Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
CVE-1999-0322
N/A
The open() function in FreeBSD allows local attac… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:51.955Z
CVE-1999-0343
N/A
A malicious Palace server can force a client to e… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:52.029Z
CVE-1999-0408
N/A
Files created from interactive shell sessions in … n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:34:52.089Z
CVE-1999-0409
N/A
Buffer overflow in gnuplot in Linux version 3.5 a… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:41:44.207Z
CVE-1999-0421
N/A
During a reboot after an installation of Linux Sl… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:41:44.242Z
CVE-1999-0428
N/A
OpenSSL and SSLeay allow remote attackers to reus… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:41:44.712Z
CVE-1999-0439
N/A
Buffer overflow in procmail before version 3.12 a… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:41:44.765Z
CVE-1999-0470
N/A
A weak encryption algorithm is used for passwords… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:41:44.977Z
CVE-1999-0674
N/A
The BSD profil system call allows a local user to… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.024Z
CVE-1999-0680
N/A
Windows NT Terminal Server performs extra work wh… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.488Z
CVE-1999-0682
N/A
Microsoft Exchange 5.5 allows a remote attacker t… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.013Z
CVE-1999-0685
N/A
Buffer overflow in Netscape Communicator via EMBE… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.318Z
CVE-1999-0686
N/A
Denial of service in Netscape Enterprise Server (… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:36.975Z
CVE-1999-0687
N/A
The ToolTalk ttsession daemon uses weak RPC authe… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.419Z
CVE-1999-0688
N/A
Buffer overflows in HP Software Distributor (SD) … n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.600Z
CVE-1999-0689
N/A
The CDE dtspcd daemon allows local users to execu… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.000Z
CVE-1999-0690
N/A
HP CDE program includes the current directory in … n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.451Z
CVE-1999-0691
N/A
Buffer overflow in the AddSuLog function of the C… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.364Z
CVE-1999-0692
N/A
The default configuration of the Array Services d… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.566Z
CVE-1999-0693
N/A
Buffer overflow in TT_SESSION environment variabl… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.755Z
CVE-1999-0695
N/A
The Sybase PowerDynamo personal web server allows… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.510Z
CVE-1999-0699
N/A
The Bluestone Sapphire web server allows session … n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.166Z
CVE-1999-0700
N/A
Buffer overflow in Microsoft Phone Dialer (dialer… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.618Z
CVE-1999-0701
N/A
After an unattended installation of Windows NT 4.… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.583Z
CVE-1999-0702
N/A
Internet Explorer 5.0 and 5.01 allows remote atta… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.636Z
CVE-1999-0703
N/A
OpenBSD, BSDI, and other Unix operating systems a… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.536Z
CVE-1999-0704
N/A
Buffer overflow in Berkeley automounter daemon (a… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.805Z
CVE-1999-0705
N/A
Buffer overflow in INN inews program. n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.884Z
CVE-1999-0706
N/A
Linux xmonisdn package allows local users to gain… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.646Z
CVE-1999-0707
N/A
The default FTP configuration in HP Visualize Con… n/a
n/a
2000-01-04T10:00:00.000Z 2024-08-01T16:48:37.412Z
ID CVSS Description Vendor Product Published Updated
ID Severity Description Published Updated
ghsa-3jqw-crqj-w8qw
7.5 (3.1)
8.7 (4.0)
Denial of service in django 2018-07-23T19:51:35Z 2024-09-16T22:34:20Z
ghsa-fwr5-q9rx-294f
6.5 (3.1)
7.1 (4.0)
Improper query string handling in Django 2018-07-23T19:51:40Z 2024-11-18T16:26:08Z
ghsa-4m72-rmm9-2qjr
6.1 (3.1)
5.3 (4.0)
feedparser Cross-site Scripting vulnerability 2018-07-23T19:51:43Z 2024-09-20T17:27:57Z
ghsa-77hv-8796-8ccp
7.5 (3.1)
8.7 (4.0)
HTTP header injection in Plone and Zope2 2018-07-23T19:51:50Z 2024-10-11T20:53:34Z
ghsa-7wph-fc4w-wqp2
7.5 (3.1)
6.6 (4.0)
Improper date handling in Django 2018-07-23T19:51:59Z 2024-09-17T15:03:58Z
ghsa-p6h9-hpcg-c6gm
High severity vulnerability that affects Plone and Zope2 2018-07-23T19:52:02Z 2024-11-26T15:51:27Z
ghsa-879r-7f3w-8jj3
6.5 (3.1)
7.1 (4.0)
Plone and Zope2 vulnerable to unauthorized access to restricted attributes 2018-07-23T19:52:06Z 2024-10-11T20:52:23Z
ghsa-2p78-8hh6-96xc
6.1 (3.1)
5.3 (4.0)
feedparser Cross-site Scripting vulnerability 2018-07-23T19:52:21Z 2024-09-20T17:20:05Z
ghsa-7g9h-c88w-r7h2
9.1 (3.1)
9.3 (4.0)
Directory traversal in Django 2018-07-23T19:52:31Z 2024-09-16T21:55:42Z
ghsa-prr5-pfr8-q9f3
7.5 (3.1)
8.7 (4.0)
Plone allows remote attackers to read hidden folder contents 2018-07-23T19:52:35Z 2024-10-14T21:48:06Z
ghsa-x88j-93vc-wpmp
4.0 (3.1)
6.9 (4.0)
Session manipulation in Django 2018-07-23T19:52:39Z 2024-09-16T23:03:58Z
ghsa-fxpg-gg9g-76gj
6.1 (3.1)
5.3 (4.0)
Cross-site scripting in django 2018-07-23T19:52:42Z 2024-09-16T22:57:31Z
ghsa-2qx8-589j-gcpx
6.5 (3.1)
7.1 (4.0)
Plone and plone.app.users allow remote authenticated users to modify the properties of arbitrary accounts 2018-07-23T20:26:45Z 2024-10-09T21:30:27Z
ghsa-xj3h-vc9j-j823
7.5 (3.1)
Directory Traversal in nodeaaaaa 2018-07-23T20:39:32Z 2023-09-07T20:39:09Z
ghsa-xqfm-ff6g-24c7
7.5 (3.1)
Directory Traversal in dgard8.lab6 2018-07-23T20:39:44Z 2023-09-11T23:14:40Z
ghsa-qmhf-qg6f-pc4v
7.5 (3.1)
Directory Traversal in fbr-client 2018-07-23T20:39:51Z 2023-09-12T21:23:21Z
ghsa-5jg5-w395-9684
7.5 (3.1)
Directory Traversal in ltt 2018-07-23T20:39:59Z 2023-09-11T19:00:46Z
ghsa-79p8-4cwq-rhqh
Directory Traversal in jn_jj_server 2018-07-23T20:40:07Z 2023-09-05T23:24:25Z
ghsa-78h7-fgq9-625x
7.5 (3.1)
Directory Traversal in quickserver 2018-07-23T20:40:14Z 2023-09-11T16:38:49Z
ghsa-x5x2-mfc7-r22f
Directory Traversal in picard 2018-07-23T20:40:20Z 2023-09-05T23:33:31Z
ghsa-4vcm-qfxh-p6c3
7.5 (3.1)
Directory Traversal in getcityapi.yoehoehne 2018-07-23T20:40:29Z 2023-09-11T23:14:01Z
ghsa-rw6j-rhw7-q94c
7.5 (3.1)
Directory Traversal in sly07 2018-07-23T20:40:34Z 2023-09-12T19:35:17Z
ghsa-f7jg-mcvw-9gwv
7.5 (3.1)
Directory Traversal in reecerver 2018-07-23T20:40:40Z 2023-09-11T23:12:52Z
ghsa-jpjp-vxv6-59hm
7.5 (3.1)
Directory Traversal in open-device 2018-07-23T20:41:11Z 2023-09-11T23:12:30Z
ghsa-wh33-4p32-g7vh
7.5 (3.1)
Directory Traversal in serverxxx 2018-07-23T20:43:56Z 2023-09-07T22:25:41Z
ghsa-pr49-5hhf-6mm6
7.5 (3.1)
Directory Traversal in serverabc 2018-07-23T20:44:34Z 2023-09-08T23:29:43Z
ghsa-23wc-v4mf-x7v4
7.5 (3.1)
Directory Traversal in intsol-package 2018-07-23T20:44:45Z 2023-09-07T22:48:16Z
ghsa-5x5w-v4xq-p64r
7.5 (3.1)
Directory Traversal in ewgaddis.lab6 2018-07-23T20:44:52Z 2023-09-11T16:34:18Z
ghsa-m874-69ww-w7jq
7.5 (3.1)
Directory Traversal in whispercast 2018-07-23T20:45:01Z 2023-09-12T19:34:57Z
ghsa-68cm-mgv7-vg5c
7.5 (3.1)
Directory Traversal in utahcityfinder 2018-07-23T20:45:11Z 2023-09-07T22:52:46Z
ID Severity Description Package Published Updated
pysec-2015-1
Ansible before 1.9.2 does not verify that the server hostname matches a domain name in th… ansible 2015-08-12T14:59:00Z 2021-07-02T02:41:33.423322Z
pysec-2015-39
The import task action in OpenStack Image Service (Glance) 2015.1.x before 2015.1.2 (kilo… glance 2015-08-19T15:59:00Z 2024-11-25T18:35:18.357593Z
pysec-2015-40
Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in OpenStack … horizon 2015-08-20T20:59:00Z 2024-11-25T18:35:18.357593Z
pysec-2015-22
contrib.sessions.middleware.SessionMiddleware in Django 1.8.x before 1.8.4, 1.7.x before … django 2015-08-24T14:59:00Z 2021-07-15T02:22:09.927134Z
pysec-2015-23
The (1) contrib.sessions.backends.base.SessionBase.flush and (2) cache_db.SessionStore.fl… django 2015-08-24T14:59:00Z 2021-07-15T02:22:10.010649Z
pysec-2015-24
Cross-site scripting (XSS) vulnerability in the file browser in notebook/notebookapp.py i… ipython 2015-09-21T19:59:00Z 2021-07-15T02:22:14.906376Z
pysec-2015-26
Cross-site scripting (XSS) vulnerability in the file browser in notebook/notebookapp.py i… notebook 2015-09-21T19:59:00Z 2021-07-15T02:22:16.172109Z
pysec-2015-25
The editor in IPython Notebook before 3.2.2 and Jupyter Notebook 4.0.x before 4.0.5 allow… ipython 2015-09-29T19:59:00Z 2021-07-15T02:22:14.948088Z
pysec-2015-27
The editor in IPython Notebook before 3.2.2 and Jupyter Notebook 4.0.x before 4.0.5 allow… notebook 2015-09-29T19:59:00Z 2021-07-15T02:22:16.210618Z
pysec-2015-13
CRLF injection vulnerability in Kallithea before 0.3 allows remote attackers to inject ar… kallithea 2015-10-29T20:59:00Z 2021-07-05T00:01:22.184837Z
pysec-2015-41
providers/saml2/admin.py in the Identity Provider (IdP) server in Ipsilon 0.1.0 before 1.… ipsilon 2015-11-17T15:59:00Z 2024-12-05T09:35:27.711043Z
pysec-2015-42
providers/saml2/admin.py in the Identity Provider (IdP) server in Ipsilon 0.1.0 before 1.… ipsilon 2015-11-17T15:59:00Z 2024-12-05T09:35:27.751929Z
pysec-2015-28
OpenStack Ironic Inspector (aka ironic-inspector or ironic-discoverd), when debug mode is… ironic-inspector 2015-11-25T20:59:00Z 2021-07-25T23:34:38.274751Z
pysec-2015-11
The get_format function in utils/formats.py in Django before 1.7.x before 1.7.11, 1.8.x b… django 2015-12-07T20:59:00Z 2021-09-01T08:35:41.190803Z
pysec-2016-32
The FontManager._get_nix_font_path function in formatters/img.py in Pygments 1.2.2 throug… pygments 2016-01-08T20:59:00Z 2021-08-27T03:22:17.226462Z
pysec-2016-10
The verify function in the RSA package for Python (Python-RSA) before 3.3 allows attacker… rsa 2016-01-13T15:59:00Z 2021-07-05T00:01:25.929299Z
pysec-2016-20
The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x be… keystonemiddleware 2016-02-03T18:59:00Z 2021-07-25T23:34:39.104396Z
pysec-2016-36
The multifilesystem storage backend in Radicale before 1.1 allows remote attackers to rea… radicale 2016-02-03T18:59:00Z 2021-12-14T08:18:58.605498Z
pysec-2016-37
Radicale before 1.1 allows remote authenticated users to bypass owner_write and owner_onl… radicale 2016-02-03T18:59:00Z 2021-12-14T08:18:58.669643Z
pysec-2016-14
Django 1.9.x before 1.9.2, when ModelAdmin.save_as is set to True, allows remote authenti… django 2016-02-08T19:59:00Z 2021-07-15T02:22:10.055528Z
pysec-2016-15
The utils.http.is_safe_url function in Django before 1.8.10 and 1.9.x before 1.9.3 allows… django 2016-04-08T15:59:00Z 2021-07-15T02:22:10.137209Z
pysec-2016-16
The password hasher in contrib/auth/hashers.py in Django before 1.8.10 and 1.9.x before 1… django 2016-04-08T15:59:00Z 2021-07-15T02:22:10.225115Z
pysec-2016-35
The TripleO Heat templates (tripleo-heat-templates), when deployed via the commandline in… tripleo-heat-templates 2016-04-11T21:59:00Z 2021-08-27T03:22:48.456695Z
pysec-2016-23
Salt 2015.8.x before 2015.8.4 does not properly handle clear messages on the minion, whic… salt 2016-04-12T14:59:00Z 2021-07-25T23:34:53.906248Z
pysec-2016-33
schema.py in Roundup before 1.5.1 does not properly limit attributes included in default … roundup 2016-04-13T14:59:00Z 2021-08-27T03:22:19.738380Z
pysec-2016-11
model/modelstorage.py in trytond 3.2.x before 3.2.10, 3.4.x before 3.4.8, 3.6.x before 3.… trytond 2016-04-13T15:59:00Z 2021-07-05T00:01:27.588881Z
pysec-2016-19
Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 an… pillow 2016-04-13T16:59:00Z 2021-07-15T02:22:17.074309Z
pysec-2016-26
Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a crafted gi… mercurial 2016-04-13T16:59:00Z 2021-08-27T03:22:06.833176Z
pysec-2016-27
Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a crafted na… mercurial 2016-04-13T16:59:00Z 2021-08-27T03:22:06.881570Z
pysec-2016-29
The binary delta decoder in Mercurial before 3.7.3 allows remote attackers to execute arb… mercurial 2016-04-13T16:59:00Z 2021-08-27T03:22:06.971468Z
ID Description Type
ID Description Updated
ID Description Published Updated
mal-2022-5754 Malicious code in reqsender321 (npm) 2022-06-09T08:46:50Z 2022-06-09T08:46:50Z
mal-2022-6559 Malicious code in thisisveryfistpackage11 (npm) 2022-06-09T08:46:50Z 2022-06-09T08:46:50Z
mal-2022-7419 Malicious code in zzzhelloeveryone (npm) 2022-06-09T08:46:50Z 2022-06-09T08:46:56Z
mal-2022-642 Malicious code in @tide-web-apps/bert2 (npm) 2022-06-09T08:50:13Z 2022-06-09T08:51:18Z
mal-2022-416 Malicious code in @manomano-toolbox/hub (npm) 2022-06-09T08:52:09Z 2022-06-09T08:52:10Z
mal-2022-417 Malicious code in @manomano-toolbox/pim-management (npm) 2022-06-09T08:52:09Z 2022-06-09T08:52:17Z
mal-2022-418 Malicious code in @manomano-toolbox/toolkit (npm) 2022-06-09T08:52:09Z 2022-06-09T08:52:09Z
mal-2022-606 Malicious code in @spinak/iac (npm) 2022-06-09T08:52:09Z 2022-06-09T08:52:09Z
mal-2022-411 Malicious code in @manomano-toolbox/api-gateway (npm) 2022-06-09T08:52:16Z 2022-06-09T08:52:17Z
mal-2022-413 Malicious code in @manomano-toolbox/catalog (npm) 2022-06-09T08:52:16Z 2022-06-09T08:52:17Z
mal-2022-607 Malicious code in @spinak/iac-lib (npm) 2022-06-09T08:52:16Z 2022-06-09T08:52:17Z
mal-2022-415 Malicious code in @manomano-toolbox/components (npm) 2022-06-09T08:52:37Z 2022-06-09T08:52:37Z
mal-2022-414 Malicious code in @manomano-toolbox/commercial-operations (npm) 2022-06-09T08:52:42Z 2022-06-09T08:52:42Z
mal-2022-412 Malicious code in @manomano-toolbox/async-exports (npm) 2022-06-09T08:54:07Z 2022-06-09T08:54:08Z
mal-2022-2025 Malicious code in colorss-v11 (npm) 2022-06-10T04:03:29Z 2022-06-10T04:03:29Z
mal-2022-3009 Malicious code in ferris-design-tokens (npm) 2022-06-10T04:04:54Z 2022-06-10T04:04:54Z
mal-2022-6533 Malicious code in testte (npm) 2022-06-10T04:05:44Z 2022-06-10T04:05:45Z
mal-2022-6968 Malicious code in vpc-stack-with-issues (npm) 2022-06-10T04:05:44Z 2022-06-10T04:05:45Z
mal-2022-2004 Malicious code in colorred (npm) 2022-06-10T04:07:59Z 2022-06-10T04:08:00Z
mal-2022-2534 Malicious code in dist-sidr (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:55Z
mal-2022-3758 Malicious code in icons-package (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:56Z
mal-2022-5176 Malicious code in package-icon (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:55Z
mal-2022-5182 Malicious code in package-show (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:56Z
mal-2022-5187 Malicious code in packages-icons (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:55Z
mal-2022-6344 Malicious code in subek (npm) 2022-06-13T05:38:55Z 2022-06-13T05:38:56Z
mal-2022-3755 Malicious code in iconion-package (npm) 2022-06-13T05:38:56Z 2022-06-13T05:39:03Z
mal-2022-4127 Malicious code in kbrstore (npm) 2022-06-13T05:38:56Z 2022-06-13T05:38:56Z
mal-2022-5183 Malicious code in package-sidr (npm) 2022-06-13T05:38:56Z 2022-06-13T05:39:03Z
mal-2022-2260 Malicious code in cs-connection-hub (npm) 2022-06-13T05:46:00Z 2022-06-13T05:46:01Z
mal-2022-6983 Malicious code in vso-ts-agent (npm) 2022-06-13T05:46:00Z 2022-06-13T05:46:01Z
ID Description Published Updated
bit-drupal-2022-24728 Cross-site Scripting in CKEditor4 2024-03-06T10:54:20.270Z 2025-05-20T10:02:07.006Z
bit-django-2021-35042 2024-03-06T10:54:20.393Z 2025-04-03T14:40:37.652Z
bit-golang-2023-39320 Arbitrary code execution via go.mod toolchain directive in cmd/go 2024-03-06T10:54:20.860Z 2025-05-20T10:02:07.006Z
bit-dotnet-2023-35391 ASP.NET Core SignalR and Visual Studio Information Disclosure Vulnerability 2024-03-06T10:54:21.276Z 2025-05-20T10:02:07.006Z
bit-gradle-2021-41584 2024-03-06T10:54:22.401Z 2025-04-03T14:40:37.652Z
bit-envoy-2023-27488 Envoy gRPC client produces invalid protobuf when an HTTP header with non-UTF8 value is received. 2024-03-06T10:54:22.577Z 2025-05-20T10:02:07.006Z
bit-consul-2020-25864 2024-03-06T10:54:23.598Z 2025-04-03T14:40:37.652Z
bit-ghost-2021-29484 DOM XSS in Theme Preview 2024-03-06T10:54:24.871Z 2025-05-20T10:02:07.006Z
bit-elasticsearch-2020-7020 2024-03-06T10:54:24.872Z 2025-04-03T14:40:37.652Z
bit-gitea-2021-45328 2024-03-06T10:54:25.099Z 2025-04-03T14:40:37.652Z
bit-jupyterlab-2021-32797 JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form> 2024-03-06T10:54:25.501Z 2025-05-20T10:02:07.006Z
bit-haproxy-2021-39242 2024-03-06T10:54:26.008Z 2025-04-03T14:40:37.652Z
bit-jenkins-2023-43497 2024-03-06T10:54:26.403Z 2025-04-03T14:40:37.652Z
bit-gitlab-2023-6680 Improper Certificate Validation in GitLab 2024-03-06T10:54:27.113Z 2025-05-20T10:02:07.006Z
bit-helm-2021-21303 Injection attack in Helm 2024-03-06T10:54:27.370Z 2025-05-20T10:02:07.006Z
bit-discourse-2023-41042 Discourse DoS via remote theme assets 2024-03-06T10:54:27.492Z 2025-05-20T10:02:07.006Z
bit-apache-2021-42013 Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773) 2024-03-06T10:54:27.969Z 2025-10-22T09:08:25.162Z
bit-grafana-2022-39328 Grafana vulnerable to race condition allowing privilege escalation 2024-03-06T10:54:29.505Z 2025-05-20T10:02:07.006Z
bit-airflow-2023-35908 Apache Airflow: Access to DAGs without relevant permission 2024-03-06T10:54:30.276Z 2025-05-20T10:02:07.006Z
bit-kafka-2021-38153 Timing Attack Vulnerability for Apache Kafka Connect and Clients 2024-03-06T10:54:31.089Z 2025-05-20T10:02:07.006Z
bit-drupal-2021-41184 XSS in the `of` option of the `.position()` util 2024-03-06T10:54:31.396Z 2025-11-06T13:25:46.476Z
bit-golang-2023-39319 Improper handling of special tags within script contexts in html/template 2024-03-06T10:54:32.276Z 2025-05-20T10:02:07.006Z
bit-dotnet-2023-35390 .NET and Visual Studio Remote Code Execution Vulnerability 2024-03-06T10:54:32.665Z 2025-05-20T10:02:07.006Z
bit-gradle-2021-32751 Arbitrary code execution via specially crafted environment variables 2024-03-06T10:54:32.701Z 2025-05-20T10:02:07.006Z
bit-envoy-2023-27487 Envoy client may fake the header `x-envoy-original-path` 2024-03-06T10:54:33.403Z 2025-05-20T10:02:07.006Z
bit-django-2021-33571 2024-03-06T10:54:33.880Z 2025-04-03T14:40:37.652Z
bit-gitea-2021-45327 2024-03-06T10:54:36.193Z 2025-04-03T14:40:37.652Z
bit-ghost-2020-8134 2024-03-06T10:54:36.209Z 2025-04-03T14:40:37.652Z
bit-gitlab-2023-6564 Incorrect Authorization in GitLab 2024-03-06T10:54:37.083Z 2025-05-20T10:02:07.006Z
bit-grafana-2022-39324 Grafana vulnerable to spoofing originalUrl of snapshots 2024-03-06T10:54:38.067Z 2025-05-20T10:02:07.006Z
ID Description Published Updated
drupal-contrib-2025-033 2025-04-09T17:04:56.000Z 2025-04-29T07:18:22.000Z
drupal-contrib-2025-034 2025-04-16T16:24:49.000Z 2025-05-29T18:24:01.000Z
drupal-contrib-2025-035 2025-04-16T16:25:12.000Z 2025-04-16T16:25:12.000Z
drupal-contrib-2025-036 2025-04-16T16:25:27.000Z 2025-04-16T16:25:27.000Z
drupal-contrib-2025-037 2025-04-16T16:25:35.000Z 2025-04-16T16:25:35.000Z
drupal-contrib-2025-038 2025-04-16T16:25:45.000Z 2025-04-16T16:25:45.000Z
drupal-contrib-2025-039 2025-04-16T16:25:56.000Z 2025-04-16T16:25:56.000Z
drupal-contrib-2025-040 2025-04-16T16:26:13.000Z 2025-04-16T16:26:13.000Z
drupal-contrib-2025-041 2025-04-23T16:58:39.000Z 2025-05-29T18:23:44.000Z
drupal-contrib-2025-042 2025-04-23T16:58:51.000Z 2025-04-23T16:58:51.000Z
drupal-contrib-2025-043 2025-04-23T16:59:01.000Z 2025-04-23T16:59:01.000Z
drupal-contrib-2025-044 2025-04-23T16:59:11.000Z 2025-04-23T16:59:11.000Z
drupal-contrib-2025-045 2025-04-23T16:59:19.000Z 2025-04-23T16:59:19.000Z
drupal-contrib-2025-046 2025-04-23T16:59:33.000Z 2025-04-23T16:59:33.000Z
drupal-contrib-2025-047 2025-05-07T17:06:16.000Z 2025-05-07T17:06:16.000Z
drupal-contrib-2025-048 2025-05-07T17:06:26.000Z 2025-05-29T18:20:11.000Z
drupal-contrib-2025-049 2025-05-07T17:06:36.000Z 2025-05-29T18:20:00.000Z
drupal-contrib-2025-050 2025-05-07T17:06:52.000Z 2025-05-29T18:19:50.000Z
drupal-contrib-2025-051 2025-05-07T17:07:03.000Z 2025-05-29T18:19:36.000Z
drupal-contrib-2025-052 2025-05-07T17:07:14.000Z 2025-05-07T17:16:21.000Z
drupal-contrib-2025-053 2025-05-07T17:07:22.000Z 2025-05-07T17:16:27.000Z
drupal-contrib-2025-054 2025-05-07T17:07:32.000Z 2025-05-07T17:16:32.000Z
drupal-contrib-2025-055 2025-05-07T17:07:46.000Z 2025-05-07T17:16:36.000Z
drupal-contrib-2025-056 2025-05-07T17:08:31.000Z 2025-05-07T17:16:40.000Z
drupal-contrib-2025-057 2025-05-14T18:04:31.000Z 2025-05-14T19:39:43.000Z
drupal-contrib-2025-058 2025-05-14T18:04:44.000Z 2025-05-29T18:19:12.000Z
drupal-contrib-2025-059 2025-05-14T18:04:52.000Z 2025-05-29T18:18:54.000Z
drupal-contrib-2025-060 2025-05-14T18:05:04.000Z 2025-05-14T18:05:04.000Z
drupal-contrib-2025-061 2025-05-14T18:05:13.000Z 2025-05-14T18:05:13.000Z
drupal-contrib-2025-062 2025-05-14T18:05:22.000Z 2025-05-14T18:05:22.000Z
ID Description Updated
ID Description Published Updated
jvndb-2008-000028 WEB MART from KENT WEB vulnerable to cross-site scripting 2008-06-06T12:01+09:00 2008-06-06T12:01+09:00
jvndb-2006-000639 Pixelpost cross-site scripting vulnerability 2008-06-10T13:57+09:00 2008-06-10T13:57+09:00
jvndb-2008-000029 Sleipnir and Grani vulnerable to arbitrary script execution when Bookmark search results are restored from history 2008-06-10T13:59+09:00 2008-06-10T13:59+09:00
jvndb-2008-001043 X.Org Foundation X server buffer overflow vulnerability 2008-06-13T17:11+09:00 2008-11-21T12:19+09:00
jvndb-2008-000030 BlognPlus SQL injection vulnerability 2008-06-20T13:45+09:00 2008-06-20T13:45+09:00
jvndb-2008-000031 CGIWrap error page cross-site scripting vulnerability 2008-06-20T13:46+09:00 2008-06-20T13:46+09:00
jvndb-2008-000032 nProtect : Netizen denial of service (DoS) vulnerability 2008-07-07T10:24+09:00 2008-07-07T10:24+09:00
jvndb-2008-001417 Vulnerability in Sample Code in Hitachi uCosminexus Portal Framework Manuals 2008-07-07T10:38+09:00 2008-07-07T10:38+09:00
jvndb-2008-000033 Multiple Cybozu products vulnerable to cross-site request forgery 2008-07-08T12:14+09:00 2008-07-08T12:14+09:00
jvndb-2008-000034 Cybozu Garoon session fixation vulnerability 2008-07-08T12:14+09:00 2008-07-08T12:14+09:00
jvndb-2008-000035 Cybozu Garoon vulnerable to arbitrary script execution 2008-07-08T12:14+09:00 2008-07-08T12:14+09:00
jvndb-2008-000036 FreeStyleWiki cross-site scripting vulnerability 2008-07-08T12:14+09:00 2008-07-08T12:14+09:00
jvndb-2008-000038 Redmine vulnerable to cross-site scripting 2008-07-08T12:15+09:00 2008-07-08T12:15+09:00
jvndb-2008-000039 Safari installed in iPod touch and iPhone vulnerable in handling server certificates 2008-07-16T12:27+09:00 2008-07-16T12:27+09:00
jvndb-2008-000040 Directory traversal vulnerability in WebLogic Server and WebLogic Express plug-ins 2008-07-24T14:22+09:00 2008-07-24T14:22+09:00
jvndb-2008-000041 WebProxy from LunarNight Laboratory vulnerable to cross-site scripting 2008-07-24T14:23+09:00 2008-07-24T14:23+09:00
jvndb-2008-000042 Multiple Century Systems routers vulnerable to cross-site request forgery 2008-07-24T14:23+09:00 2008-07-24T14:23+09:00
jvndb-2008-000043 K's CGI Access Log Kaiseki (jcode.pl) vulnerable to cross-site scripting 2008-07-29T14:56+09:00 2008-07-29T14:56+09:00
jvndb-2008-000044 K's CGI Access Log Kaiseki (Jcode.pm) vulnerable to cross-site scripting 2008-07-29T14:56+09:00 2008-07-29T14:56+09:00
jvndb-2008-000045 Geeklog Forum Plugin vulnerable to cross-site scripting 2008-07-29T14:57+09:00 2008-07-29T14:57+09:00
jvndb-2008-001513 Cross-Site Scripting Vulnerability in Hitachi Web Server Status Information Display Function 2008-07-30T13:45+09:00 2014-05-21T18:19+09:00
jvndb-2008-001514 Cross-Site Scripting Vulnerability in Hitachi Collaboration - Online Community Management 2008-07-30T13:46+09:00 2008-07-30T13:46+09:00
jvndb-2008-000037 Multiple Panasonic Communications Co., Ltd. network cameras vulnerable to cross-site scripting 2008-08-04T14:34+09:00 2008-08-04T14:34+09:00
jvndb-2008-000050 Virus Security and Virus Security ZERO denial of service (DoS) vulnerability 2008-08-14T18:15+09:00 2008-08-14T18:15+09:00
jvndb-2008-000046 La!cooda WIZ and LacoodaST vulnerable to cross-site request forgery 2008-09-02T16:58+09:00 2008-09-02T16:58+09:00
jvndb-2008-000047 LacoodaST from SpaceTag, Inc. session fixation vulnerability 2008-09-02T17:01+09:00 2008-09-02T17:01+09:00
jvndb-2008-000048 La!cooda WIZ and LacoodaST vulnerable to cross-site scripting 2008-09-02T17:02+09:00 2008-09-02T17:02+09:00
jvndb-2008-000049 Vulnerability in La!cooda WIZ and LacoodaST allowing an arbitrary PHP script execution 2008-09-02T17:03+09:00 2008-09-02T17:03+09:00
jvndb-2008-000053 mysql-lists from AquaGardenSoft Co.,Ltd. vulnerable to cross-site scripting 2008-09-02T17:05+09:00 2008-09-02T17:05+09:00
jvndb-2008-000054 Blogn vulnerable to cross-site request forgery 2008-09-02T17:22+09:00 2008-09-02T17:22+09:00
ID Description Updated
ID Description
ID Description Published Updated
cnvd-2015-00238 WordPress插件Shopping Cart 'banneruploaderscript.php'任意文件上传漏洞 2015-01-12 2015-01-13
cnvd-2015-00239 Cisco WebEx Meetings Server存在未明漏洞 2015-01-12 2015-01-13
cnvd-2015-00251 BEdita CMS 'index.php'存在多个HTML注入漏洞 2015-01-12 2015-01-13
cnvd-2015-00252 PHP 'regcomp.c'空指针拒绝服务漏洞 2015-01-12 2015-01-13
cnvd-2015-00253 OpenStack Neutron本地拒绝服务漏洞 2015-01-12 2015-01-13
cnvd-2015-00254 e107 '/e107_admin/filemanager.php'跨站脚本漏洞 2015-01-12 2015-01-13
cnvd-2015-00255 Drupal Batch Jobs模块存在多个跨站请求伪造漏洞 2015-01-12 2015-01-13
cnvd-2015-00256 Drupal Todo Filter模块存在多个跨站请求伪造漏洞 2015-01-12 2015-01-13
cnvd-2015-00257 Drupal Log Watcher模块存在多个跨站请求伪造漏洞 2015-01-12 2015-01-13
cnvd-2015-00258 Drupal Jammer模块存在多个跨站请求伪造漏洞 2015-01-12 2015-01-13
cnvd-2015-00259 Drupal Linkit模块存在多个跨站脚本漏洞 2015-01-12 2015-01-13
cnvd-2015-00260 Drupal Field Display Label模块跨站脚本漏洞 2015-01-12 2015-01-13
cnvd-2015-00279 TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00279) 2015-01-12 2015-01-14
cnvd-2015-00280 TR-069自动配置服务器任意代码执行漏洞( CNVD-2015-00280) 2015-01-12 2015-01-14
cnvd-2015-00281 TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00281) 2015-01-12 2015-01-14
cnvd-2015-00282 TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00282) 2015-01-12 2015-01-14
cnvd-2015-00283 TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00283) 2015-01-12 2015-01-14
cnvd-2015-00284 TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00284) 2015-01-12 2015-01-14
cnvd-2015-00263 CodeWrights 'HART DTM' Library本地拒绝服务漏洞 2015-01-13 2015-01-14
cnvd-2015-00264 WordPress插件Pods存在多个跨站请求伪造漏洞 2015-01-13 2015-01-14
cnvd-2015-00265 WordPress插件Pods跨站脚本漏洞 2015-01-13 2015-01-14
cnvd-2015-00266 Linux Kernel 'vdso_addr()'函数本地安全绕过漏洞 2015-01-13 2015-01-14
cnvd-2015-00267 MantisBT未完全修复存在多个URI重定向漏洞 2015-01-13 2015-01-14
cnvd-2015-00268 Privoxy信息泄露漏洞 2015-01-13 2015-01-14
cnvd-2015-00269 Privoxy存在多个远程代码执行漏洞 2015-01-13 2015-01-14
cnvd-2015-00270 libpng存在多个堆缓冲区溢出漏洞 2015-01-13 2015-01-14
cnvd-2015-00271 Tapatalk for WoltLab Burning Board 'welcome.php'存在多个跨站脚本漏洞 2015-01-13 2015-01-14
cnvd-2015-00272 Tapatalk for WoltLab Burning Board URI重定向漏洞 2015-01-13 2015-01-14
cnvd-2015-00273 Croogo CMS跨站脚本漏洞 2015-01-13 2015-01-14
cnvd-2015-00274 PHPKIT WCMS 'include.php'跨站脚本漏洞 2015-01-13 2015-01-14
ID Description Published Updated
bdu:2015-02721 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02722 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02723 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02724 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02725 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02726 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02727 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02728 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02729 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02730 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02731 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02732 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02733 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02734 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02735 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02736 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02737 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02738 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02739 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02740 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02741 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02742 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02743 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02744 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02745 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02746 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02747 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02748 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02749 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02750 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
ID Description Published Updated
certa-2002-avi-071 Vulnérabilité de Windows 2000 2002-04-05T00:00:00.000000 2002-04-05T00:00:00.000000
certa-2002-avi-072 Vulnérabilité du service MUP sous Windows 2002-04-05T00:00:00.000000 2002-04-05T00:00:00.000000
certa-2002-avi-073 Vulnérabilité sur le serveur SMTP Lotus Domino 5.0.8 2002-04-09T00:00:00.000000 2002-04-09T00:00:00.000000
certa-2002-avi-074 Vulnérabilité de Cisco Aironet 2002-04-10T00:00:00.000000 2002-04-10T00:00:00.000000
certa-2002-avi-075 Multiples vulnérabilités dans Microsoft IIS 2002-04-11T00:00:00.000000 2002-04-17T00:00:00.000000
certa-2002-avi-076 Vulnérabilité des équipements et applications CISCO sous SOLARIS 2002-04-11T00:00:00.000000 2002-06-03T00:00:00.000000
certa-2002-avi-077 Débordement de tampon dans « Netware Remote Manager » 2002-04-15T00:00:00.000000 2002-04-15T00:00:00.000000
certa-2002-avi-078 Vulnérabilité de mail sous OpenBSD 2002-04-16T00:00:00.000000 2002-04-16T00:00:00.000000
certa-2002-avi-079 Déni de service sous IRIX/SGI 2002-04-16T00:00:00.000000 2002-04-16T00:00:00.000000
certa-2002-avi-080 Multiples vulnérabilités sous TRUE64 UNIX 2002-04-17T00:00:00.000000 2002-04-17T00:00:00.000000
certa-2002-avi-081 Vunérabilités dans Internet Explorer sous Mac OS 2002-04-17T00:00:00.000000 2002-04-17T00:00:00.000000
certa-2002-avi-082 Vulnérabilité dans Microsoft SQL Server 2002-04-18T00:00:00.000000 2002-04-18T00:00:00.000000
certa-2002-avi-083 Vulnérabilités de la pile TCP/IP de FreeBSD 2002-04-19T00:00:00.000000 2002-04-19T00:00:00.000000
certa-2002-avi-084 Vulnérabilités dans Lotus Domino 2002-04-23T00:00:00.000000 2002-04-23T00:00:00.000000
certa-2002-avi-085 Vulnérabilité dans Oracle9i Database Server 2002-04-23T00:00:00.000000 2002-04-23T00:00:00.000000
certa-2002-avi-086 Vulnérabilité dans Oracle E-Business 2002-04-23T00:00:00.000000 2002-04-23T00:00:00.000000
certa-2002-avi-087 Vulnérabilité de l'éditeur de méls de Microsoft Outlook 2002-04-26T00:00:00.000000 2002-04-26T00:00:00.000000
certa-2002-avi-088 Vulnérabilité de sudo 2002-04-26T00:00:00.000000 2002-04-26T00:00:00.000000
certa-2002-avi-089 Vulnérabilité du service nsd sous IRIX 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-090 Vulnérabilité de la commande cpr sous IRIX 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-091 Multiples vulnérabilités de cachefsd sous Solaris 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-092 Vulnérabilité du service pmcd sous IRIX 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-093 Vulnérabilité de /dev/ipfilter sous IRIX 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-094 Vulnérabilité sur RealSecure Network Sensor 2002-05-02T00:00:00.000000 2002-05-02T00:00:00.000000
certa-2002-avi-095 Vulnérabilités d'admintool sous Solaris 2002-05-03T00:00:00.000000 2002-05-03T00:00:00.000000
certa-2002-avi-096 Vulnérabilité de rpc.rwalld sous Solaris 2002-05-06T00:00:00.000000 2002-06-03T00:00:00.000000
certa-2002-avi-097 Vulnérabilité du contrôle ActiveX MSN Chat 2002-05-13T00:00:00.000000 2002-05-13T00:00:00.000000
certa-2002-avi-098 Vulnérabilité du contrôle ActiveX Macromedia Flash Player version 6 revision 23 2002-05-13T00:00:00.000000 2002-05-13T00:00:00.000000
certa-2002-avi-099 Vulnérabilité du logiciel de messagerie Eudora 5.1 et versions antérieures 2002-05-15T00:00:00.000000 2002-05-15T00:00:00.000000
certa-2002-avi-100 Vulnérabilité sur Netfilter (iptables) 2002-05-15T00:00:00.000000 2002-05-15T00:00:00.000000
ID Description Published Updated
certfr-2022-ale-004 Vulnérabilité dans F5 BIG-IP 2022-05-11T00:00:00.000000 2022-09-16T00:00:00.000000
certfr-2022-ale-005 [MàJ] Vulnérabilité dans Microsoft Windows 2022-05-31T00:00:00.000000 2022-09-16T00:00:00.000000
certfr-2022-ale-006 [MàJ] Vulnérabilité dans Atlassian Confluence 2022-06-03T00:00:00.000000 2022-10-07T00:00:00.000000
certfr-2022-ale-007 Multiples vulnérabilités dans Microsoft Windows 2022-09-16T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-008 [MaJ] Multiples vulnérabilités dans Microsoft Exchange 2022-09-30T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-009 [MaJ] Vulnérabilité dans Zimbra Collaboration 2022-10-07T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-010 Multiples vulnérabilités dans GLPI 2022-10-07T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-011 Vulnérabilité dans les produits Fortinet 2022-10-14T00:00:00.000000 2022-10-14T00:00:00.000000
certfr-2022-ale-012 [MàJ] Vulnérabilité dans FortiOS SSL-VPN 2022-12-13T00:00:00.000000 2022-12-20T00:00:00.000000
certfr-2022-ale-013 [MàJ] Vulnérabilité dans Citrix ADC et Gateway 2022-12-13T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-014 Multiples vulnérabilités dans AMI MegaRAC 2022-12-16T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2023-ale-015 [MàJ] Campagne d'exploitation d'une vulnérabilité affectant VMware ESXi 2023-02-03T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2023-ale-001 Vulnérabilité dans Fortinet FortiOS 2023-03-14T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2023-ale-002 [MàJ] Vulnérabilité dans Microsoft Outlook 2023-03-15T00:00:00.000000 2023-05-11T00:00:00.000000
certfr-2023-ale-003 [MàJ] Compromission de l'application 3CX Desktop App 2023-03-31T00:00:00.000000 2023-04-12T00:00:00.000000
certfr-2023-ale-004 Vulnérabilité dans les produits Fortinet 2023-06-13T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2023-ale-005 Synthèse sur l'exploitation d'une vulnérabilité dans MOVEit Transfer 2023-07-05T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2023-ale-007 [MàJ] Vulnérabilité dans Zimbra Collaboration Suite 2023-07-17T00:00:00.000000 2024-01-02T00:00:00.000000
certfr-2023-ale-008 [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway 2023-07-19T00:00:00.000000 2024-01-02T00:00:00.000000
certfr-2023-ale-009 [MàJ] Multiples vulnérabilités dans Ivanti Endpoint Manager Mobile 2023-07-26T00:00:00.000000 2023-09-15T00:00:00.000000
certfr-2023-ale-010 Multiples vulnérabilités dans Exim 2023-10-02T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-011 [MàJ] Multiples vulnérabilités dans Cisco IOS XE 2023-10-17T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-012 [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway 2023-10-23T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-006 Vulnérabilité dans les produits Microsoft 2023-12-12T00:00:00.000000 2023-07-12T00:00:00.000000
certfr-2023-ale-013 Vulnérabilité dans Apache Struts 2 2023-12-13T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2024-ale-001 [MàJ] Multiples vulnérabilités dans Ivanti Connect Secure et Policy Secure Gateways 2024-01-11T00:00:00.000000 2024-04-15T00:00:00.000000
certfr-2024-ale-002 [MàJ] Multiples Vulnérabilités dans GitLab 2024-01-12T00:00:00.000000 2024-02-22T00:00:00.000000
certfr-2024-ale-003 [MàJ] Incident affectant les solutions AnyDesk 2024-02-05T00:00:00.000000 2024-04-15T00:00:00.000000
certfr-2024-ale-004 [MàJ] Vulnérabilité dans Fortinet FortiOS 2024-02-09T00:00:00.000000 2024-07-01T00:00:00.000000
certfr-2024-ale-005 [MàJ] Vulnérabilité dans Microsoft Outlook 2024-02-15T00:00:00.000000 2024-04-15T00:00:00.000000
ID Description Published Updated
osv-2020-573 UNKNOWN READ in (__has_construct<std::__1::allocator<unsigned 2020-07-01T00:00:17.789046Z 2022-04-13T03:04:33.929074Z
osv-2020-574 Negative-size-param in r_buf_read 2020-07-01T00:00:17.857259Z 2022-04-13T03:04:36.642767Z
osv-2020-578 Heap-use-after-free in WelsDec::ResetRefPicReferences 2020-07-01T00:00:18.077733Z 2022-04-13T03:04:37.446822Z
osv-2020-580 Heap-buffer-overflow in ots::OpenTypeSTAT::Serialize 2020-07-01T00:00:18.191041Z 2022-04-13T03:04:32.769242Z
osv-2020-584 Heap-buffer-overflow in collator_compare_fuzzer.cpp 2020-07-01T00:00:18.401815Z 2022-04-13T03:04:34.102345Z
osv-2020-585 Heap-buffer-overflow in ihevcd_get_mv_ctb 2020-07-01T00:00:18.469990Z 2022-04-13T03:04:30.977795Z
osv-2020-587 UNKNOWN READ in Interpreter::evaluate 2020-07-01T00:00:18.669002Z 2022-04-13T03:04:37.894780Z
osv-2020-589 UNKNOWN WRITE in perfetto::trace_processor::ProtoTraceParser::ParsePowerRails 2020-07-01T00:00:18.769178Z 2022-04-13T03:04:41.970713Z
osv-2020-593 Heap-buffer-overflow in UInt32_encodeBinary 2020-07-01T00:00:19.014289Z 2022-04-13T03:04:41.352605Z
osv-2020-596 UNKNOWN READ in ot::PriorityQueue::GetHead 2020-07-01T00:00:19.212170Z 2022-04-13T03:04:38.863026Z
osv-2020-597 UNKNOWN READ in ot::MessageQueue::GetHead 2020-07-01T00:00:19.297404Z 2022-04-13T03:04:39.035260Z
osv-2020-598 UNKNOWN READ in ot::Message::GetPriority 2020-07-01T00:00:19.359328Z 2022-04-13T03:04:39.003804Z
osv-2020-599 Index-out-of-bounds in prepare_macpads 2020-07-01T00:00:19.430674Z 2022-04-13T03:04:35.044097Z
osv-2020-600 Use-of-uninitialized-value in dprintf_formatf 2020-07-01T00:00:19.594728Z 2022-04-13T03:04:42.862628Z
osv-2020-604 UNKNOWN READ in Sass::Parser::parseCompoundSelector 2020-07-01T00:00:19.975718Z 2022-04-13T03:04:38.493199Z
osv-2020-605 Global-buffer-overflow in parse_headers 2020-07-01T00:00:20.009044Z 2022-04-13T03:04:31.691515Z
osv-2020-607 UNKNOWN READ in WelsDec::CWelsDecoder::DecodeFrame2WithCtx 2020-07-01T00:00:20.087273Z 2022-04-13T03:04:37.626480Z
osv-2020-608 UNKNOWN READ in ot::Ip6::Address::PrefixMatch 2020-07-01T00:00:20.187182Z 2022-04-13T03:04:38.998672Z
osv-2020-610 UNKNOWN READ in opj_t2_decode_packets 2020-07-01T00:00:20.269225Z 2022-04-13T03:04:39.656720Z
osv-2020-612 Use-of-uninitialized-value in std::__1::vector<std::__1::vector<Sass::SharedImpl<Sass::ComplexSelector>, std:: 2020-07-01T00:00:20.375619Z 2022-04-13T03:04:38.465562Z
osv-2020-614 Use-of-uninitialized-value in __RefHead_ZIP_INSERT 2020-07-01T00:00:20.478171Z 2022-04-13T03:04:41.329282Z
osv-2020-619 UNKNOWN READ in ot::Ip6::Netif::UnsubscribeAllRoutersMulticast 2020-07-01T00:00:20.722131Z 2022-04-13T03:04:39.071470Z
osv-2020-624 Heap-buffer-overflow in LZ4_write32 2020-07-01T00:00:21.077578Z 2022-04-13T03:04:41.753082Z
osv-2020-625 Heap-buffer-overflow in r_read_le32 2020-07-01T00:00:21.112433Z 2022-04-13T03:04:36.511291Z
osv-2020-626 UNKNOWN READ in ot::Buffer::GetNextBuffer 2020-07-01T00:00:21.221442Z 2022-04-13T03:04:39.045579Z
osv-2020-628 UNKNOWN READ in copy_string 2020-07-01T00:00:21.328353Z 2022-04-13T03:04:41.221723Z
osv-2020-629 Heap-buffer-overflow in bytestring_to_str 2020-07-01T00:00:21.373324Z 2022-04-13T04:14:54.501439Z
osv-2020-630 Use-of-uninitialized-value in ares__parse_into_addrinfo2 2020-07-01T00:00:21.402997Z 2022-04-13T03:04:36.396131Z
osv-2020-631 Stack-use-after-return in ihevcd_process_thread 2020-07-01T00:00:21.458072Z 2023-04-20T22:46:26.642150Z
osv-2020-632 Global-buffer-overflow in parse_http_request 2020-07-01T00:00:21.523430Z 2022-04-13T03:04:31.763179Z
ID Description Published Updated
rustsec-2021-0065 anymap is unmaintained. 2021-05-07T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0066 Denial of service on EVM execution due to memory over-allocation 2021-05-11T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0068 Soundness issue in `iced-x86` versions <= 1.10.3 2021-05-19T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0146 Crate `twoway` deprecated by the author 2021-05-20T12:00:00Z 2023-02-09T03:11:29Z
rustsec-2021-0067 Memory access due to code generation flaw in Cranelift module 2021-05-21T12:00:00Z 2021-10-19T22:14:35Z
rustsec-2021-0069 SMTP command injection in body 2021-05-22T12:00:00Z 2021-10-19T19:56:47Z
rustsec-2021-0101 Permissions bypass in pleaser 2021-05-27T12:00:00Z 2021-09-10T15:58:27Z
rustsec-2021-0102 Permissions bypass in pleaser 2021-05-27T12:00:00Z 2021-09-10T15:58:05Z
rustsec-2021-0104 File exposure in pleaser 2021-05-27T12:00:00Z 2021-09-10T16:01:55Z
rustsec-2021-0095 `mopa` is technically unsound 2021-06-01T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0070 VecStorage Deserialize Allows Violation of Length Invariant 2021-06-06T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0071 `grep-cli` may run arbitrary executables on Windows 2021-06-12T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0081 Potential request smuggling capabilities due to lack of input validation 2021-06-16T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0145 Potential unaligned read 2021-07-04T12:00:00Z 2023-07-08T12:30:19Z
rustsec-2021-0072 Task dropped in wrong thread when aborting `LocalSet` task 2021-07-07T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0078 Lenient `hyper` header parsing of `Content-Length` could allow request smuggling 2021-07-07T12:00:00Z 2021-10-19T22:14:35Z
rustsec-2021-0079 Integer overflow in `hyper`'s parsing of the `Transfer-Encoding` header leads to data loss 2021-07-07T12:00:00Z 2021-10-19T22:14:35Z
rustsec-2021-0073 Conversion from `prost_types::Timestamp` to `SystemTime` can cause an overflow and panic 2021-07-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0074 Incorrect handling of embedded SVG and MathML leads to mutation XSS 2021-07-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0075 Flaw in `FieldVar::mul_by_inverse` allows unsound R1CS constraint systems 2021-07-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0105 Relative Path Traversal in git-delta 2021-07-12T12:00:00Z 2021-09-10T16:04:49Z
rustsec-2021-0076 libsecp256k1 allows overflowing signatures 2021-07-13T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0106 Uncontrolled Search Path Element in sharkdp/bat 2021-07-15T12:00:00Z 2021-09-10T16:11:09Z
rustsec-2021-0080 Links in archive can create arbitrary directories 2021-07-19T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0077 `better-macro` has deliberate RCE to prove a point 2021-07-22T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0107 Miner fails to get block template when a cell used as a cell dep has been destroyed. 2021-07-25T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0108 Remote memory exhaustion in ckb 2021-07-25T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0109 Process crashes when the cell used as DepGroup is not alive 2021-07-25T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2021-0093 Data race in crossbeam-deque 2021-07-30T12:00:00Z 2021-10-19T22:14:35Z
rustsec-2021-0103 Partial read is incorrect in molecule 2021-07-30T12:00:00Z 2023-06-13T13:10:24Z
ID Description Published Updated
alsa-2022:0366 Moderate: vim security update 2022-02-01T20:12:46Z 2022-02-02T11:55:08Z
alsa-2022:0368 Moderate: rpm security update 2022-02-01T20:13:05Z 2022-02-02T11:55:08Z
alsa-2022:0370 Moderate: cryptsetup security update 2022-02-01T20:13:30Z 2022-02-02T11:55:08Z
alsa-2022:0418 Important: varnish:6 security update 2022-02-03T09:29:24Z 2022-02-04T16:49:12Z
alsa-2022:0441 Important: aide security update 2022-02-07T08:12:10Z 2022-02-07T18:20:04Z
alsa-2022:0495 Important: .NET 5.0 security and bugfix update 2022-02-09T08:26:30Z 2022-02-09T20:42:50Z
alsa-2022:0496 Important: .NET 6.0 security and bugfix update 2022-02-09T08:26:35Z 2022-02-12T10:13:41Z
alsa-2022:0510 Important: firefox security update 2022-02-14T08:13:38Z 2022-02-14T20:43:46Z
alsa-2022:0535 Important: thunderbird security update 2022-02-15T10:03:34Z 2022-02-15T23:59:21Z
alsa-2022:0543 Important: ruby:2.6 security update 2022-02-16T08:26:13Z 2022-02-17T11:10:41Z
alsa-2022:0545 Important: ruby:2.5 security update 2022-02-16T08:27:24Z 2022-02-17T11:19:13Z
alsa-2022:0643 Important: python-pillow security update 2022-02-22T17:25:31Z 2022-02-23T13:26:35Z
alsa-2022:0658 Important: cyrus-sasl security update 2022-02-23T13:33:12Z 2022-02-23T22:48:10Z
alsa-2022:0672 Moderate: ruby:2.5 security update 2022-02-24T00:00:00Z 2022-06-29T11:06:13Z
alsa-2022:0818 Critical: firefox security update 2022-03-10T14:36:51Z 2022-03-10T21:25:28Z
alsa-2022:0825 Important: kernel security, bug fix, and enhancement update 2022-03-10T14:43:03Z 2023-09-15T13:41:48Z
alsa-2022:0826 Important: .NET 6.0 security and bugfix update 2022-03-10T14:43:46Z 2022-03-13T13:19:00Z
alsa-2022:0827 Important: .NET Core 3.1 security and bugfix update 2022-03-10T14:44:29Z 2022-03-11T16:01:22Z
alsa-2022:0830 Important: .NET 5.0 security and bugfix update 2022-03-10T14:46:56Z 2022-03-11T16:01:23Z
alsa-2022:0845 Important: thunderbird security update 2022-03-14T09:49:10Z 2022-03-15T08:56:50Z
alsa-2022:0886 Moderate: virt:rhel and virt-devel:rhel security update 2022-03-15T09:10:17Z 2022-03-17T20:46:19Z
alsa-2022:0889 Low: 389-ds:1.4 security and bug fix update 2022-03-15T09:10:39Z 2022-03-16T23:36:44Z
alsa-2022:0891 Moderate: httpd:2.4 security update 2022-03-15T09:10:44Z 2022-03-17T20:51:19Z
alsa-2022:0892 Moderate: libarchive security update 2022-03-15T09:11:33Z 2022-03-16T22:17:21Z
alsa-2022:0894 Moderate: vim security update 2022-03-15T09:11:53Z 2022-03-16T22:22:38Z
alsa-2022:0896 Moderate: glibc security update 2022-03-15T09:12:12Z 2022-03-16T22:22:38Z
alsa-2022:0899 Moderate: libxml2 security update 2022-03-15T09:12:39Z 2022-03-16T22:22:38Z
alsa-2022:0951 Important: expat security update 2022-03-16T00:00:00Z 2022-06-30T09:52:09Z
alsa-2022:1049 Important: httpd:2.4 security update 2022-03-24T10:44:04Z 2022-03-25T14:16:40Z
alsa-2022:1065 Important: openssl security update 2022-03-28T07:46:07Z 2022-03-28T07:46:07Z