 con… gratient 2024-01-03T22:31:36+00:00
pysec-2024-146
9.8 (3.1)
PaddlePaddle before 2.6.0 has a command injection in convert_shape_compare. This resulted… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:58.401329+00:00
pysec-2024-145
7.5 (3.1)
FPE in paddle.argmin and paddle.argmax in PaddlePaddle before 2.6.0. This flaw can cause … paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:58.341995+00:00
pysec-2024-144
7.5 (3.1)
Nullptr dereference in paddle.crop in PaddlePaddle before 2.6.0. This flaw can cause a ru… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:58.282654+00:00
pysec-2024-143
9.8 (3.1)
PaddlePaddle before 2.6.0 has a command injection in _wget_download. This resulted in the… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:58.223275+00:00
pysec-2024-142
9.8 (3.1)
PaddlePaddle before 2.6.0 has a command injection in get_online_pass_interval. This resul… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:58.166295+00:00
pysec-2024-141
9.8 (3.1)
Heap buffer overflow in paddle.repeat_interleave in PaddlePaddle before 2.6.0. This flaw … paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:58.106968+00:00
pysec-2024-140
7.5 (3.1)
FPE in paddle.amin in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and … paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:58.044369+00:00
pysec-2024-139
9.8 (3.1)
Stack overflow in paddle.linalg.lu_unpack in PaddlePaddle before 2.6.0. This flaw can lea… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:57.974712+00:00
pysec-2024-138
7.5 (3.1)
FPE in paddle.lerp in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and … paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:57.913569+00:00
pysec-2024-137
7.5 (3.1)
FPE in paddle.topk in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and … paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:57.844840+00:00
pysec-2024-136
9.8 (3.1)
Stack overflow in paddle.searchsorted in PaddlePaddle before 2.6.0. This flaw can lead to… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:57.785687+00:00
pysec-2024-135
7.5 (3.1)
Nullptr in paddle.put_along_axis in PaddlePaddle before 2.6.0. This flaw can cause a runt… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:57.726582+00:00
pysec-2024-134
7.5 (3.1)
Nullptr in paddle.nextafter in PaddlePaddle before 2.6.0. This flaw can cause a runtime c… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:57.667127+00:00
pysec-2024-133
7.5 (3.1)
OOB access in paddle.mode in PaddlePaddle before 2.6.0. This flaw can cause a runtime cra… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:57.605277+00:00
pysec-2024-132
7.5 (3.1)
FPE in paddle.linalg.eig in PaddlePaddle before 2.6.0. This flaw can cause a runtime cras… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:57.546560+00:00
pysec-2024-131
7.5 (3.1)
Nullptr in paddle.dot in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash a… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:57.485379+00:00
pysec-2024-130
7.5 (3.1)
FPE in paddle.linalg.matrix_rank in PaddlePaddle before 2.6.0. This flaw can cause a runt… paddlepaddle 2024-01-03T09:15:00+00:00 2024-11-21T14:22:57.427583+00:00
ID Description Type
ID Description Updated
ID Description Published Updated
mal-2026-740 Malicious code in @msecscc/gaia (npm) 2026-02-04T17:18:05Z 2026-02-06T03:05:22Z
mal-2026-743 Malicious code in internationalized (npm) 2026-02-04T17:13:32Z 2026-02-06T03:05:24Z
mal-2026-744 Malicious code in mdp-client-web (npm) 2026-02-04T17:08:45Z 2026-02-06T03:05:25Z
mal-2026-741 Malicious code in confluence-analytics-support (npm) 2026-02-04T17:08:45Z 2026-02-06T03:05:23Z
mal-2026-739 Malicious code in test-for-ppe (PyPI) 2026-02-04T14:57:08Z 2026-02-04T14:57:08Z
mal-2026-738 Malicious code in tablescene (PyPI) 2026-02-04T10:24:43Z 2026-02-04T18:51:22Z
mal-2026-737 Malicious code in remark-gfm-v4 (npm) 2026-02-04T09:46:59Z 2026-02-06T03:05:26Z
mal-2026-736 Malicious code in ggajsvjsg (npm) 2026-02-04T09:46:59Z 2026-02-06T03:05:24Z
mal-2026-735 Malicious code in docusaurus-plugin-launchdarkly (npm) 2026-02-04T09:46:59Z 2026-02-06T03:05:23Z
mal-2026-734 Malicious code in xpack-subscription-test (npm) 2026-02-04T09:40:53Z 2026-02-06T03:05:27Z
mal-2026-733 Malicious code in deuro-landing-page (npm) 2026-02-04T09:21:07Z 2026-02-06T03:05:23Z
mal-2026-731 Malicious code in cicd-ppe-test (PyPI) 2026-02-04T07:33:21Z 2026-02-04T07:33:21Z
mal-2026-732 Malicious code in gridifys (PyPI) 2026-02-04T07:29:56Z 2026-02-04T07:29:56Z
mal-2026-717 Malicious code in partnerss (npm) 2026-02-04T05:25:27Z 2026-02-06T03:05:25Z
mal-2026-725 Malicious code in json-mapping-source (npm) 2026-02-04T05:25:15Z 2026-02-06T03:05:24Z
mal-2026-720 Malicious code in chai-grab (npm) 2026-02-04T05:22:34Z 2026-02-06T03:05:23Z
mal-2026-730 Malicious code in zappr (npm) 2026-02-04T05:14:29Z 2026-02-06T03:05:28Z
mal-2026-729 Malicious code in zalando-consent-api (npm) 2026-02-04T05:14:29Z 2026-02-06T03:05:28Z
mal-2026-728 Malicious code in z-shop-ui (npm) 2026-02-04T05:14:29Z 2026-02-06T03:05:27Z
mal-2026-727 Malicious code in z-shop-js-env (npm) 2026-02-04T05:14:29Z 2026-02-06T03:05:27Z
mal-2026-726 Malicious code in z-shop-event-bus (npm) 2026-02-04T05:14:29Z 2026-02-06T03:05:27Z
mal-2026-721 Malicious code in dotenv-embedded (npm) 2026-02-04T05:11:23Z 2026-02-06T03:05:23Z
mal-2026-719 Malicious code in chai-async-promised (npm) 2026-02-04T05:11:23Z 2026-02-06T03:05:23Z
mal-2026-724 Malicious code in https-emailjs (npm) 2026-02-04T05:02:52Z 2026-02-06T03:05:24Z
mal-2026-723 Malicious code in http-emailjs (npm) 2026-02-04T05:02:52Z 2026-02-06T03:05:24Z
mal-2026-718 Malicious code in @fxinternal/netdiagnostics (npm) 2026-02-04T05:00:18Z 2026-02-06T03:05:22Z
mal-2026-722 Malicious code in express-groups-routes (npm) 2026-02-04T04:56:58Z 2026-02-06T03:05:23Z
mal-2026-716 Malicious code in si-wsl (npm) 2026-02-04T04:41:11Z 2026-02-06T03:05:26Z
mal-2026-715 Malicious code in rreact-sdk (npm) 2026-02-04T04:41:11Z 2026-02-06T03:05:26Z
mal-2026-714 Malicious code in reactt-sdkk (npm) 2026-02-04T04:41:11Z 2026-02-06T03:05:26Z
ID Description Published Updated
bit-flux-2022-39272 Flux2 vulnerable to Denial of Service due to Improper use of metav1.Duration 2025-12-02T17:37:01.043Z 2025-12-02T18:06:28.296Z
bit-flux-2022-36049 Flux2 Helm Controller denial of service 2025-12-02T17:36:59.799Z 2025-12-02T18:06:28.296Z
bit-flux-2022-36035 Flux CLI Workload Injection 2025-12-02T17:36:58.339Z 2025-12-02T18:06:28.296Z
bit-flux-2022-24878 Improper path handling in Kustomization files allows for denial of service 2025-12-02T17:36:56.954Z 2025-12-02T18:06:28.296Z
bit-flux-2022-24877 Improper path handling in kustomization files allows path traversal 2025-12-02T17:36:55.459Z 2025-12-02T18:06:28.296Z
bit-flux-2022-24817 Improper kubeconfig validation allows arbitrary code execution 2025-12-02T17:36:53.808Z 2025-12-02T18:06:28.296Z
bit-gitlab-2025-7449 Allocation of Resources Without Limits or Throttling in GitLab 2025-12-02T12:05:42.978Z 2025-12-11T12:06:55.559Z
bit-gitlab-2025-6195 Direct Request ('Forced Browsing') in GitLab 2025-12-02T12:05:25.518Z 2025-12-11T12:06:55.559Z
bit-gitlab-2025-13611 Insertion of Sensitive Information into Log File in GitLab 2025-12-02T12:03:48.649Z 2025-12-11T12:06:55.559Z
bit-gitlab-2025-12653 Authentication Bypass by Spoofing in GitLab 2025-12-02T12:03:41.060Z 2025-12-11T12:06:55.559Z
bit-gitlab-2025-12571 Allocation of Resources Without Limits or Throttling in GitLab 2025-12-02T12:03:39.208Z 2025-12-11T12:06:55.559Z
bit-cilium-2025-64715 Cilium with misconfigured toGroups in policies can lead to unrestricted egress traffic 2025-12-02T11:35:57.032Z 2025-12-06T12:06:23.267Z
bit-gitlab-2025-9825 Missing Authorization in GitLab 2025-11-25T18:25:02.547Z 2025-12-03T12:08:06.927Z
bit-drupal-2025-13083 Drupal core - Moderately critical - Information disclosure - SA-CORE-2025-008 2025-11-25T17:56:46.824Z 2026-01-10T12:08:11.327Z
bit-drupal-2025-13082 Drupal core - Moderately critical - Defacement - SA-CORE-2025-007 2025-11-25T17:56:45.040Z 2025-11-25T18:26:29.568Z
bit-drupal-2025-13081 Drupal core - Moderately critical - Gadget chain - SA-CORE-2025-006 2025-11-25T17:56:43.353Z 2025-11-25T18:26:29.568Z
bit-drupal-2025-13080 Drupal core - Moderately critical - Denial of Service - SA-CORE-2025-005 2025-11-25T17:56:41.671Z 2025-11-25T18:26:29.568Z
bit-gitlab-2025-7000 Insertion of Sensitive Information Into Sent Data in GitLab 2025-11-21T09:04:35.128Z 2025-11-21T09:06:15.683Z
bit-gitlab-2025-6945 Improper Neutralization of Special Elements used in a Command ('Command Injection') in GitLab 2025-11-21T09:04:31.573Z 2025-11-21T09:06:15.683Z
bit-gitlab-2025-6171 Missing Authorization in GitLab 2025-11-21T09:04:22.209Z 2025-11-21T09:06:15.683Z
bit-postgresql-2025-12818 PostgreSQL libpq undersizes allocations, via integer wraparound 2025-11-21T08:47:38.070Z 2025-11-21T09:06:15.683Z
bit-postgresql-2025-12817 PostgreSQL CREATE STATISTICS does not check for schema CREATE privilege 2025-11-21T08:47:36.690Z 2025-11-21T09:06:15.683Z
bit-gitlab-2025-7736 Incorrect Authorization in GitLab 2025-11-20T09:05:14.844Z 2025-11-21T09:06:15.683Z
bit-gitlab-2025-2615 Insertion of Sensitive Information Into Sent Data in GitLab 2025-11-20T09:04:09.576Z 2025-11-21T09:06:15.683Z
bit-gitlab-2025-12983 Memory Allocation with Excessive Size Value in GitLab 2025-11-20T09:03:27.972Z 2025-11-21T09:06:15.683Z
bit-gitlab-2025-11990 Improper Handling of URL Encoding (Hex Encoding) in GitLab 2025-11-20T09:03:19.328Z 2025-11-20T09:06:46.640Z
bit-gitlab-2025-11865 Incorrect Authorization in GitLab 2025-11-20T09:03:10.744Z 2025-11-20T09:06:46.640Z
bit-moodle-2025-62401 Moodle: possible to bypass timer in timed assignments 2025-11-17T23:47:50.898Z 2025-11-18T00:06:24.423Z
bit-moodle-2025-62400 Moodle: hidden group names visible to event creators 2025-11-17T23:47:49.403Z 2025-11-18T00:06:24.423Z
bit-moodle-2025-62399 Moodle: password brute force risk when mobile/web services enabled 2025-11-17T23:47:47.926Z 2025-11-18T00:06:24.423Z
ID Description Published Updated
drupal-contrib-2022-006 2022-01-25T18:35:55.000Z 2023-08-11T14:56:17.000Z
drupal-contrib-2022-005 2022-01-25T18:35:09.000Z 2023-08-11T14:03:48.000Z
drupal-contrib-2022-004 2022-01-19T15:33:50.000Z 2023-08-11T14:04:07.000Z
drupal-contrib-2022-002 2022-01-05T17:12:29.000Z 2023-08-11T14:06:15.000Z
drupal-contrib-2022-001 2022-01-05T17:06:22.000Z 2023-08-11T14:06:56.000Z
drupal-contrib-2021-047 2021-12-22T17:47:54.000Z 2023-08-11T16:49:16.000Z
drupal-contrib-2021-045 2021-12-08T18:02:44.000Z 2023-08-11T16:48:31.000Z
drupal-contrib-2021-044 2021-11-17T15:45:07.000Z 2023-08-11T16:47:14.000Z
drupal-contrib-2021-043 2021-10-13T16:32:09.000Z 2023-08-11T16:57:04.000Z
drupal-contrib-2021-042 2021-09-29T14:38:35.000Z 2023-08-11T16:56:26.000Z
drupal-contrib-2021-041 2021-09-22T17:26:20.000Z 2023-08-11T16:55:59.000Z
drupal-contrib-2021-040 2021-09-22T17:26:12.000Z 2023-08-11T16:55:39.000Z
drupal-contrib-2021-039 2021-09-22T17:26:04.000Z 2023-08-11T16:55:33.000Z
drupal-contrib-2021-038 2021-09-22T17:25:50.000Z 2023-08-11T16:54:48.000Z
drupal-contrib-2021-037 2021-09-22T17:17:05.000Z 2023-08-11T16:54:22.000Z
drupal-contrib-2021-036 2021-09-22T17:12:02.000Z 2023-08-11T16:53:25.000Z
drupal-contrib-2021-035 2021-09-22T17:09:11.000Z 2023-08-11T16:51:09.000Z
drupal-contrib-2021-033 2021-09-22T16:55:24.000Z 2023-08-11T17:05:59.000Z
drupal-contrib-2021-032 2021-09-22T16:51:57.000Z 2023-08-11T17:04:59.000Z
drupal-contrib-2021-031 2021-09-22T16:49:24.000Z 2023-08-11T17:04:21.000Z
drupal-contrib-2021-030 2021-09-22T16:43:17.000Z 2023-08-11T17:03:36.000Z
drupal-contrib-2021-029 2021-09-15T15:30:15.000Z 2023-08-11T17:03:09.000Z
drupal-contrib-2021-028 2021-09-15T15:28:04.000Z 2023-08-11T17:02:11.000Z
drupal-contrib-2021-026 2021-08-25T15:27:54.000Z 2023-08-11T17:01:51.000Z
drupal-contrib-2021-025 2021-08-25T14:36:25.000Z 2023-08-11T16:59:37.000Z
drupal-contrib-2021-024 2021-07-28T16:39:17.000Z 2023-08-11T16:58:13.000Z
drupal-contrib-2021-023 2021-07-21T16:51:57.000Z 2023-08-11T16:57:55.000Z
drupal-contrib-2021-022 2021-06-30T16:46:21.000Z 2023-08-11T17:12:21.000Z
drupal-contrib-2021-021 2021-06-30T16:43:19.000Z 2023-08-11T17:11:42.000Z
drupal-contrib-2021-020 2021-06-30T16:39:06.000Z 2023-08-11T17:11:13.000Z
ID Description Updated
ID Description Published Updated
jvndb-2020-007305 Installer of Trend Micro Security 2020 (Consumer) may insecurely load Dynamic Link Libraries 2024-08-22T11:33+09:00 2024-08-22T11:33+09:00
jvndb-2017-009536 Packetbeat vulnerable to denial-of-service (DoS) 2024-08-21T17:54+09:00 2024-08-21T17:54+09:00
jvndb-2018-009127 Multiple vulnerabilities in LogonTracer 2024-08-21T17:37+09:00 2024-08-21T17:37+09:00
jvndb-2020-002957 A vulnerability in TOYOTA MOTOR's DCU (Display Control Unit) 2024-08-20T18:12+09:00 2024-08-20T18:12+09:00
jvndb-2020-007306 Trend Micro Security (Consumer) Driver vulnerable to Out-of-bounds Read 2024-08-20T17:52+09:00 2024-08-20T17:52+09:00
jvndb-2024-000085 "Rakuten Ichiba App" fails to restrict custom URL schemes properly 2024-08-20T16:56+09:00 2024-08-20T16:56+09:00
jvndb-2024-005167 EL Injection Vulnerability in Hitachi Tuning Manager 2024-08-15T09:38+09:00 2024-08-15T09:38+09:00
jvndb-2016-000124 WAON service app for Android fails to verify SSL server certificates 2024-08-15T09:36+09:00 2024-08-15T09:36+09:00
jvndb-2024-000083 Firmware update for RICOH JavaTM Platform resets the TLS configuration 2024-08-06T15:13+09:00 2024-08-06T15:13+09:00
jvndb-2024-000079 Cybozu Office vulnerable to bypass browsing restrictions in Custom App 2024-08-06T14:59+09:00 2024-08-06T14:59+09:00
jvndb-2024-000082 Pimax Play and PiTool accept WebSocket connections from unintended endpoints 2024-08-05T13:58+09:00 2024-08-05T13:58+09:00
jvndb-2024-000084 Multiple vulnerabilities in ZEXELON ZWX-2000CSW2-HN 2024-08-05T13:46+09:00 2024-08-05T13:46+09:00
jvndb-2024-000077 FFRI AMC vulnerable to OS command injection 2024-07-30T16:40+09:00 2024-07-30T16:40+09:00
jvndb-2024-000078 Multiple vulnerabilities in ELECOM wireless LAN routers 2024-07-30T15:34+09:00 2026-02-03T15:35+09:00
jvndb-2024-000081 EC-CUBE plugin (for EC-CUBE 4 series) "EC-CUBE Web API Plugin" vulnerable to stored cross-site scripting 2024-07-30T14:06+09:00 2024-07-30T14:06+09:00
jvndb-2024-000080 EC-CUBE 4 Series improper input validation when installing plugins 2024-07-30T13:56+09:00 2024-07-30T13:56+09:00
jvndb-2024-004595 Multiple vulnerabilities in FutureNet NXR series, VXR series and WXR series 2024-07-29T17:51+09:00 2025-06-30T09:56+09:00
jvndb-2024-000076 SDoP contains a stack-based buffer overflow vulnerability. 2024-07-29T17:24+09:00 2024-07-29T17:24+09:00
jvndb-2024-000074 Multiple vulnerabilities in SKYSEA Client View 2024-07-29T15:28+09:00 2024-07-31T14:12+09:00
jvndb-2024-004623 Multiple products from Check Point Software Technologies vulnerable to information disclosure 2024-07-29T10:23+09:00 2024-10-24T16:37+09:00
jvndb-2024-000075 ORC vulnerable to stack-based buffer overflow 2024-07-26T13:55+09:00 2024-07-26T13:55+09:00
jvndb-2024-000073 Assimp vulnerable to heap-based buffer overflow 2024-07-18T13:44+09:00 2024-07-18T13:44+09:00
jvndb-2024-000072 Cybozu Garoon vulnerable to cross-site scripting 2024-07-16T16:14+09:00 2024-07-16T16:14+09:00
jvndb-2024-000071 FUJITSU Network Edgiot GW1500 vulnerable to path traversal 2024-07-16T14:41+09:00 2024-07-16T14:41+09:00
jvndb-2024-000070 Out-of-bounds write vulnerability in Ricoh MFPs and printers 2024-07-10T14:16+09:00 2024-07-10T14:16+09:00
jvndb-2024-000059 Multiple vulnerabilities in multiple Webmin products 2024-07-09T14:27+09:00 2024-07-09T14:27+09:00
jvndb-2024-000069 Cleartext transmission issue in TONE store App to TONE store 2024-07-08T13:43+09:00 2024-07-08T13:43+09:00
jvndb-2024-000068 JP1/Extensible SNMP Agent fails to restrict access permissions 2024-07-03T14:57+09:00 2024-07-03T14:57+09:00
jvndb-2024-003831 Multiple TP-Link products vulnerable to OS command injection 2024-06-28T17:38+09:00 2024-06-28T17:38+09:00
jvndb-2024-000067 "Piccoma" App uses a hard-coded API key for an external service 2024-06-28T13:18+09:00 2024-06-28T13:18+09:00
ID Description Updated
ID Description
ID Description Published Updated
cnvd-2026-02876 Online Music Site SQL注入漏洞 2026-01-06 2026-01-12
cnvd-2026-04817 用友网络科技股份有限公司U8 Cloud存在命令执行漏洞(CNVD-C-2026-26052) 2026-01-04 2026-01-21
cnvd-2026-06351 用友网络科技股份有限公司U8+渠道管理(高级版)存在SQL注入漏洞(CNVD-C-2025-1245200) 2025-12-31 2026-02-14
cnvd-2026-00542 Student File Management System download.php文件SQL注入漏洞 2025-12-31 2026-01-05
cnvd-2026-00541 College Notes Uploading System代码问题漏洞 2025-12-31 2026-01-06
cnvd-2026-00539 College Notes Uploading System /login.php文件SQL注入漏洞 2025-12-31 2026-01-06
cnvd-2026-06390 北京星网锐捷网络技术有限公司RG-EST350 V2存在命令执行漏洞 2025-12-30 2026-02-12
cnvd-2026-00112 WordPress Real 3D FlipBook plugin跨站脚本漏洞 2025-12-30 2026-01-04
cnvd-2026-00111 WordPress User Submitted Posts plugin开放重定向漏洞 2025-12-30 2026-01-04
cnvd-2026-00110 WordPress Docket Cache plugin文件包含漏洞 2025-12-30 2026-01-04
cnvd-2026-00109 WordPress Diza plugin文件包含漏洞 2025-12-30 2026-01-04
cnvd-2026-00108 WordPress Chakra test plugin缺少授权漏洞 2025-12-30 2026-01-04
cnvd-2026-00107 WordPress Brave plugin缺少授权漏洞 2025-12-30 2026-01-04
cnvd-2026-00106 WordPress Brands for WooCommerce Plugin SQL注入漏洞 2025-12-30 2026-01-04
cnvd-2026-00105 WordPress Bold Timeline Lite plugin跨站脚本漏洞 2025-12-30 2026-01-04
cnvd-2026-00104 WordPress AutomatorWP plugin SQL注入漏洞 2025-12-30 2026-01-04
cnvd-2026-00103 WordPress Astra Widgets plugin跨站脚本漏洞 2025-12-30 2026-01-04
cnvd-2026-07113 IBM Concert堆内存清理不当漏洞 2025-12-29 2026-01-23
cnvd-2026-04456 北京神州视翰科技有限公司多媒体综合业务显示系统存在SQL注入漏洞(CNVD-C-2025-1206330) 2025-12-29 2026-01-21
cnvd-2026-02778 Orangescrum SQL注入漏洞 2025-12-29 2026-01-09
cnvd-2026-02777 Orangescrum跨站脚本漏洞 2025-12-29 2026-01-09
cnvd-2026-02776 Orangescrum权限提升漏洞 2025-12-29 2026-01-09
cnvd-2026-02639 CMSimple_XH代码执行漏洞 2025-12-29 2026-01-08
cnvd-2026-00824 CMSimple跨站脚本漏洞(CNVD-2026-0082457) 2025-12-29 2026-01-06
cnvd-2026-00823 CMSimple跨站脚本漏洞 2025-12-29 2026-01-06
cnvd-2026-00822 CMSimple文件包含漏洞 2025-12-29 2026-01-06
cnvd-2026-00821 UTT 进取 512W缓冲区溢出漏洞 2025-12-29 2026-01-07
cnvd-2026-00793 UTT 进取 512W缓冲区溢出漏洞(CNVD-2026-0079375) 2025-12-29 2026-01-08
cnvd-2026-00792 UTT 进取 512W缓冲区溢出漏洞(CNVD-2026-0079277) 2025-12-29 2026-01-08
cnvd-2026-00791 UTT 进取 512W缓冲区溢出漏洞(CNVD-2026-0079178) 2025-12-29 2026-01-08
ID Description Published Updated
bdu:2026-01394 Уязвимость функции nbd_alloc_config() модуля drivers/block/nbd.c драйвера поддержки блочн… 08.02.2026 08.02.2026
bdu:2026-01393 Уязвимость функции posix_timer_by_id() модуля kernel/time/posix-timers.c подсистемы тайме… 08.02.2026 08.02.2026
bdu:2026-01392 Уязвимость функции shrink_folio_list() модуля mm/vmscan.c подсистемы управления памятью я… 08.02.2026 08.02.2026
bdu:2026-01391 Уязвимость функции btrfs_finish_extent_commit() модуля fs/btrfs/extent-tree.c файловой с… 07.02.2026 07.02.2026
bdu:2026-01390 Уязвимость функции iommu_deinit_device() модуля drivers/iommu/iommu.c драйвера IOMMU ядра… 07.02.2026 07.02.2026
bdu:2026-01389 Уязвимость функции inherit_event() модуля kernel/events/core.c управления событиями ядра… 07.02.2026 07.02.2026
bdu:2026-01388 Уязвимость функции handle_syscall() модуля arch/um/kernel/skas/syscall.c ядра операционно… 07.02.2026 07.02.2026
bdu:2026-01387 Уязвимость функции find_or_create_cached_dir() модуля fs/smb/client/cached_dir.c поддержк… 07.02.2026 07.02.2026
bdu:2026-01386 Уязвимость функции amdgpu_cs_pass1() модуля drivers/gpu/drm/amd/amdgpu/amdgpu_cs.c драйве… 07.02.2026 07.02.2026
bdu:2026-01385 Уязвимость функции smb2_get_name() модуля fs/smb/server/smb2pdu.c поддержки сервера SMB я… 07.02.2026 07.02.2026
bdu:2026-01384 Уязвимость функции virtio_irq_get_affinity() модуля drivers/virtio/virtio.c поддержки шин… 07.02.2026 07.02.2026
bdu:2026-01383 Уязвимость функции sma1307_setting_loaded() модуля sound/soc/codecs/sma1307.c поддержки … 07.02.2026 07.02.2026
bdu:2026-01382 Уязвимость функции st_sensors_power_enable() модуля drivers/iio/accel/st_accel_core.c ядр… 07.02.2026 07.02.2026
bdu:2026-01381 Уязвимость функций drm_gem_shmem_vmap_locked() и drm_gem_shmem_vunmap_locked() модуля dri… 07.02.2026 07.02.2026
bdu:2026-01380 Уязвимость функций amdgpu_set_pp_power_profile_mode() и parse_input_od_command_lines() мо… 07.02.2026 07.02.2026
bdu:2026-01379 Уязвимость функции loop_set_block_size() модуля drivers/block/loop.c драйвера блочных уст… 07.02.2026 07.02.2026
bdu:2026-01378 Уязвимость функции rcutorture_one_extend_check() модуля kernel/rcu/rcutorture.c ядра опер… 07.02.2026 07.02.2026
bdu:2026-01377 Уязвимость функции lpi_device_get_constraints_amd() модуля drivers/acpi/x86/s2idle.c драй… 07.02.2026 07.02.2026
bdu:2026-01376 Уязвимость функции ath10k_core_start_recovery() модуля drivers/net/wireless/ath/ath10k/co… 07.02.2026 07.02.2026
bdu:2026-01375 Уязвимость функции regs_refine_cond_op() модуля kernel/bpf/verifier.c поддержки интерпрет… 06.02.2026 06.02.2026
bdu:2026-01374 Уязвимость функции gfs2_fill_super() модуля fs/gfs2/ops_fstype.c файловой системы GFS2 яд… 06.02.2026 06.02.2026
bdu:2026-01373 Уязвимость функции ghes_do_proc() модуля drivers/acpi/apei/ghes.c драйвера ACPI (расширен… 06.02.2026 06.02.2026
bdu:2026-01372 Уязвимость функции flush_cache_vmap() модуля arch/parisc/kernel/cache.c поддержки архитек… 06.02.2026 06.02.2026
bdu:2026-01371 Уязвимость функции parse_dfs_referrals() модуля fs/smb/client/misc.c поддержки клиента SM… 06.02.2026 06.02.2026
bdu:2026-01370 Уязвимость функции comedi_buf_munge() модуля drivers/comedi/comedi_buf.c ядра операционно… 06.02.2026 06.02.2026
bdu:2026-01369 Уязвимость функции hfs_mdb_get() модуля fs/hfs/mdb.c файловой системы ядра операционной с… 06.02.2026 06.02.2026
bdu:2026-01368 Уязвимость функции setup_arch() модуля arch/nios2/kernel/setup.c ядра операционной систем… 06.02.2026 06.02.2026
bdu:2026-01367 Уязвимость функции xfrm_state_gc_destroy() модуля net/xfrm/xfrm_state.c реализации сетевы… 06.02.2026 06.02.2026
bdu:2026-01366 Уязвимость функции amdgpu_amdkfd_gpuvm_restore_process_bos() модуля drivers/gpu/drm/amd/a… 06.02.2026 06.02.2026
bdu:2026-01365 Уязвимость функции avs_soc_component_register() модуля sound/soc/intel/avs/pcm.c поддержк… 06.02.2026 06.02.2026
ID Description Published Updated
certfr-2025-avi-1052 Vulnérabilité dans Mattermost Server 2025-12-01T00:00:00.000000 2025-12-01T00:00:00.000000
certfr-2025-avi-1051 Multiples vulnérabilités dans les produits IBM 2025-11-28T00:00:00.000000 2025-11-28T00:00:00.000000
certfr-2025-avi-1050 Multiples vulnérabilités dans le noyau Linux d'Ubuntu 2025-11-28T00:00:00.000000 2025-11-28T00:00:00.000000
certfr-2025-avi-1049 Multiples vulnérabilités dans le noyau Linux de Red Hat 2025-11-28T00:00:00.000000 2025-11-28T00:00:00.000000
certfr-2025-avi-1048 Multiples vulnérabilités dans le noyau Linux de Debian LTS 2025-11-28T00:00:00.000000 2025-11-28T00:00:00.000000
certfr-2025-avi-1047 Multiples vulnérabilités dans le noyau Linux de SUSE 2025-11-28T00:00:00.000000 2025-11-28T00:00:00.000000
certfr-2025-avi-1046 Multiples vulnérabilités dans les produits Moxa 2025-11-28T00:00:00.000000 2025-11-28T00:00:00.000000
certfr-2025-avi-1045 Vulnérabilité dans MISP 2025-11-27T00:00:00.000000 2025-11-28T00:00:00.000000
certfr-2025-avi-1044 Vulnérabilité dans Mattermost Server 2025-11-27T00:00:00.000000 2025-11-27T00:00:00.000000
certfr-2025-avi-1043 Multiples vulnérabilités dans les produits Splunk 2025-11-27T00:00:00.000000 2025-11-27T00:00:00.000000
certfr-2025-avi-1042 Multiples vulnérabilités dans GitLab 2025-11-27T00:00:00.000000 2025-11-27T00:00:00.000000
certfr-2025-avi-1041 Vulnérabilité dans Synology ActiveProtect Agent 2025-11-26T00:00:00.000000 2025-11-26T00:00:00.000000
certfr-2025-avi-1040 Vulnérabilité dans Postfix 2025-11-26T00:00:00.000000 2025-11-26T00:00:00.000000
certfr-2025-avi-1039 Vulnérabilité dans Kaspersky Security Center 2025-11-25T00:00:00.000000 2025-11-25T00:00:00.000000
certfr-2025-avi-1038 Vulnérabilité dans les produits PrimX 2025-11-25T00:00:00.000000 2025-11-25T00:00:00.000000
certfr-2025-avi-1037 Multiples vulnérabilités dans Progress MOVEit Transfer 2025-11-25T00:00:00.000000 2025-11-25T00:00:00.000000
certfr-2025-avi-1036 Multiples vulnérabilités dans les produits VMware 2025-11-24T00:00:00.000000 2025-11-24T00:00:00.000000
certfr-2025-avi-1035 Multiples vulnérabilités dans les produits Synology 2025-11-24T00:00:00.000000 2025-11-24T00:00:00.000000
certfr-2025-avi-1034 Multiples vulnérabilités dans les produits IBM 2025-11-21T00:00:00.000000 2025-11-21T00:00:00.000000
certfr-2025-avi-1033 Multiples vulnérabilités dans le noyau Linux de Red Hat 2025-11-21T00:00:00.000000 2025-11-21T00:00:00.000000
certfr-2025-avi-1032 Multiples vulnérabilités dans le noyau Linux de SUSE 2025-11-21T00:00:00.000000 2025-11-21T00:00:00.000000
certfr-2025-avi-1031 Multiples vulnérabilités dans le noyau Linux d'Ubuntu 2025-11-21T00:00:00.000000 2025-11-21T00:00:00.000000
certfr-2025-avi-1030 Vulnérabilité dans Microsoft Visual Studio Code 2025-11-21T00:00:00.000000 2025-11-21T00:00:00.000000
certfr-2025-avi-1029 Vulnérabilité dans les produits Kaspersky 2025-11-20T00:00:00.000000 2025-11-20T00:00:00.000000
certfr-2025-avi-1028 Vulnérabilité dans GnuTLS 2025-11-20T00:00:00.000000 2025-11-20T00:00:00.000000
certfr-2025-avi-1027 Multiples vulnérabilités dans les produits SonicWall 2025-11-20T00:00:00.000000 2025-11-20T00:00:00.000000
certfr-2025-avi-1026 Multiples vulnérabilités dans Wireshark 2025-11-20T00:00:00.000000 2025-11-20T00:00:00.000000
certfr-2025-avi-1025 Multiples vulnérabilités dans les produits Atlassian 2025-11-19T00:00:00.000000 2025-11-19T00:00:00.000000
certfr-2025-avi-1024 Multiples vulnérabilités dans les produits VMware 2025-11-19T00:00:00.000000 2025-11-19T00:00:00.000000
certfr-2025-avi-1023 Multiples vulnérabilités dans les produits Fortinet 2025-11-19T00:00:00.000000 2025-11-19T00:00:00.000000
ID Description Published Updated
certa-2006-ale-009 Vulnérabilité de la librairie MSO.DLL dans Microsoft Office 2006-07-15T00:00:00.000000 2006-08-09T00:00:00.000000
certa-2006-ale-008 Vulnérabilité d'ExtCalendar 2006-07-11T00:00:00.000000 2006-07-11T00:00:00.000000
certa-2006-ale-007 Vulnérabilité dans Microsoft Excel 2006-06-16T00:00:00.000000 2006-07-12T00:00:00.000000
certa-2006-ale-006 Vulnérabilité dans Microsoft Word 2006-05-20T00:00:00.000000 2006-06-14T00:00:00.000000
certa-2006-ale-005 Vulnérabilité dans Firefox 2006-04-26T00:00:00.000000 2006-05-02T00:00:00.000000
certa-2006-ale-004 Multiples vulnérabilités sous Mac OS X d'Apple 2006-04-22T00:00:00.000000 2006-05-12T00:00:00.000000
certa-2006-ale-003 Vulnérabilité de Sendmail 2006-03-24T00:00:00.000000 2006-03-24T00:00:00.000000
certa-2006-ale-002 Multiples vulnérabilités dans Microsoft Internet Explorer 2006-03-23T00:00:00.000000 2006-04-12T00:00:00.000000
certa-2006-ale-001 Vulnérabilité dans le traitement de certains fichiers sous MAC OS X 2006-02-22T00:00:00.000000 2006-03-02T00:00:00.000000
certa-2005-ale-019 Exploitation d'une vulnérabilité mal corrigée dans Microsoft Windows 2005-12-28T00:00:00.000000 2006-01-06T00:00:00.000000
certa-2005-ale-018 Vulnérabilité du navigateur Firefox 2005-12-08T00:00:00.000000 2005-12-08T00:00:00.000000
certa-2005-ale-017 Vulnérabilité de Microsoft Internet Explorer 2005-11-21T00:00:00.000000 2005-12-14T00:00:00.000000
certa-2005-ale-016 Vulnérabilité de Microsoft Windows RPC 2005-11-18T00:00:00.000000 2005-11-18T00:00:00.000000
certa-2005-ale-014 Vulnérabilité d'un grand nombre d'antivirus 2005-10-11T00:00:00.000000 2005-10-11T00:00:00.000000
certa-2005-ale-013 Vulnérabilité dans Citrix Metaframe Presentation 2005-10-07T00:00:00.000000 2013-06-06T00:00:00.000000
certa-2005-ale-012 Vulnérabilité de Netscape 8 2005-09-27T00:00:00.000000 2006-04-12T00:00:00.000000
certa-2005-ale-011 Vulnérabilité de HelixPlayer et RealPlayer 2005-09-27T00:00:00.000000 2005-10-10T00:00:00.000000
certa-2005-ale-010 Vulnérabilité dans Qpopper 2005-09-27T00:00:00.000000 2005-09-27T00:00:00.000000
certa-2005-ale-009 Vulnérabilité dans Mozilla Thunderbird 2005-09-23T00:00:00.000000 2005-09-23T00:00:00.000000
certa-2005-ale-008 Possible vulnérabilité de la bibliothèque msdds.dll 2005-08-19T00:00:00.000000 2006-04-12T00:00:00.000000
certa-2005-ale-007 Exploitation de la faille MS05-039 2005-08-16T00:00:00.000000 2005-08-16T00:00:00.000000
certa-2005-ale-006 Vulnérabilité du protocole RDP de Microsoft 2005-07-18T00:00:00.000000 2005-08-10T00:00:00.000000
certa-2005-ale-005 Vulnérabilité d'Internet Explorer 2005-07-02T00:00:00.000000 2005-07-13T00:00:00.000000
certa-2005-ale-004 Propagation du ver MYTOB 2005-06-03T00:00:00.000000 2005-06-03T00:00:00.000000
certa-2005-ale-003 Multiples vulnérabilités de Firefox 2005-05-09T00:00:00.000000 2005-05-12T00:00:00.000000
certa-2005-ale-002 Exploitation d'une vulnérabilité dans Oracle Database Server 2005-04-28T00:00:00.000000 2005-04-28T00:00:00.000000
certa-2005-ale-001 Vulnérabilité d'Internet Explorer 2005-01-03T00:00:00.000000 2005-01-11T00:00:00.000000
certa-2004-ale-014 Exploitation massive d'une faille du forum phpBB 2004-12-22T00:00:00.000000 2004-12-22T00:00:00.000000
certa-2004-ale-013 Vulnérabilité dans le composant ActiveX DHTML Edit d'Internet Explorer 2004-12-20T00:00:00.000000 2004-12-20T00:00:00.000000
certa-2004-ale-012 Vulnérabilité d'Internet Explorer 2004-11-09T00:00:00.000000 2004-12-02T00:00:00.000000
ID Description Published Updated
osv-2024-1266 UNKNOWN READ in llama_output_reserve 2024-11-03T00:14:31.568857Z 2024-11-03T00:14:31.569247Z
osv-2024-1261 Stack-buffer-overflow in _pcre2_compile_class_not_nested_16 2024-11-02T00:11:51.445365Z 2024-11-02T00:11:51.445768Z
osv-2024-1254 Security exception in org.apache.lucene.util.ArrayUtil.growExact 2024-11-01T00:07:39.301298Z 2025-11-17T14:52:40.058935Z
osv-2024-1253 Segv on unknown address in llama_output_reserve 2024-11-01T00:03:18.217276Z 2024-11-01T00:03:18.217677Z
osv-2023-1398 Heap-buffer-overflow in load_1 2024-11-01T00:02:38.719507Z 2024-11-01T00:02:38.719949Z
osv-2024-1251 UNKNOWN WRITE in s_DCTD_process 2024-11-01T00:02:31.749497Z 2025-04-29T14:29:01.935923Z
osv-2024-1249 Heap-buffer-overflow in extract_ice_option 2024-10-30T00:15:55.709182Z 2025-03-18T00:40:00.171776Z
osv-2024-1244 Heap-buffer-overflow in extract_fmtp 2024-10-27T00:10:45.337287Z 2024-11-06T14:24:14.483448Z
osv-2024-1241 Heap-buffer-overflow in polygonToCellsExperimental 2024-10-25T00:13:57.330581Z 2024-10-25T00:13:57.331154Z
osv-2024-1239 Heap-buffer-overflow in convsamp 2024-10-24T00:06:22.931512Z 2024-10-25T14:18:35.097668Z
osv-2024-1237 Use-of-uninitialized-value in jit_compile 2024-10-22T00:13:19.495791Z 2024-10-22T00:13:19.496460Z
osv-2024-1232 Segv on unknown address in cranelift_filetests::function_runner::Trampoline::call::hb2e77cf3a13ebaf4 2024-10-19T00:15:15.010866Z 2024-10-19T00:15:15.011237Z
osv-2024-1230 Heap-buffer-overflow in extract_rtpmap 2024-10-19T00:00:26.792754Z 2025-01-10T05:21:03.406469Z
osv-2024-1220 UNKNOWN READ in Assimp::NDOImporter::InternReadFile 2024-10-14T00:17:45.088625Z 2026-01-25T14:14:41.961973Z
osv-2024-1218 UNKNOWN READ in Poco::UTF16Encoding::queryConvert 2024-10-14T00:08:40.382545Z 2025-04-10T14:48:52.198172Z
osv-2024-1216 Use-of-uninitialized-value in Poco::Net::NTLMCredentials::parseChallengeMessage 2024-10-13T00:11:43.323181Z 2025-03-18T00:32:42.736858Z
osv-2024-1212 Heap-buffer-overflow in cram_encode_container 2024-10-11T00:16:27.350249Z 2024-10-11T00:16:27.350643Z
osv-2024-1210 Heap-buffer-overflow in parse_mixed_content 2024-10-11T00:15:50.054920Z 2025-01-10T05:11:11.351763Z
osv-2024-1209 Heap-use-after-free in xmlValidateOneElement 2024-10-11T00:15:43.610812Z 2025-03-18T00:30:11.577855Z
osv-2024-1206 Heap-buffer-overflow in extract_sendrecv_mode 2024-10-11T00:13:47.835312Z 2025-01-10T05:11:09.130549Z
osv-2024-1205 Memcpy-param-overlap in repeat 2024-10-11T00:12:59.211479Z 2025-06-02T14:22:48.890155Z
osv-2024-1203 Global-buffer-overflow in AnnouncePunctuation 2024-10-11T00:02:53.598773Z 2024-10-11T00:02:53.599146Z
osv-2024-1201 Heap-buffer-overflow in polygonToCellsExperimental 2024-10-11T00:02:38.496890Z 2024-10-11T00:02:38.497374Z
osv-2024-1200 UNKNOWN READ in eat_line 2024-10-11T00:02:19.537501Z 2025-01-10T05:09:26.885831Z
osv-2024-1191 Security exception in org.apache.lucene.analysis.miscellaneous.ASCIIFoldingFilter.foldToASCII 2024-10-09T00:04:49.628226Z 2025-06-20T16:39:29.501730Z
osv-2024-1186 UNKNOWN READ in cfl_sds_len 2024-10-08T00:15:47.433219Z 2025-05-13T14:48:36.393777Z
osv-2024-1181 Security exception in com.puppycrawl.tools.checkstyle.grammar.java.JavaLanguageParser.expr 2024-10-06T00:14:54.118103Z 2024-10-06T00:14:54.118486Z
osv-2024-1179 UNKNOWN READ in __dynamic_cast 2024-10-06T00:01:54.176437Z 2024-10-06T00:01:54.177068Z
osv-2024-1175 Use-of-uninitialized-value in mark_context 2024-10-04T00:14:55.661266Z 2024-10-04T00:14:55.661697Z
osv-2024-1164 Use-of-uninitialized-value in format_message 2024-10-02T00:13:05.449687Z 2025-04-05T14:45:16.595433Z
ID Description Published Updated
rustsec-2024-0016 dav1d AV1 decoder integer overflow 2024-02-19T12:00:00Z 2024-04-11T16:16:20Z
rustsec-2024-0014 `generational-arena` is unmaintained 2024-02-11T12:00:00Z 2024-02-18T04:06:15Z
rustsec-2024-0013 Memory corruption, denial of service, and arbitrary code execution in libgit2 2024-02-06T12:00:00Z 2024-02-15T01:22:49Z
rustsec-2024-0010 Improper comparison of different-length signatures 2024-02-06T12:00:00Z 2024-02-15T01:22:49Z
rustsec-2024-0397 `conrod` is unmaintained 2024-01-26T12:00:00Z 2024-11-10T14:25:35Z
rustsec-2024-0396 `conrod_core` is unmaintained 2024-01-26T12:00:00Z 2024-11-10T14:25:35Z
rustsec-2024-0015 filesystem-rs may be implicitly unmaintained 2024-01-25T12:00:00Z 2024-02-18T04:23:45Z
rustsec-2024-0012 Stack overflow during recursive JSON parsing 2024-01-24T12:00:00Z 2025-10-28T06:02:18Z
rustsec-2024-0011 Unauthenticated Nonce Increment in snow 2024-01-23T12:00:00Z 2025-10-28T06:02:18Z
rustsec-2024-0009 Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting') 2024-01-23T12:00:00Z 2024-01-24T17:00:49Z
rustsec-2024-0008 Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting') 2024-01-23T12:00:00Z 2024-01-24T17:00:49Z
rustsec-2024-0006 Multiple issues involving quote API 2024-01-21T12:00:00Z 2025-10-28T06:02:18Z
rustsec-2024-0004 `cosmwasm` is unmaintained 2024-01-20T12:00:00Z 2024-01-21T14:51:38Z
rustsec-2024-0007 Use-after-free when setting the locale 2024-01-19T12:00:00Z 2024-02-10T15:57:43Z
rustsec-2024-0003 Resource exhaustion vulnerability in h2 may lead to Denial of Service (DoS) 2024-01-17T12:00:00Z 2024-02-10T15:57:43Z
rustsec-2024-0001 Unsound use of str::from_utf8_unchecked on bytes which are not UTF-8 2024-01-13T12:00:00Z 2024-02-10T15:57:43Z
rustsec-2024-0434 Missing facility to signal rotation of a verified cryptographic identity 2024-01-07T12:00:00Z 2025-01-22T10:27:39Z
rustsec-2024-0005 Unsound sending of non-Send types across threads 2024-01-07T12:00:00Z 2024-02-10T15:57:43Z
rustsec-2024-0002 `serde` deserialization for `FamStructWrapper` lacks bound checks that could potentially lead to out-of-bounds memory access 2024-01-02T12:00:00Z 2024-01-14T03:39:46Z
rustsec-2023-0075 Unaligned write of u64 on 32-bit and 16-bit platforms 2023-12-20T12:00:00Z 2024-02-10T15:57:43Z
rustsec-2023-0080 Buffer overflow due to integer overflow in `transpose` 2023-12-18T12:00:00Z 2025-10-28T06:02:18Z
rustsec-2023-0074 Some Ref methods are unsound with some type parameters 2023-12-14T12:00:00Z 2024-02-10T15:57:43Z
rustsec-2023-0073 Infinite decoding loop through specially crafted payload 2023-12-08T12:00:00Z 2023-12-09T10:05:32Z
rustsec-2023-0079 KyberSlash: division timings depending on secrets 2023-12-01T12:00:00Z 2024-04-12T21:07:31Z
rustsec-2023-0072 `openssl` `X509StoreRef::objects` is unsound 2023-11-23T12:00:00Z 2024-02-10T15:57:43Z
rustsec-2023-0096 Plaintext exposed in decrypt_in_place_detached even on tag verification failure 2023-11-22T12:00:00Z 2025-12-29T13:49:34Z
rustsec-2023-0071 Marvin Attack: potential key recovery through timing sidechannels 2023-11-22T12:00:00Z 2023-12-15T14:57:06Z
rustsec-2023-0076 `cpython` is unmaintained 2023-11-14T12:00:00Z 2023-12-20T22:34:55Z
rustsec-2023-0088 `loopdev` crate is unmaintained; use 'loopdev-3` instead. 2023-11-13T12:00:00Z 2024-11-10T16:18:40Z
rustsec-2023-0070 Insufficient covariance check makes self_cell unsound 2023-11-10T12:00:00Z 2024-02-10T15:57:43Z
ID Description Published Updated
alsa-2025:21139 Important: python-kdcproxy security update 2025-11-12T00:00:00Z 2025-11-19T09:41:31Z
alsa-2025:21111 Important: bind9.18 security update 2025-11-12T00:00:00Z 2025-12-01T08:06:30Z
alsa-2025:21110 Important: bind security update 2025-11-12T00:00:00Z 2025-11-19T09:39:10Z
alsa-2025:21038 Important: kea security update 2025-11-11T00:00:00Z 2025-12-05T08:28:57Z
alsa-2025:21036 Important: pcs security update 2025-11-11T00:00:00Z 2025-12-05T08:31:28Z
alsa-2025:21035 Moderate: xorg-x11-server-Xwayland security update 2025-11-11T00:00:00Z 2025-11-24T09:01:21Z
alsa-2025:21034 Important: bind security update 2025-11-11T00:00:00Z 2025-11-24T09:00:19Z
alsa-2025:21032 Important: libsoup3 security update 2025-11-11T00:00:00Z 2025-11-24T08:58:48Z
alsa-2025:21030 Important: expat security update 2025-11-11T00:00:00Z 2025-11-24T08:57:33Z
alsa-2025:21020 Important: sssd security update 2025-11-11T00:00:00Z 2026-01-14T12:41:29Z
alsa-2025:21015 Moderate: vim security update 2025-11-11T00:00:00Z 2025-11-24T08:56:33Z
alsa-2025:21013 Moderate: libssh security update 2025-11-11T00:00:00Z 2025-11-24T08:54:57Z
alsa-2025:21002 Important: squid security update 2025-11-11T00:00:00Z 2025-11-24T08:53:45Z
alsa-2025:20998 Important: libtiff security update 2025-11-11T00:00:00Z 2025-11-24T08:51:54Z
alsa-2025:20994 Important: ipa security update 2025-11-11T00:00:00Z 2025-12-05T09:05:25Z
alsa-2025:20983 Important: podman security update 2025-11-11T00:00:00Z 2025-11-25T10:54:40Z
alsa-2025:20963 Moderate: qt5-qt3d security update 2025-11-11T00:00:00Z 2025-11-19T09:37:23Z
alsa-2025:20962 Important: pcs security update 2025-11-11T00:00:00Z 2025-12-01T08:09:09Z
alsa-2025:20961 Moderate: xorg-x11-server security update 2025-11-11T00:00:00Z 2025-11-19T09:36:21Z
alsa-2025:20960 Moderate: xorg-x11-server-Xwayland security update 2025-11-11T00:00:00Z 2025-11-19T09:34:47Z
alsa-2025:20959 Important: libsoup security update 2025-11-11T00:00:00Z 2025-11-19T09:32:27Z
alsa-2025:20958 Important: tigervnc security update 2025-11-11T00:00:00Z 2025-12-01T08:10:34Z
alsa-2025:20957 Important: runc security update 2025-11-11T00:00:00Z 2025-11-19T09:31:22Z
alsa-2025:20956 Important: libtiff security update 2025-11-11T00:00:00Z 2025-11-19T09:30:24Z
alsa-2025:20955 Important: redis:7 security update 2025-11-11T00:00:00Z 2025-11-19T09:42:38Z
alsa-2025:20954 Important: sssd security update 2025-11-11T00:00:00Z 2025-12-01T08:13:09Z
alsa-2025:20945 Moderate: vim security update 2025-11-11T00:00:00Z 2025-11-19T09:26:44Z
alsa-2025:20943 Moderate: libssh security update 2025-11-11T00:00:00Z 2025-11-19T09:28:35Z
alsa-2025:20936 Important: sqlite security update 2025-11-11T00:00:00Z 2025-11-19T09:25:24Z
alsa-2025:20935 Important: squid security update 2025-11-11T00:00:00Z 2025-11-19T09:24:20Z