Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2014-2970 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5139. Reason: This candidate is a duplicate of CVE-2014-5139, and has also been used to refer to an unrelated topic that is currently outside the scope of CVE. This unrelated topic is a LibreSSL code change adding functionality for certain process-bifurcation use cases that might arise in future LibreSSL-based applications. There is no CVE ID associated with this LibreSSL code change. As of 20140730, CVE-2014-5139 is an undisclosed vulnerability in a different product, with ongoing vulnerability coordination that had previously used the CVE-2014-2970 ID | N/A | N/A | 2014-07-31T01:00:00.000Z | 2014-07-31T01:57:01.000Z |
| CVE-2013-5759 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5758. Reason: This candidate is not an independent vulnerability; it is resultant from CVE-2013-5758. Notes: All CVE users should reference CVE-2013-5758 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-08-03T18:00:00.000Z | 2014-08-03T17:57:01.000Z |
| CVE-2014-5157 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5196. Reason: This candidate is a reservation duplicate of CVE-2014-5196. Notes: All CVE users should reference CVE-2014-5196 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-08-13T18:00:00.000Z | 2014-08-13T18:57:01.000Z |
| CVE-2014-3799 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue within the scope of CVE. Notes: none | N/A | N/A | 2014-08-18T10:00:00.000Z | 2014-08-18T04:57:00.000Z |
| CVE-2014-5043 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none | N/A | N/A | 2014-08-18T10:00:00.000Z | 2014-08-18T04:57:00.000Z |
| CVE-2014-0352 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-2216. Reason: This candidate is a reservation duplicate of CVE-2014-2216. Notes: All CVE users should reference CVE-2014-2216 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-09-10T18:00:00.000Z | 2014-09-10T18:57:01.000Z |
| CVE-2014-2943 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-2886, CVE-2014-2942. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-2886 and CVE-2014-2942 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-08-15T10:00:00.000Z | 2014-09-22T08:57:01.000Z |
| CVE-2014-5522 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6025. Reason: This candidate is a reservation duplicate of CVE-2014-6025. Notes: All CVE users should reference CVE-2014-6025 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-09-22T10:00:00.000Z | 2014-09-22T08:57:01.000Z |
| CVE-2014-5523 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5524. Reason: This candidate is a duplicate of CVE-2014-5524. Notes: All CVE users should reference CVE-2014-5524 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-09-22T10:00:00.000Z | 2014-09-22T08:57:01.000Z |
| CVE-2014-5575 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none | N/A | N/A | 2014-09-22T10:00:00.000Z | 2014-09-22T08:57:01.000Z |
| CVE-2014-5619 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5665, CVE-2014-5982. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-5665 and CVE-2014-5982 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-09-09T01:00:00.000Z | 2014-09-22T08:57:01.000Z |
| CVE-2014-5718 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5809, CVE-2014-5983. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-5809 and CVE-2014-5983 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-09-09T10:00:00.000Z | 2014-09-22T08:57:01.000Z |
| CVE-2014-5814 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5971, CVE-2014-5984. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-5971 and CVE-2014-5984 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-09-09T01:00:00.000Z | 2014-09-22T08:57:01.000Z |
| CVE-2014-3659 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-7169. Reason: This candidate is a reservation duplicate of CVE-2014-7169 because the CNA for this ID did not follow multiple procedures that are intended to minimize duplicate CVE assignments. Notes: All CVE users should reference CVE-2014-7169 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-09-25T10:00:00.000Z | 2014-09-25T05:57:00.000Z |
| CVE-2014-6809 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6846, CVE-2014-6847. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-6846 and CVE-2014-6847 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-09-30T17:00:00.000Z | 2014-09-30T17:57:00.000Z |
| CVE-2014-7227 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, CVE-2014-7187. Reason: This candidate is a duplicate of CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, and CVE-2014-7187. Notes: All CVE users should reference CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, and CVE-2014-7187 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-10-03T18:00:00.000Z | 2014-10-03T17:57:01.000Z |
| CVE-2013-2644 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-2645, CVE-2014-2644. Reason: this ID was intended for one issue, but was mapped to two issues. Notes: All CVE users should consult CVE-2013-2645 and CVE-2014-2644 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-10-05T01:00:00.000Z | 2014-10-06T01:57:00.000Z |
| CVE-2014-3671 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, CVE-2014-7187. Reason: This candidate is a duplicate of CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, and CVE-2014-7187. Notes: All CVE users should reference CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, and CVE-2014-7187 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-10-13T18:00:00.000Z | 2014-10-13T18:57:00.000Z |
| CVE-2014-6388 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3634. Reason: This candidate is a reservation duplicate of CVE-2014-3634. Notes: All CVE users should reference CVE-2014-3634 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-10-13T18:00:00.000Z | 2014-10-13T18:57:00.000Z |
| CVE-2014-6915 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-7046, CVE-2014-7047. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-7046 and CVE-2014-7047 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-10-13T18:00:00.000Z | 2014-10-13T18:57:00.000Z |
| CVE-2014-5530 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5754, CVE-2014-5755, CVE-2014-8538. Reason: This candidate is a duplicate of CVE-2014-5754, CVE-2014-5755, and CVE-2014-8538. Further investigation showed that an applicable library product did not exist. Notes: All CVE users should reference CVE-2014-5754, CVE-2014-5755, and/or CVE-2014-8538 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-09-09T01:00:00.000Z | 2014-10-29T18:57:00.000Z |
| CVE-2014-2937 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3220. Reason: This candidate is a reservation duplicate of CVE-2014-3220. Notes: All CVE users should reference CVE-2014-3220 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-11-06T00:00:00.000Z | 2014-11-05T23:57:01.000Z |
| CVE-2014-8565 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-8518. Reason: This candidate is a duplicate of CVE-2014-8518. Notes: All CVE users should reference CVE-2014-8518 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-11-15T21:00:00.000Z | 2014-11-15T20:57:01.000Z |
| CVE-2014-9246 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-9385, CVE-2014-9386. Reason: this ID was intended for one issue, but was assigned to two issues by a CNA. Notes: All CVE users should consult CVE-2014-9385 and CVE-2014-9386 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-12-15T17:27:00.000Z | 2014-12-13T02:57:01.000Z |
| CVE-2014-2973 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-5753. Reason: This candidate is a duplicate of CVE-2008-5753. Notes: All CVE users should reference CVE-2008-5753 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-12-15T17:27:00.000Z | 2014-12-15T04:57:00.000Z |
| CVE-2009-5027 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-2062. Reason: This candidate is a reservation duplicate of CVE-2010-2062. Notes: All CVE users should reference CVE-2010-2062 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-12-26T20:00:00.000Z | 2014-12-26T19:57:00.000Z |
| CVE-2013-6998 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-6870. Reason: This candidate is a duplicate of CVE-2013-6870. Notes: All CVE users should reference CVE-2013-6870 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2014-12-27T18:00:00.000Z | 2014-12-30T22:57:01.000Z |
| CVE-2013-6125 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2013. Notes: none | N/A | N/A | 2015-01-05T02:00:00.000Z | 2015-01-05T01:57:00.000Z |
| CVE-2013-6126 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2013. Notes: none | N/A | N/A | 2015-01-05T02:00:00.000Z | 2015-01-05T01:57:00.000Z |
| CVE-2014-9492 |
N/A
|
DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-9323. Reason: This candidate is a reservation duplicate of CVE-2014-9323. Notes: All CVE users should reference CVE-2014-9323 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage | N/A | N/A | 2015-01-05T18:00:00.000Z | 2015-01-05T16:57:01.000Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| fkie_cve-2005-4123 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.230 | 2023-11-07T01:58:04.773 |
| fkie_cve-2005-4124 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.247 | 2023-11-07T01:58:04.993 |
| fkie_cve-2005-4125 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.277 | 2023-11-07T01:58:05.200 |
| fkie_cve-2005-4127 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4092. Reason: This candid… | 2005-12-09T11:03:00.000 | 2023-11-07T01:58:05.417 |
| fkie_cve-2005-4128 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4092. Reason: This candid… | 2005-12-09T11:03:00.000 | 2023-11-07T01:58:05.450 |
| fkie_cve-2005-4129 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4092. Reason: This candid… | 2005-12-09T11:03:00.000 | 2023-11-07T01:58:05.477 |
| fkie_cve-2005-4265 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4209. Reason: This candid… | 2005-12-15T11:03:00.000 | 2023-11-07T01:58:06.717 |
| fkie_cve-2005-4340 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4206. Reason: This candid… | 2005-12-19T03:47:00.000 | 2023-11-07T01:58:07.273 |
| fkie_cve-2005-4531 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-3345. Reason: This candid… | 2005-12-28T01:03:00.000 | 2023-11-07T01:58:09.077 |
| fkie_cve-2005-4535 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.290 | 2023-11-07T01:58:09.133 |
| fkie_cve-2005-4537 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.307 | 2023-11-07T01:58:09.360 |
| fkie_cve-2005-4538 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.337 | 2023-11-07T01:58:09.833 |
| fkie_cve-2005-4539 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.353 | 2023-11-07T01:58:10.127 |
| fkie_cve-2005-4540 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.387 | 2023-11-07T01:58:10.333 |
| fkie_cve-2005-4541 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.400 | 2023-11-07T01:58:10.547 |
| fkie_cve-2005-4542 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.417 | 2023-11-07T01:58:10.760 |
| fkie_cve-2005-4543 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.447 | 2023-11-07T01:58:10.963 |
| fkie_cve-2005-4544 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.463 | 2023-11-07T01:58:11.177 |
| fkie_cve-2005-4561 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was a… | 2005-12-31T05:00:00.000 | 2023-11-07T01:58:11.543 |
| fkie_cve-2005-4562 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was a… | 2005-12-31T05:00:00.000 | 2023-11-07T01:58:11.577 |
| fkie_cve-2005-4633 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4619. Reason: This candid… | 2005-12-31T05:00:00.000 | 2023-11-07T01:58:12.293 |
| fkie_cve-2005-4892 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wit… | 2020-11-05T20:15:14.490 | 2023-11-07T01:58:15.173 |
| fkie_cve-2005-4893 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wit… | 2020-11-05T20:15:14.567 | 2023-11-07T01:58:15.387 |
| fkie_cve-2005-4894 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wit… | 2020-11-05T20:15:14.630 | 2023-11-07T01:58:15.597 |
| fkie_cve-2006-0011 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual … | 2017-05-11T14:29:03.497 | 2023-11-07T01:58:16.070 |
| fkie_cve-2006-0016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wit… | 2021-06-21T14:15:07.657 | 2023-11-07T01:58:16.327 |
| fkie_cve-2006-0017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wit… | 2021-06-21T14:15:07.693 | 2023-11-07T01:58:16.563 |
| fkie_cve-2006-0018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-3899. Reason: This candid… | 2005-11-29T21:03:00.000 | 2023-11-07T01:58:16.770 |
| fkie_cve-2006-0041 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was w… | 2017-05-26T21:29:00.183 | 2023-11-07T01:58:17.217 |
| fkie_cve-2006-0092 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-0992, CVE-2006-0158. Reas… | 2006-01-05T11:03:00.000 | 2023-11-07T01:58:18.077 |
| ID | Severity | Description | Published | Updated |
|---|---|---|---|---|
| ghsa-47qg-q58v-7vrp |
|
UNEDITABLE_SCHEMAS and UNEDITABLE_TABLE_DESCRIPTION_MATCH_RULES not respected by frontend service backend | 2020-12-02T18:28:10Z | 2020-12-02T02:18:42Z |
| ghsa-5p28-63mc-cgr9 |
|
Cross-Site Scripting bypass in html-purify | 2020-12-04T20:04:37Z | 2020-12-04T20:02:42Z |
| ghsa-cvmr-6428-87w9 |
|
Cross-Site Scripting in Grav | 2020-12-10T23:13:08Z | 2020-12-10T23:12:52Z |
| ghsa-9q64-mpxx-87fg |
|
Open Redirect in ecstatic | 2020-04-01T16:35:08Z | 2020-12-15T16:51:18Z |
| ghsa-jc84-3g44-wf2q |
|
Denial of Service in ecstatic | 2020-12-15T16:52:17Z | 2020-12-15T16:52:06Z |
| ghsa-m57p-p67h-mq74 |
6.4 (3.1)
|
Command Injection Vulnerability in systeminformation | 2020-12-16T19:25:00Z | 2020-12-16T19:24:51Z |
| ghsa-ffxg-xm4w-3wg9 |
9.8 (3.1)
|
Command Injection in corenlp-js-interface | 2020-12-18T18:23:04Z | 2020-12-17T22:23:13Z |
| ghsa-45q2-34rf-mr94 |
5.3 (3.1)
|
Code Injection in mquery | 2020-12-18T18:23:43Z | 2020-12-17T22:54:00Z |
| ghsa-5fw9-fq32-wv5p |
5.6 (3.1)
|
OS Command Injection in node-notifier | 2020-12-21T16:04:07Z | 2020-12-21T16:03:51Z |
| ghsa-5q58-x5h2-v5rx |
|
Authenticated Privilege Escalation | 2020-12-21T18:01:08Z | 2020-12-21T17:43:25Z |
| ghsa-cq6h-w3mc-57f4 |
|
Information exposure via query strings in URL | 2020-12-21T18:01:16Z | 2020-12-21T17:46:14Z |
| ghsa-8pfh-mm2g-hmc3 |
|
Authenticated Server Side Request Forgery | 2020-12-21T18:01:24Z | 2020-12-21T17:46:22Z |
| ghsa-wmfg-55f9-j8hq |
10.0 (3.1)
|
Server-Side Template Injection | 2020-12-24T20:49:34Z | 2020-12-24T20:48:30Z |
| ghsa-h96f-fc7c-9r55 |
|
Regex denial of service vulnerability in codesample plugin | 2021-01-06T19:25:46Z | 2021-01-06T19:25:24Z |
| ghsa-p4q6-qxjx-8jgp |
7.7 (3.1)
|
Directory Traversal in spring-boot-actuator-logview | 2021-01-05T17:29:40Z | 2021-01-07T22:28:53Z |
| ghsa-rj38-87f3-93p6 |
|
Downloads Resources over HTTP in limbus-buildgen | 2019-02-18T23:42:27Z | 2021-01-07T22:31:53Z |
| ghsa-8j9v-h2vp-2hhv |
6.1 (3.1)
|
XSS in HtmlSanitizer | 2021-01-04T18:22:11Z | 2021-01-07T22:32:04Z |
| ghsa-4w46-w44m-3jq3 |
7.7 (3.1)
|
Parse Server stores password in plain text | 2020-12-28T16:33:17Z | 2021-01-07T22:32:25Z |
| ghsa-r2qc-w64x-6j54 |
8.7 (3.1)
|
XSS in Vega | 2020-12-30T23:09:21Z | 2021-01-07T22:32:50Z |
| ghsa-r92x-f52r-x54g |
7.5 (3.1)
|
regular expression denial of service (ReDoS) | 2020-12-24T20:49:02Z | 2021-01-07T22:33:12Z |
| ghsa-vqqx-jw6p-q3rf |
6.1 (3.1)
|
Cross-Site Scripting in Fluid view helpers | 2020-12-21T16:28:11Z | 2021-01-07T22:34:28Z |
| ghsa-w5mp-8p8w-mhh8 |
9.8 (3.1)
|
Command injection in connection-tester | 2020-12-17T21:00:53Z | 2021-01-07T22:35:45Z |
| ghsa-85rr-4rh9-hhwh |
7.5 (3.1)
|
Memory leak in Nanopb | 2020-11-25T16:53:27Z | 2021-01-07T22:39:39Z |
| ghsa-pfj3-56hm-jwq5 |
7.9 (3.1)
|
Template injection in cron-utils | 2020-11-24T23:48:38Z | 2021-01-07T22:39:49Z |
| ghsa-4v2w-h9jm-mqjg |
8.1 (3.1)
|
Prototype Pollution in systeminformation | 2020-11-27T16:07:15Z | 2021-01-07T22:40:03Z |
| ghsa-r2j6-p67h-q639 |
8.1 (3.1)
|
Secret disclosure when containing characters that become URI encoded | 2020-11-18T21:19:14Z | 2021-01-07T22:41:34Z |
| ghsa-58w4-w77w-qv3w |
8.7 (3.1)
|
Reflected XSS with parameters in PostComment | 2020-11-16T21:23:29Z | 2021-01-07T22:42:05Z |
| ghsa-j977-g5vj-j27g |
9.6 (3.1)
|
Cross-Site Scripting in scratch-svg-renderer | 2020-11-09T14:21:17Z | 2021-01-07T22:49:01Z |
| ghsa-wpww-4jf4-4hx8 |
7.3 (3.1)
|
Edit feed settings and others, Cross Site Scripting(XSS) Vulnerability in Latest Release 4.4.0 | 2020-11-04T21:08:38Z | 2021-01-07T22:49:25Z |
| ghsa-fw5q-j9p4-3vxg |
7.7 (3.1)
|
Blog comment posting, Cross Site Scripting(XSS) Vulnerability in Latest Release 4.4.0 | 2020-10-30T19:10:20Z | 2021-01-07T22:49:33Z |
| ID | Severity | Description | Package | Published | Updated |
|---|---|---|---|---|---|
| pysec-2018-3 |
|
An issue was discovered in Django 2.1 before 2.1.2, in which unprivileged users can read … | django | 2018-10-02T18:29:00Z | 2021-06-10T06:50:43.349902Z |
| pysec-2018-19 |
|
transport.py in the SSH server implementation of Paramiko before 1.17.6, 1.18.x before 1.… | paramiko | 2018-03-13T18:29:00Z | 2021-06-10T06:50:48.065198Z |
| pysec-2018-22 |
|
OpenKMIP PyKMIP version All versions before 0.8.0 contains a CWE 399: Resource Management… | pykmip | 2018-12-20T17:29:00Z | 2021-06-10T06:50:52.184344Z |
| pysec-2018-24 |
|
Python Cryptographic Authority pyopenssl version Before 17.5.0 contains a CWE - 401 : Fai… | pyopenssl | 2018-10-08T15:29:00Z | 2021-06-10T06:50:57.188381Z |
| pysec-2018-32 |
|
urllib3 before version 1.23 does not remove the Authorization HTTP header when following … | urllib3 | 2018-12-11T17:29:00Z | 2021-06-10T06:51:03.467032Z |
| pysec-2018-2 |
|
django.middleware.common.CommonMiddleware in Django 1.11.x before 1.11.15 and 2.0.x befor… | django | 2018-08-03T17:29:00Z | 2021-06-10T06:51:09.426505Z |
| pysec-2018-20 |
|
privacyIDEA version 2.23.1 and earlier contains a Improper Input Validation vulnerability… | privacyidea | 2018-10-08T15:29:00Z | 2021-06-10T06:51:13.416740Z |
| pysec-2018-30 |
|
SaltStack Salt before 2017.7.8 and 2018.3.x before 2018.3.3 allow remote attackers to byp… | salt | 2018-10-24T22:29:00Z | 2021-06-10T06:51:17.561337Z |
| pysec-2018-17 |
|
Jupyter Notebook before 5.7.1 allows XSS via an untrusted notebook because nbconvert resp… | notebook | 2018-11-18T17:29:00Z | 2021-06-10T06:51:21.489049Z |
| pysec-2019-143 |
|
The LDAP auth backend (airflow.contrib.auth.backends.ldap_auth) prior to Apache Airflow 1… | apache-airflow | 2019-01-23T17:29:00Z | 2021-06-10T06:51:25.502672Z |
| pysec-2018-8 |
|
io/mongo/parser.py in Eve (aka pyeve) before 0.7.5 allows remote attackers to execute arb… | eve | 2018-03-14T12:29:00Z | 2021-06-10T06:51:29.570871Z |
| pysec-2019-144 |
|
An issue was discovered in the arrayfire crate before 3.6.0 for Rust. Addition of the rep… | arrayfire | 2019-08-26T18:15:00Z | 2021-06-10T06:51:33.535067Z |
| pysec-2018-27 |
|
qutebrowser before version 1.4.1 is vulnerable to a cross-site request forgery flaw that … | qutebrowser | 2018-07-12T12:29:00Z | 2021-06-10T06:51:37.378319Z |
| pysec-2018-11 |
|
Luigi version prior to version 2.8.0; after commit 53b52e12745075a8acc016d33945d9d6a7a6aa… | luigi | 2018-12-20T15:29:00Z | 2021-06-10T06:51:41.493009Z |
| pysec-2018-15 |
|
An issue was discovered in Mayan EDMS before 3.0.3. The Tags app has XSS because tag labe… | mayan-edms | 2018-09-03T19:29:00Z | 2021-06-10T06:51:46.544830Z |
| pysec-2018-10 |
|
Kotti before 1.3.2 and 2.x before 2.0.0b2 has CSRF in the local roles implementation, as … | kotti | 2018-04-09T07:29:00Z | 2021-06-10T06:51:50.431238Z |
| pysec-2019-141 |
|
ansible before versions 2.5.14, 2.6.11, 2.7.5 is vulnerable to a information disclosure f… | ansible | 2019-01-03T15:29:00Z | 2021-06-10T06:51:54.692225Z |
| pysec-2018-9 |
|
** DISPUTED ** OpenStack Keystone through 14.0.1 has a user enumeration vulnerability bec… | keystone | 2018-12-17T07:29:00Z | 2021-06-10T06:51:56.696140Z |
| pysec-2018-26 |
|
qutebrowser version introduced in v0.11.0 (1179ee7a937fb31414d77d9970bac21095358449) cont… | qutebrowser | 2018-06-26T16:29:00Z | 2021-06-10T06:51:59.879286Z |
| pysec-2018-21 |
|
PyCryptodome before 3.6.6 has an integer overflow in the data_len variable in AESNI.c, re… | pycryptodome | 2018-08-20T00:29:00Z | 2021-06-10T06:52:01.279206Z |
| pysec-2018-18 |
|
Jupyter Notebook before 5.7.2 allows XSS via a crafted directory name because notebook/st… | notebook | 2018-11-18T17:29:00Z | 2021-06-10T06:52:01.452566Z |
| pysec-2019-142 |
|
In Apache Airflow before 1.10.2, a malicious admin user could edit the state of objects i… | apache-airflow | 2019-02-27T18:29:00Z | 2021-06-10T06:52:05.219935Z |
| pysec-2018-6 |
|
An issue was discovered in Django 2.0 before 2.0.3, 1.11 before 1.11.11, and 1.8 before 1… | django | 2018-03-09T20:29:00Z | 2021-06-10T06:52:11.564894Z |
| pysec-2021-96 |
|
This affects the package Flask-Unchained before 0.9.0. When using the the _validate_redir… | flask-unchained | 2021-06-11T00:15:00Z | 2021-06-15T05:47:49.199835Z |
| pysec-2018-7 |
|
webhooks/base.py in Anymail (aka django-anymail) before 1.2.1 is prone to a timing attack… | django-anymail | 2018-02-03T21:29:00Z | 2021-06-16T00:03:22.915097Z |
| pysec-2018-4 |
|
django.contrib.auth.forms.AuthenticationForm in Django 2.0 before 2.0.2, and 1.11.8 and 1… | django | 2018-02-05T03:29:00Z | 2021-06-16T00:03:23.096188Z |
| pysec-2018-5 |
|
An issue was discovered in Django 2.0 before 2.0.3, 1.11 before 1.11.11, and 1.8 before 1… | django | 2018-03-09T20:29:00Z | 2021-06-16T00:03:23.200365Z |
| pysec-2018-12 |
|
An issue was discovered in lxml before 4.2.5. lxml/html/clean.py in the lxml.html.clean m… | lxml | 2018-12-02T10:29:00Z | 2021-06-16T00:03:23.627691Z |
| pysec-2018-13 |
|
An issue was discovered in markdown2 (aka python-markdown2) through 2.3.5. The safe_mode … | markdown2 | 2018-01-18T21:29:00Z | 2021-06-16T00:03:23.657711Z |
| pysec-2018-16 |
|
An issue was discovered in Mayan EDMS before 3.0.2. The Appearance app sets window.locati… | mayan-edms-ng | 2018-09-03T19:29:00Z | 2021-06-16T00:03:23.682256Z |
| ID | Description | Updated |
|---|---|---|
| gsd-2019-18848 | The json-jwt gem before 1.11.0 for Ruby lacks an element count during the splitting of a … | 2019-11-14T00:00:00.000Z |
| gsd-2019-18978 | An issue was discovered in the rack-cors (aka Rack CORS Middleware) gem before 1.0.4 for … | 2019-11-15T00:00:00.000Z |
| gsd-2019-16770 | A poorly-behaved client could use keepalive requests to monopolize Puma's reactor and cre… | 2019-12-05T00:00:00.000Z |
| gsd-2019-16779 | There was a race condition around persistent connections, where a connection which is int… | 2019-12-16T00:00:00.000Z |
| gsd-2019-16782 | There's a possible information leak / session hijack vulnerability in Rack. Attackers ma… | 2019-12-18T00:00:00.000Z |
| gsd-2020-5216 | If user-supplied input was passed into append/override_content_security_policy_directives… | 2020-01-23T00:00:00.000Z |
| gsd-2020-5217 | If user-supplied input was passed into append/override_content_security_policy_directives… | 2020-01-23T00:00:00.000Z |
| gsd-2020-7981 | sql.rb in Geocoder allows Boolean-based SQL injection when within_bounding_box is used in… | 2020-01-25T00:00:00.000Z |
| gsd-2020-5241 | matestack-ui-core does not excape strings by default and does not cover this in the docs.… | 2020-02-10T00:00:00.000Z |
| gsd-2020-7595 | Nokogiri has backported the patch for CVE-2020-7595 into its vendored version of libxml2… | 2020-02-12T00:00:00.000Z |
| gsd-2019-10780 | BibTeX-ruby before 5.1.0 allows shell command injection due to unsanitized user input bei… | 2020-02-14T00:00:00.000Z |
| gsd-2020-5247 | If an application using Puma allows untrusted input in a response header, an attacker can… | 2020-02-27T00:00:00.000Z |
| gsd-2020-5249 | ### Impact If an application using Puma allows untrusted input in an early-hints header, … | 2020-03-03T00:00:00.000Z |
| gsd-2020-5243 | ### Impact Some regexes are vulnerable to regular expression denial of service (REDoS) du… | 2020-03-10T00:00:00.000Z |
| gsd-2020-36190 | RailsAdmin (aka rails_admin) before 1.4.3 and 2.x before 2.0.2 allows XSS via nested forms. | 2020-03-14T00:00:00.000Z |
| gsd-2020-5257 | In Administrate (rubygem) before version 0.13.0, when sorting by attributes on a dashboar… | 2020-03-14T00:00:00.000Z |
| gsd-2020-10663 | There is an unsafe object creation vulnerability in the json gem bundled with Ruby. This … | 2020-03-19T00:00:00.000Z |
| gsd-2020-5267 | There is a possible XSS vulnerability in ActionView's JavaScript literal escape helpers. … | 2020-03-19T00:00:00.000Z |
| gsd-2015-4411 | The Moped::BSON::ObjecId.legal? method in mongodb/bson-ruby before 3.0.4 as used in rubyg… | 2020-04-29T00:00:00.000Z |
| gsd-2020-11020 | On 20 April 2020 it was reported to me that the potential for authentication bypass exist… | 2020-04-29T00:00:00.000Z |
| gsd-2020-11023 | ## Impact Passing HTML containing `<option>` elements from untrusted sources - even afte… | 2020-04-29T00:00:00.000Z |
| gsd-2020-10187 | Information disclosure vulnerability. Allows an attacker to see all Doorkeeper::Applicati… | 2020-05-02T00:00:00.000Z |
| gsd-2020-8151 | activeresource contains a lack of encoding flaw in the element_path function of lib/activ… | 2020-05-05T00:00:00.000Z |
| gsd-2020-8159 | There is a vulnerability in the actionpack-page_caching gem that allows an attacker to wr… | 2020-05-06T00:00:00.000Z |
| gsd-2020-11052 | ### Impact Brute force vulnerability when using password authentication via Sorcery. The … | 2020-05-07T00:00:00.000Z |
| gsd-2020-8161 | There was a possible directory traversal vulnerability in the Rack::Directory app that is… | 2020-05-12T00:00:00.000Z |
| gsd-2020-8163 | There was a vulnerability in versions of Rails prior to 5.0.1 that would allow an attacke… | 2020-05-15T00:00:00.000Z |
| gsd-2020-8162 | There is a vulnerability in ActiveStorage's S3 adapter that allows the Content-Length of … | 2020-05-18T00:00:00.000Z |
| gsd-2020-8164 | There is a strong parameters bypass vector in ActionPack. Versions Affected: rails <= 6… | 2020-05-18T00:00:00.000Z |
| gsd-2020-8165 | There is potentially unexpected behaviour in the MemCacheStore and RedisCacheStore where,… | 2020-05-18T00:00:00.000Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| mal-2022-413 | Malicious code in @manomano-toolbox/catalog (npm) | 2022-06-09T08:52:16Z | 2022-06-09T08:52:17Z |
| mal-2022-417 | Malicious code in @manomano-toolbox/pim-management (npm) | 2022-06-09T08:52:09Z | 2022-06-09T08:52:17Z |
| mal-2022-607 | Malicious code in @spinak/iac-lib (npm) | 2022-06-09T08:52:16Z | 2022-06-09T08:52:17Z |
| mal-2022-415 | Malicious code in @manomano-toolbox/components (npm) | 2022-06-09T08:52:37Z | 2022-06-09T08:52:37Z |
| mal-2022-414 | Malicious code in @manomano-toolbox/commercial-operations (npm) | 2022-06-09T08:52:42Z | 2022-06-09T08:52:42Z |
| mal-2022-412 | Malicious code in @manomano-toolbox/async-exports (npm) | 2022-06-09T08:54:07Z | 2022-06-09T08:54:08Z |
| mal-2022-2025 | Malicious code in colorss-v11 (npm) | 2022-06-10T04:03:29Z | 2022-06-10T04:03:29Z |
| mal-2022-3009 | Malicious code in ferris-design-tokens (npm) | 2022-06-10T04:04:54Z | 2022-06-10T04:04:54Z |
| mal-2022-6533 | Malicious code in testte (npm) | 2022-06-10T04:05:44Z | 2022-06-10T04:05:45Z |
| mal-2022-6968 | Malicious code in vpc-stack-with-issues (npm) | 2022-06-10T04:05:44Z | 2022-06-10T04:05:45Z |
| mal-2022-2004 | Malicious code in colorred (npm) | 2022-06-10T04:07:59Z | 2022-06-10T04:08:00Z |
| mal-2022-2534 | Malicious code in dist-sidr (npm) | 2022-06-13T05:38:55Z | 2022-06-13T05:38:55Z |
| mal-2022-5176 | Malicious code in package-icon (npm) | 2022-06-13T05:38:55Z | 2022-06-13T05:38:55Z |
| mal-2022-5187 | Malicious code in packages-icons (npm) | 2022-06-13T05:38:55Z | 2022-06-13T05:38:55Z |
| mal-2022-3758 | Malicious code in icons-package (npm) | 2022-06-13T05:38:55Z | 2022-06-13T05:38:56Z |
| mal-2022-4127 | Malicious code in kbrstore (npm) | 2022-06-13T05:38:56Z | 2022-06-13T05:38:56Z |
| mal-2022-5182 | Malicious code in package-show (npm) | 2022-06-13T05:38:55Z | 2022-06-13T05:38:56Z |
| mal-2022-6344 | Malicious code in subek (npm) | 2022-06-13T05:38:55Z | 2022-06-13T05:38:56Z |
| mal-2022-3755 | Malicious code in iconion-package (npm) | 2022-06-13T05:38:56Z | 2022-06-13T05:39:03Z |
| mal-2022-5183 | Malicious code in package-sidr (npm) | 2022-06-13T05:38:56Z | 2022-06-13T05:39:03Z |
| mal-2022-2260 | Malicious code in cs-connection-hub (npm) | 2022-06-13T05:46:00Z | 2022-06-13T05:46:01Z |
| mal-2022-6980 | Malicious code in vso-service-worker (npm) | 2022-06-13T05:46:01Z | 2022-06-13T05:46:01Z |
| mal-2022-6981 | Malicious code in vso-service-worker-client (npm) | 2022-06-13T05:46:01Z | 2022-06-13T05:46:01Z |
| mal-2022-6982 | Malicious code in vso-splash-screen-terminals (npm) | 2022-06-13T05:46:01Z | 2022-06-13T05:46:01Z |
| mal-2022-6983 | Malicious code in vso-ts-agent (npm) | 2022-06-13T05:46:00Z | 2022-06-13T05:46:01Z |
| mal-2022-6984 | Malicious code in vso-workbench (npm) | 2022-06-13T05:46:01Z | 2022-06-13T05:46:01Z |
| mal-2022-2334 | Malicious code in dashboard-modules (npm) | 2022-06-13T05:48:00Z | 2022-06-13T05:48:00Z |
| mal-2022-3656 | Malicious code in holvi-validation (npm) | 2022-06-13T05:47:59Z | 2022-06-13T05:48:00Z |
| mal-2022-5251 | Malicious code in paytm-kafka-rest (npm) | 2022-06-13T05:48:00Z | 2022-06-13T05:48:00Z |
| mal-2022-5510 | Malicious code in ptmproc (npm) | 2022-06-13T05:48:00Z | 2022-06-13T05:48:00Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| bit-gitlab-2020-26408 | 2024-03-06T11:21:18.348Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-26409 | 2024-03-06T11:21:17.046Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-26411 | 2024-03-06T11:21:15.756Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-26412 | 2024-03-06T11:21:14.494Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-26413 | 2024-03-06T11:21:13.259Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-26414 | 2024-03-06T11:21:12.021Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-26415 | 2024-03-06T11:21:10.769Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-26416 | 2024-03-06T11:21:09.546Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-26417 | 2024-03-06T11:21:08.327Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-5197 | 2024-03-06T11:21:07.081Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-6832 | 2024-03-06T11:21:05.852Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-6833 | 2024-03-06T11:21:04.610Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-7966 | 2024-03-06T11:21:03.403Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-7967 | 2024-03-06T11:21:02.172Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-7968 | 2024-03-06T11:21:00.945Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-7972 | 2024-03-06T11:20:57.233Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-7973 | 2024-03-06T11:20:56.018Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-8113 | 2024-03-06T11:20:48.428Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2020-8795 | 2024-03-06T11:20:45.895Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22166 | 2024-03-06T11:20:44.620Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22167 | 2024-03-06T11:20:43.400Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22168 | 2024-03-06T11:20:42.158Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22169 | 2024-03-06T11:20:40.885Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22170 | 2024-03-06T11:20:39.636Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22171 | 2024-03-06T11:20:38.404Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22172 | 2024-03-06T11:20:37.155Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22176 | 2024-03-06T11:20:34.616Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22177 | 2024-03-06T11:20:33.346Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22178 | 2024-03-06T11:20:32.111Z | 2025-04-03T14:40:37.652Z | |
| bit-gitlab-2021-22179 | 2024-03-06T11:20:30.856Z | 2025-04-03T14:40:37.652Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| drupal-contrib-2025-037 | 2025-04-16T16:25:35.000Z | 2025-04-16T16:25:35.000Z | |
| drupal-contrib-2025-038 | 2025-04-16T16:25:45.000Z | 2025-04-16T16:25:45.000Z | |
| drupal-contrib-2025-039 | 2025-04-16T16:25:56.000Z | 2025-04-16T16:25:56.000Z | |
| drupal-contrib-2025-040 | 2025-04-16T16:26:13.000Z | 2025-04-16T16:26:13.000Z | |
| drupal-contrib-2025-042 | 2025-04-23T16:58:51.000Z | 2025-04-23T16:58:51.000Z | |
| drupal-contrib-2025-043 | 2025-04-23T16:59:01.000Z | 2025-04-23T16:59:01.000Z | |
| drupal-contrib-2025-044 | 2025-04-23T16:59:11.000Z | 2025-04-23T16:59:11.000Z | |
| drupal-contrib-2025-045 | 2025-04-23T16:59:19.000Z | 2025-04-23T16:59:19.000Z | |
| drupal-contrib-2025-046 | 2025-04-23T16:59:33.000Z | 2025-04-23T16:59:33.000Z | |
| drupal-contrib-2025-033 | 2025-04-09T17:04:56.000Z | 2025-04-29T07:18:22.000Z | |
| drupal-contrib-2025-047 | 2025-05-07T17:06:16.000Z | 2025-05-07T17:06:16.000Z | |
| drupal-contrib-2025-052 | 2025-05-07T17:07:14.000Z | 2025-05-07T17:16:21.000Z | |
| drupal-contrib-2025-053 | 2025-05-07T17:07:22.000Z | 2025-05-07T17:16:27.000Z | |
| drupal-contrib-2025-054 | 2025-05-07T17:07:32.000Z | 2025-05-07T17:16:32.000Z | |
| drupal-contrib-2025-055 | 2025-05-07T17:07:46.000Z | 2025-05-07T17:16:36.000Z | |
| drupal-contrib-2025-056 | 2025-05-07T17:08:31.000Z | 2025-05-07T17:16:40.000Z | |
| drupal-contrib-2025-060 | 2025-05-14T18:05:04.000Z | 2025-05-14T18:05:04.000Z | |
| drupal-contrib-2025-061 | 2025-05-14T18:05:13.000Z | 2025-05-14T18:05:13.000Z | |
| drupal-contrib-2025-062 | 2025-05-14T18:05:22.000Z | 2025-05-14T18:05:22.000Z | |
| drupal-contrib-2025-063 | 2025-05-14T18:05:32.000Z | 2025-05-14T18:05:32.000Z | |
| drupal-contrib-2025-057 | 2025-05-14T18:04:31.000Z | 2025-05-14T19:39:43.000Z | |
| drupal-contrib-2025-064 | 2025-05-21T17:28:11.000Z | 2025-05-21T17:28:11.000Z | |
| drupal-contrib-2025-065 | 2025-05-21T17:28:31.000Z | 2025-05-21T17:28:31.000Z | |
| drupal-contrib-2025-066 | 2025-05-21T17:28:47.000Z | 2025-05-21T17:28:47.000Z | |
| drupal-contrib-2025-067 | 2025-05-21T17:28:55.000Z | 2025-05-21T17:28:55.000Z | |
| drupal-contrib-2025-068 | 2025-05-21T17:29:14.000Z | 2025-05-21T17:29:14.000Z | |
| drupal-contrib-2025-076 | 2025-05-28T17:46:09.000Z | 2025-05-29T18:15:56.000Z | |
| drupal-contrib-2025-075 | 2025-05-28T17:45:37.000Z | 2025-05-29T18:16:19.000Z | |
| drupal-contrib-2025-074 | 2025-05-28T17:44:33.000Z | 2025-05-29T18:16:36.000Z | |
| drupal-contrib-2025-073 | 2025-05-28T17:44:12.000Z | 2025-05-29T18:16:49.000Z |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2008-000043 | K's CGI Access Log Kaiseki (jcode.pl) vulnerable to cross-site scripting | 2008-07-29T14:56+09:00 | 2008-07-29T14:56+09:00 |
| jvndb-2008-000044 | K's CGI Access Log Kaiseki (Jcode.pm) vulnerable to cross-site scripting | 2008-07-29T14:56+09:00 | 2008-07-29T14:56+09:00 |
| jvndb-2008-000045 | Geeklog Forum Plugin vulnerable to cross-site scripting | 2008-07-29T14:57+09:00 | 2008-07-29T14:57+09:00 |
| jvndb-2008-001514 | Cross-Site Scripting Vulnerability in Hitachi Collaboration - Online Community Management | 2008-07-30T13:46+09:00 | 2008-07-30T13:46+09:00 |
| jvndb-2008-000037 | Multiple Panasonic Communications Co., Ltd. network cameras vulnerable to cross-site scripting | 2008-08-04T14:34+09:00 | 2008-08-04T14:34+09:00 |
| jvndb-2008-000050 | Virus Security and Virus Security ZERO denial of service (DoS) vulnerability | 2008-08-14T18:15+09:00 | 2008-08-14T18:15+09:00 |
| jvndb-2008-000046 | La!cooda WIZ and LacoodaST vulnerable to cross-site request forgery | 2008-09-02T16:58+09:00 | 2008-09-02T16:58+09:00 |
| jvndb-2008-000047 | LacoodaST from SpaceTag, Inc. session fixation vulnerability | 2008-09-02T17:01+09:00 | 2008-09-02T17:01+09:00 |
| jvndb-2008-000048 | La!cooda WIZ and LacoodaST vulnerable to cross-site scripting | 2008-09-02T17:02+09:00 | 2008-09-02T17:02+09:00 |
| jvndb-2008-000049 | Vulnerability in La!cooda WIZ and LacoodaST allowing an arbitrary PHP script execution | 2008-09-02T17:03+09:00 | 2008-09-02T17:03+09:00 |
| jvndb-2008-000053 | mysql-lists from AquaGardenSoft Co.,Ltd. vulnerable to cross-site scripting | 2008-09-02T17:05+09:00 | 2008-09-02T17:05+09:00 |
| jvndb-2008-000054 | Blogn vulnerable to cross-site request forgery | 2008-09-02T17:22+09:00 | 2008-09-02T17:22+09:00 |
| jvndb-2008-000055 | Blogn vulnerable to cross-site scripting | 2008-09-02T17:22+09:00 | 2008-09-02T17:22+09:00 |
| jvndb-2008-001575 | Fujitsu Interstage Application Server Single Sign-On Buffer Overflow Vulnerability | 2008-09-03T12:33+09:00 | 2008-09-03T12:33+09:00 |
| jvndb-2008-001584 | Hitachi JP1/File Transmission Server/FTP Transmission Failure Problem | 2008-09-05T12:23+09:00 | 2008-09-05T12:23+09:00 |
| jvndb-2008-001585 | Hitachi JP1/File Transmission Server/FTP Unauthorized File Permission Change Vulnerability | 2008-09-05T12:24+09:00 | 2008-09-05T12:24+09:00 |
| jvndb-2008-000052 | Webservice-DIC shop_v50 and shop_v52 vulnerable to cross-site scripting | 2008-09-08T17:01+09:00 | 2008-09-08T17:01+09:00 |
| jvndb-2008-001613 | Fujitsu Interstage Application Server Access Control Update Problem | 2008-09-09T16:21+09:00 | 2008-09-09T16:21+09:00 |
| jvndb-2008-001614 | JP1/NETM/DM SubManager and JP1/NETM/DM Client Process Termination Vulnerability | 2008-09-09T16:21+09:00 | 2008-09-09T16:21+09:00 |
| jvndb-2008-000056 | Movable Type vulnerable to cross-site scripting | 2008-09-10T11:28+09:00 | 2008-09-10T11:28+09:00 |
| jvndb-2008-000057 | Sound Master 2nd from High Norm vulnerable to cross-site scripting | 2008-09-10T11:28+09:00 | 2008-09-10T11:28+09:00 |
| jvndb-2008-000058 | Multiple Tor World CGI scripts vulnerable to arbitrary script execution | 2008-09-18T11:48+09:00 | 2008-09-18T11:48+09:00 |
| jvndb-2008-000059 | Kantan WEB Server directory traversal vulnerability | 2008-09-22T12:26+09:00 | 2008-09-22T12:26+09:00 |
| jvndb-2008-000060 | Kantan WEB Server cross-site scripting vulnerability | 2008-09-22T12:26+09:00 | 2008-09-22T12:26+09:00 |
| jvndb-2008-001665 | Data Transfer Control Process Cessation Issue in XFIT/S/JCA and XFIT/S/ZGN | 2008-09-24T12:03+09:00 | 2008-09-24T12:03+09:00 |
| jvndb-2008-000061 | phpMyAdmin cross-site scripting vulnerability | 2008-09-26T16:37+09:00 | 2008-09-26T16:37+09:00 |
| jvndb-2008-000064 | EC-CUBE cross-site scripting vulnerability | 2008-10-01T16:31+09:00 | 2008-10-01T16:31+09:00 |
| jvndb-2008-000065 | EC-CUBE vulnerable to SQL injection | 2008-10-01T16:31+09:00 | 2008-10-01T16:31+09:00 |
| jvndb-2008-000062 | EC-CUBE cross-site scripting vulnerability | 2008-10-01T16:32+09:00 | 2008-10-01T16:32+09:00 |
| jvndb-2008-000063 | EC-CUBE cross-site scripting vulnerability | 2008-10-01T16:32+09:00 | 2008-10-01T16:32+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| cnvd-2015-00274 | PHPKIT WCMS 'include.php'跨站脚本漏洞 | 2015-01-13 | 2015-01-14 |
| cnvd-2015-00275 | ProjectSend跨站脚本漏洞 | 2015-01-13 | 2015-01-14 |
| cnvd-2015-00276 | Codiad short_name跨站脚本漏洞 | 2015-01-13 | 2015-01-14 |
| cnvd-2015-00277 | Cisco WebEx Meetings Server信息泄露漏洞(CNVD-2015-00277) | 2015-01-13 | 2015-01-14 |
| cnvd-2015-00278 | CHICKEN 'data-structures-tests.scm'远程缓冲区溢出漏洞 | 2015-01-13 | 2015-01-14 |
| cnvd-2015-00279 | TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00279) | 2015-01-12 | 2015-01-14 |
| cnvd-2015-00280 | TR-069自动配置服务器任意代码执行漏洞( CNVD-2015-00280) | 2015-01-12 | 2015-01-14 |
| cnvd-2015-00281 | TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00281) | 2015-01-12 | 2015-01-14 |
| cnvd-2015-00282 | TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00282) | 2015-01-12 | 2015-01-14 |
| cnvd-2015-00283 | TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00283) | 2015-01-12 | 2015-01-14 |
| cnvd-2015-00284 | TR-069自动配置服务器任意代码执行漏洞(CNVD-2015-00284) | 2015-01-12 | 2015-01-14 |
| cnvd-2015-00285 | 多个产品UEFI系统本地安全绕过漏洞 | 2015-01-09 | 2015-01-14 |
| cnvd-2015-00286 | Linux Kernel isofs信息泄露漏洞 | 2015-01-09 | 2015-01-14 |
| cnvd-2015-00287 | xbindkeys-config '/tmp/xbindkeysrc-tmp'本地临时文件创建漏洞 | 2015-01-09 | 2015-01-14 |
| cnvd-2015-00288 | Intel Chipsets本地竞争条件安全绕过漏洞 | 2015-01-09 | 2015-01-14 |
| cnvd-2015-00289 | ZTE MF19存在多个漏洞 | 2015-01-13 | 2015-01-14 |
| cnvd-2015-00290 | 多个BlackBerry产品本地安全绕过漏洞 | 2015-01-09 | 2015-01-14 |
| cnvd-2015-00291 | p7zip符号链接目录遍历漏洞 | 2015-01-09 | 2015-01-14 |
| cnvd-2015-00321 | 多个IBM产品存在远程拒绝服务漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00322 | 多个IBM产品存在多个目录遍历漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00323 | 多个IBM产品存在XML外部实体信息泄露漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00324 | odata4j XML外部实体注入漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00325 | HP Insight Control Server存在未明跨站脚本漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00326 | e107 'usersettings.php'跨站脚本漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00327 | Condor任意代码执行漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00328 | Ansible Tower验证绕过漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00329 | Ansible Tower 'is_superuser'参数远程权限提升漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00330 | Ansible Tower存在多个跨站脚本漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00331 | Kodi跨站请求伪造漏洞 | 2015-01-14 | 2015-01-15 |
| cnvd-2015-00332 | Adobe Flash Player and AIR远程代码执行漏洞(CNVD-2015-00332) | 2015-01-14 | 2015-01-15 |
| ID | Description | Published | Updated |
|---|---|---|---|
| bdu:2015-00042 | Уязвимость мультимедийного пакета Apple QuickTime, позволяющая удаленному злоумышленнику … | 05.07.2016 | 28.11.2016 |
| bdu:2015-00043 | Уязвимость системы управления базами данных Oracle Database Server, позволяющая удаленном… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00044 | Уязвимость системы управления базами данных Oracle Database Server, позволяющая удаленном… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00047 | Уязвимость почтового сервера Dovecot, позволяющая удаленному злоумышленнику вызвать отказ… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00048 | Уязвимость эмулятора аппаратного обеспечения QEMU, позволяющая злоумышленнику вызвать отк… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00051 | Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику вызвать о… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00052 | Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику вызвать … | 05.07.2016 | 28.11.2016 |
| bdu:2015-00054 | Уязвимость браузера Firefox ESR, позволяющая удаленному злоумышленнику вызвать отказ в об… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00055 | Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику вызвать о… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00056 | Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику вызвать о… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00057 | Уязвимость браузера Firefox, позволяющая удаленному злоумышленнику выполнить произвольный код | 05.07.2016 | 28.11.2016 |
| bdu:2015-00059 | Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику выполнить… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00060 | Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику выполнить… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00062 | Уязвимость браузера Firefox ESR, позволяющая удаленному злоумышленнику выполнить произвол… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00063 | Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику выполнить… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00064 | Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику выполнить… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00066 | Уязвимость браузера Firefox ESR, позволяющая удаленному злоумышленнику выполнить произвол… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00067 | Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику выполнить… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00068 | Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику выполнить… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00069 | Уязвимость браузера Firefox, позволяющая удаленному злоумышленнику выполнить произвольный… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00070 | Уязвимость браузера Firefox ESR, позволяющая удаленному злоумышленнику выполнить произвол… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00071 | Уязвимость почтового клиента Thunderbird, позволяющая удаленному злоумышленнику выполнить… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00072 | Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику выполнить… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00074 | Уязвимость браузера Firefox ESR, позволяющая удаленному злоумышленнику выполнить произвол… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00076 | Уязвимость программного пакета SeaMonkey, позволяющая удаленному злоумышленнику выполнить… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00077 | Уязвимость системы мгновенного обмена сообщениями Pidgin, позволяющая удаленному злоумышл… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00078 | Уязвимость системы мгновенного обмена сообщениями Pidgin, позволяющая удаленному злоумышл… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00079 | Уязвимость системы мгновенного обмена сообщениями Pidgin, позволяющая удаленному злоумышл… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00080 | Уязвимость системы мгновенного обмена сообщениями Pidgin, позволяющая удаленному злоумышл… | 05.07.2016 | 28.11.2016 |
| bdu:2015-00081 | Уязвимость системы мгновенного обмена сообщениями Pidgin, позволяющая удаленному злоумышл… | 05.07.2016 | 28.11.2016 |
| ID | Description | Published | Updated |
|---|---|---|---|
| certa-2002-avi-083 | Vulnérabilités de la pile TCP/IP de FreeBSD | 2002-04-19T00:00:00.000000 | 2002-04-19T00:00:00.000000 |
| certa-2002-avi-039 | Vulnérabilité de SNMP sur Compaq | 2002-02-21T00:00:00.000000 | 2002-04-23T00:00:00.000000 |
| certa-2002-avi-084 | Vulnérabilités dans Lotus Domino | 2002-04-23T00:00:00.000000 | 2002-04-23T00:00:00.000000 |
| certa-2002-avi-085 | Vulnérabilité dans Oracle9i Database Server | 2002-04-23T00:00:00.000000 | 2002-04-23T00:00:00.000000 |
| certa-2002-avi-086 | Vulnérabilité dans Oracle E-Business | 2002-04-23T00:00:00.000000 | 2002-04-23T00:00:00.000000 |
| certa-2001-avi-084 | Vulnérabilité dans les serveurs RPC sous Windows | 2001-07-27T00:00:00.000000 | 2002-04-24T00:00:00.000000 |
| certa-2002-avi-069 | Vulnérabilités des agents SNMP sous IRIX | 2002-04-04T00:00:00.000000 | 2002-04-25T00:00:00.000000 |
| certa-2002-avi-087 | Vulnérabilité de l'éditeur de méls de Microsoft Outlook | 2002-04-26T00:00:00.000000 | 2002-04-26T00:00:00.000000 |
| certa-2002-avi-088 | Vulnérabilité de sudo | 2002-04-26T00:00:00.000000 | 2002-04-26T00:00:00.000000 |
| certa-2002-avi-089 | Vulnérabilité du service nsd sous IRIX | 2002-05-02T00:00:00.000000 | 2002-05-02T00:00:00.000000 |
| certa-2002-avi-090 | Vulnérabilité de la commande cpr sous IRIX | 2002-05-02T00:00:00.000000 | 2002-05-02T00:00:00.000000 |
| certa-2002-avi-091 | Multiples vulnérabilités de cachefsd sous Solaris | 2002-05-02T00:00:00.000000 | 2002-05-02T00:00:00.000000 |
| certa-2002-avi-092 | Vulnérabilité du service pmcd sous IRIX | 2002-05-02T00:00:00.000000 | 2002-05-02T00:00:00.000000 |
| certa-2002-avi-093 | Vulnérabilité de /dev/ipfilter sous IRIX | 2002-05-02T00:00:00.000000 | 2002-05-02T00:00:00.000000 |
| certa-2002-avi-094 | Vulnérabilité sur RealSecure Network Sensor | 2002-05-02T00:00:00.000000 | 2002-05-02T00:00:00.000000 |
| certa-2002-avi-095 | Vulnérabilités d'admintool sous Solaris | 2002-05-03T00:00:00.000000 | 2002-05-03T00:00:00.000000 |
| certa-2002-avi-097 | Vulnérabilité du contrôle ActiveX MSN Chat | 2002-05-13T00:00:00.000000 | 2002-05-13T00:00:00.000000 |
| certa-2002-avi-098 | Vulnérabilité du contrôle ActiveX Macromedia Flash Player version 6 revision 23 | 2002-05-13T00:00:00.000000 | 2002-05-13T00:00:00.000000 |
| certa-2002-avi-099 | Vulnérabilité du logiciel de messagerie Eudora 5.1 et versions antérieures | 2002-05-15T00:00:00.000000 | 2002-05-15T00:00:00.000000 |
| certa-2002-avi-100 | Vulnérabilité sur Netfilter (iptables) | 2002-05-15T00:00:00.000000 | 2002-05-15T00:00:00.000000 |
| certa-2002-avi-101 | Multiples vulnérabilités dans Internet Explorer | 2002-05-16T00:00:00.000000 | 2002-05-16T00:00:00.000000 |
| certa-2002-avi-102 | Vulnérabilité des commutateurs CSS 11000 de CISCO | 2002-05-16T00:00:00.000000 | 2002-05-16T00:00:00.000000 |
| certa-2002-avi-105 | Vulnérabilités sur Webmin | 2002-05-17T00:00:00.000000 | 2002-05-17T00:00:00.000000 |
| certa-2002-avi-106 | Vulnérabilité dans Snitz Forums 2000 | 2002-05-17T00:00:00.000000 | 2002-05-17T00:00:00.000000 |
| certa-2002-avi-103 | Vulnérabilité Cisco Cache Engine et Content Engine | 2002-05-16T00:00:00.000000 | 2002-05-21T00:00:00.000000 |
| certa-2002-avi-034 | Multiples vulnérabilités du paquetage ucd-snmp | 2002-02-18T00:00:00.000000 | 2002-05-23T00:00:00.000000 |
| certa-2002-avi-107 | Vulnérabilité Cisco IOS aux dénis de service de type ICMP Redirect | 2002-05-23T00:00:00.000000 | 2002-05-23T00:00:00.000000 |
| certa-2002-avi-110 | Vulnérabilité dans Windows Debugger | 2002-05-24T00:00:00.000000 | 2002-05-24T00:00:00.000000 |
| certa-2002-avi-111 | Vulnérabilité dans CISCO IDS Device Manager 3.1.1 | 2002-05-27T00:00:00.000000 | 2002-05-27T00:00:00.000000 |
| certa-2002-avi-112 | Vulnérabilité dans fetchmail | 2002-05-29T00:00:00.000000 | 2002-05-29T00:00:00.000000 |
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2022-ale-005 | [MàJ] Vulnérabilité dans Microsoft Windows | 2022-05-31T00:00:00.000000 | 2022-09-16T00:00:00.000000 |
| certfr-2022-ale-002 | Vulnérabilité dans VMware Spring Cloud Gateway | 2022-03-03T00:00:00.000000 | 2022-10-07T00:00:00.000000 |
| certfr-2022-ale-006 | [MàJ] Vulnérabilité dans Atlassian Confluence | 2022-06-03T00:00:00.000000 | 2022-10-07T00:00:00.000000 |
| certfr-2022-ale-011 | Vulnérabilité dans les produits Fortinet | 2022-10-14T00:00:00.000000 | 2022-10-14T00:00:00.000000 |
| certfr-2022-ale-012 | [MàJ] Vulnérabilité dans FortiOS SSL-VPN | 2022-12-13T00:00:00.000000 | 2022-12-20T00:00:00.000000 |
| certfr-2022-ale-007 | Multiples vulnérabilités dans Microsoft Windows | 2022-09-16T00:00:00.000000 | 2023-03-14T00:00:00.000000 |
| certfr-2022-ale-008 | [MaJ] Multiples vulnérabilités dans Microsoft Exchange | 2022-09-30T00:00:00.000000 | 2023-03-14T00:00:00.000000 |
| certfr-2022-ale-009 | [MaJ] Vulnérabilité dans Zimbra Collaboration | 2022-10-07T00:00:00.000000 | 2023-03-14T00:00:00.000000 |
| certfr-2022-ale-010 | Multiples vulnérabilités dans GLPI | 2022-10-07T00:00:00.000000 | 2023-03-14T00:00:00.000000 |
| certfr-2022-ale-013 | [MàJ] Vulnérabilité dans Citrix ADC et Gateway | 2022-12-13T00:00:00.000000 | 2023-03-14T00:00:00.000000 |
| certfr-2023-ale-001 | Vulnérabilité dans Fortinet FortiOS | 2023-03-14T00:00:00.000000 | 2023-03-14T00:00:00.000000 |
| certfr-2023-ale-015 | [MàJ] Campagne d'exploitation d'une vulnérabilité affectant VMware ESXi | 2023-02-03T00:00:00.000000 | 2023-03-14T00:00:00.000000 |
| certfr-2023-ale-003 | [MàJ] Compromission de l'application 3CX Desktop App | 2023-03-31T00:00:00.000000 | 2023-04-12T00:00:00.000000 |
| certfr-2023-ale-002 | [MàJ] Vulnérabilité dans Microsoft Outlook | 2023-03-15T00:00:00.000000 | 2023-05-11T00:00:00.000000 |
| certfr-2022-ale-014 | Multiples vulnérabilités dans AMI MegaRAC | 2022-12-16T00:00:00.000000 | 2023-09-11T00:00:00.000000 |
| certfr-2023-ale-004 | Vulnérabilité dans les produits Fortinet | 2023-06-13T00:00:00.000000 | 2023-09-11T00:00:00.000000 |
| certfr-2023-ale-005 | Synthèse sur l'exploitation d'une vulnérabilité dans MOVEit Transfer | 2023-07-05T00:00:00.000000 | 2023-09-11T00:00:00.000000 |
| certfr-2023-ale-009 | [MàJ] Multiples vulnérabilités dans Ivanti Endpoint Manager Mobile | 2023-07-26T00:00:00.000000 | 2023-09-15T00:00:00.000000 |
| certfr-2023-ale-006 | Vulnérabilité dans les produits Microsoft | 2023-12-12T00:00:00.000000 | 2023-07-12T00:00:00.000000 |
| certfr-2023-ale-007 | [MàJ] Vulnérabilité dans Zimbra Collaboration Suite | 2023-07-17T00:00:00.000000 | 2024-01-02T00:00:00.000000 |
| certfr-2023-ale-008 | [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway | 2023-07-19T00:00:00.000000 | 2024-01-02T00:00:00.000000 |
| certfr-2023-ale-010 | Multiples vulnérabilités dans Exim | 2023-10-02T00:00:00.000000 | 2024-02-16T00:00:00.000000 |
| certfr-2023-ale-011 | [MàJ] Multiples vulnérabilités dans Cisco IOS XE | 2023-10-17T00:00:00.000000 | 2024-02-16T00:00:00.000000 |
| certfr-2023-ale-012 | [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway | 2023-10-23T00:00:00.000000 | 2024-02-16T00:00:00.000000 |
| certfr-2023-ale-013 | Vulnérabilité dans Apache Struts 2 | 2023-12-13T00:00:00.000000 | 2024-02-16T00:00:00.000000 |
| certfr-2024-ale-002 | [MàJ] Multiples Vulnérabilités dans GitLab | 2024-01-12T00:00:00.000000 | 2024-02-22T00:00:00.000000 |
| certfr-2024-ale-001 | [MàJ] Multiples vulnérabilités dans Ivanti Connect Secure et Policy Secure Gateways | 2024-01-11T00:00:00.000000 | 2024-04-15T00:00:00.000000 |
| certfr-2024-ale-003 | [MàJ] Incident affectant les solutions AnyDesk | 2024-02-05T00:00:00.000000 | 2024-04-15T00:00:00.000000 |
| certfr-2024-ale-005 | [MàJ] Vulnérabilité dans Microsoft Outlook | 2024-02-15T00:00:00.000000 | 2024-04-15T00:00:00.000000 |
| certfr-2024-ale-004 | [MàJ] Vulnérabilité dans Fortinet FortiOS | 2024-02-09T00:00:00.000000 | 2024-07-01T00:00:00.000000 |
| ID | Description | Published | Updated |
|---|---|---|---|
| osv-2021-1085 | Stack-buffer-overflow in strcat | 2021-08-02T00:00:16.885038Z | 2022-04-13T03:04:32.568035Z |
| osv-2021-1135 | Heap-use-after-free in prvTidyInsertedToken | 2021-08-16T00:01:09.422775Z | 2022-04-13T03:04:32.573278Z |
| osv-2020-1427 | Use-of-uninitialized-value in TextEndsWithNewline | 2020-07-28T00:00:17.183105Z | 2022-04-13T03:04:32.578765Z |
| osv-2020-1440 | Use-of-uninitialized-value in PPrintText | 2020-07-28T00:00:19.153741Z | 2022-04-13T03:04:32.584249Z |
| osv-2021-1078 | Heap-buffer-overflow in prvTidygrowStack | 2021-07-31T00:00:35.042139Z | 2022-04-13T03:04:32.589780Z |
| osv-2021-977 | Dynamic-stack-buffer-overflow in std::__1::pair<unsigned int, unsigned int>::pair<unsigned int, unsigned int, fal | 2021-07-13T00:01:21.215619Z | 2022-04-13T03:04:32.606614Z |
| osv-2020-1565 | Heap-buffer-overflow in allocate_field | 2020-08-02T00:00:39.707050Z | 2022-04-13T03:04:32.612067Z |
| osv-2020-1567 | Heap-buffer-overflow in allocate_field | 2020-08-02T00:01:18.300186Z | 2022-04-13T03:04:32.617326Z |
| osv-2020-1564 | Use-of-uninitialized-value in pb_encode_varint | 2020-08-02T00:00:28.082567Z | 2022-04-13T03:04:32.622428Z |
| osv-2020-1176 | Use-of-uninitialized-value in put4bitbwtile | 2020-07-22T21:49:53.886180Z | 2022-04-13T03:04:32.628091Z |
| osv-2020-254 | Heap-buffer-overflow in pixReadFromTiffStream | 2020-06-26T00:00:11.669926Z | 2022-04-13T03:04:32.633763Z |
| osv-2020-8 | Heap-buffer-overflow in findNextBorderPixel | 2020-06-24T01:51:09.673990Z | 2022-04-13T03:04:32.639074Z |
| osv-2020-1253 | Heap-buffer-overflow in pixReadFromTiffStream | 2020-07-22T21:50:00.586423Z | 2022-04-13T03:04:32.644327Z |
| osv-2020-288 | Heap-use-after-free in pixReadMemBmp | 2020-06-30T00:00:46.704258Z | 2022-04-13T03:04:32.649721Z |
| osv-2020-141 | Heap-use-after-free in pixcmapDestroy | 2020-06-24T01:51:15.964708Z | 2022-04-13T03:04:32.654972Z |
| osv-2022-91 | Heap-buffer-overflow in pixCountArbInRect | 2022-01-26T00:01:54.834091Z | 2022-04-13T03:04:32.660483Z |
| osv-2021-223 | Heap-buffer-overflow in fdilate_1_56 | 2021-01-23T00:01:02.010626Z | 2022-04-13T03:04:32.666219Z |
| osv-2020-131 | Heap-buffer-overflow in pixGetRGBComponentCmap | 2020-06-24T01:51:15.520013Z | 2022-04-13T03:04:32.671359Z |
| osv-2020-1 | Use-of-uninitialized-value in numaCrossingsByThreshold | 2020-06-24T01:51:08.502422Z | 2022-04-13T03:04:32.676718Z |
| osv-2020-134 | Heap-buffer-overflow in pixFewColorsOctcubeQuantMixed | 2020-06-24T01:51:15.653519Z | 2022-04-13T03:04:32.681886Z |
| osv-2022-69 | Stack-buffer-overflow in pixCountPixels | 2022-01-21T00:01:32.742217Z | 2022-04-13T03:04:32.687605Z |
| osv-2020-1167 | Heap-buffer-overflow in tiffReadCallback | 2020-07-22T21:49:52.626033Z | 2022-04-13T03:04:32.693612Z |
| osv-2020-903 | Heap-buffer-overflow in rasteropGeneralLow | 2020-07-21T00:00:19.151415Z | 2022-04-13T03:04:32.699227Z |
| osv-2020-76 | Heap-use-after-free in pixAverageRasterScans | 2020-06-24T01:51:13.003871Z | 2022-04-13T03:04:32.704451Z |
| osv-2020-2128 | Heap-use-after-free in pixChangeRefcount | 2020-11-05T00:00:06.120314Z | 2022-04-13T03:04:32.709755Z |
| osv-2020-2018 | Heap-use-after-free in fpixChangeRefcount | 2020-10-12T00:00:40.582555Z | 2022-04-13T03:04:32.714945Z |
| osv-2020-2024 | Heap-buffer-overflow in pixFindHorizontalRuns | 2020-10-13T00:00:08.718271Z | 2022-04-13T03:04:32.720146Z |
| osv-2021-236 | Heap-use-after-free in DatasetAdd | 2021-01-25T00:00:22.782153Z | 2022-04-13T03:04:32.725819Z |
| osv-2020-19 | Heap-use-after-free in htp_connp_is_line_terminator | 2020-06-24T01:51:10.440277Z | 2022-04-13T03:04:32.731752Z |
| osv-2020-1346 | UNKNOWN WRITE in StatsIncr | 2020-07-22T21:50:08.261306Z | 2022-04-13T03:04:32.737543Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| rustsec-2021-0009 | panic safety issue in `impl TransformContent<S, D> for [S; (2|3|4)]` | 2021-01-10T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0010 | panic safety: double drop may happen within `util::{mutate, mutate2}` | 2021-01-12T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0011 | EventList's From<EventList> conversions can double drop on panic. | 2021-01-04T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0012 | Reading uninitialized memory can cause UB (`Deserializer::read_vec`) | 2021-01-02T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0013 | Soundness issues in `raw-cpuid` | 2021-01-20T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0014 | Record::read : Custom `Read` on uninitialized buffer may cause UB | 2021-01-26T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0015 | `Sectors::get` accesses unclaimed/uninitialized memory | 2021-01-06T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0016 | `IoReader::read()`: user-provided `Read` on uninitialized buffer may cause UB | 2021-01-26T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0017 | `Read` on uninitialized buffer may cause UB (`impl Walue for Vec<u8>`) | 2021-01-30T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0018 | insert_slice_clone can double drop if Clone panics. | 2021-02-03T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0019 | Multiple soundness issues | 2021-02-04T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0021 | `nb-connect` invalidly assumes the memory layout of std::net::SocketAddr | 2021-02-14T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0022 | Use-after-free in `subscript_next` and `subscript_prev` wrappers | 2021-02-09T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0023 | Incorrect check on buffer length when seeding RNGs | 2021-02-12T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0026 | XSS in `comrak` | 2021-02-21T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0027 | Loading a bgzip block can write out of bounds if size overflows. | 2021-01-07T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0028 | Multiple memory safety issues in insert_row | 2021-02-19T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0029 | Tape::take_bytes exposes uninitialized memory to a user-provided Read | 2021-02-17T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0030 | move_elements can double-free objects on panic | 2021-02-18T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0031 | split_at allows obtaining multiple mutable references to the same data | 2021-01-31T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0032 | Deserializing an array can drop uninitialized memory on panic | 2021-03-01T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0033 | push_cloned can drop uninitialized memory or double free on panic | 2021-02-22T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0035 | `quinn` invalidly assumes the memory layout of std::net::SocketAddr | 2021-03-04T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0036 | Intern<T>: Data race allowed on T | 2021-03-03T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0037 | Fix a use-after-free bug in diesels Sqlite backend | 2021-03-05T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0038 | Multiple memory safety issues | 2021-03-06T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0039 | panic in user-provided `Endian` impl triggers double drop of T | 2021-01-04T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0040 | panic safety: double drop or uninitialized drop of T upon panic | 2021-01-12T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0041 | Denial of service through parsing payloads with too big exponent | 2021-03-18T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2021-0042 | insert_many can drop elements twice on panic | 2021-01-26T12:00:00Z | 2023-06-13T13:10:24Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| alsa-2022:0891 | Moderate: httpd:2.4 security update | 2022-03-15T09:10:44Z | 2022-03-17T20:51:19Z |
| alsa-2022:1049 | Important: httpd:2.4 security update | 2022-03-24T10:44:04Z | 2022-03-25T14:16:40Z |
| alsa-2022:1065 | Important: openssl security update | 2022-03-28T07:46:07Z | 2022-03-28T07:46:07Z |
| alsa-2022:1287 | Important: firefox security update | 2022-04-08T13:40:04Z | 2022-04-11T14:42:15Z |
| alsa-2022:1301 | Important: thunderbird security update | 2022-04-11T13:29:58Z | 2022-04-13T07:37:22Z |
| alsa-2022:1442 | Important: java-11-openjdk security update | 2022-04-20T12:24:01Z | 2022-04-21T13:17:15Z |
| alsa-2022:1537 | Important: gzip security update | 2022-04-26T09:54:04Z | 2022-04-26T09:54:04Z |
| alsa-2022:1491 | Important: java-1.8.0-openjdk security update | 2022-04-25T15:17:09Z | 2022-04-26T12:47:29Z |
| alsa-2022:1552 | Moderate: vim security update | 2022-04-26T13:49:40Z | 2022-04-27T15:05:20Z |
| alsa-2020:5500 | Important: mariadb:10.3 security, bug fix, and enhancement update | 2020-12-15T16:03:43Z | 2022-04-28T12:47:02Z |
| alsa-2022:1556 | Moderate: mariadb:10.3 security and bug fix update | 2022-04-26T13:50:43Z | 2022-04-28T12:47:03Z |
| alsa-2022:1557 | Moderate: mariadb:10.5 security, bug fix, and enhancement update | 2022-04-26T13:50:46Z | 2022-04-28T12:56:03Z |
| alsa-2022:1565 | Moderate: container-tools:3.0 security and bug fix update | 2022-04-26T13:51:39Z | 2022-04-28T13:06:09Z |
| alsa-2022:1566 | Moderate: container-tools:2.0 security update | 2022-04-26T13:51:50Z | 2022-04-28T13:16:04Z |
| alsa-2020:4670 | Moderate: idm:DL1 and idm:client security, bug fix, and enhancement update | 2020-11-03T12:25:36Z | 2022-04-29T15:25:47Z |
| alsa-2022:1642 | Important: zlib security update | 2022-04-28T14:07:14Z | 2022-04-29T17:40:13Z |
| alsa-2022:1643 | Important: xmlrpc-c security update | 2022-04-28T14:07:17Z | 2022-04-29T17:40:13Z |
| alsa-2022:1705 | Important: firefox security update | 2022-05-04T11:04:22Z | 2022-05-05T12:27:24Z |
| alsa-2022:1730 | Important: thunderbird security update | 2022-05-05T13:32:08Z | 2022-05-07T14:41:41Z |
| alsa-2022:1759 | Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update | 2022-05-10T07:59:57Z | 2022-05-10T07:59:56Z |
| alsa-2022:1763 | Moderate: python39:3.9 and python39-devel:3.9 security update | 2022-05-10T08:00:02Z | 2022-05-10T08:00:01Z |
| alsa-2022:1764 | Moderate: python38:3.8 and python38-devel:3.8 security update | 2022-05-10T06:23:23Z | 2022-05-10T08:00:02Z |
| alsa-2022:1766 | Moderate: libreoffice security, bug fix, and enhancement update | 2022-05-10T08:00:06Z | 2022-05-10T08:00:05Z |
| alsa-2022:1777 | Moderate: webkit2gtk3 security, bug fix, and enhancement update | 2022-05-10T06:24:27Z | 2022-05-10T08:00:31Z |
| alsa-2022:1781 | Low: grafana security, bug fix, and enhancement update | 2022-05-10T06:25:23Z | 2022-05-10T08:00:35Z |
| alsa-2022:1792 | Moderate: flatpak security and bug fix update | 2022-05-10T08:01:39Z | 2022-05-10T08:01:39Z |
| alsa-2022:1793 | Moderate: container-tools:3.0 security and bug fix update | 2022-05-10T08:01:41Z | 2022-05-10T08:01:40Z |
| alsa-2022:1796 | Moderate: qt5-qtbase security update | 2022-05-10T08:01:44Z | 2022-05-10T08:01:44Z |
| alsa-2022:1810 | Moderate: libtiff security update | 2022-05-10T08:02:19Z | 2022-05-10T08:02:18Z |
| alsa-2022:1814 | Low: gnome-shell security and bug fix update | 2022-05-10T06:28:54Z | 2022-05-10T08:02:28Z |