Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
CVE-2025-1974
9.8 (3.1)
ingress-nginx admission controller RCE escalation kubernetes
ingress-nginx
2025-03-24T23:28:48.985Z 2026-02-26T19:09:14.726Z
CVE-2025-21158
7.8 (3.1)
InDesign Desktop | Integer Underflow (Wrap or Wraparou… Adobe
InDesign Desktop
2025-02-11T17:10:47.804Z 2026-02-26T19:09:14.593Z
CVE-2025-21335
7.8 (3.1)
Windows Hyper-V NT Kernel Integration VSP Elevation of… Microsoft
Windows 10 Version 21H2
2025-01-14T18:04:17.808Z 2026-02-26T19:09:14.341Z
CVE-2025-21156
7.8 (3.1)
InCopy | Integer Underflow (Wrap or Wraparound) (CWE-191) Adobe
InCopy
2025-02-11T17:21:25.696Z 2026-02-26T19:09:14.174Z
CVE-2025-1097
8.8 (3.1)
ingress-nginx controller - configuration injection via… kubernetes
ingress-nginx
2025-03-24T23:29:05.879Z 2026-02-26T19:09:14.028Z
CVE-2025-21187
7.8 (3.1)
Microsoft Power Automate Remote Code Execution Vulnerability Microsoft
Power Automate for Desktop
2025-01-14T18:04:20.259Z 2026-02-26T19:09:13.876Z
CVE-2025-21159
7.8 (3.1)
Illustrator | Use After Free (CWE-416) Adobe
Illustrator
2025-02-11T17:27:39.557Z 2026-02-26T19:09:13.710Z
CVE-2025-21186
7.8 (3.1)
Microsoft Access Remote Code Execution Vulnerability Microsoft
Microsoft 365 Apps for Enterprise
2025-01-14T18:04:20.776Z 2026-02-26T19:09:13.442Z
CVE-2025-1098
8.8 (3.1)
ingress-nginx controller - configuration injection via… kubernetes
ingress-nginx
2025-03-24T23:29:15.610Z 2026-02-26T19:09:13.280Z
CVE-2025-21163
7.8 (3.1)
Illustrator | Stack-based Buffer Overflow (CWE-121) Adobe
Illustrator
2025-02-11T17:27:40.356Z 2026-02-26T19:09:13.139Z
CVE-2025-21224
8.1 (3.1)
Windows Line Printer Daemon (LPD) Service Remote Code … Microsoft
Windows 10 Version 21H2
2025-01-14T18:04:22.623Z 2026-02-26T19:09:12.951Z
CVE-2025-24514
8.8 (3.1)
ingress-nginx controller - configuration injection via… kubernetes
ingress-nginx
2025-03-24T23:29:36.802Z 2026-02-26T19:09:12.808Z
CVE-2025-21160
7.8 (3.1)
Illustrator | Integer Underflow (Wrap or Wraparound) (… Adobe
Illustrator
2025-02-11T17:27:41.155Z 2026-02-26T19:09:12.642Z
CVE-2025-21172
7.5 (3.1)
.NET and Visual Studio Remote Code Execution Vulnerability Microsoft
.NET 8.0
2025-01-14T18:04:38.469Z 2026-02-26T19:09:12.470Z
CVE-2024-58104
7.3 (3.1)
A vulnerability in the Trend Micro Apex One Secu… Trend Micro, Inc.
Trend Micro Apex One
2025-03-25T17:37:28.783Z 2026-02-26T19:09:12.303Z
CVE-2025-24410
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:33.017Z 2026-02-26T19:09:12.134Z
CVE-2025-21361
7.8 (3.1)
Microsoft Outlook Remote Code Execution Vulnerability Microsoft
Microsoft Office LTSC for Mac 2021
2025-01-14T18:04:43.571Z 2026-02-26T19:09:11.962Z
CVE-2024-58105
7.3 (3.1)
A vulnerability in the Trend Micro Apex One Secu… Trend Micro, Inc.
Trend Micro Apex One
2025-03-25T17:37:39.464Z 2026-02-26T19:09:11.806Z
CVE-2025-24412
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:36.216Z 2026-02-26T19:09:11.638Z
CVE-2025-21372
7.8 (3.1)
Microsoft Brokering File System Elevation of Privilege… Microsoft
Windows 11 Version 24H2
2025-01-14T18:04:44.826Z 2026-02-26T19:09:11.485Z
CVE-2025-24417
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:39.575Z 2026-02-26T19:09:11.348Z
CVE-2025-21402
7.8 (3.1)
Microsoft Office OneNote Remote Code Execution Vulnerability Microsoft
Microsoft Office LTSC for Mac 2021
2025-01-14T18:04:46.460Z 2026-02-26T19:09:11.196Z
CVE-2025-2783
8.3 (3.1)
Incorrect handle provided in unspecified circumst… Google
Chrome
2025-03-26T16:07:51.034Z 2026-02-26T19:09:11.033Z
CVE-2025-24418
8.1 (3.1)
Adobe Commerce | Improper Authorization (CWE-285) Adobe
Adobe Commerce
2025-02-11T17:37:41.236Z 2026-02-26T19:09:10.892Z
CVE-2025-21333
7.8 (3.1)
Windows Hyper-V NT Kernel Integration VSP Elevation of… Microsoft
Windows 10 Version 21H2
2025-01-14T18:04:50.962Z 2026-02-26T19:09:10.751Z
CVE-2025-30407
6.3 (3.0)
Local privilege escalation due to a binary hijack… Acronis
Acronis Cyber Protect Cloud Agent
2025-03-26T21:32:30.085Z 2026-02-26T19:09:10.614Z
CVE-2025-24438
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:42.877Z 2026-02-26T19:09:10.474Z
CVE-2025-21334
7.8 (3.1)
Windows Hyper-V NT Kernel Integration VSP Elevation of… Microsoft
Windows 10 Version 21H2
2025-01-14T18:04:51.608Z 2026-02-26T19:09:10.178Z
CVE-2025-20231
7.1 (3.1)
Sensitive Information Disclosure in Splunk Secure Gate… Splunk
Splunk Enterprise
2025-03-26T21:45:41.250Z 2026-02-26T19:09:10.032Z
CVE-2025-24413
8.7 (3.1)
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) Adobe
Adobe Commerce
2025-02-11T17:37:49.367Z 2026-02-26T19:09:09.876Z
ID CVSS Description Vendor Product Published Updated
ID Description Published Updated
fkie_cve-2025-15059 GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerab… 2026-01-23T04:16:00.740 2026-02-26T20:04:21.843
fkie_cve-2025-70045 An issue pertaining to CWE-295: Improper Certificate Validation was discovered in jxcore jxm master… 2026-02-23T16:29:36.323 2026-02-26T20:03:59.297
fkie_cve-2025-11002 7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This vulnerability … 2026-01-23T04:16:00.553 2026-02-26T20:03:49.037
fkie_cve-2025-70058 An issue pertaining to CWE-295: Improper Certificate Validation was discovered in YMFE yapi v1.12.0… 2026-02-23T16:29:36.433 2026-02-26T20:03:06.150
fkie_cve-2026-22977 In the Linux kernel, the following vulnerability has been resolved: net: sock: fix hardened userco… 2026-01-21T14:16:06.853 2026-02-26T20:02:55.910
fkie_cve-2026-22976 In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_qfq: Fix NULL d… 2026-01-21T07:16:01.433 2026-02-26T20:02:36.820
fkie_cve-2025-61146 saitoha libsixel until v1.8.7 was discovered to contain a memory leak via the component malloc_stub.c. 2026-02-23T19:22:56.880 2026-02-26T20:01:26.777
fkie_cve-2026-0399 Multiple post-authentication stack-based buffer overflow vulnerabilities in the SonicOS management … 2026-02-24T15:21:36.980 2026-02-26T20:00:40.877
fkie_cve-2026-22785 orval generates type-safe JS clients (TypeScript) from any valid OpenAPI v3 or Swagger v2 specifica… 2026-01-12T19:16:04.287 2026-02-26T20:00:15.910
fkie_cve-2025-64124 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerab… 2026-01-03T01:15:42.750 2026-02-26T19:59:52.763
fkie_cve-2025-64123 Unintended Proxy or Intermediary vulnerability in Nuvation Energy Multi-Stack Controller (MSC) allo… 2026-01-02T22:15:44.787 2026-02-26T19:59:40.363
fkie_cve-2026-27567 Payload is a free and open source headless content management system. Prior to 3.75.0, a Server-Sid… 2026-02-24T15:21:38.273 2026-02-26T19:59:33.657
fkie_cve-2025-64122 Insufficiently Protected Credentials vulnerability in Nuvation Energy Multi-Stack Controller (MSC) … 2026-01-02T22:15:44.660 2026-02-26T19:59:24.570
fkie_cve-2025-64121 Authentication Bypass Using an Alternate Path or Channel vulnerability in Nuvation Energy Multi-Sta… 2026-01-02T22:15:44.533 2026-02-26T19:58:29.730
fkie_cve-2025-64120 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerab… 2026-01-02T22:15:44.403 2026-02-26T19:58:19.450
fkie_cve-2026-27568 WWBN AVideo is an open source video platform. Prior to version 21.0, AVideo allows Markdown in vide… 2026-02-24T15:21:38.843 2026-02-26T19:57:52.213
fkie_cve-2025-15284 Improper Input Validation vulnerability in qs (parse modules) allows HTTP DoS.This issue affects qs… 2025-12-29T23:15:42.703 2026-02-26T19:57:11.663
fkie_cve-2026-0805 An input neutralization vulnerability in the Backup Configuration component of Crafty Controller al… 2026-01-30T07:16:14.917 2026-02-26T19:57:06.950
fkie_cve-2026-0963 An input neutralization vulnerability in the File Operations API Endpoint component of Crafty Contr… 2026-01-30T07:16:15.173 2026-02-26T19:54:36.460
fkie_cve-2026-26045 A flaw was identified in Moodle’s backup restore functionality where specially crafted backup files… 2026-02-21T06:16:58.867 2026-02-26T19:47:42.953
fkie_cve-2026-26046 A vulnerability was found in a Moodle TeX filter administrative setting where insufficient sanitiza… 2026-02-21T06:17:00.203 2026-02-26T19:46:57.600
fkie_cve-2026-27584 Actual is a local-first personal finance tool. Prior to version 26.2.1, missing authentication midd… 2026-02-24T15:21:39.010 2026-02-26T19:46:14.007
fkie_cve-2026-26047 A denial-of-service vulnerability was identified in Moodle’s TeX formula editor. When rendering TeX… 2026-02-21T06:17:00.377 2026-02-26T19:45:29.417
fkie_cve-2025-63409 Privilege escalation and improper access control in GCOM EPON 1GE C00R371V00B01 allows remote authe… 2026-02-24T16:24:06.990 2026-02-26T19:42:40.950
fkie_cve-2025-69985 FUXA 1.2.8 and prior contains an Authentication Bypass vulnerability leading to Remote Code Executi… 2026-02-24T16:24:07.120 2026-02-26T19:39:20.677
fkie_cve-2025-13776 Multiple Finka programs use hard-coded Firebird database credentials (shared across all instances o… 2026-02-24T17:29:02.023 2026-02-26T19:38:41.043
fkie_cve-2026-25370 Missing Authorization vulnerability in AresIT WP Compress wp-compress-image-optimizer allows Exploi… 2026-02-19T09:16:19.707 2026-02-26T19:32:39.017
fkie_cve-2026-23543 Missing Authorization vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-… 2026-02-19T09:16:12.197 2026-02-26T19:32:38.227
fkie_cve-2025-8882 Use after free in Aura in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convi… 2025-08-13T03:15:39.507 2026-02-26T19:32:33.767
fkie_cve-2025-40553 SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulnerabi… 2026-01-28T08:16:02.583 2026-02-26T19:30:48.297
ID Severity Description Published Updated
ghsa-fw7p-cggr-9xm6
7.1 (3.1)
A flaw was found in the udisks storage management daemon that exposes a privileged D-Bus API for re… 2026-02-25T12:30:29Z 2026-02-25T12:30:29Z
ghsa-4qpc-c9r6-9jrx
4.3 (3.1)
The Disable Admin Notices – Hide Dashboard Notifications plugin for WordPress is vulnerable to Cros… 2026-02-25T12:30:28Z 2026-02-25T12:30:29Z
ghsa-x4x7-v8wj-3952
4.3 (3.1)
The WP Recipe Maker plugin for WordPress is vulnerable to unauthorized access of data due to a miss… 2026-02-25T12:30:28Z 2026-02-25T12:30:28Z
ghsa-wrj5-2cc6-7p8j
4.3 (3.1)
The Post Duplicator plugin for WordPress is vulnerable to unauthorized arbitrary protected post met… 2026-02-25T12:30:28Z 2026-02-25T12:30:28Z
ghsa-xcq6-x53r-q98g
8.8 (3.1)
7.4 (4.0)
A security flaw has been discovered in Tenda F453 1.0.0.3. The impacted element is the function for… 2026-02-25T09:30:26Z 2026-02-25T09:30:27Z
ghsa-v72r-wpp2-8369
7.5 (3.1)
The WPGSI: Spreadsheet Integration plugin for WordPress is vulnerable to unauthorized modification … 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-rjq9-488h-qv7q
3.5 (3.1)
2.0 (4.0)
A flaw has been found in SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System… 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-p7fh-wf7x-3xhv
5.0 (3.1)
The Responsive Lightbox & Gallery plugin for WordPress is vulnerable to Server-Side Request Forgery… 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-mf59-ffwh-5qhw
2.4 (3.1)
1.9 (4.0)
A vulnerability was detected in SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management… 2026-02-25T09:30:26Z 2026-02-25T09:30:27Z
ghsa-jv27-w2xj-6cq3
8.8 (3.1)
The Advanced Woo Labels plugin for WordPress is vulnerable to Remote Code Execution in all versions… 2026-02-25T09:30:26Z 2026-02-25T09:30:27Z
ghsa-cv4r-qfj3-hv3v
8.8 (3.1)
7.4 (4.0)
A security vulnerability has been detected in Tenda F453 1.0.0.3. This impacts the function fromSaf… 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-cf59-33h4-g872
8.8 (3.1)
7.4 (4.0)
A weakness has been identified in Tenda F453 1.0.0.3. This affects the function fromNatStaticSettin… 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-7gq2-xp8m-v3r5
8.8 (3.1)
7.4 (4.0)
A vulnerability was identified in Tenda F453 1.0.0.3. The affected element is the function fromRout… 2026-02-25T09:30:26Z 2026-02-25T09:30:27Z
ghsa-5825-95cg-hj5r
7.5 (3.1)
The Geo Mashup plugin for WordPress is vulnerable to SQL Injection via the 'sort' parameter in all … 2026-02-25T09:30:27Z 2026-02-25T09:30:27Z
ghsa-f8m8-w7hg-xv97
6.4 (3.1)
The Rise Blocks – A Complete Gutenberg Page Builder plugin for WordPress is vulnerable to Stored Cr… 2026-02-25T09:30:26Z 2026-02-25T09:30:26Z
ghsa-r9gx-29q7-44rw
7.3 (3.1)
5.5 (4.0)
A vulnerability was determined in SourceCodester Simple and Nice Shopping Cart Script 1.0. This imp… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-r58x-2c7j-vfm9
7.3 (3.1)
5.5 (4.0)
A vulnerability has been found in itsourcecode Document Management System 1.0. Impacted is an unkno… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-r3qv-6v6v-622r
7.3 (3.1)
5.5 (4.0)
A vulnerability was detected in itsourcecode College Management System 1.0. This vulnerability affe… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-q7q5-p52h-85m5
7.3 (3.1)
5.5 (4.0)
A flaw has been found in itsourcecode College Management System 1.0. This issue affects some unknow… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-pgmp-w8v7-hhfx
6.3 (3.1)
2.1 (4.0)
A weakness has been identified in itsourcecode College Management System 1.0. Affected by this issu… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-hmg7-v7c7-65qj
8.8 (3.1)
7.4 (4.0)
A vulnerability was determined in Tenda F453 1.0.0.3. Impacted is the function fromSetWifiGusetBasi… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-fv8r-cjf4-v929
4.7 (3.1)
Information Exposure Vulnerability in Hitachi Ops Center API Configuration Manager, Hitachi Configu… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-9953-hw28-xvx7
7.3 (3.1)
5.5 (4.0)
A vulnerability was found in itsourcecode News Portal Project 1.0. This issue affects some unknown … 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-55xf-4pmg-v3xm
5.3 (3.1)
1.9 (4.0)
A vulnerability was found in libvips up to 8.18.0. This affects the function vips_foreign_load_csv_… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-4v56-g6h4-6655
6.3 (3.1)
2.1 (4.0)
A security vulnerability has been detected in itsourcecode College Management System 1.0. This affe… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-4jxf-pwgr-9m4j
6.3 (3.1)
2.1 (4.0)
A vulnerability has been found in SourceCodester Website Link Extractor 1.0. This vulnerability aff… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-3h75-x2ww-p6ww
9.8 (3.1)
9.3 (4.0)
Path traversal vulnerability exists in Lanscope Endpoint Manager (On-Premises) Sub-Manager Server V… 2026-02-25T06:31:15Z 2026-02-25T06:31:15Z
ghsa-j47g-6v72-x3wr
8.2 (3.1)
Fujitsu fbiosdrv.sys before 2.5.0.0 allows an attacker to potentially affect system confidentiality… 2025-11-12T18:31:26Z 2026-02-25T06:31:14Z
ghsa-v5rp-3mcx-fr73
3.3 (3.1)
4.8 (4.0)
A vulnerability has been found in libvips up to 8.18.0. The impacted element is the function vips_f… 2026-02-25T03:30:58Z 2026-02-25T03:30:59Z
ghsa-33r2-hfpx-fx7h
5.3 (3.1)
4.8 (4.0)
A flaw has been found in libvips up to 8.18.0. The affected element is the function vips_foreign_lo… 2026-02-25T03:30:58Z 2026-02-25T03:30:59Z
ID Severity Description Package Published Updated
pysec-2023-252
7.5 (3.1)
Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.9.2. mlflow 2023-12-18T04:15:00+00:00 2024-02-06T22:20:23.832000+00:00
pysec-2024-26
6.5 (3.1)
aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. Security-… aiohttp 2024-01-29T23:15:00+00:00 2024-02-06T20:20:18.162431+00:00
pysec-2024-25
9.8 (3.1)
DuckDB <=0.9.2 and DuckDB extension-template <=0.9.2 are vulnerable to malicious extensio… duckdb 2024-01-30T01:16:00+00:00 2024-02-06T00:25:51.550516+00:00
pysec-2024-24
7.5 (3.1)
aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. When usin… aiohttp 2024-01-29T23:15:00+00:00 2024-02-05T20:20:47.716944+00:00
pysec-2024-23
5.3 (3.1)
Whoogle Search is a self-hosted metasearch engine. Versions 0.8.3 and prior have a limite… whoogle-search 2024-01-23T18:15:00+00:00 2024-02-02T07:18:33.382718+00:00
pysec-2009-11
The rst parser (parser/text_rst.py) in MoinMoin 1.6.1 does not check the ACL of an includ… moin 2009-03-30T01:30:00+00:00 2024-02-02T07:18:32.552079+00:00
pysec-2024-22
6.1 (3.1)
TuiTse-TsuSin is a package for organizing the comparative corpus of Taiwanese Chinese cha… tuitse-tsusin 2024-01-23T18:15:00+00:00 2024-02-01T22:21:01.486817+00:00
pysec-2024-21
8.8 (3.1)
A vulnerability classified as critical was found in van_der_Schaar LAB TemporAI 0.0.3. Af… temporai 2024-01-26T17:15:00+00:00 2024-02-01T18:22:23.971296+00:00
pysec-2024-20
9.8 (3.1)
Whoogle Search is a self-hosted metasearch engine. In versions prior to 0.8.4, the `eleme… whoogle-search 2024-01-23T18:15:00+00:00 2024-01-30T18:22:32.803340+00:00
pysec-2024-19
6.1 (3.1)
Whoogle Search is a self-hosted metasearch engine. In versions 0.8.3 and prior, the `elem… whoogle-search 2024-01-23T18:15:00+00:00 2024-01-29T22:21:01.226431+00:00
pysec-2024-18
9.8 (3.1)
Whoogle Search is a self-hosted metasearch engine. In versions 0.8.3 and prior, the `wind… whoogle-search 2024-01-23T18:15:00+00:00 2024-01-29T22:21:01.170723+00:00
pysec-2024-17
8.8 (3.1)
pyLoad is a free and open-source Download Manager written in pure Python. The `pyload` AP… pyload-ng 2024-01-18T00:15:00+00:00 2024-01-29T20:20:58.389168+00:00
pysec-2024-16
5.4 (3.1)
Nautobot is a Network Source of Truth and Network Automation Platform built as a web appl… nautobot 2024-01-23T00:15:00+00:00 2024-01-29T20:20:58.065227+00:00
pysec-2023-251
5.3 (3.1)
aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. Improper … aiohttp 2023-11-29T20:15:00+00:00 2024-01-29T16:22:26.513672+00:00
pysec-2023-250
5.3 (3.1)
aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. Improper … aiohttp 2023-11-30T07:15:00+00:00 2024-01-29T16:22:26.409794+00:00
pysec-2024-15
3.7 (3.1)
changedetection.io is an open source tool designed to monitor websites for content chang… changedetection-io 2024-01-19T20:15:00+00:00 2024-01-26T22:21:10.756741+00:00
pysec-2024-5
2.8 (3.1)
cdo-local-uuid project provides a specialized UUID-generating function that can, on user … case-utils 2024-01-11T03:15:00Z 2024-01-25T14:03:52.279077Z
pysec-2024-14
Apache Airflow, versions before 2.8.1, have a vulnerability that allows an authenticated … apache-airflow 2024-01-24T13:15:00+00:00 2024-01-24T16:22:57.416385+00:00
pysec-2024-13
Apache Airflow, versions before 2.8.1, have a vulnerability that allows a potential attac… apache-airflow 2024-01-24T13:15:00+00:00 2024-01-24T16:22:57.352530+00:00
pysec-2023-241
9.1 (3.1)
Piccolo is an object-relational mapping and query builder which supports asyncio. Prior t… piccolo 2023-11-10T18:15:00Z 2024-01-23T23:21:13.409656Z
pysec-2024-11
9.8 (3.1)
Remote Code Execution vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from… apache-iotdb 2024-01-15T11:15:00+00:00 2024-01-22T22:21:02.620877+00:00
pysec-2024-10
9.8 (3.1)
In Gentoo Portage before 3.0.47, there is missing PGP validation of executed code: the st… portage 2024-01-12T03:15:00+00:00 2024-01-22T18:22:47.599296+00:00
pysec-2024-9
MetaGPT through 0.6.4 allows the QaEngineer role to execute arbitrary code because RunCod… metagpt 2024-01-22T01:15:00+00:00 2024-01-22T07:20:28.329958+00:00
pysec-2024-8
The JSON loader in Embedchain before 0.1.57 allows a ReDoS (regular expression denial of … embedchain 2024-01-21T17:15:00+00:00 2024-01-21T20:21:00.544327+00:00
pysec-2024-7
The OpenAPI loader in Embedchain before 0.1.57 allows attackers to execute arbitrary code… embedchain 2024-01-21T17:15:00+00:00 2024-01-21T20:21:00.484037+00:00
pysec-2024-6
2.8 (3.1)
cdo-local-uuid project provides a specialized UUID-generating function that can, on user … cdo-local-uuid 2024-01-11T03:15:00+00:00 2024-01-19T22:21:07.454006+00:00
pysec-2024-4
7.8 (3.1)
GitPython is a python library used to interact with Git repositories. There is an incompl… gitpython 2024-01-11T02:15:00+00:00 2024-01-18T16:22:52.190857+00:00
pysec-2024-3
5.9 (3.1)
PyCryptodome and pycryptodomex before 3.19.1 allow side-channel leakage for OAEP decrypti… pycryptodomex 2024-01-05T04:15:00+00:00 2024-01-17T11:19:18.629304+00:00
pysec-2023-249
7.5 (3.1)
Gradio is an open-source Python package that allows you to quickly build a demo or web ap… gradio 2023-12-22T21:15:00+00:00 2024-01-17T11:19:18.252182+00:00
pysec-2023-248
6.1 (3.1)
An open redirect vulnerability in the python package Flask-Security-Too <=5.3.2 allows at… flask-security-too 2023-12-26T22:15:00+00:00 2024-01-17T11:19:18.188431+00:00
ID Description Type
ID Description Updated
gsd-2024-33001 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.747211Z
gsd-2024-33238 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.747012Z
gsd-2024-33157 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.746799Z
gsd-2024-33038 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.746582Z
gsd-2024-33366 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.746377Z
gsd-2024-33195 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.746132Z
gsd-2024-33277 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.745937Z
gsd-2024-33485 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.745744Z
gsd-2024-33286 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.745545Z
gsd-2024-33169 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.745339Z
gsd-2024-33029 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.745140Z
gsd-2024-33399 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.744940Z
gsd-2024-33249 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.744741Z
gsd-2024-33016 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.744543Z
gsd-2024-33373 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.744340Z
gsd-2024-33524 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.744149Z
gsd-2024-33380 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.743956Z
gsd-2024-33237 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.743713Z
gsd-2024-33437 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.743513Z
gsd-2024-33404 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.743316Z
gsd-2024-33113 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.743114Z
gsd-2024-33473 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.742910Z
gsd-2024-33078 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.742686Z
gsd-2024-33064 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.742494Z
gsd-2024-33081 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.742295Z
gsd-2024-33206 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.742097Z
gsd-2024-33010 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.741895Z
gsd-2024-33411 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.741698Z
gsd-2024-33463 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.741491Z
gsd-2024-33250 The format of the source doesn't require a description, click on the link for more details. 2024-04-24T05:02:09.741217Z
ID Description Published Updated
mal-2026-265 Malicious code in @wb-team/uikit-myteam-web (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:30Z
mal-2026-263 Malicious code in @spx-workforceops/shared-vue (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:29Z
mal-2026-262 Malicious code in @spx-smartsorting/vue (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:29Z
mal-2026-261 Malicious code in @spx-delivery/react (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:29Z
mal-2026-260 Malicious code in @servicepoint/vue-project (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:29Z
mal-2026-259 Malicious code in @riag-libs/pattern-library-react-hooks (npm) 2026-01-16T00:10:24Z 2026-01-27T08:27:29Z
mal-2026-249 Malicious code in @flipster/utils (npm) 2026-01-13T08:19:50Z 2026-01-27T08:27:29Z
mal-2025-41408 Malicious code in symphony-fairvis (npm) 2025-08-23T14:45:03Z 2026-01-27T03:00:15Z
mal-2026-460 Malicious code in pay-by-bank-dashboard-server (npm) 2026-01-22T11:37:45Z 2026-01-27T03:00:14Z
mal-2025-190622 Malicious code in com.unity.xr.visionos (npm) 2025-11-23T11:02:13Z 2026-01-27T03:00:12Z
mal-2026-510 Malicious code in radishwxm5 (PyPI) 2026-01-26T19:50:28Z 2026-01-26T19:50:28Z
mal-2026-506 Malicious code in selenium-integration (PyPI) 2026-01-25T16:56:33Z 2026-01-25T16:56:33Z
mal-2026-505 Malicious code in flask-hookserver (PyPI) 2026-01-25T11:13:11Z 2026-01-25T11:25:04Z
mal-2026-504 Malicious code in researchpoc (PyPI) 2026-01-25T10:54:30Z 2026-01-25T10:54:30Z
mal-2026-499 Malicious code in system-integration (PyPI) 2026-01-25T00:57:28Z 2026-01-25T10:42:32Z
mal-2026-501 Malicious code in system-integration-toxi (PyPI) 2026-01-25T10:15:36Z 2026-01-25T10:15:36Z
mal-2026-502 Malicious code in test-poc-package-for-session (PyPI) 2026-01-25T10:08:47Z 2026-01-25T10:08:47Z
mal-2026-503 Malicious code in test-poc-package-for-session-2 (PyPI) 2026-01-25T10:04:44Z 2026-01-25T10:04:44Z
mal-2026-498 Malicious code in instascan-pro (PyPI) 2026-01-24T16:15:55Z 2026-01-24T16:15:55Z
mal-2026-491 Malicious code in test-on-other-again (npm) 2026-01-23T12:02:07Z 2026-01-23T18:48:56Z
mal-2026-488 Malicious code in ntwsx (npm) 2026-01-23T06:32:37Z 2026-01-23T18:48:55Z
mal-2026-487 Malicious code in ntwsc (npm) 2026-01-23T06:32:37Z 2026-01-23T18:48:55Z
mal-2026-486 Malicious code in a5xm (npm) 2026-01-23T06:32:37Z 2026-01-23T18:48:54Z
mal-2026-485 Malicious code in a4wu (npm) 2026-01-23T06:32:36Z 2026-01-23T18:48:54Z
mal-2026-497 Malicious code in test-on-other (npm) 2026-01-23T18:12:42Z 2026-01-23T18:12:42Z
mal-2025-192877 Malicious code in tdm-react (npm) 2025-12-23T08:32:44Z 2026-01-23T15:44:07Z
mal-2026-434 Malicious code in weaviate-js (npm) 2026-01-21T04:49:30Z 2026-01-23T01:39:05Z
mal-2026-433 Malicious code in wallet-adapter-react (npm) 2026-01-21T04:37:07Z 2026-01-23T01:39:05Z
mal-2026-404 Malicious code in worldposition (npm) 2026-01-21T04:21:35Z 2026-01-23T01:39:05Z
mal-2026-403 Malicious code in worldnormal (npm) 2026-01-21T04:21:35Z 2026-01-23T01:39:05Z
ID Description Published Updated
bit-libphp-2024-5458 Filter bypass in filter_var (FILTER_VALIDATE_URL) 2025-08-11T13:54:20.794Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-3096 PHP function password_verify can erroneously return true when argument contains NUL 2025-08-11T13:54:16.977Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-2757 PHP mb_encode_mimeheader runs endlessly for some inputs 2025-08-11T13:54:14.986Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-2756 __Host-/__Secure- cookie bypass due to partial CVE-2022-31629 fix 2025-08-11T13:54:12.793Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-1874 Command injection via array-ish $command parameter of proc_open() 2025-08-11T13:54:08.513Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-11236 Integer overflow in the firebird and dblib quoters causing OOB writes 2025-08-11T13:54:06.723Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-11234 Configuring a proxy in a stream context might allow for CRLF injection in URIs 2025-08-11T13:54:03.025Z 2025-11-06T13:25:46.476Z
bit-libphp-2024-11233 Single byte overread with convert.quoted-printable-decode filter 2025-08-11T13:54:01.202Z 2025-11-06T13:25:46.476Z
bit-libphp-2022-31629 $_COOKIE names string replacement (. -> _): cookie integrity vulnerabilities 2025-08-11T13:53:41.681Z 2025-11-06T13:25:46.476Z
bit-kibana-2025-25018 Kibana Stored Cross-Site Scripting (XSS) 2025-10-14T08:43:02.190Z 2025-11-06T13:25:46.476Z
bit-kibana-2025-25017 Kibana Stored Cross-Site Scripting (XSS) 2025-10-14T08:43:00.623Z 2025-11-06T13:25:46.476Z
bit-kibana-2025-25009 Kibana Cross-Site Scripting (XSS) 2025-10-09T08:43:15.178Z 2025-11-06T13:25:46.476Z
bit-keydb-2025-49844 Redis Lua Use-After-Free may lead to remote code execution 2025-10-16T09:12:52.562Z 2025-11-06T13:25:46.476Z
bit-keydb-2025-46819 Redis is vulnerable to DoS via specially crafted LUA scripts 2025-10-08T08:43:23.522Z 2025-11-06T13:25:46.476Z
bit-keydb-2024-31228 Denial-of-service due to unbounded pattern matching in Redis 2024-10-09T16:30:39.030Z 2025-11-06T13:25:46.476Z
bit-keydb-2022-35977 Integer overflow in certain command arguments can drive Redis to OOM panic 2024-08-22T19:25:58.150Z 2025-11-06T13:25:46.476Z
bit-joomla-2020-13763 2025-04-03T14:10:16.806Z 2025-11-06T13:25:46.476Z
bit-joomla-2020-13761 2025-04-03T14:10:08.600Z 2025-11-06T13:25:46.476Z
bit-joomla-2020-13760 2025-04-03T14:10:04.787Z 2025-11-06T13:25:46.476Z
bit-jenkins-2025-59476 2025-09-19T09:57:11.182Z 2025-11-06T13:25:46.476Z
bit-jenkins-2025-59475 2025-09-19T09:57:09.400Z 2025-11-06T13:25:46.476Z
bit-jenkins-2025-59474 2025-09-19T09:57:07.574Z 2025-11-06T13:25:46.476Z
bit-jenkins-2021-43859 Denial of Service by injecting highly recursive collections or maps in XStream 2025-05-26T07:13:32.699Z 2025-11-06T13:25:46.476Z
bit-harbor-2025-32019 Harbor's repository description page allows for XSS 2025-07-29T05:40:29.320Z 2025-11-06T13:25:46.476Z
bit-grafana-2022-39201 Data source and plugin proxy endpoints could leak the authentication cookie to some destination plugins 2024-03-06T10:55:22.080Z 2025-11-06T13:25:46.476Z
bit-golang-2025-61724 Excessive CPU consumption in Reader.ReadResponse in net/textproto 2025-11-06T12:58:38.217Z 2025-11-06T13:25:46.476Z
bit-golang-2025-61723 Quadratic complexity when parsing some invalid inputs in encoding/pem 2025-11-06T12:58:34.335Z 2025-11-06T13:25:46.476Z
bit-golang-2025-58189 ALPN negotiation error contains attacker controlled information in crypto/tls 2025-11-06T12:58:30.596Z 2025-11-06T13:25:46.476Z
bit-golang-2025-58188 Panic when validating certificates with DSA public keys in crypto/x509 2025-11-06T12:58:26.740Z 2025-11-06T13:25:46.476Z
bit-golang-2025-58186 Lack of limit when parsing cookies can cause memory exhaustion in net/http 2025-11-06T12:58:17.587Z 2025-11-06T13:25:46.476Z
ID Description Updated
ID Description Published Updated
jvndb-2023-000084 WordPress Plugin "Advanced Custom Fields" vulnerable to cross-site scripting 2023-08-21T14:05+09:00 2024-03-25T17:55+09:00
jvndb-2024-000033 WordPress Plugin "easy-popup-show" vulnerable to cross-site request forgery 2024-03-25T13:31+09:00 2024-03-25T13:31+09:00
jvndb-2023-000055 ESS REC Agent Server Edition for Linux etc. vulnerable to directory traversal 2023-05-26T13:58+09:00 2024-03-21T17:15+09:00
jvndb-2023-000053 Tornado vulnerable to open redirect 2023-05-22T13:30+09:00 2024-03-21T17:05+09:00
jvndb-2023-000058 Pleasanter vulnerable to cross-site scripting 2023-05-31T15:34+09:00 2024-03-19T18:17+09:00
jvndb-2023-002002 Multiple vulnerabilities in Contec CONPROSYS HMI System (CHS) 2023-06-01T13:48+09:00 2024-03-19T18:13+09:00
jvndb-2023-000072 Improper restriction of XML external entity references (XXE) in XBRL data create application 2023-07-18T15:22+09:00 2024-03-19T18:11+09:00
jvndb-2023-000056 Starlette vulnerable to directory traversal 2023-05-30T13:34+09:00 2024-03-19T18:08+09:00
jvndb-2023-000125 Multiple vulnerabilities in BUFFALO VR-S1000 2023-12-26T15:51+09:00 2024-03-19T17:56+09:00
jvndb-2023-000123 Multiple vulnerabilities in GROWI 2023-12-13T15:30+09:00 2024-03-19T17:46+09:00
jvndb-2023-000052 DataSpider Servista uses a hard-coded cryptographic key 2023-05-31T15:34+09:00 2024-03-19T17:44+09:00
jvndb-2024-000032 Multiple vulnerabilities in FitNesse 2024-03-18T14:08+09:00 2024-03-19T11:02+09:00
jvndb-2023-014781 Brother iPrint&Scan Desktop for Windows vulnerable to improper link resolution before file access 2023-12-26T09:27+09:00 2024-03-18T18:05+09:00
jvndb-2023-000126 Multiple vulnerabilities in PowerCMS 2023-12-26T16:46+09:00 2024-03-18T17:58+09:00
jvndb-2024-000031 "ABEMA" App for Android fails to restrict access permissions 2024-03-15T16:37+09:00 2024-03-15T16:37+09:00
jvndb-2024-000013 Android App "Spoon" uses a hard-coded API key for an external service 2024-01-23T16:53+09:00 2024-03-14T17:44+09:00
jvndb-2024-000010 Improper restriction of XML external entity references (XXE) in "Electronic Delivery Check System (Ministry of Agriculture, Forestry and Fisheries The Agriculture and Rural Development Project Version)" 2024-01-23T15:25+09:00 2024-03-14T17:33+09:00
jvndb-2024-001002 Multiple TP-Link products vulnerable to OS command injection 2024-01-10T13:57+09:00 2024-03-14T13:52+09:00
jvndb-2024-000001 Improper input validation vulnerability in WordPress Plugin "WordPress Quiz Maker Plugin" 2024-01-12T13:51+09:00 2024-03-14T12:28+09:00
jvndb-2023-003757 Trend Micro Mobile Security vulnerable to cross-site scripting 2023-09-26T11:30+09:00 2024-03-13T18:07+09:00
jvndb-2023-002796 Multiple server-side request forgery vulnerabilities in Trend Micro Apex Central (July 2023) 2023-08-10T16:04+09:00 2024-03-13T17:58+09:00
jvndb-2024-000011 Multiple vulnerabilities in a-blog cms 2024-01-22T15:08+09:00 2024-03-13T17:50+09:00
jvndb-2024-000009 Improper restriction of XML external entity references (XXE) in Electronic Deliverables Creation Support Tool provided by Ministry of Defense 2024-01-23T15:13+09:00 2024-03-13T17:46+09:00
jvndb-2024-000008 Improper restriction of XML external entity references (XXE) in MLIT "Electronic Delivery Check System" and "Electronic delivery item Inspection Support System" 2024-01-23T16:57+09:00 2024-03-13T17:40+09:00
jvndb-2024-000012 Access analysis CGI An-Analyzer vulnerable to open redirect 2024-01-22T15:57+09:00 2024-03-13T17:34+09:00
jvndb-2023-006199 Multiple security updates for Trend Micro Apex One and Apex One as a Service (November 2023) 2023-11-13T17:28+09:00 2024-03-13T17:28+09:00
jvndb-2024-001062 Yamaha wireless LAN access point devices vulnerable to active debug code 2024-01-24T17:16+09:00 2024-03-13T17:24+09:00
jvndb-2024-002961 Information Exposure Vulnerability in Cosminexus Component Container 2024-03-13T12:10+09:00 2024-03-13T12:10+09:00
jvndb-2024-000004 Drupal vulnerable to improper handling of structural elements 2024-01-16T13:41+09:00 2024-03-12T17:33+09:00
jvndb-2024-000006 FusionPBX vulnerable to cross-site scripting 2024-01-19T12:30+09:00 2024-03-12T17:31+09:00
ID Description Updated
ID Description
ID Description Published Updated
cnvd-2026-04215 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04215) 2025-12-15 2026-01-16
cnvd-2026-04214 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04214) 2025-12-15 2026-01-16
cnvd-2026-04213 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04213) 2025-12-15 2026-01-16
cnvd-2026-04212 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04212) 2025-12-15 2026-01-16
cnvd-2026-04211 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04211) 2025-12-15 2026-01-16
cnvd-2026-04210 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04210) 2025-12-15 2026-01-16
cnvd-2026-04209 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04209) 2025-12-15 2026-01-16
cnvd-2026-04208 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04208) 2025-12-15 2026-01-16
cnvd-2026-04207 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04207) 2025-12-15 2026-01-16
cnvd-2026-04206 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04206) 2025-12-15 2026-01-16
cnvd-2026-04205 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04205) 2025-12-15 2026-01-16
cnvd-2026-04192 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04192) 2025-12-15 2026-01-16
cnvd-2026-04191 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04191) 2025-12-15 2026-01-16
cnvd-2026-04190 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04190) 2025-12-15 2026-01-16
cnvd-2026-04189 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04189) 2025-12-15 2026-01-16
cnvd-2026-04188 Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04188) 2025-12-15 2026-01-16
cnvd-2026-04187 WordPress插件Download Manager信息泄露漏洞 2025-12-25 2026-01-16
cnvd-2026-04186 WordPress插件All In One SEO Pack信息泄露漏洞 2025-12-25 2026-01-16
cnvd-2026-04185 D-Link DWR-M920命令注入漏洞 2026-01-14 2026-01-16
cnvd-2026-04184 D-Link DSL-124访问控制错误漏洞 2026-01-14 2026-01-16
cnvd-2026-04863 Google Android释放后重用漏洞(CNVD-2026-04863) 2025-11-11 2026-01-15
cnvd-2026-04862 Google Android缺少权限检查漏洞 2025-12-10 2026-01-15
cnvd-2026-04861 Google Android输入验证不当漏洞 2025-12-10 2026-01-15
cnvd-2026-04860 Google Android越界写入漏洞 2025-12-10 2026-01-15
cnvd-2026-04859 Google Android竞争条件漏洞 2025-12-10 2026-01-15
cnvd-2026-04858 Google Android越界写入漏洞 2025-12-10 2026-01-15
cnvd-2026-04857 Google Android堆缓冲区溢出漏洞 2025-12-10 2026-01-15
cnvd-2026-04856 Huawei HarmonyOS特权升级漏洞 2024-01-23 2026-01-15
cnvd-2026-04855 Huawei HarmonyOS/EMUI授权漏洞 2024-01-23 2026-01-15
cnvd-2026-04854 Huawei HarmonyOS/EMUI拒绝服务漏洞 2024-01-23 2026-01-15
ID Description Published Updated
bdu:2025-10781 Уязвимость функции vmci_host_setup_notify() файла mm/gup.c ядра операционной системы Linu… 05.09.2025 16.02.2026
bdu:2025-10780 Уязвимость компонента net_sched ядра операционной системы Linux, позволяющая нарушителю о… 05.09.2025 16.02.2026
bdu:2025-10779 Уязвимость функции usbhid_parse() компонента bNumDescriptors ядра операционной системы Li… 05.09.2025 16.02.2026
bdu:2025-10778 Уязвимость функции for_each_possible_cpu() ядра операционной системы Linux, позволяющая н… 05.09.2025 16.02.2026
bdu:2025-10777 Уязвимость компонента mdiobus ядра операционной системы Linux, позволяющая нарушителю вып… 05.09.2025 16.02.2026
bdu:2025-10774 Уязвимость функции __red_change() ядра операционной системы Linux, позволяющая нарушителю… 05.09.2025 16.02.2026
bdu:2025-10773 Уязвимость функции sk_is_readable() ядра операционной системы Linux, позволяющая нарушите… 05.09.2025 16.02.2026
bdu:2025-10772 Уязвимость функции nfs4_state_start_net операционной системы Linux, позволяющая нарушител… 05.09.2025 16.02.2026
bdu:2025-10770 Уязвимость функции usb_bulk_msg() операционной системы Linux, позволяющая нарушителю вызв… 05.09.2025 16.02.2026
bdu:2025-10768 Уязвимость ядра операционной системы Linux, связанная с недостаточной проверкой входных д… 05.09.2025 16.02.2026
bdu:2025-10766 Уязвимость функции fbcon_info_from_console ядра операционной системы Linux, позволяющая н… 05.09.2025 16.02.2026
bdu:2025-10764 Уязвимость функции rcu_read_lock_trace_held ядра операционной системы Linux, позволяющая … 05.09.2025 16.02.2026
bdu:2025-10763 Уязвимость функции dell_rbu операционной системы Linux, позволяющая нарушителю вызвать от… 05.09.2025 16.02.2026
bdu:2025-10762 Уязвимость функции nvmet_tcp_set_queue_sock операционной системы Linux, позволяющая наруш… 05.09.2025 16.02.2026
bdu:2025-10758 Уязвимость функции af_alg ядра операционной системы Linux, позволяющая нарушителю вызвать… 05.09.2025 16.02.2026
bdu:2025-10755 Уязвимость функции megaraid_sas ядра операционной системы Linux, позволяющая нарушителю в… 05.09.2025 16.02.2026
bdu:2025-10752 Уязвимость функции memdup_user ядра операционной системы Linux, позволяющая нарушителю вы… 05.09.2025 16.02.2026
bdu:2025-10749 Уязвимость функции clip_push ядра операционной системы Linux, позволяющая нарушителю вызв… 05.09.2025 16.02.2026
bdu:2025-10747 Уязвимость функции jbd2_journal_dirty_metadata ядра операционной системы Linux, позволяющ… 05.09.2025 16.02.2026
bdu:2025-10746 Уязвимость функции pata_via ядра операционной системы Linux, позволяющая нарушителю вызва… 05.09.2025 16.02.2026
bdu:2025-10745 Уязвимость функции gpio_keys_irq_timer ядра операционной системы Linux, позволяющая наруш… 05.09.2025 16.02.2026
bdu:2025-10744 Уязвимость функции arch_memory_failure ядра операционной системы Linux, позволяющая наруш… 05.09.2025 16.02.2026
bdu:2025-10743 Уязвимость функции memcpy ядра операционной системы Linux, позволяющая нарушителю вызвать… 05.09.2025 16.02.2026
bdu:2025-10739 Уязвимость функции ptp_vclock_in_use ядра операционной системы Linux, позволяющая нарушит… 05.09.2025 16.02.2026
bdu:2025-10737 Уязвимость функции rcu_dereference_rtnl ядра операционной системы Linux, позволяющая нару… 05.09.2025 16.02.2026
bdu:2025-10735 Уязвимость функции lecd_attach ядра операционной системы Linux, позволяющая нарушителю вы… 05.09.2025 16.02.2026
bdu:2025-10730 Уязвимость функции generate_encryptionkey() компонента ksmbd ядра операционной системы Li… 05.09.2025 16.02.2026
bdu:2025-10729 Уязвимость функции smb2_sess_setup() в модуле fs/smb/server/smb2pdu.c поддержки сервера S… 05.09.2025 16.02.2026
bdu:2025-10727 Уязвимость функции mmap() ядра операционной системы Linux, позволяющая нарушителю вызвать… 05.09.2025 16.02.2026
bdu:2025-10726 Уязвимость ядра операционной системы Linux, связанная с ошибками управления состоянием, п… 05.09.2025 16.02.2026
ID Description Published Updated
certfr-2025-avi-0716 Vulnérabilité dans les produits Apple 2025-08-21T00:00:00.000000 2025-08-21T00:00:00.000000
certfr-2025-avi-0715 Multiples vulnérabilités dans les produits Liferay 2025-08-21T00:00:00.000000 2025-08-21T00:00:00.000000
certfr-2025-avi-0614 Multiples vulnérabilités dans les produits Mattermost 2025-07-23T00:00:00.000000 2025-08-21T00:00:00.000000
certfr-2025-avi-0714 Multiples vulnérabilités dans les produits Mozilla 2025-08-20T00:00:00.000000 2025-08-20T00:00:00.000000
certfr-2025-avi-0713 Multiples vulnérabilités dans les produits Liferay 2025-08-20T00:00:00.000000 2025-08-20T00:00:00.000000
certfr-2025-avi-0712 Vulnérabilité dans Apereo CAS 2025-08-20T00:00:00.000000 2025-08-20T00:00:00.000000
certfr-2025-avi-0711 Vulnérabilité dans Google Chrome 2025-08-20T00:00:00.000000 2025-08-20T00:00:00.000000
certfr-2025-avi-0710 Multiples vulnérabilités dans les produits F5 2025-08-19T00:00:00.000000 2025-08-19T00:00:00.000000
certfr-2025-avi-0709 Multiples vulnérabilités dans les produits Liferay 2025-08-19T00:00:00.000000 2025-08-19T00:00:00.000000
certfr-2025-avi-0525 Multiples vulnérabilités dans Mattermost Server 2025-06-19T00:00:00.000000 2025-08-19T00:00:00.000000
certfr-2025-avi-0453 Vulnérabilité dans Mattermost Server 2025-05-27T00:00:00.000000 2025-08-19T00:00:00.000000
certfr-2025-avi-0441 Vulnérabilité dans Mattermost Server 2025-05-22T00:00:00.000000 2025-08-19T00:00:00.000000
certfr-2025-avi-0355 Multiples vulnérabilités dans Mattermost Server 2025-04-30T00:00:00.000000 2025-08-19T00:00:00.000000
certfr-2025-avi-0708 Multiples vulnérabilités dans les produits Cisco 2025-08-18T00:00:00.000000 2025-08-18T00:00:00.000000
certfr-2025-avi-0706 Multiples vulnérabilités dans Matrix 2025-08-18T00:00:00.000000 2025-08-18T00:00:00.000000
certfr-2025-avi-0705 Multiples vulnérabilités dans Microsoft Edge 2025-08-18T00:00:00.000000 2025-08-18T00:00:00.000000
certfr-2025-avi-0704 Vulnérabilité dans les produits Siemens 2025-08-18T00:00:00.000000 2025-08-18T00:00:00.000000
certfr-2025-avi-0703 Vulnérabilité dans Synology BeeDrive 2025-08-18T00:00:00.000000 2025-08-18T00:00:00.000000
certfr-2025-avi-0702 Multiples vulnérabilités dans PostgreSQL 2025-08-18T00:00:00.000000 2025-08-18T00:00:00.000000
certfr-2025-avi-0701 Vulnérabilité dans IBM WebSphere 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
certfr-2025-avi-0700 Multiples vulnérabilités dans le noyau Linux d'Ubuntu 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
certfr-2025-avi-0699 Multiples vulnérabilités dans le noyau Linux de Red Hat 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
certfr-2025-avi-0698 Multiples vulnérabilités dans le noyau Linux de Debian 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
certfr-2025-avi-0697 Multiples vulnérabilités dans le noyau Linux de Debian LTS 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
certfr-2025-avi-0696 Vulnérabilité dans Spring Framework 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
certfr-2025-avi-0695 Multiples vulnérabilités dans les produits Palo Alto Networks 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
certfr-2025-avi-0694 Vulnérabilité dans Apache Tomcat 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
certfr-2025-avi-0693 Multiples vulnérabilités dans VMware Tanzu 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
certfr-2025-avi-0692 Multiples vulnérabilités dans Ruby on Rails 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
certfr-2025-avi-0691 Vulnérabilité dans Nginx 2025-08-14T00:00:00.000000 2025-08-14T00:00:00.000000
ID Description Published Updated
osv-2024-574 Heap-buffer-overflow in spvtools::disassemble::InstructionDisassembler::EmitInstruction 2024-06-19T00:15:01.983925Z 2024-06-25T14:22:08.649397Z
osv-2024-535 Use-of-uninitialized-value in spvTextEncodeOperand 2024-06-06T00:00:55.007699Z 2024-06-25T14:21:53.898093Z
osv-2024-518 Security exception in com.github.javaparser.CommentsInserter.insertComments 2024-05-30T00:16:42.628026Z 2024-06-24T14:17:55.597576Z
osv-2024-577 Heap-use-after-free in sputs 2024-06-22T00:14:08.186738Z 2024-06-22T00:14:08.187320Z
osv-2024-575 UNKNOWN READ in H5SL_remove 2024-06-20T00:03:37.435999Z 2024-06-20T00:03:37.436551Z
osv-2024-567 Security exception in jflex.core.NFA.insertNFA 2024-06-16T00:06:55.824759Z 2024-06-16T00:06:55.825276Z
osv-2024-552 UNKNOWN READ in ndpi_search_zoom 2024-06-12T00:12:06.312903Z 2024-06-12T00:12:06.313282Z
osv-2024-551 Heap-buffer-overflow in mz_zip_mem_read_func 2024-06-12T00:06:30.075962Z 2024-06-12T00:06:30.076324Z
osv-2024-550 Heap-buffer-overflow in mz_zip_mem_read_func 2024-06-12T00:06:02.418206Z 2024-06-12T00:06:02.418563Z
osv-2024-548 Use-of-uninitialized-value in icalmemory_strdup 2024-06-12T00:00:26.364017Z 2024-06-12T00:00:26.364669Z
osv-2024-521 Heap-buffer-overflow in ubidi_writeReordered_76 2024-05-31T00:06:51.180600Z 2024-05-31T00:06:51.181049Z
osv-2024-345 Use-of-uninitialized-value in aesEncryptBlock 2024-04-30T00:03:14.686810Z 2024-05-27T14:03:03.110153Z
osv-2024-456 Heap-buffer-overflow in ih264d_read_coeff4x4_cabac 2024-05-09T00:08:35.451422Z 2024-05-27T14:02:56.983104Z
osv-2024-323 Security exception in com.puppycrawl.tools.checkstyle.JavaAstVisitor.getInnerBopAst 2024-04-29T05:41:42.743610Z 2024-05-27T14:02:31.976819Z
osv-2024-333 UNKNOWN READ in Mat_VarPrint 2024-04-30T00:01:20.039792Z 2024-05-27T14:01:03.854129Z
osv-2024-330 UNKNOWN READ in std::__1::__POW10_SPLIT_2 2024-04-30T00:00:31.577722Z 2024-05-27T14:01:02.168724Z
osv-2024-504 Heap-buffer-overflow in ultrahdr::getYuv420Pixel 2024-05-25T00:01:08.542552Z 2024-05-25T00:01:08.543179Z
osv-2024-503 Heap-buffer-overflow in pdf_save_viewer_state 2024-05-24T00:02:37.047119Z 2024-05-24T00:02:37.047771Z
osv-2024-496 UNKNOWN READ in chunk_free_object 2024-05-22T00:06:41.510071Z 2024-05-22T00:06:41.510555Z
osv-2024-495 UNKNOWN READ in chunk_free_object 2024-05-22T00:04:27.058012Z 2024-05-22T00:04:27.058432Z
osv-2024-493 UNKNOWN READ in chunk_free_object 2024-05-22T00:00:49.459478Z 2024-05-22T00:00:49.459808Z
osv-2024-490 Security exception in com.github.javaparser.CommentsInserter.insertComments 2024-05-20T00:07:13.417197Z 2024-05-20T00:07:13.417898Z
osv-2024-477 Heap-buffer-overflow in ultrahdr::gain_map_metadata::decodeGainmapMetadata 2024-05-16T00:07:25.350135Z 2024-05-16T00:07:25.350518Z
osv-2024-476 Heap-buffer-overflow in ultrahdr::getYuv420Pixel 2024-05-16T00:01:52.617825Z 2024-05-16T00:01:52.618175Z
osv-2024-471 Use-of-uninitialized-value in vpx_codec_peek_stream_info 2024-05-15T00:02:46.464995Z 2024-05-15T00:02:46.465573Z
osv-2024-469 Heap-buffer-overflow in check_content_type_and_change_protocol 2024-05-13T00:06:08.552810Z 2024-05-13T00:06:08.553286Z
osv-2024-402 Stack-buffer-overflow in SwiftProtobuf.TextFormatScanner. 2024-05-03T00:00:37.545228Z 2024-05-10T00:00:37.545806Z
osv-2024-432 Use-of-uninitialized-value in ssl_ctx_make_profiles 2024-05-05T00:15:04.589857Z 2024-05-08T03:26:30Z
osv-2024-430 Use-of-uninitialized-value in ssl_str_to_group_ids 2024-05-05T00:14:35.047133Z 2024-05-08T03:26:30Z
osv-2024-417 Use-of-uninitialized-value in bssl::ssl_cipher_process_rulestr 2024-05-05T00:05:37.413119Z 2024-05-08T03:26:30Z
ID Description Published Updated
rustsec-2020-0090 Thex<T> allows data races of non-Send types across threads 2020-12-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0089 nanorand 0.5.0 - RNGs failed to generate properly for non-64-bit numbers 2020-12-09T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0088 MPMCConsumer/Producer allows sending non-Send type across threads 2020-11-29T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0087 TryMutex<T> allows sending non-Send type across threads 2020-11-17T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0082 ordered_float:NotNan may contain NaN after panic in assignment operators 2020-12-06T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0081 `mio` invalidly assumes the memory layout of std::net::SocketAddr 2020-11-02T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0080 `miow` invalidly assumes the memory layout of std::net::SocketAddr 2020-11-13T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0075 Unexpected panic when decoding tokens 2020-11-29T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0074 Reference counting error in `From<Py<T>>` 2020-11-28T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0073 Mutable reference with immutable provenance 2020-11-12T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0072 GenericMutexGuard allows data races of non-Sync types across threads 2020-10-31T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0070 Some lock_api lock guard objects can cause data races 2020-11-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0069 Argument injection in sendmail transport 2020-11-11T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0068 Unexpected panic in multihash `from_slice` parsing code 2020-11-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0062 Improper `Sync` implementation on `FuturesUnordered` in futures-utils can cause data corruption 2020-01-24T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0061 futures_task::noop_waker_ref can segfault due to dereferencing a NULL pointer 2020-05-03T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0060 futures_task::waker may cause a use-after-free if used on a type that isn't 'static 2020-09-04T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0059 MutexGuard::map can cause a data race in safe code 2020-10-22T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0052 Undefined Behavior in bounded channel 2020-06-26T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0050 VecCopy allows misaligned access to elements 2020-09-27T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0049 Use-after-free in Framed due to lack of pinning 2020-01-30T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0048 Use-after-free in BodyStream due to lack of pinning 2020-01-24T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0047 array_queue pop_back() may cause a use-after-free 2020-09-26T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0046 bespoke Cell implementation allows obtaining several mutable references to the same data 2020-01-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0045 bespoke Cell implementation allows obtaining several mutable references to the same data 2020-01-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0044 Unsafe Send implementation in Atom allows data races 2020-09-21T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0043 Insufficient size checks in outgoing buffer in ws allows remote attacker to run the process out of memory 2020-09-25T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0042 Missing check in ArrayVec leads to out-of-bounds write. 2020-09-24T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0041 Multiple soundness issues in Chunk and InlineArray 2020-09-06T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0040 Obstack generates unaligned references 2020-09-03T12:00:00Z 2023-06-13T13:10:24Z
ID Description Published Updated
alsa-2025:9327 Important: libblockdev security update 2025-06-23T00:00:00Z 2025-07-03T08:41:41Z
alsa-2025:9318 Important: javapackages-tools:201801 security update 2025-06-23T00:00:00Z 2025-07-03T08:39:03Z
alsa-2025:9330 Important: perl-YAML-LibYAML security update 2025-06-23T00:00:00Z 2025-07-03T08:23:21Z
alsa-2025:9392 Important: tigervnc security update 2025-06-23T00:00:00Z 2025-07-03T08:21:18Z
alsa-2025:9396 Important: mod_auth_openidc security update 2025-06-23T00:00:00Z 2025-07-03T08:18:42Z
alsa-2025:10196 Important: thunderbird security update 2025-07-02T00:00:00Z 2025-07-03T07:55:59Z
alsa-2025:10195 Important: thunderbird security update 2025-07-02T00:00:00Z 2025-07-03T07:55:03Z
alsa-2025:10140 Important: python3.12 security update 2025-07-01T00:00:00Z 2025-07-03T07:53:50Z
alsa-2025:10189 Important: python3.12 security update 2025-07-02T00:00:00Z 2025-07-02T13:57:56Z
alsa-2025:10148 Important: python3.11 security update 2025-07-01T00:00:00Z 2025-07-02T13:55:59Z
alsa-2025:6977 Moderate: python3.9 security update 2025-05-13T00:00:00Z 2025-07-02T13:51:48Z
alsa-2025:6990 Moderate: grub2 security update 2025-05-13T00:00:00Z 2025-07-02T13:49:48Z
alsa-2025:7043 Moderate: microcode_ctl security update 2025-05-13T00:00:00Z 2025-07-02T13:47:48Z
alsa-2025:7049 Moderate: python-requests security update 2025-05-13T00:00:00Z 2025-07-02T13:46:12Z
alsa-2025:7050 Moderate: rsync security update 2025-05-13T00:00:00Z 2025-07-02T13:44:15Z
alsa-2025:7064 Moderate: iptraf-ng security update 2025-05-13T00:00:00Z 2025-07-02T13:42:29Z
alsa-2025:7067 Moderate: krb5 security update 2025-05-13T00:00:00Z 2025-07-02T13:41:00Z
alsa-2025:7076 Moderate: gnutls security update 2025-05-13T00:00:00Z 2025-07-02T13:39:03Z
alsa-2025:7077 Moderate: libtasn1 security update 2025-05-13T00:00:00Z 2025-07-02T13:37:08Z
alsa-2025:7107 Moderate: python3.12 security update 2025-05-13T00:00:00Z 2025-07-02T13:35:29Z
alsa-2025:7094 Moderate: aardvark-dns security update 2025-05-13T00:00:00Z 2025-07-02T13:33:31Z
alsa-2025:7109 Moderate: python3.11 security update 2025-05-13T00:00:00Z 2025-07-02T13:32:00Z
alsa-2025:7118 Important: osbuild and osbuild-composer security update 2025-05-13T00:00:00Z 2025-07-02T13:30:04Z
alsa-2025:7138 Moderate: protobuf security update 2025-05-13T00:00:00Z 2025-07-02T13:27:31Z
alsa-2025:7147 Moderate: rpm-ostree security update 2025-05-13T00:00:00Z 2025-07-02T13:25:32Z
alsa-2025:7160 Moderate: bootc security update 2025-05-13T00:00:00Z 2025-07-02T13:23:57Z
alsa-2025:7165 Moderate: xorg-x11-server-Xwayland security update 2025-05-13T00:00:00Z 2025-07-02T13:22:24Z
alsa-2025:7163 Moderate: xorg-x11-server security update 2025-05-13T00:00:00Z 2025-07-02T13:20:45Z
alsa-2025:7178 Moderate: gstreamer1, gstreamer1-plugins-bad-free, gstreamer1-plugins-ugly-free, and gstreamer1-rtsp-server security update 2025-05-13T00:00:00Z 2025-07-02T13:18:46Z
alsa-2025:7201 Moderate: corosync security update 2025-05-13T00:00:00Z 2025-07-02T13:16:42Z