Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
CVE-2025-21172
7.5 (3.1)
.NET and Visual Studio Remote Code Execution Vulnerability Microsoft
.NET 8.0
2025-01-14T18:04:38.469Z 2026-02-26T19:09:12.470Z
CVE-2024-58104
7.3 (3.1)
A vulnerability in the Trend Micro Apex One Secu… Trend Micro, Inc.
Trend Micro Apex One
2025-03-25T17:37:28.783Z 2026-02-26T19:09:12.303Z
CVE-2025-24410
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:33.017Z 2026-02-26T19:09:12.134Z
CVE-2025-21361
7.8 (3.1)
Microsoft Outlook Remote Code Execution Vulnerability Microsoft
Microsoft Office LTSC for Mac 2021
2025-01-14T18:04:43.571Z 2026-02-26T19:09:11.962Z
CVE-2024-58105
7.3 (3.1)
A vulnerability in the Trend Micro Apex One Secu… Trend Micro, Inc.
Trend Micro Apex One
2025-03-25T17:37:39.464Z 2026-02-26T19:09:11.806Z
CVE-2025-24412
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:36.216Z 2026-02-26T19:09:11.638Z
CVE-2025-21372
7.8 (3.1)
Microsoft Brokering File System Elevation of Privilege… Microsoft
Windows 11 Version 24H2
2025-01-14T18:04:44.826Z 2026-02-26T19:09:11.485Z
CVE-2025-24417
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:39.575Z 2026-02-26T19:09:11.348Z
CVE-2025-21402
7.8 (3.1)
Microsoft Office OneNote Remote Code Execution Vulnerability Microsoft
Microsoft Office LTSC for Mac 2021
2025-01-14T18:04:46.460Z 2026-02-26T19:09:11.196Z
CVE-2025-2783
8.3 (3.1)
Incorrect handle provided in unspecified circumst… Google
Chrome
2025-03-26T16:07:51.034Z 2026-02-26T19:09:11.033Z
CVE-2025-24418
8.1 (3.1)
Adobe Commerce | Improper Authorization (CWE-285) Adobe
Adobe Commerce
2025-02-11T17:37:41.236Z 2026-02-26T19:09:10.892Z
CVE-2025-21333
7.8 (3.1)
Windows Hyper-V NT Kernel Integration VSP Elevation of… Microsoft
Windows 10 Version 21H2
2025-01-14T18:04:50.962Z 2026-02-26T19:09:10.751Z
CVE-2025-30407
6.3 (3.0)
Local privilege escalation due to a binary hijack… Acronis
Acronis Cyber Protect Cloud Agent
2025-03-26T21:32:30.085Z 2026-02-26T19:09:10.614Z
CVE-2025-24438
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:42.877Z 2026-02-26T19:09:10.474Z
CVE-2025-21334
7.8 (3.1)
Windows Hyper-V NT Kernel Integration VSP Elevation of… Microsoft
Windows 10 Version 21H2
2025-01-14T18:04:51.608Z 2026-02-26T19:09:10.178Z
CVE-2025-20231
7.1 (3.1)
Sensitive Information Disclosure in Splunk Secure Gate… Splunk
Splunk Enterprise
2025-03-26T21:45:41.250Z 2026-02-26T19:09:10.032Z
CVE-2025-24413
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:49.367Z 2026-02-26T19:09:09.876Z
CVE-2025-21127
7.8 (3.1)
Photoshop Desktop | Uncontrolled Search Path Element (… Adobe
Photoshop Desktop
2025-01-14T18:53:10.445Z 2026-02-26T19:09:09.730Z
CVE-2025-20229
8 (3.1)
Remote Code Execution through file upload to “$SPLUNK_… Splunk
Splunk Enterprise
2025-03-26T22:05:09.352Z 2026-02-26T19:09:09.560Z
CVE-2025-24416
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:50.979Z 2026-02-26T19:09:09.364Z
CVE-2025-21122
7.8 (3.1)
Photoshop Desktop | Integer Underflow (Wrap or Wraparo… Adobe
Photoshop Desktop
2025-01-14T18:53:11.203Z 2026-02-26T19:09:09.209Z
CVE-2025-24411
8.1 (3.1)
Adobe Commerce | Improper Access Control (CWE-284) Adobe
Adobe Commerce
2025-02-11T17:37:51.772Z 2026-02-26T19:09:09.033Z
CVE-2025-24383
9.1 (3.1)
Dell Unity, version(s) 5.4 and prior, contain(s) … Dell
Unity
2025-03-28T01:24:02.790Z 2026-02-26T19:09:08.848Z
CVE-2025-21133
7.8 (3.1)
Illustrator on iPad | Integer Underflow (Wrap or Wrapa… Adobe
Illustrator on iPad
2025-01-14T19:05:26.082Z 2026-02-26T19:09:08.655Z
CVE-2025-24415
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:52.600Z 2026-02-26T19:09:08.510Z
CVE-2025-21134
7.8 (3.1)
Illustrator on iPad | Integer Underflow (Wrap or Wrapa… Adobe
Illustrator on iPad
2025-01-14T19:05:26.870Z 2026-02-26T19:09:08.367Z
CVE-2024-49565
7.8 (3.1)
Dell Unity, version(s) 5.4 and prior, contain(s) … Dell
Unity
2025-03-28T01:28:11.627Z 2026-02-26T19:09:08.205Z
CVE-2025-24434
9.1 (3.1)
Adobe Commerce | Incorrect Authorization (CWE-863) Adobe
Adobe Commerce
2025-02-11T17:37:53.501Z 2026-02-26T19:09:08.047Z
CVE-2024-53263
8.5 (4.0)
Git LFS permits exfiltration of credentials via crafte… git-lfs
git-lfs
2025-01-14T19:33:21.876Z 2026-02-26T19:09:07.898Z
CVE-2024-49564
7.8 (3.1)
Dell Unity, version(s) 5.4 and prior, contain(s) … Dell
Unity
2025-03-28T01:31:59.287Z 2026-02-26T19:09:07.752Z
ID CVSS Description Vendor Product Published Updated
ID Description Published Updated
fkie_cve-2019-25400 IPFire 2.21 Core Update 127 contains multiple reflected cross-site scripting vulnerabilities in the… 2026-02-18T22:16:23.343 2026-02-26T15:07:02.957
fkie_cve-2019-25399 IPFire 2.21 Core Update 127 contains multiple stored cross-site scripting vulnerabilities in the ex… 2026-02-18T22:16:23.177 2026-02-26T15:06:58.533
fkie_cve-2019-25398 IPFire 2.21 Core Update 127 contains multiple cross-site scripting vulnerabilities in the ovpnmain.… 2026-02-18T22:16:23.003 2026-02-26T15:06:53.747
fkie_cve-2019-25397 IPFire 2.21 Core Update 127 contains multiple reflected cross-site scripting vulnerabilities in the… 2026-02-18T22:16:22.833 2026-02-26T15:06:49.083
fkie_cve-2019-25396 IPFire 2.21 Core Update 127 contains a reflected cross-site scripting vulnerability in the updatexl… 2026-02-18T22:16:22.620 2026-02-26T15:06:06.327
fkie_cve-2024-4040 A server side template injection vulnerability in CrushFTP in all versions before 10.7.1 and 11.1.0… 2024-04-22T20:15:07.803 2026-02-26T15:04:22.973
fkie_cve-2024-28995 SolarWinds Serv-U was susceptible to a directory transversal vulnerability that would allow access … 2024-06-06T09:15:14.167 2026-02-26T15:04:20.280
fkie_cve-2024-1709 ConnectWise ScreenConnect 23.9.7 and prior are affected by an Authentication Bypass Using an Altern… 2024-02-21T16:15:50.420 2026-02-26T15:04:18.213
fkie_cve-2024-1212 Unauthenticated remote attackers can access the system through the LoadMaster management interface,… 2024-02-21T18:15:50.417 2026-02-26T15:04:16.093
fkie_cve-2023-6549 Improper Restriction of Operations within the Bounds of a Memory Buffer in NetScaler ADC and NetSca… 2024-01-17T21:15:11.690 2026-02-26T15:04:13.563
fkie_cve-2023-6448 Unitronics VisiLogic before version 9.9.00, used in Vision and Samba PLCs and HMIs, uses a default … 2023-12-05T18:15:12.643 2026-02-26T15:04:11.377
fkie_cve-2023-4211 A local non-privileged user can make improper GPU memory processing operations to gain access to a… 2023-10-01T18:15:09.927 2026-02-26T15:04:09.357
fkie_cve-2023-47565 An OS command injection vulnerability has been found to affect legacy QNAP VioStor NVR models runni… 2023-12-08T16:15:16.367 2026-02-26T15:04:06.667
fkie_cve-2023-36851 A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on SRX Se… 2023-09-27T15:18:54.877 2026-02-26T15:04:04.180
fkie_cve-2023-36847 A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on EX Ser… 2023-08-17T20:15:10.553 2026-02-26T15:04:01.340
fkie_cve-2023-36846 A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on SRX Se… 2023-08-17T20:15:10.457 2026-02-26T15:03:59.110
fkie_cve-2023-33009 A buffer overflow vulnerability in the notification function in Zyxel ATP series firmware versions … 2023-05-24T13:15:09.560 2026-02-26T15:03:56.120
fkie_cve-2023-2533 A Cross-Site Request Forgery (CSRF) vulnerability has been identified in PaperCut NG/MF, which, und… 2023-06-20T15:15:11.560 2026-02-26T15:03:53.690
fkie_cve-2023-28434 Minio is a Multi-Cloud Object Storage framework. Prior to RELEASE.2023-03-20T20-16-18Z, an attacker… 2023-03-22T21:15:18.427 2026-02-26T15:03:51.180
fkie_cve-2023-27524 Session Validation attacks in Apache Superset versions up to and including 2.0.1. Installations tha… 2023-04-24T16:15:07.843 2026-02-26T15:03:48.773
fkie_cve-2023-24489 A vulnerability has been discovered in the customer-managed ShareFile storage zones controller whic… 2023-07-10T22:15:09.197 2026-02-26T15:03:44.457
fkie_cve-2026-3201 USB HID protocol dissector memory exhaustion in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows… 2026-02-25T15:20:55.617 2026-02-26T14:49:01.050
fkie_cve-2026-3202 NTS-KE protocol dissector crash in Wireshark 4.6.0 to 4.6.3 allows denial of service 2026-02-25T15:20:55.790 2026-02-26T14:47:37.923
fkie_cve-2026-3203 RF4CE Profile protocol dissector crash in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denia… 2026-02-25T15:20:55.973 2026-02-26T14:41:13.870
fkie_cve-2026-2680 Reflected Cross-Site Scripting (XSS) on the A3factura web platform, in parameter 'customerVATNumber… 2026-02-26T13:16:17.253 2026-02-26T13:16:17.253
fkie_cve-2026-2679 Reflected Cross-Site Scripting (XSS) on the A3factura web platform, in parameter 'customerName', in… 2026-02-26T13:16:17.080 2026-02-26T13:16:17.080
fkie_cve-2026-2678 Reflected Cross-Site Scripting (XSS) on the A3factura web platform, in parameter 'name', parameter … 2026-02-26T13:16:16.917 2026-02-26T13:16:16.917
fkie_cve-2026-2677 Reflected Cross-Site Scripting (XSS) on the A3factura web platform, in parameter 'name', in 'a3fact… 2026-02-26T13:16:16.740 2026-02-26T13:16:16.740
fkie_cve-2025-36588 Dell Unisphere for PowerMax, version(s) 10.2.0.x, contain(s) an Improper Neutralization of Special … 2026-01-22T16:16:07.050 2026-02-26T13:16:16.577
fkie_cve-2025-14343 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnera… 2026-02-26T13:16:16.377 2026-02-26T13:16:16.377
ID Severity Description Published Updated
ghsa-3rhf-g27v-qpj7
9.9 (3.1)
Unrestricted Upload of File with Dangerous Type vulnerability in Bravis-Themes Bravis Addons bravis… 2026-02-20T18:31:38Z 2026-02-25T15:31:36Z
ghsa-23vm-r6m3-8q9g
6.5 (3.1)
Missing Authorization vulnerability in add-ons.org PDF for Elementor Forms + Drag And Drop Template… 2026-02-20T18:31:38Z 2026-02-25T15:31:36Z
ghsa-5vhq-wv6w-vj48
7.8 (3.1)
Buffer Over-read in GitHub repository vim/vim prior to 9.0.0217. 2022-08-18T00:00:17Z 2026-02-25T15:31:35Z
ghsa-353c-4p9g-7m63
7.8 (3.1)
Dokan, versions between 1.0.0.5000 and 1.2.0.1000, are vulnerable to a stack-based buffer overflow … 2022-05-13T01:16:11Z 2026-02-25T15:31:32Z
ghsa-mhc9-48gj-9gp3
5.3 (4.0)
Fickling has safety check bypass via REDUCE+BUILD opcode sequence 2026-02-25T15:24:18Z 2026-02-25T15:24:18Z
ghsa-273h-m46v-96q4
3.7 (3.1)
ImageMagick: Integer Overflow in PSB (PSD v2) RLE decoding path causes heap Out of Bounds reads for… 2026-02-25T15:20:15Z 2026-02-25T15:20:16Z
ghsa-3c9r-837r-qqm4
8.7 (4.0)
esm.sh is vulnerable to full-response SSRF 2026-02-25T15:19:41Z 2026-02-25T15:19:41Z
ghsa-j7j6-7hfx-5522
7.5 (3.1)
Duplicate Advisory: Inconsistent Interpretation of HTTP Requests in Waitress 2022-05-24T17:07:06Z 2026-02-25T14:07:30Z
ghsa-qvwr-8759-6g2c
6.5 (3.1)
A security flaw was identified in the Orchestrator Plugin of Red Hat Developer Hub (Backstage). The… 2026-02-25T12:30:29Z 2026-02-25T12:30:29Z
ghsa-pgjf-9qg9-f4gv
7.0 (4.0)
An Insecure Temporary File vulnerability in openSUSE sdbootutil allows local users to pre-create a … 2026-02-25T12:30:29Z 2026-02-25T12:30:29Z
ghsa-hpp6-437r-vmvj
6.4 (3.1)
The Secure Copy Content Protection and Content Locking plugin for WordPress is vulnerable to Stored… 2026-02-25T12:30:29Z 2026-02-25T12:30:29Z
ghsa-hjgq-ff5j-5v2m
5.5 (3.1)
A flaw was found in the udisks storage management daemon that allows unprivileged users to back up … 2026-02-25T12:30:29Z 2026-02-25T12:30:29Z
ghsa-fw7p-cggr-9xm6
7.1 (3.1)
A flaw was found in the udisks storage management daemon that exposes a privileged D-Bus API for re… 2026-02-25T12:30:29Z 2026-02-25T12:30:29Z
ghsa-4qpc-c9r6-9jrx
4.3 (3.1)
The Disable Admin Notices – Hide Dashboard Notifications plugin for WordPress is vulnerable to Cros… 2026-02-25T12:30:28Z 2026-02-25T12:30:29Z
ghsa-x4x7-v8wj-3952
4.3 (3.1)
The WP Recipe Maker plugin for WordPress is vulnerable to unauthorized access of data due to a miss… 2026-02-25T12:30:28Z 2026-02-25T12:30:28Z
ghsa-wrj5-2cc6-7p8j
4.3 (3.1)
The Post Duplicator plugin for WordPress is vulnerable to unauthorized arbitrary protected post met… 2026-02-25T12:30:28Z 2026-02-25T12:30:28Z
ghsa-xcq6-x53r-q98g
8.8 (3.1)
7.4 (4.0)
A security flaw has been discovered in Tenda F453 1.0.0.3. The impacted element is the function for… 2026-02-25T09:30:26Z 2026-02-25T09:30:27Z
ghsa-v72r-wpp2-8369
7.5 (3.1)
The WPGSI: Spreadsheet Integration plugin for WordPress is vulnerable to unauthorized modification … 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-rjq9-488h-qv7q
3.5 (3.1)
2.0 (4.0)
A flaw has been found in SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System… 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-p7fh-wf7x-3xhv
5.0 (3.1)
The Responsive Lightbox & Gallery plugin for WordPress is vulnerable to Server-Side Request Forgery… 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-mf59-ffwh-5qhw
2.4 (3.1)
1.9 (4.0)
A vulnerability was detected in SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management… 2026-02-25T09:30:26Z 2026-02-25T09:30:27Z
ghsa-jv27-w2xj-6cq3
8.8 (3.1)
The Advanced Woo Labels plugin for WordPress is vulnerable to Remote Code Execution in all versions… 2026-02-25T09:30:26Z 2026-02-25T09:30:27Z
ghsa-cv4r-qfj3-hv3v
8.8 (3.1)
7.4 (4.0)
A security vulnerability has been detected in Tenda F453 1.0.0.3. This impacts the function fromSaf… 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-cf59-33h4-g872
8.8 (3.1)
7.4 (4.0)
A weakness has been identified in Tenda F453 1.0.0.3. This affects the function fromNatStaticSettin… 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-7gq2-xp8m-v3r5
8.8 (3.1)
7.4 (4.0)
A vulnerability was identified in Tenda F453 1.0.0.3. The affected element is the function fromRout… 2026-02-25T09:30:26Z 2026-02-25T09:30:27Z
ghsa-5825-95cg-hj5r
7.5 (3.1)
The Geo Mashup plugin for WordPress is vulnerable to SQL Injection via the 'sort' parameter in all … 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-f8m8-w7hg-xv97
6.4 (3.1)
The Rise Blocks – A Complete Gutenberg Page Builder plugin for WordPress is vulnerable to Stored Cr… 2026-02-25T09:30:26Z 2026-02-25T09:30:26Z
ghsa-r9gx-29q7-44rw
7.3 (3.1)
5.5 (4.0)
A vulnerability was determined in SourceCodester Simple and Nice Shopping Cart Script 1.0. This imp… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-r58x-2c7j-vfm9
7.3 (3.1)
5.5 (4.0)
A vulnerability has been found in itsourcecode Document Management System 1.0. Impacted is an unkno… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-r3qv-6v6v-622r
7.3 (3.1)
5.5 (4.0)
A vulnerability was detected in itsourcecode College Management System 1.0. This vulnerability affe… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ID Severity Description Package Published Updated
pysec-2024-48
Versions of the package black before 24.3.0 are vulnerable to Regular Expression Denial o… black 2024-03-19T05:15:00+00:00 2024-03-19T11:18:50.379002+00:00
pysec-2024-47
In Django 3.2 before 3.2.25, 4.2 before 4.2.11, and 5.0 before 5.0.3, the django.utils.te… django 2024-03-15T20:15:00+00:00 2024-03-15T23:20:34.975097+00:00
pysec-2024-46
Apache Airflow, versions 2.8.0 through 2.8.2, has a vulnerability that allows an authenti… apache-airflow 2024-03-14T09:15:00+00:00 2024-03-14T11:19:09.515892+00:00
pysec-2024-45
LangChain through 0.1.10 allows ../ directory traversal by an actor who is able to contro… langchain-core 2024-03-04T00:15:00+00:00 2024-03-13T23:20:07.486731+00:00
pysec-2024-44
In RPyC before 6.0.0, when a server exposes a method that calls the attribute named __arr… rpyc 2024-03-12T16:15:00+00:00 2024-03-12T19:19:21.886478+00:00
pysec-2024-43
LangChain through 0.1.10 allows ../ directory traversal by an actor who is able to contro… langchain 2024-03-04T00:15:00+00:00 2024-03-05T10:22:15.555734+00:00
pysec-2024-42
Apache Airflow, versions before 2.8.2, has a vulnerability that allows authenticated Ops … apache-airflow 2024-03-01T11:15:00+00:00 2024-03-01T14:20:34.498842+00:00
pysec-2023-259
9.8 (3.1)
A vulnerability, which was classified as critical, has been found in MicroPython 1.21.0/1… micropython-select 2023-12-29T05:15:00+00:00 2024-02-29T07:20:31.851255+00:00
pysec-2023-258
9.8 (3.1)
A vulnerability, which was classified as critical, has been found in MicroPython 1.21.0/1… micropython-os 2023-12-29T05:15:00+00:00 2024-02-29T07:20:31.721783+00:00
pysec-2023-257
9.8 (3.1)
A vulnerability, which was classified as critical, has been found in MicroPython 1.21.0/1… micropython-io 2023-12-29T05:15:00+00:00 2024-02-29T07:20:31.603749+00:00
pysec-2023-256
9.8 (3.1)
A vulnerability, which was classified as critical, has been found in MicroPython 1.21.0/1… micropython-copy 2023-12-29T05:15:00+00:00 2024-02-29T07:20:31.464203+00:00
pysec-2023-255
8.1 (3.1)
Command Injection in GitHub repository gradio-app/gradio prior to main. gradio 2023-12-14T14:15:00+00:00 2024-02-28T16:22:37.359017+00:00
pysec-2024-41
diffoscope before 256 allows directory traversal via an embedded filename in a GPG file. … diffoscope 2024-02-27T02:15:00+00:00 2024-02-27T07:20:27.954412+00:00
pysec-2024-40
orjson.loads in orjson before 3.9.15 does not limit recursion for deeply nested JSON documents. orjson 2024-02-26T16:28:00+00:00 2024-02-26T18:22:26.039698+00:00
pysec-2024-39
Versions of the package fastecdsa before 2.3.2 are vulnerable to Use of Uninitialized Var… fastecdsa 2024-02-24T05:15:00+00:00 2024-02-24T07:19:09.418536+00:00
pysec-2023-254
7.5 (3.1)
cryptography is a package designed to expose cryptographic primitives and recipes to Pyth… cryptography 2023-11-29T19:15:00+00:00 2024-02-17T07:18:27.688636+00:00
pysec-2024-38
7.5 (3.1)
FastAPI is a web framework for building APIs with Python 3.8+ based on standard Python ty… fastapi 2024-02-05T15:15:00+00:00 2024-02-16T18:22:32.607118+00:00
pysec-2024-37
6.5 (3.1)
nonebot2 is a cross-platform Python asynchronous chatbot framework written in Python. Thi… nonebot2 2024-02-09T23:15:00+00:00 2024-02-16T16:22:37.389642+00:00
pysec-2022-43059
5.5 (3.1)
AIOHTTP 3.8.1 can report a "ValueError: Invalid IPv6 URL" outcome, which can lead to a De… aiohttp 2022-06-23T17:15:00Z 2024-02-16T13:47:54.655573Z
pysec-2024-36
5.5 (3.1)
An information disclosure flaw was found in ansible-core due to a failure to respect the … ansible-core 2024-02-06T12:15:00+00:00 2024-02-14T07:20:09.911618+00:00
pysec-2023-253
8.1 (3.1)
Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.9.2. mlflow 2023-12-15T01:15:00+00:00 2024-02-14T00:26:12.242703+00:00
pysec-2024-35
5.4 (3.1)
Versions of the package dash-core-components before 2.13.0; all versions of the package d… dash 2024-02-02T05:15:00+00:00 2024-02-10T07:18:43.563257+00:00
pysec-2024-12
LlamaIndex (aka llama_index) through 0.9.34 allows SQL injection via the Text-to-SQL feat… llama-index 2024-01-22T01:15:00Z 2024-02-10T01:22:25.611009Z
pysec-2024-34
9.8 (3.1)
The vantage6 technology enables to manage and deploy privacy enhancing technologies like … vantage6-server 2024-01-30T16:15:00+00:00 2024-02-08T20:20:16.896186+00:00
pysec-2024-33
9.8 (3.1)
The vantage6 technology enables to manage and deploy privacy enhancing technologies like … vantage6-node 2024-01-30T16:15:00+00:00 2024-02-08T20:20:16.842528+00:00
pysec-2024-32
4.3 (3.1)
The vantage6 technology enables to manage and deploy privacy enhancing technologies like … vantage6 2024-01-30T16:15:00+00:00 2024-02-08T18:22:28.342089+00:00
pysec-2024-31
3.7 (3.1)
The vantage6 technology enables to manage and deploy privacy enhancing technologies like … vantage6 2024-01-30T16:15:00+00:00 2024-02-08T18:22:28.276390+00:00
pysec-2024-30
8.8 (3.1)
The vantage6 technology enables to manage and deploy privacy enhancing technologies like … vantage6 2024-01-30T16:15:00+00:00 2024-02-08T18:22:28.210087+00:00
pysec-2024-29
4.9 (3.1)
OctoPrint is a web interface for 3D printer.s OctoPrint versions up until and including 1… octoprint 2024-01-31T18:15:00+00:00 2024-02-08T07:19:40.535297+00:00
pysec-2024-28
An issue was discovered in Django 3.2 before 3.2.24, 4.2 before 4.2.10, and Django 5.0 be… django 2024-02-06T22:16:00+00:00 2024-02-07T00:25:46.826634+00:00
ID Description Type
ID Description Updated
gsd-2024-33100 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.755796Z
gsd-2024-33431 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.755593Z
gsd-2024-33143 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.755388Z
gsd-2024-33190 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.755195Z
gsd-2024-33251 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.755000Z
gsd-2024-33134 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.754805Z
gsd-2024-33118 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.754600Z
gsd-2024-33128 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.754393Z
gsd-2024-33068 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.754188Z
gsd-2024-33421 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.753988Z
gsd-2024-33368 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.753782Z
gsd-2024-33464 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.753578Z
gsd-2024-33439 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.753324Z
gsd-2024-33258 Jerryscript commit ff9ff8f was discovered to contain a segmentation violation via the com… 2024-04-24T05:02:09.753118Z
gsd-2024-33208 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.752907Z
gsd-2024-33229 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.752692Z
gsd-2024-33090 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.752483Z
gsd-2024-33390 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.752268Z
gsd-2024-33361 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.752033Z
gsd-2024-33287 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.751819Z
gsd-2024-33450 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.751570Z
gsd-2024-33125 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.749323Z
gsd-2024-33188 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.749121Z
gsd-2024-33486 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.748923Z
gsd-2024-33215 Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vu… 2024-04-24T05:02:09.748476Z
gsd-2024-33192 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.748196Z
gsd-2024-33161 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.747995Z
gsd-2024-33423 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.747796Z
gsd-2024-33248 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.747603Z
gsd-2024-33447 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.747407Z
ID Description Published Updated
mal-2026-601 Malicious code in tableautes (PyPI) 2026-01-29T10:08:47Z 2026-01-29T11:16:21Z
mal-2026-595 Malicious code in morty-package (PyPI) 2026-01-28T19:48:56Z 2026-01-28T19:48:56Z
mal-2026-562 Malicious code in tabullates (PyPI) 2026-01-28T07:42:32Z 2026-01-28T19:13:29Z
mal-2026-548 Malicious code in tabletas (PyPI) 2026-01-27T18:26:01Z 2026-01-28T19:13:29Z
mal-2026-492 Malicious code in tableates (PyPI) 2026-01-23T13:57:05Z 2026-01-28T19:13:29Z
mal-2026-490 Malicious code in tabletes (PyPI) 2026-01-23T10:19:25Z 2026-01-28T19:13:29Z
mal-2026-441 Malicious code in spellcheckpy (PyPI) 2026-01-21T08:10:26Z 2026-01-28T19:13:29Z
mal-2026-375 Malicious code in spellcheckerpy (PyPI) 2026-01-20T19:06:25Z 2026-01-28T19:13:29Z
mal-2025-191535 Malicious code in tableate (PyPI) 2025-11-25T11:06:37Z 2026-01-28T19:13:29Z
mal-2025-191534 Malicious code in tablates (PyPI) 2025-11-26T10:20:42Z 2026-01-28T19:13:29Z
mal-2025-191533 Malicious code in spellcheckers (PyPI) 2025-11-15T18:49:10Z 2026-01-28T19:13:29Z
mal-2026-593 Malicious code in pypi-package-explore (PyPI) 2026-01-28T17:56:33Z 2026-01-28T17:56:33Z
mal-2026-590 Malicious code in pytorch-mutex (PyPI) 2026-01-28T16:28:32Z 2026-01-28T17:47:09Z
mal-2026-493 Malicious code in oxnoxon (npm) 2026-01-23T17:23:01Z 2026-01-28T17:27:46Z
mal-2026-495 Malicious code in h-jsencrypt (npm) 2026-01-23T18:12:42Z 2026-01-28T17:27:44Z
mal-2026-494 Malicious code in eits (npm) 2026-01-23T18:12:42Z 2026-01-28T17:27:43Z
mal-2026-484 Malicious code in translation-note (npm) 2026-01-23T01:13:12Z 2026-01-28T08:26:42Z
mal-2026-489 Malicious code in rank4222wun (npm) 2026-01-23T08:25:42Z 2026-01-28T06:49:15Z
mal-2024-2814 Malicious code in overstock-logger (npm) 2024-06-25T12:54:37Z 2026-01-28T06:49:14Z
mal-2026-547 Malicious code in solhint-plugin-hyperlane (PyPI) 2026-01-27T09:15:48Z 2026-01-27T09:15:48Z
mal-2026-198 Malicious code in shopee-chat (npm) 2026-01-11T13:21:17Z 2026-01-27T08:27:34Z
mal-2026-480 Malicious code in kwp-shared-components-production-system (npm) 2026-01-23T01:13:12Z 2026-01-27T08:27:32Z
mal-2026-266 Malicious code in @wbgo/shared (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:30Z
mal-2026-265 Malicious code in @wb-team/uikit-myteam-web (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:30Z
mal-2026-263 Malicious code in @spx-workforceops/shared-vue (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:29Z
mal-2026-262 Malicious code in @spx-smartsorting/vue (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:29Z
mal-2026-261 Malicious code in @spx-delivery/react (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:29Z
mal-2026-260 Malicious code in @servicepoint/vue-project (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:29Z
mal-2026-259 Malicious code in @riag-libs/pattern-library-react-hooks (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:29Z
mal-2026-249 Malicious code in @flipster/utils (npm) 2026-01-13T08:19:50Z 2026-01-27T08:27:29Z
ID Description Published Updated
bit-libpython-2024-11168 Improper validation of IPv6 and IPvFuture addresses 2025-08-11T13:52:38.571Z 2025-11-06T13:25:46.476Z
bit-libpython-2024-0450 Quoted zip-bomb protection for zipfile 2025-08-11T13:52:36.704Z 2025-11-06T13:25:46.476Z
bit-libpython-2024-0397 Memory race condition in ssl.SSLContext certificate store methods 2025-08-11T13:52:34.942Z 2025-11-06T13:25:46.476Z
bit-libpython-2023-6597 2025-08-11T13:52:33.085Z 2025-11-06T13:25:46.476Z
bit-libpython-2023-40217 2025-08-11T13:52:27.063Z 2025-11-06T13:25:46.476Z
bit-libpython-2023-27043 2025-08-11T13:52:20.772Z 2025-11-06T13:25:46.476Z
bit-libpython-2023-24329 2025-08-11T13:52:18.649Z 2025-11-06T13:25:46.476Z
bit-libpython-2022-42919 2025-08-11T13:52:06.949Z 2025-11-06T13:25:46.476Z
bit-libpython-2022-0391 2025-08-11T13:52:00.191Z 2025-11-06T13:25:46.476Z
bit-libpython-2021-4189 2025-08-11T13:51:57.853Z 2025-11-06T13:25:46.476Z
bit-libpython-2021-3737 2025-08-11T13:51:55.583Z 2025-11-06T13:25:46.476Z
bit-libpython-2021-3733 2025-08-11T13:51:53.167Z 2025-11-06T13:25:46.476Z
bit-libpython-2021-3426 2025-08-11T13:51:50.836Z 2025-11-06T13:25:46.476Z
bit-libpython-2021-29921 2025-08-11T13:51:46.493Z 2025-11-06T13:25:46.476Z
bit-libpython-2021-28861 2025-08-11T13:51:44.193Z 2025-11-06T13:25:46.476Z
bit-libpython-2020-10735 2025-08-11T13:51:26.807Z 2025-11-06T13:25:46.476Z
bit-libphp-2025-6491 NULL Pointer Dereference in PHP SOAP Extension via Large XML Namespace Prefix 2025-08-11T13:54:53.967Z 2025-11-06T13:25:46.476Z
bit-libphp-2025-1861 Stream HTTP wrapper truncates redirect location to 1024 bytes 2025-08-11T13:54:51.879Z 2025-11-06T13:25:46.476Z
bit-libphp-2025-1736 Stream HTTP wrapper header check might omit basic auth header 2025-08-11T13:54:49.369Z 2025-11-06T13:25:46.476Z
bit-libphp-2025-1735 pgsql extension does not check for errors during escaping 2025-08-11T13:54:47.127Z 2025-11-06T13:25:46.476Z
bit-libphp-2025-1734 Streams HTTP wrapper does not fail for headers with invalid name and no colon 2025-08-11T13:54:44.717Z 2025-11-06T13:25:46.476Z
bit-libphp-2025-1220 Null byte termination in hostnames 2025-08-11T13:54:42.636Z 2025-11-06T13:25:46.476Z
bit-libphp-2025-1219 libxml streams use wrong content-type header when requesting a redirected resource 2025-08-11T13:54:40.311Z 2025-11-06T13:25:46.476Z
bit-libphp-2025-1217 Header parser of http stream wrapper does not handle folded headers 2025-08-11T13:54:37.988Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-9026 PHP-FPM logs from children may be altered 2025-08-11T13:54:35.937Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-8932 OOB access in ldap_escape 2025-08-11T13:54:33.535Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-8929 Leak partial content of the heap through heap buffer over-read in mysqlnd 2025-08-11T13:54:31.347Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-8927 cgi.force_redirect configuration is bypassable due to the environment variable collision 2025-08-11T13:54:29.171Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-8926 PHP CGI Parameter Injection Vulnerability (CVE-2024-4577 bypass) 2025-08-11T13:54:27.013Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-8925 Erroneous parsing of multipart form data 2025-08-11T13:54:25.174Z 2025-11-06T13:25:46.476Z
ID Description Updated
ID Description Published Updated
jvndb-2021-000088 Multiple vulnerabilities in Cybozu Remote Service 2021-09-30T16:03+09:00 2024-04-08T18:09+09:00
jvndb-2024-000038 Multiple vulnerabilities in WordPress Plugin "Ninja Forms" 2024-04-08T13:44+09:00 2024-04-08T13:44+09:00
jvndb-2022-002765 Multiple vulnerabilities in OMRON CX-Programmer 2022-11-28T15:40+09:00 2024-04-05T18:15+09:00
jvndb-2023-002786 Multiple vulnerabilities in OMRON CX-Programmer 2023-08-03T13:42+09:00 2024-04-05T17:39+09:00
jvndb-2024-000037 Multiple vulnerabilities in NEC Aterm series 2024-04-05T14:53+09:00 2024-04-05T14:53+09:00
jvndb-2024-003067 Multiple vulnerabilities in PLANEX COMMUNICATIONS wireless LAN routers 2024-04-05T14:17+09:00 2024-04-05T14:17+09:00
jvndb-2023-000077 Fujitsu Software Infrastructure Manager (ISM) stores sensitive information in cleartext 2023-08-04T17:31+09:00 2024-04-03T17:19+09:00
jvndb-2024-003051 FURUNO SYSTEMS Managed Switch ACERA 9010 running in non MS mode with the initial configuration has no password 2024-04-02T18:03+09:00 2024-04-02T18:03+09:00
jvndb-2024-003050 KEYENCE VT STUDIO may insecurely load Dynamic Link Libraries 2024-04-01T14:44+09:00 2024-04-01T14:44+09:00
jvndb-2023-000071 Multiple vulnerabilities in multiple ELECOM wireless LAN routers and wireless LAN repeaters 2023-07-11T15:37+09:00 2024-03-29T15:28+09:00
jvndb-2024-000036 "Yahoo! JAPAN" App vulnerable to cross-site scripting 2024-03-29T13:28+09:00 2024-03-29T13:28+09:00
jvndb-2023-000079 Multiple vulnerabilities in Special Interest Group Network for Analysis and Liaison's API 2023-08-07T15:15+09:00 2024-03-28T18:08+09:00
jvndb-2023-000081 "Rikunabi NEXT" App for Android fails to restrict custom URL schemes properly 2023-08-09T12:45+09:00 2024-03-28T18:01+09:00
jvndb-2023-000080 "FFRI yarai" and "FFRI yarai Home and Business Edition" handle exceptional conditions improperly 2023-08-07T17:39+09:00 2024-03-28T17:54+09:00
jvndb-2023-000078 Multiple vulnerabilities in Proself 2023-08-18T13:47+09:00 2024-03-28T17:43+09:00
jvndb-2024-003047 SEEnergy SVR-116 vulnerable to OS command injection 2024-03-28T11:38+09:00 2024-03-28T11:38+09:00
jvndb-2024-003026 Security information for Hitachi Disk Array Systems 2024-03-27T15:52+09:00 2024-03-27T15:52+09:00
jvndb-2024-000035 Multiple vulnerabilities in WordPress Plugin "Survey Maker" 2024-03-27T14:48+09:00 2024-03-27T14:48+09:00
jvndb-2024-000034 SonicDICOM Media Viewer may insecurely load Dynamic Link Libraries 2024-03-27T14:31+09:00 2024-03-27T14:31+09:00
jvndb-2023-000086 Rakuten WiFi Pocket vulnerable to improper authentication 2023-08-23T12:42+09:00 2024-03-27T13:43+09:00
jvndb-2024-000905 Mini Thread vulnerable to cross-site scripting 2024-03-26T17:43+09:00 2024-03-26T17:43+09:00
jvndb-2023-012042 WordPress plugin "MW WP Form" vulnerable to arbitrary file upload 2023-12-15T15:17+09:00 2024-03-26T17:39+09:00
jvndb-2023-000083 Multiple vulnerabilities in LuxCal Web Calendar 2023-08-21T13:29+09:00 2024-03-26T17:09+09:00
jvndb-2024-000906 ffBull vulnerable to OS command injection 2024-03-26T16:07+09:00 2024-03-26T16:07+09:00
jvndb-2024-000900 "EasyRange" may insecurely load executable files 2024-03-26T15:50+09:00 2024-03-26T15:50+09:00
jvndb-2024-000907 0ch BBS Script (0ch) vulnerable to cross-site scripting 2024-03-26T15:35+09:00 2024-03-26T15:35+09:00
jvndb-2024-000902 TvRock vulnerable to cross-site scripting 2024-03-26T14:27+09:00 2024-03-26T14:27+09:00
jvndb-2024-000904 WebProxy vulnerable to OS command injection 2024-03-26T14:19+09:00 2024-03-26T14:19+09:00
jvndb-2023-025113 BUFFALO LinkStation 200 series vulnerable to arbitrary code execution 2024-03-25T18:16+09:00 2024-03-25T18:16+09:00
jvndb-2023-000082 EC-CUBE 2 series vulnerable to cross-site scripting 2023-08-17T15:12+09:00 2024-03-25T18:07+09:00
ID Description Updated
ID Description
ID Description Published Updated
cnvd-2026-04664 Panda3d栈溢出漏洞 2026-01-14 2026-01-16
cnvd-2026-04663 PHPEMS跨站请求伪造漏洞 2026-01-15 2026-01-16
cnvd-2026-04542 PHPEMS竞争条件问题漏洞 2026-01-14 2026-01-16
cnvd-2026-04541 Open5GS GTPv2-C拒绝服务漏洞 2026-01-15 2026-01-16
cnvd-2026-04540 Open5GS GTPv2-C F-TEID s11-handler.c sgwc_s11_handle_create_session_request拒绝服务漏洞 2026-01-15 2026-01-16
cnvd-2026-04539 Tenda AX-1806路由器栈溢出漏洞 2026-01-16 2026-01-16
cnvd-2026-04241 Kentico Xperience CRLF注入漏洞 2025-12-25 2026-01-16
cnvd-2026-04240 Kentico Xperience Content-Type跨站脚本漏洞 2025-12-25 2026-01-16
cnvd-2026-04239 Apple macOS Tahoe安全绕过漏洞(CNVD-2026-04239) 2025-12-19 2026-01-16
cnvd-2026-04238 Apple macOS Tahoe信息泄露漏洞(CNVD-2026-04238) 2025-12-25 2026-01-16
cnvd-2026-04237 Apple macOS Tahoe存在未明漏洞(CNVD-2026-04237) 2025-12-25 2026-01-16
cnvd-2026-04236 Apple macOS Tahoe信息泄露漏洞(CNVD-2026-04236) 2025-12-25 2026-01-16
cnvd-2026-04235 Apple macOS Tahoe信息泄露漏洞(CNVD-2026-04235) 2025-12-25 2026-01-16
cnvd-2026-04234 Apple macOS Tahoe存在未明漏洞(CNVD-2026-04234) 2025-12-25 2026-01-16
cnvd-2026-04233 Apple macOS Tahoe信息泄露漏洞(CNVD-2026-04233) 2025-12-25 2026-01-16
cnvd-2026-04232 Apple macOS Tahoe存在未明漏洞(CNVD-2026-04232) 2025-12-25 2026-01-16
cnvd-2026-04231 Apple macOS Tahoe拒绝服务漏洞 2025-12-25 2026-01-16
cnvd-2026-04230 Apple macOS Tahoe信息泄露漏洞 2025-12-25 2026-01-16
cnvd-2026-04229 Apple macOS Tahoe安全绕过漏洞 2025-12-25 2026-01-16
cnvd-2026-04226 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04226) 2025-12-15 2026-01-16
cnvd-2026-04225 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04225) 2025-12-15 2026-01-16
cnvd-2026-04224 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04224) 2025-12-15 2026-01-16
cnvd-2026-04223 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04223) 2025-12-15 2026-01-16
cnvd-2026-04222 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04222) 2025-12-15 2026-01-16
cnvd-2026-04221 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04221) 2025-12-15 2026-01-16
cnvd-2026-04220 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04220) 2025-12-15 2026-01-16
cnvd-2026-04219 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04219) 2025-12-15 2026-01-16
cnvd-2026-04218 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04218) 2025-12-15 2026-01-16
cnvd-2026-04217 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04217) 2025-12-15 2026-01-16
cnvd-2026-04216 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04216) 2025-12-15 2026-01-16
ID Description Published Updated
bdu:2025-10957 Уязвимость функции mod_hdcp_hdcp1_enable_encryption() ядра операционной системы Linux , п… 11.09.2025 16.02.2026
bdu:2025-10956 Уязвимость функции tegra_crtc_reset() ядра операционной системы Linux, позволяющая наруши… 11.09.2025 16.02.2026
bdu:2025-10955 Уязвимость компонента net ядра операционной системы Linux, позволяющая нарушителю вызвать… 11.09.2025 16.02.2026
bdu:2025-10954 Уязвимость компонента i2c ядра операционной системы Linux, позволяющая нарушителю вызвать… 11.09.2025 16.02.2026
bdu:2025-10953 Уязвимость функции ims_pcu_flash_firmware ядра операционной системы Linux, позволяющая на… 11.09.2025 16.02.2026
bdu:2025-10952 Уязвимость функции nfsd4_spo_must_allow() ядра операционной системы Linux, позволяющая на… 11.09.2025 16.02.2026
bdu:2025-10931 Уязвимость функции SRBRoot::addTag() библиотеки для работы с Unicode (ICU), позволяющая н… 10.09.2025 16.02.2026
bdu:2025-10930 Уязвимость функции bytes.decode() интерпретатора языка программирования Python (CPython),… 10.09.2025 16.02.2026
bdu:2025-10925 Уязвимость функции debug_type_samep() компонента objdump программного средства разработки… 10.09.2025 16.02.2026
bdu:2025-10924 Уязвимость функции elf_gc_sweep() компонента ld программного средства разработки GNU Binu… 10.09.2025 16.02.2026
bdu:2025-10923 Уязвимость функции display_info() компонента objdump программного средства разработки GNU… 10.09.2025 16.02.2026
bdu:2025-10907 Уязвимость функции g_date_time_new_from_iso8601() библиотеки Glib, позволяющая нарушителю… 10.09.2025 16.02.2026
bdu:2025-10870 Уязвимость функции handle_posix_cpu_timers ядра операционной системы Linux, позволяющая н… 08.09.2025 16.02.2026
bdu:2025-10805 Уязвимость функции crypt_message() в модуле fs/smb/client/smb2ops.c поддержки клиента SMB… 05.09.2025 16.02.2026
bdu:2025-10804 Уязвимость функции do_insn_ioctl() компонента comedi ядра операционной системы Linux, поз… 05.09.2025 16.02.2026
bdu:2025-10802 Уязвимость функции netif_napi_del() ядра операционной системы Linux, позволяющая нарушите… 05.09.2025 16.02.2026
bdu:2025-10801 Уязвимость компонента ACPICA ядра операционной системы Linux, позволяющая нарушителю вызв… 05.09.2025 16.02.2026
bdu:2025-10800 Уязвимость компонента displayport ядра операционной системы Linux, позволяющая нарушителю… 05.09.2025 16.02.2026
bdu:2025-10799 Уязвимость функции pnfs_update_layout ядра операционной системы Linux, позволяющая наруши… 05.09.2025 16.02.2026
bdu:2025-10798 Уязвимость функции l2cap_sock_resume_cb() компонента Bluetooth ядра операционной системы … 05.09.2025 16.02.2026
bdu:2025-10797 Уязвимость функции __nf_conntrack_find_get() компонента Netfilter ядра операционной систе… 05.09.2025 16.02.2026
bdu:2025-10796 Уязвимость функции tls_strp_check_rcv() реализации протокола TLS ядра операционной систем… 05.09.2025 16.02.2026
bdu:2025-10795 Уязвимость функции unregister_vlan_dev() компонента 8021q Module ядра операционной систем… 05.09.2025 16.02.2026
bdu:2025-10794 Уязвимость функции obj_event() ядра операционной системы Linux, позволяющая нарушителю вы… 05.09.2025 16.02.2026
bdu:2025-10792 Уязвимость функции vmci_transport_packet() ядра операционной системы Linux, позволяющая н… 05.09.2025 16.02.2026
bdu:2025-10791 Уязвимость функции nfs_fs_proc_net_init() файловой системы NFS ядра операционной системы … 05.09.2025 16.02.2026
bdu:2025-10789 Уязвимость функции core_scsi3_decode_spec_i_port() компонента bnxt_re ядра операционной с… 05.09.2025 16.02.2026
bdu:2025-10787 Уязвимость функции anon_inode_make_secure_inode() ядра операционной системы Linux, позвол… 05.09.2025 16.02.2026
bdu:2025-10784 Уязвимость функции nf_set_pipapo_avx2 ядра операционной системы Linux, позволяющая наруши… 05.09.2025 16.02.2026
bdu:2025-10783 Уязвимость функции ets_qdisc_change() компонента net_sched ядра операционной системы Linu… 05.09.2025 16.02.2026
ID Description Published Updated
certfr-2025-avi-0745 Multiples vulnérabilités dans le noyau Linux de SUSE 2025-08-29T00:00:00.000000 2025-08-29T00:00:00.000000
certfr-2025-avi-0744 Multiples vulnérabilités dans le noyau Linux de Red Hat 2025-08-29T00:00:00.000000 2025-08-29T00:00:00.000000
certfr-2025-avi-0743 Multiples vulnérabilités dans le noyau Linux d'Ubuntu 2025-08-29T00:00:00.000000 2025-08-29T00:00:00.000000
certfr-2025-avi-0742 Vulnérabilité dans Microsoft Edge 2025-08-29T00:00:00.000000 2025-08-29T00:00:00.000000
certfr-2025-avi-0741 Vulnérabilité dans Wireshark 2025-08-29T00:00:00.000000 2025-08-29T00:00:00.000000
certfr-2025-avi-0740 Multiples vulnérabilités dans Tenable Security Center 2025-08-29T00:00:00.000000 2025-08-29T00:00:00.000000
certfr-2025-avi-0739 Multiples vulnérabilités dans Asterisk 2025-08-29T00:00:00.000000 2025-08-29T00:00:00.000000
certfr-2025-avi-0738 Multiples vulnérabilités dans les produits Elastic 2025-08-29T00:00:00.000000 2025-08-29T00:00:00.000000
certfr-2025-avi-0737 Multiples vulnérabilités dans les produits Cisco 2025-08-28T00:00:00.000000 2025-08-28T00:00:00.000000
certfr-2025-avi-0736 Multiples vulnérabilités dans GitLab 2025-08-28T00:00:00.000000 2025-08-28T00:00:00.000000
certfr-2025-avi-0735 Vulnérabilité dans GLPI 2025-08-28T00:00:00.000000 2025-08-28T00:00:00.000000
certfr-2025-avi-0734 Vulnérabilité dans ISC Kea DHCP 2025-08-28T00:00:00.000000 2025-08-28T00:00:00.000000
certfr-2025-avi-0733 Vulnérabilité dans Nagios XI 2025-08-28T00:00:00.000000 2025-08-28T00:00:00.000000
certfr-2025-avi-0732 Vulnérabilité dans Google Chrome 2025-08-27T00:00:00.000000 2025-08-27T00:00:00.000000
certfr-2025-avi-0731 Vulnérabilité dans Shibboleth Identity Provider 2025-08-27T00:00:00.000000 2025-08-27T00:00:00.000000
certfr-2025-avi-0730 Multiples vulnérabilités dans Citrix NetScaler ADC et NetScaler Gateway 2025-08-26T00:00:00.000000 2025-08-26T00:00:00.000000
certfr-2025-avi-0729 Multiples vulnérabilités dans Qnap File Station 2025-08-26T00:00:00.000000 2025-08-26T00:00:00.000000
certfr-2025-avi-0728 Vulnérabilité dans Centreon Web 2025-08-25T00:00:00.000000 2025-08-25T00:00:00.000000
certfr-2025-avi-0727 Multiples vulnérabilités dans les produits ESET 2025-08-25T00:00:00.000000 2025-08-25T00:00:00.000000
certfr-2025-avi-0726 Vulnérabilité dans les produits Moxa 2025-08-25T00:00:00.000000 2025-08-25T00:00:00.000000
certfr-2025-avi-0725 Vulnérabilité dans Liferay 2025-08-25T00:00:00.000000 2025-08-25T00:00:00.000000
certfr-2025-avi-0643 Vulnérabilité dans Mattermost Server 2025-07-31T00:00:00.000000 2025-08-25T00:00:00.000000
certfr-2025-avi-0724 Multiples vulnérabilités dans les produits IBM 2025-08-22T00:00:00.000000 2025-08-22T00:00:00.000000
certfr-2025-avi-0723 Multiples vulnérabilités dans le noyau Linux de SUSE 2025-08-22T00:00:00.000000 2025-08-22T00:00:00.000000
certfr-2025-avi-0722 Multiples vulnérabilités dans le noyau Linux de Red Hat 2025-08-22T00:00:00.000000 2025-08-22T00:00:00.000000
certfr-2025-avi-0721 Multiples vulnérabilités dans le noyau Linux d'Ubuntu 2025-08-22T00:00:00.000000 2025-08-22T00:00:00.000000
certfr-2025-avi-0720 Multiples vulnérabilités dans Microsoft Windows 2025-08-22T00:00:00.000000 2025-08-22T00:00:00.000000
certfr-2025-avi-0719 Vulnérabilité dans Microsoft Edge 2025-08-22T00:00:00.000000 2025-08-22T00:00:00.000000
certfr-2025-avi-0718 Multiples vulnérabilités dans les produits Liferay 2025-08-22T00:00:00.000000 2025-08-22T00:00:00.000000
certfr-2025-avi-0717 Vulnérabilité dans Elastic Beats 2025-08-21T00:00:00.000000 2025-08-21T00:00:00.000000
ID Description Published Updated
osv-2024-879 Security exception in java.base/java.util.Arrays.copyOf 2024-08-16T00:06:11.887593Z 2024-08-16T00:06:11.888006Z
osv-2024-861 UNKNOWN READ in chunk_free_object 2024-08-16T00:05:25.024909Z 2024-08-16T00:05:25.025249Z
osv-2024-859 Heap-double-free in libssh2_default_free 2024-08-16T00:05:16.221580Z 2024-08-16T00:05:16.221993Z
osv-2024-856 Use-of-uninitialized-value in cups_fill 2024-08-16T00:05:10.919440Z 2024-08-16T00:05:10.919721Z
osv-2024-852 UNKNOWN READ in jvp_object_free 2024-08-16T00:04:43.641868Z 2024-08-16T00:04:43.642269Z
osv-2024-833 UNKNOWN READ in chunk_free_object 2024-08-16T00:03:18.896326Z 2024-08-16T00:03:18.896644Z
osv-2024-830 UNKNOWN READ in ShadingImage::generateAxialBitmap 2024-08-16T00:03:09.951294Z 2024-08-16T00:03:09.951596Z
osv-2024-828 Use-of-uninitialized-value in packet_parse 2024-08-16T00:03:08.665359Z 2024-08-16T00:03:08.665719Z
osv-2024-805 Use-of-uninitialized-value in pcpp::NflogLayer::parseNextLayer 2024-08-16T00:02:19.436836Z 2024-08-16T00:02:19.437200Z
osv-2024-792 Index-out-of-bounds in AAHD::make_ahd_rb_hv 2024-08-16T00:01:41.357755Z 2024-08-16T00:01:41.358066Z
osv-2024-777 Global-buffer-overflow in vte_write_debug 2024-08-16T00:00:55.259153Z 2024-08-16T00:00:55.259408Z
osv-2024-764 Use-of-uninitialized-value in _cupsStrAlloc 2024-08-16T00:00:28.318434Z 2024-08-16T00:00:28.318983Z
osv-2024-748 Security exception in com.github.javaparser.CommentsInserter.insertComments 2024-08-13T00:04:40.789098Z 2024-08-13T00:04:40.789448Z
osv-2024-747 Security exception in com.puppycrawl.tools.checkstyle.grammar.java.JavaLanguageParser.expr 2024-08-13T00:03:34.008550Z 2024-08-13T00:03:34.008929Z
osv-2024-326 Heap-buffer-overflow in GfxFont::readFontDescriptor 2024-04-29T05:42:32.273970Z 2024-08-12T14:13:53.709919Z
osv-2024-668 Security exception in jflex.core.NFA.insertNFA 2024-07-20T00:01:48.807354Z 2024-07-20T00:01:48.807879Z
osv-2024-517 Segv on unknown address in od_ec_dec_init 2024-05-30T00:05:57.060200Z 2024-07-16T14:24:59.011170Z
osv-2024-538 Use-of-uninitialized-value in QUICVariableInt::size 2024-06-06T00:12:59.950768Z 2024-07-16T14:22:07.747083Z
osv-2024-473 Security exception in com.puppycrawl.tools.checkstyle.grammar.java.JavaLanguageParser.expr 2024-05-15T00:13:12.880068Z 2024-07-16T14:20:15.561933Z
osv-2024-539 Security exception in com.github.javaparser.CommentsInserter.insertComments 2024-06-07T00:08:30.308579Z 2024-07-16T14:19:14.406686Z
osv-2024-638 Heap-buffer-overflow in ih264d_format_convert 2024-07-13T00:12:13.793261Z 2024-07-16T14:18:45.507955Z
osv-2024-637 Heap-buffer-overflow in ih264d_format_convert 2024-07-13T00:08:20.097992Z 2024-07-16T14:17:43.815608Z
osv-2024-22 Heap-use-after-free in ucl_hash_func 2024-01-19T00:14:18.833531Z 2024-07-16T04:35:26.847250Z
osv-2024-640 Null-dereference READ 2024-07-13T00:15:12.997693Z 2024-07-13T00:15:12.998025Z
osv-2024-636 Null-dereference READ in evp_mac_final 2024-07-13T00:04:18.446520Z 2024-07-13T00:04:18.446812Z
osv-2024-635 Null-dereference READ in do_evp_kdf 2024-07-13T00:03:44.593921Z 2024-07-13T00:03:44.594307Z
osv-2024-634 Heap-buffer-overflow in htmlCurrentChar 2024-07-13T00:03:44.049545Z 2024-07-13T00:03:44.049863Z
osv-2024-627 Heap-buffer-overflow in gf_hevc_parse_nalu_bs 2024-07-12T00:01:41.960899Z 2024-07-12T00:01:41.961272Z
osv-2024-602 Heap-buffer-overflow in ultrahdr::getYuv420Pixel 2024-06-29T00:09:20.554523Z 2024-06-29T00:09:20.554958Z
osv-2024-555 Heap-buffer-overflow in ArduinoJson::V704HB22::detail::MsgPackDeserializer<ArduinoJson::V704HB22::detail 2024-06-13T00:06:28.782972Z 2024-06-28T14:18:08.360826Z
ID Description Published Updated
rustsec-2020-0124 ArcGuard's Send and Sync should have bounds on RC 2020-12-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0123 Contents of uninitialized memory exposed in DeflateOutput's AsyncRead implementation 2020-01-24T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0122 beef::Cow lacks a Sync bound on its Send trait allowing for data races 2020-10-28T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0121 AtomicBox<T> implements Send/Sync for any `T: Sized` 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0120 `Decoder<R>` can carry `R: !Send` to other threads 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0119 ReadTicket and WriteTicket should only be sendable when T is Send 2020-11-17T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0118 Future<T> lacks bounds on Send and Sync. 2020-12-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0117 QueueSender<T>/QueueReceiver<T>: Send/Sync impls need `T: Send` 2020-11-24T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0116 PinSlab<T> and Unordered<T, S> need bounds on their Send/Sync traits 2020-11-15T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0115 Singleton lacks bounds on Send and Sync. 2020-11-16T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0114 `Demuxer` can carry non-Send types across thread boundaries 2020-12-22T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0113 AtomicOption should have Send + Sync bound on its type argument. 2020-10-31T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0112 ButtplugFutureStateShared allows data race to (!Send|!Sync) objects 2020-12-18T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0108 Soundness issue: Input<R> can be misused to create data race to an object 2020-12-20T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0107 hashconsing's HConsed lacks Send/Sync bound for its Send/Sync trait. 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0106 Queues allow non-Send types to be sent to other threads, allowing data races 2020-12-19T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0105 Update unsound DrainFilter and RString::retain 2020-12-21T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0104 ImageChunkMut needs bounds on its Send and Sync traits 2020-12-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0103 `impl Random` on arrays can lead to dropping uninitialized memory 2020-12-31T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0102 LateStatic has incorrect Sync bound 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0101 conquer-once's OnceCell lacks Send bound for its Sync trait. 2020-12-22T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0100 Double free when calling `sys_info::disk_info` from multiple threads 2020-05-31T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0099 Aovec<T> lacks bound on its Send and Sync traits allowing data races 2020-12-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0098 UsbContext trait did not require implementers to be Send and Sync. 2020-12-18T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0097 Soundness issue with base::Error 2020-12-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0096 TreeFocus lacks bounds on its Send and Sync traits 2020-11-09T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0094 Unsound: can make `ARefss` contain a !Send, !Sync object. 2020-12-01T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0093 Async-h1 request smuggling possible with long unread bodies 2020-12-17T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0092 Send/Sync bound needed on V in `impl Send/Sync for ARCache<K, V>` 2020-11-13T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0091 Dangling reference in `access::Map` with Constant 2020-12-10T12:00:00Z 2023-06-13T13:10:24Z
ID Description Published Updated
alsa-2025:11044 Moderate: python3.12-setuptools security update 2025-07-15T00:00:00Z 2025-07-16T08:04:17Z
alsa-2025:11043 Moderate: python3.11-setuptools security update 2025-07-15T00:00:00Z 2025-07-16T08:02:22Z
alsa-2025:11042 Moderate: socat security update 2025-07-15T00:00:00Z 2025-07-16T08:00:21Z
alsa-2025:11030 Moderate: emacs security update 2025-07-15T00:00:00Z 2025-07-16T07:58:14Z
alsa-2025:10991 Moderate: microcode_ctl security update 2025-07-14T00:00:00Z 2025-07-16T07:55:26Z
alsa-2025:10672 Moderate: go-toolset:rhel8 security update 2025-07-09T00:00:00Z 2025-07-11T09:05:26Z
alsa-2025:10676 Moderate: golang security update 2025-07-09T00:00:00Z 2025-07-10T22:02:04Z
alsa-2025:10677 Moderate: golang security update 2025-07-09T00:00:00Z 2025-07-10T21:56:32Z
alsa-2025:10371 Important: kernel security update 2025-07-07T00:00:00Z 2025-07-10T13:39:27Z
alsa-2025:10379 Important: kernel security update 2025-07-07T00:00:00Z 2025-07-10T13:35:08Z
alsa-2025:10585 Moderate: jq security update 2025-07-08T00:00:00Z 2025-07-10T13:06:12Z
alsa-2025:10630 Important: libxml2 security update 2025-07-08T00:00:00Z 2025-07-10T13:05:05Z
alsa-2025:10631 Moderate: gnome-remote-desktop security update 2025-07-08T00:00:00Z 2025-07-10T13:03:23Z
alsa-2025:10635 Moderate: gnome-remote-desktop security update 2025-07-08T00:00:00Z 2025-07-10T13:02:28Z
alsa-2025:10669 Important: kernel security update 2025-07-09T00:00:00Z 2025-07-10T13:00:26Z
alsa-2025:10670 Important: kernel-rt security update 2025-07-09T00:00:00Z 2025-07-10T12:58:15Z
alsa-2025:10698 Important: libxml2 security update 2025-07-09T00:00:00Z 2025-07-10T12:55:10Z
alsa-2025:10699 Important: libxml2 security update 2025-07-09T00:00:00Z 2025-07-10T12:52:51Z
alsa-2025:10742 Moderate: gnome-remote-desktop security update 2025-07-09T00:00:00Z 2025-07-10T12:50:30Z
alsa-2025:10353 Moderate: socat security update 2025-07-07T00:00:00Z 2025-07-09T08:18:18Z
alsa-2025:10549 Important: podman security update 2025-07-08T00:00:00Z 2025-07-09T08:17:13Z
alsa-2025:10550 Important: podman security update 2025-07-08T00:00:00Z 2025-07-09T08:15:09Z
alsa-2025:10551 Important: container-tools:rhel8 security update 2025-07-08T00:00:00Z 2025-07-09T08:13:25Z
alsa-2025:10618 Moderate: jq security update 2025-07-08T00:00:00Z 2025-07-09T08:08:05Z
alsa-2025:9896 Moderate: kernel security update 2025-06-30T00:00:00Z 2025-07-08T16:43:34Z
alsa-2025:10407 Moderate: python-setuptools security update 2025-07-07T00:00:00Z 2025-07-08T07:57:20Z
alsa-2025:10246 Important: thunderbird security update 2025-07-02T00:00:00Z 2025-07-07T07:31:37Z
alsa-2025:10217 Moderate: ruby:3.3 security update 2025-07-02T00:00:00Z 2025-07-03T12:04:43Z
alsa-2025:9302 Moderate: kernel security update 2025-06-23T00:00:00Z 2025-07-03T08:46:04Z
alsa-2025:9306 Important: tigervnc security update 2025-06-23T00:00:00Z 2025-07-03T08:43:03Z