Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2025-1974 |
9.8 (3.1)
|
ingress-nginx admission controller RCE escalation |
kubernetes |
ingress-nginx |
2025-03-24T23:28:48.985Z | 2026-02-26T19:09:14.726Z |
| CVE-2025-21158 |
7.8 (3.1)
|
InDesign Desktop | Integer Underflow (Wrap or Wraparou… |
Adobe |
InDesign Desktop |
2025-02-11T17:10:47.804Z | 2026-02-26T19:09:14.593Z |
| CVE-2025-21335 |
7.8 (3.1)
|
Windows Hyper-V NT Kernel Integration VSP Elevation of… |
Microsoft |
Windows 10 Version 21H2 |
2025-01-14T18:04:17.808Z | 2026-02-26T19:09:14.341Z |
| CVE-2025-21156 |
7.8 (3.1)
|
InCopy | Integer Underflow (Wrap or Wraparound) (CWE-191) |
Adobe |
InCopy |
2025-02-11T17:21:25.696Z | 2026-02-26T19:09:14.174Z |
| CVE-2025-1097 |
8.8 (3.1)
|
ingress-nginx controller - configuration injection via… |
kubernetes |
ingress-nginx |
2025-03-24T23:29:05.879Z | 2026-02-26T19:09:14.028Z |
| CVE-2025-21187 |
7.8 (3.1)
|
Microsoft Power Automate Remote Code Execution Vulnerability |
Microsoft |
Power Automate for Desktop |
2025-01-14T18:04:20.259Z | 2026-02-26T19:09:13.876Z |
| CVE-2025-21159 |
7.8 (3.1)
|
Illustrator | Use After Free (CWE-416) |
Adobe |
Illustrator |
2025-02-11T17:27:39.557Z | 2026-02-26T19:09:13.710Z |
| CVE-2025-21186 |
7.8 (3.1)
|
Microsoft Access Remote Code Execution Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2025-01-14T18:04:20.776Z | 2026-02-26T19:09:13.442Z |
| CVE-2025-1098 |
8.8 (3.1)
|
ingress-nginx controller - configuration injection via… |
kubernetes |
ingress-nginx |
2025-03-24T23:29:15.610Z | 2026-02-26T19:09:13.280Z |
| CVE-2025-21163 |
7.8 (3.1)
|
Illustrator | Stack-based Buffer Overflow (CWE-121) |
Adobe |
Illustrator |
2025-02-11T17:27:40.356Z | 2026-02-26T19:09:13.139Z |
| CVE-2025-21224 |
8.1 (3.1)
|
Windows Line Printer Daemon (LPD) Service Remote Code … |
Microsoft |
Windows 10 Version 21H2 |
2025-01-14T18:04:22.623Z | 2026-02-26T19:09:12.951Z |
| CVE-2025-24514 |
8.8 (3.1)
|
ingress-nginx controller - configuration injection via… |
kubernetes |
ingress-nginx |
2025-03-24T23:29:36.802Z | 2026-02-26T19:09:12.808Z |
| CVE-2025-21160 |
7.8 (3.1)
|
Illustrator | Integer Underflow (Wrap or Wraparound) (… |
Adobe |
Illustrator |
2025-02-11T17:27:41.155Z | 2026-02-26T19:09:12.642Z |
| CVE-2025-21172 |
7.5 (3.1)
|
.NET and Visual Studio Remote Code Execution Vulnerability |
Microsoft |
.NET 8.0 |
2025-01-14T18:04:38.469Z | 2026-02-26T19:09:12.470Z |
| CVE-2024-58104 |
7.3 (3.1)
|
A vulnerability in the Trend Micro Apex One Secu… |
Trend Micro, Inc. |
Trend Micro Apex One |
2025-03-25T17:37:28.783Z | 2026-02-26T19:09:12.303Z |
| CVE-2025-24410 |
8.7 (3.1)
|
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) |
Adobe |
Adobe Commerce |
2025-02-11T17:37:33.017Z | 2026-02-26T19:09:12.134Z |
| CVE-2025-21361 |
7.8 (3.1)
|
Microsoft Outlook Remote Code Execution Vulnerability |
Microsoft |
Microsoft Office LTSC for Mac 2021 |
2025-01-14T18:04:43.571Z | 2026-02-26T19:09:11.962Z |
| CVE-2024-58105 |
7.3 (3.1)
|
A vulnerability in the Trend Micro Apex One Secu… |
Trend Micro, Inc. |
Trend Micro Apex One |
2025-03-25T17:37:39.464Z | 2026-02-26T19:09:11.806Z |
| CVE-2025-24412 |
8.7 (3.1)
|
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) |
Adobe |
Adobe Commerce |
2025-02-11T17:37:36.216Z | 2026-02-26T19:09:11.638Z |
| CVE-2025-21372 |
7.8 (3.1)
|
Microsoft Brokering File System Elevation of Privilege… |
Microsoft |
Windows 11 Version 24H2 |
2025-01-14T18:04:44.826Z | 2026-02-26T19:09:11.485Z |
| CVE-2025-24417 |
8.7 (3.1)
|
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) |
Adobe |
Adobe Commerce |
2025-02-11T17:37:39.575Z | 2026-02-26T19:09:11.348Z |
| CVE-2025-21402 |
7.8 (3.1)
|
Microsoft Office OneNote Remote Code Execution Vulnerability |
Microsoft |
Microsoft Office LTSC for Mac 2021 |
2025-01-14T18:04:46.460Z | 2026-02-26T19:09:11.196Z |
| CVE-2025-2783 |
8.3 (3.1)
|
Incorrect handle provided in unspecified circumst… |
Google |
Chrome |
2025-03-26T16:07:51.034Z | 2026-02-26T19:09:11.033Z |
| CVE-2025-24418 |
8.1 (3.1)
|
Adobe Commerce | Improper Authorization (CWE-285) |
Adobe |
Adobe Commerce |
2025-02-11T17:37:41.236Z | 2026-02-26T19:09:10.892Z |
| CVE-2025-21333 |
7.8 (3.1)
|
Windows Hyper-V NT Kernel Integration VSP Elevation of… |
Microsoft |
Windows 10 Version 21H2 |
2025-01-14T18:04:50.962Z | 2026-02-26T19:09:10.751Z |
| CVE-2025-30407 |
6.3 (3.0)
|
Local privilege escalation due to a binary hijack… |
Acronis |
Acronis Cyber Protect Cloud Agent |
2025-03-26T21:32:30.085Z | 2026-02-26T19:09:10.614Z |
| CVE-2025-24438 |
8.7 (3.1)
|
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) |
Adobe |
Adobe Commerce |
2025-02-11T17:37:42.877Z | 2026-02-26T19:09:10.474Z |
| CVE-2025-21334 |
7.8 (3.1)
|
Windows Hyper-V NT Kernel Integration VSP Elevation of… |
Microsoft |
Windows 10 Version 21H2 |
2025-01-14T18:04:51.608Z | 2026-02-26T19:09:10.178Z |
| CVE-2025-20231 |
7.1 (3.1)
|
Sensitive Information Disclosure in Splunk Secure Gate… |
Splunk |
Splunk Enterprise |
2025-03-26T21:45:41.250Z | 2026-02-26T19:09:10.032Z |
| CVE-2025-24413 |
8.7 (3.1)
|
Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79) |
Adobe |
Adobe Commerce |
2025-02-11T17:37:49.367Z | 2026-02-26T19:09:09.876Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| fkie_cve-2025-15059 | GIMP PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerab… | 2026-01-23T04:16:00.740 | 2026-02-26T20:04:21.843 |
| fkie_cve-2025-70045 | An issue pertaining to CWE-295: Improper Certificate Validation was discovered in jxcore jxm master… | 2026-02-23T16:29:36.323 | 2026-02-26T20:03:59.297 |
| fkie_cve-2025-11002 | 7-Zip ZIP File Parsing Directory Traversal Remote Code Execution Vulnerability. This vulnerability … | 2026-01-23T04:16:00.553 | 2026-02-26T20:03:49.037 |
| fkie_cve-2025-70058 | An issue pertaining to CWE-295: Improper Certificate Validation was discovered in YMFE yapi v1.12.0… | 2026-02-23T16:29:36.433 | 2026-02-26T20:03:06.150 |
| fkie_cve-2026-22977 | In the Linux kernel, the following vulnerability has been resolved: net: sock: fix hardened userco… | 2026-01-21T14:16:06.853 | 2026-02-26T20:02:55.910 |
| fkie_cve-2026-22976 | In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_qfq: Fix NULL d… | 2026-01-21T07:16:01.433 | 2026-02-26T20:02:36.820 |
| fkie_cve-2025-61146 | saitoha libsixel until v1.8.7 was discovered to contain a memory leak via the component malloc_stub.c. | 2026-02-23T19:22:56.880 | 2026-02-26T20:01:26.777 |
| fkie_cve-2026-0399 | Multiple post-authentication stack-based buffer overflow vulnerabilities in the SonicOS management … | 2026-02-24T15:21:36.980 | 2026-02-26T20:00:40.877 |
| fkie_cve-2026-22785 | orval generates type-safe JS clients (TypeScript) from any valid OpenAPI v3 or Swagger v2 specifica… | 2026-01-12T19:16:04.287 | 2026-02-26T20:00:15.910 |
| fkie_cve-2025-64124 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerab… | 2026-01-03T01:15:42.750 | 2026-02-26T19:59:52.763 |
| fkie_cve-2025-64123 | Unintended Proxy or Intermediary vulnerability in Nuvation Energy Multi-Stack Controller (MSC) allo… | 2026-01-02T22:15:44.787 | 2026-02-26T19:59:40.363 |
| fkie_cve-2026-27567 | Payload is a free and open source headless content management system. Prior to 3.75.0, a Server-Sid… | 2026-02-24T15:21:38.273 | 2026-02-26T19:59:33.657 |
| fkie_cve-2025-64122 | Insufficiently Protected Credentials vulnerability in Nuvation Energy Multi-Stack Controller (MSC) … | 2026-01-02T22:15:44.660 | 2026-02-26T19:59:24.570 |
| fkie_cve-2025-64121 | Authentication Bypass Using an Alternate Path or Channel vulnerability in Nuvation Energy Multi-Sta… | 2026-01-02T22:15:44.533 | 2026-02-26T19:58:29.730 |
| fkie_cve-2025-64120 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerab… | 2026-01-02T22:15:44.403 | 2026-02-26T19:58:19.450 |
| fkie_cve-2026-27568 | WWBN AVideo is an open source video platform. Prior to version 21.0, AVideo allows Markdown in vide… | 2026-02-24T15:21:38.843 | 2026-02-26T19:57:52.213 |
| fkie_cve-2025-15284 | Improper Input Validation vulnerability in qs (parse modules) allows HTTP DoS.This issue affects qs… | 2025-12-29T23:15:42.703 | 2026-02-26T19:57:11.663 |
| fkie_cve-2026-0805 | An input neutralization vulnerability in the Backup Configuration component of Crafty Controller al… | 2026-01-30T07:16:14.917 | 2026-02-26T19:57:06.950 |
| fkie_cve-2026-0963 | An input neutralization vulnerability in the File Operations API Endpoint component of Crafty Contr… | 2026-01-30T07:16:15.173 | 2026-02-26T19:54:36.460 |
| fkie_cve-2026-26045 | A flaw was identified in Moodle’s backup restore functionality where specially crafted backup files… | 2026-02-21T06:16:58.867 | 2026-02-26T19:47:42.953 |
| fkie_cve-2026-26046 | A vulnerability was found in a Moodle TeX filter administrative setting where insufficient sanitiza… | 2026-02-21T06:17:00.203 | 2026-02-26T19:46:57.600 |
| fkie_cve-2026-27584 | Actual is a local-first personal finance tool. Prior to version 26.2.1, missing authentication midd… | 2026-02-24T15:21:39.010 | 2026-02-26T19:46:14.007 |
| fkie_cve-2026-26047 | A denial-of-service vulnerability was identified in Moodle’s TeX formula editor. When rendering TeX… | 2026-02-21T06:17:00.377 | 2026-02-26T19:45:29.417 |
| fkie_cve-2025-63409 | Privilege escalation and improper access control in GCOM EPON 1GE C00R371V00B01 allows remote authe… | 2026-02-24T16:24:06.990 | 2026-02-26T19:42:40.950 |
| fkie_cve-2025-69985 | FUXA 1.2.8 and prior contains an Authentication Bypass vulnerability leading to Remote Code Executi… | 2026-02-24T16:24:07.120 | 2026-02-26T19:39:20.677 |
| fkie_cve-2025-13776 | Multiple Finka programs use hard-coded Firebird database credentials (shared across all instances o… | 2026-02-24T17:29:02.023 | 2026-02-26T19:38:41.043 |
| fkie_cve-2026-25370 | Missing Authorization vulnerability in AresIT WP Compress wp-compress-image-optimizer allows Exploi… | 2026-02-19T09:16:19.707 | 2026-02-26T19:32:39.017 |
| fkie_cve-2026-23543 | Missing Authorization vulnerability in WPDeveloper Essential Addons for Elementor essential-addons-… | 2026-02-19T09:16:12.197 | 2026-02-26T19:32:38.227 |
| fkie_cve-2025-8882 | Use after free in Aura in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convi… | 2025-08-13T03:15:39.507 | 2026-02-26T19:32:33.767 |
| fkie_cve-2025-40553 | SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulnerabi… | 2026-01-28T08:16:02.583 | 2026-02-26T19:30:48.297 |
| ID | Severity | Description | Published | Updated |
|---|---|---|---|---|
| ghsa-fw7p-cggr-9xm6 |
7.1 (3.1)
|
A flaw was found in the udisks storage management daemon that exposes a privileged D-Bus API for re… | 2026-02-25T12:30:29Z | 2026-02-25T12:30:29Z |
| ghsa-4qpc-c9r6-9jrx |
4.3 (3.1)
|
The Disable Admin Notices – Hide Dashboard Notifications plugin for WordPress is vulnerable to Cros… | 2026-02-25T12:30:28Z | 2026-02-25T12:30:29Z |
| ghsa-x4x7-v8wj-3952 |
4.3 (3.1)
|
The WP Recipe Maker plugin for WordPress is vulnerable to unauthorized access of data due to a miss… | 2026-02-25T12:30:28Z | 2026-02-25T12:30:28Z |
| ghsa-wrj5-2cc6-7p8j |
4.3 (3.1)
|
The Post Duplicator plugin for WordPress is vulnerable to unauthorized arbitrary protected post met… | 2026-02-25T12:30:28Z | 2026-02-25T12:30:28Z |
| ghsa-xcq6-x53r-q98g |
8.8 (3.1)
7.4 (4.0)
|
A security flaw has been discovered in Tenda F453 1.0.0.3. The impacted element is the function for… | 2026-02-25T09:30:26Z | 2026-02-25T09:30:27Z |
| ghsa-v72r-wpp2-8369 |
7.5 (3.1)
|
The WPGSI: Spreadsheet Integration plugin for WordPress is vulnerable to unauthorized modification … | 2026-02-25T09:30:27Z | 2026-02-25T09:30:27Z |
| ghsa-rjq9-488h-qv7q |
3.5 (3.1)
2.0 (4.0)
|
A flaw has been found in SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System… | 2026-02-25T09:30:27Z | 2026-02-25T09:30:27Z |
| ghsa-p7fh-wf7x-3xhv |
5.0 (3.1)
|
The Responsive Lightbox & Gallery plugin for WordPress is vulnerable to Server-Side Request Forgery… | 2026-02-25T09:30:27Z | 2026-02-25T09:30:27Z |
| ghsa-mf59-ffwh-5qhw |
2.4 (3.1)
1.9 (4.0)
|
A vulnerability was detected in SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management… | 2026-02-25T09:30:26Z | 2026-02-25T09:30:27Z |
| ghsa-jv27-w2xj-6cq3 |
8.8 (3.1)
|
The Advanced Woo Labels plugin for WordPress is vulnerable to Remote Code Execution in all versions… | 2026-02-25T09:30:26Z | 2026-02-25T09:30:27Z |
| ghsa-cv4r-qfj3-hv3v |
8.8 (3.1)
7.4 (4.0)
|
A security vulnerability has been detected in Tenda F453 1.0.0.3. This impacts the function fromSaf… | 2026-02-25T09:30:27Z | 2026-02-25T09:30:27Z |
| ghsa-cf59-33h4-g872 |
8.8 (3.1)
7.4 (4.0)
|
A weakness has been identified in Tenda F453 1.0.0.3. This affects the function fromNatStaticSettin… | 2026-02-25T09:30:27Z | 2026-02-25T09:30:27Z |
| ghsa-7gq2-xp8m-v3r5 |
8.8 (3.1)
7.4 (4.0)
|
A vulnerability was identified in Tenda F453 1.0.0.3. The affected element is the function fromRout… | 2026-02-25T09:30:26Z | 2026-02-25T09:30:27Z |
| ghsa-5825-95cg-hj5r |
7.5 (3.1)
|
The Geo Mashup plugin for WordPress is vulnerable to SQL Injection via the 'sort' parameter in all … | 2026-02-25T09:30:27Z | 2026-02-25T09:30:27Z |
| ghsa-f8m8-w7hg-xv97 |
6.4 (3.1)
|
The Rise Blocks – A Complete Gutenberg Page Builder plugin for WordPress is vulnerable to Stored Cr… | 2026-02-25T09:30:26Z | 2026-02-25T09:30:26Z |
| ghsa-r9gx-29q7-44rw |
7.3 (3.1)
5.5 (4.0)
|
A vulnerability was determined in SourceCodester Simple and Nice Shopping Cart Script 1.0. This imp… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-r58x-2c7j-vfm9 |
7.3 (3.1)
5.5 (4.0)
|
A vulnerability has been found in itsourcecode Document Management System 1.0. Impacted is an unkno… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-r3qv-6v6v-622r |
7.3 (3.1)
5.5 (4.0)
|
A vulnerability was detected in itsourcecode College Management System 1.0. This vulnerability affe… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-q7q5-p52h-85m5 |
7.3 (3.1)
5.5 (4.0)
|
A flaw has been found in itsourcecode College Management System 1.0. This issue affects some unknow… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-pgmp-w8v7-hhfx |
6.3 (3.1)
2.1 (4.0)
|
A weakness has been identified in itsourcecode College Management System 1.0. Affected by this issu… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-hmg7-v7c7-65qj |
8.8 (3.1)
7.4 (4.0)
|
A vulnerability was determined in Tenda F453 1.0.0.3. Impacted is the function fromSetWifiGusetBasi… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-fv8r-cjf4-v929 |
4.7 (3.1)
|
Information Exposure Vulnerability in Hitachi Ops Center API Configuration Manager, Hitachi Configu… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-9953-hw28-xvx7 |
7.3 (3.1)
5.5 (4.0)
|
A vulnerability was found in itsourcecode News Portal Project 1.0. This issue affects some unknown … | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-55xf-4pmg-v3xm |
5.3 (3.1)
1.9 (4.0)
|
A vulnerability was found in libvips up to 8.18.0. This affects the function vips_foreign_load_csv_… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-4v56-g6h4-6655 |
6.3 (3.1)
2.1 (4.0)
|
A security vulnerability has been detected in itsourcecode College Management System 1.0. This affe… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-4jxf-pwgr-9m4j |
6.3 (3.1)
2.1 (4.0)
|
A vulnerability has been found in SourceCodester Website Link Extractor 1.0. This vulnerability aff… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-3h75-x2ww-p6ww |
9.8 (3.1)
9.3 (4.0)
|
Path traversal vulnerability exists in Lanscope Endpoint Manager (On-Premises) Sub-Manager Server V… | 2026-02-25T06:31:15Z | 2026-02-25T06:31:15Z |
| ghsa-j47g-6v72-x3wr |
8.2 (3.1)
|
Fujitsu fbiosdrv.sys before 2.5.0.0 allows an attacker to potentially affect system confidentiality… | 2025-11-12T18:31:26Z | 2026-02-25T06:31:14Z |
| ghsa-v5rp-3mcx-fr73 |
3.3 (3.1)
4.8 (4.0)
|
A vulnerability has been found in libvips up to 8.18.0. The impacted element is the function vips_f… | 2026-02-25T03:30:58Z | 2026-02-25T03:30:59Z |
| ghsa-33r2-hfpx-fx7h |
5.3 (3.1)
4.8 (4.0)
|
A flaw has been found in libvips up to 8.18.0. The affected element is the function vips_foreign_lo… | 2026-02-25T03:30:58Z | 2026-02-25T03:30:59Z |
| ID | Severity | Description | Package | Published | Updated |
|---|---|---|---|---|---|
| pysec-2023-252 |
7.5 (3.1)
|
Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.9.2. | mlflow | 2023-12-18T04:15:00+00:00 | 2024-02-06T22:20:23.832000+00:00 |
| pysec-2024-26 |
6.5 (3.1)
|
aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. Security-… | aiohttp | 2024-01-29T23:15:00+00:00 | 2024-02-06T20:20:18.162431+00:00 |
| pysec-2024-25 |
9.8 (3.1)
|
DuckDB <=0.9.2 and DuckDB extension-template <=0.9.2 are vulnerable to malicious extensio… | duckdb | 2024-01-30T01:16:00+00:00 | 2024-02-06T00:25:51.550516+00:00 |
| pysec-2024-24 |
7.5 (3.1)
|
aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. When usin… | aiohttp | 2024-01-29T23:15:00+00:00 | 2024-02-05T20:20:47.716944+00:00 |
| pysec-2024-23 |
5.3 (3.1)
|
Whoogle Search is a self-hosted metasearch engine. Versions 0.8.3 and prior have a limite… | whoogle-search | 2024-01-23T18:15:00+00:00 | 2024-02-02T07:18:33.382718+00:00 |
| pysec-2009-11 |
|
The rst parser (parser/text_rst.py) in MoinMoin 1.6.1 does not check the ACL of an includ… | moin | 2009-03-30T01:30:00+00:00 | 2024-02-02T07:18:32.552079+00:00 |
| pysec-2024-22 |
6.1 (3.1)
|
TuiTse-TsuSin is a package for organizing the comparative corpus of Taiwanese Chinese cha… | tuitse-tsusin | 2024-01-23T18:15:00+00:00 | 2024-02-01T22:21:01.486817+00:00 |
| pysec-2024-21 |
8.8 (3.1)
|
A vulnerability classified as critical was found in van_der_Schaar LAB TemporAI 0.0.3. Af… | temporai | 2024-01-26T17:15:00+00:00 | 2024-02-01T18:22:23.971296+00:00 |
| pysec-2024-20 |
9.8 (3.1)
|
Whoogle Search is a self-hosted metasearch engine. In versions prior to 0.8.4, the `eleme… | whoogle-search | 2024-01-23T18:15:00+00:00 | 2024-01-30T18:22:32.803340+00:00 |
| pysec-2024-19 |
6.1 (3.1)
|
Whoogle Search is a self-hosted metasearch engine. In versions 0.8.3 and prior, the `elem… | whoogle-search | 2024-01-23T18:15:00+00:00 | 2024-01-29T22:21:01.226431+00:00 |
| pysec-2024-18 |
9.8 (3.1)
|
Whoogle Search is a self-hosted metasearch engine. In versions 0.8.3 and prior, the `wind… | whoogle-search | 2024-01-23T18:15:00+00:00 | 2024-01-29T22:21:01.170723+00:00 |
| pysec-2024-17 |
8.8 (3.1)
|
pyLoad is a free and open-source Download Manager written in pure Python. The `pyload` AP… | pyload-ng | 2024-01-18T00:15:00+00:00 | 2024-01-29T20:20:58.389168+00:00 |
| pysec-2024-16 |
5.4 (3.1)
|
Nautobot is a Network Source of Truth and Network Automation Platform built as a web appl… | nautobot | 2024-01-23T00:15:00+00:00 | 2024-01-29T20:20:58.065227+00:00 |
| pysec-2023-251 |
5.3 (3.1)
|
aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. Improper … | aiohttp | 2023-11-29T20:15:00+00:00 | 2024-01-29T16:22:26.513672+00:00 |
| pysec-2023-250 |
5.3 (3.1)
|
aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. Improper … | aiohttp | 2023-11-30T07:15:00+00:00 | 2024-01-29T16:22:26.409794+00:00 |
| pysec-2024-15 |
3.7 (3.1)
|
changedetection.io is an open source tool designed to monitor websites for content chang… | changedetection-io | 2024-01-19T20:15:00+00:00 | 2024-01-26T22:21:10.756741+00:00 |
| pysec-2024-5 |
2.8 (3.1)
|
cdo-local-uuid project provides a specialized UUID-generating function that can, on user … | case-utils | 2024-01-11T03:15:00Z | 2024-01-25T14:03:52.279077Z |
| pysec-2024-14 |
|
Apache Airflow, versions before 2.8.1, have a vulnerability that allows an authenticated … | apache-airflow | 2024-01-24T13:15:00+00:00 | 2024-01-24T16:22:57.416385+00:00 |
| pysec-2024-13 |
|
Apache Airflow, versions before 2.8.1, have a vulnerability that allows a potential attac… | apache-airflow | 2024-01-24T13:15:00+00:00 | 2024-01-24T16:22:57.352530+00:00 |
| pysec-2023-241 |
9.1 (3.1)
|
Piccolo is an object-relational mapping and query builder which supports asyncio. Prior t… | piccolo | 2023-11-10T18:15:00Z | 2024-01-23T23:21:13.409656Z |
| pysec-2024-11 |
9.8 (3.1)
|
Remote Code Execution vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from… | apache-iotdb | 2024-01-15T11:15:00+00:00 | 2024-01-22T22:21:02.620877+00:00 |
| pysec-2024-10 |
9.8 (3.1)
|
In Gentoo Portage before 3.0.47, there is missing PGP validation of executed code: the st… | portage | 2024-01-12T03:15:00+00:00 | 2024-01-22T18:22:47.599296+00:00 |
| pysec-2024-9 |
|
MetaGPT through 0.6.4 allows the QaEngineer role to execute arbitrary code because RunCod… | metagpt | 2024-01-22T01:15:00+00:00 | 2024-01-22T07:20:28.329958+00:00 |
| pysec-2024-8 |
|
The JSON loader in Embedchain before 0.1.57 allows a ReDoS (regular expression denial of … | embedchain | 2024-01-21T17:15:00+00:00 | 2024-01-21T20:21:00.544327+00:00 |
| pysec-2024-7 |
|
The OpenAPI loader in Embedchain before 0.1.57 allows attackers to execute arbitrary code… | embedchain | 2024-01-21T17:15:00+00:00 | 2024-01-21T20:21:00.484037+00:00 |
| pysec-2024-6 |
2.8 (3.1)
|
cdo-local-uuid project provides a specialized UUID-generating function that can, on user … | cdo-local-uuid | 2024-01-11T03:15:00+00:00 | 2024-01-19T22:21:07.454006+00:00 |
| pysec-2024-4 |
7.8 (3.1)
|
GitPython is a python library used to interact with Git repositories. There is an incompl… | gitpython | 2024-01-11T02:15:00+00:00 | 2024-01-18T16:22:52.190857+00:00 |
| pysec-2024-3 |
5.9 (3.1)
|
PyCryptodome and pycryptodomex before 3.19.1 allow side-channel leakage for OAEP decrypti… | pycryptodomex | 2024-01-05T04:15:00+00:00 | 2024-01-17T11:19:18.629304+00:00 |
| pysec-2023-249 |
7.5 (3.1)
|
Gradio is an open-source Python package that allows you to quickly build a demo or web ap… | gradio | 2023-12-22T21:15:00+00:00 | 2024-01-17T11:19:18.252182+00:00 |
| pysec-2023-248 |
6.1 (3.1)
|
An open redirect vulnerability in the python package Flask-Security-Too <=5.3.2 allows at… | flask-security-too | 2023-12-26T22:15:00+00:00 | 2024-01-17T11:19:18.188431+00:00 |
| ID | Description | Updated |
|---|---|---|
| gsd-2024-33001 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.747211Z |
| gsd-2024-33238 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.747012Z |
| gsd-2024-33157 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.746799Z |
| gsd-2024-33038 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.746582Z |
| gsd-2024-33366 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.746377Z |
| gsd-2024-33195 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.746132Z |
| gsd-2024-33277 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.745937Z |
| gsd-2024-33485 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.745744Z |
| gsd-2024-33286 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.745545Z |
| gsd-2024-33169 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.745339Z |
| gsd-2024-33029 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.745140Z |
| gsd-2024-33399 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.744940Z |
| gsd-2024-33249 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.744741Z |
| gsd-2024-33016 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.744543Z |
| gsd-2024-33373 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.744340Z |
| gsd-2024-33524 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.744149Z |
| gsd-2024-33380 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.743956Z |
| gsd-2024-33237 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.743713Z |
| gsd-2024-33437 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.743513Z |
| gsd-2024-33404 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.743316Z |
| gsd-2024-33113 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.743114Z |
| gsd-2024-33473 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.742910Z |
| gsd-2024-33078 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.742686Z |
| gsd-2024-33064 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.742494Z |
| gsd-2024-33081 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.742295Z |
| gsd-2024-33206 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.742097Z |
| gsd-2024-33010 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.741895Z |
| gsd-2024-33411 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.741698Z |
| gsd-2024-33463 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.741491Z |
| gsd-2024-33250 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-24T05:02:09.741217Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| mal-2026-265 | Malicious code in @wb-team/uikit-myteam-web (npm) | 2026-01-16T00:10:24Z | 2026-01-27T08:27:30Z |
| mal-2026-263 | Malicious code in @spx-workforceops/shared-vue (npm) | 2026-01-16T00:10:24Z | 2026-01-27T08:27:29Z |
| mal-2026-262 | Malicious code in @spx-smartsorting/vue (npm) | 2026-01-16T00:10:24Z | 2026-01-27T08:27:29Z |
| mal-2026-261 | Malicious code in @spx-delivery/react (npm) | 2026-01-16T00:10:24Z | 2026-01-27T08:27:29Z |
| mal-2026-260 | Malicious code in @servicepoint/vue-project (npm) | 2026-01-16T00:10:24Z | 2026-01-27T08:27:29Z |
| mal-2026-259 | Malicious code in @riag-libs/pattern-library-react-hooks (npm) | 2026-01-16T00:10:24Z | 2026-01-27T08:27:29Z |
| mal-2026-249 | Malicious code in @flipster/utils (npm) | 2026-01-13T08:19:50Z | 2026-01-27T08:27:29Z |
| mal-2025-41408 | Malicious code in symphony-fairvis (npm) | 2025-08-23T14:45:03Z | 2026-01-27T03:00:15Z |
| mal-2026-460 | Malicious code in pay-by-bank-dashboard-server (npm) | 2026-01-22T11:37:45Z | 2026-01-27T03:00:14Z |
| mal-2025-190622 | Malicious code in com.unity.xr.visionos (npm) | 2025-11-23T11:02:13Z | 2026-01-27T03:00:12Z |
| mal-2026-510 | Malicious code in radishwxm5 (PyPI) | 2026-01-26T19:50:28Z | 2026-01-26T19:50:28Z |
| mal-2026-506 | Malicious code in selenium-integration (PyPI) | 2026-01-25T16:56:33Z | 2026-01-25T16:56:33Z |
| mal-2026-505 | Malicious code in flask-hookserver (PyPI) | 2026-01-25T11:13:11Z | 2026-01-25T11:25:04Z |
| mal-2026-504 | Malicious code in researchpoc (PyPI) | 2026-01-25T10:54:30Z | 2026-01-25T10:54:30Z |
| mal-2026-499 | Malicious code in system-integration (PyPI) | 2026-01-25T00:57:28Z | 2026-01-25T10:42:32Z |
| mal-2026-501 | Malicious code in system-integration-toxi (PyPI) | 2026-01-25T10:15:36Z | 2026-01-25T10:15:36Z |
| mal-2026-502 | Malicious code in test-poc-package-for-session (PyPI) | 2026-01-25T10:08:47Z | 2026-01-25T10:08:47Z |
| mal-2026-503 | Malicious code in test-poc-package-for-session-2 (PyPI) | 2026-01-25T10:04:44Z | 2026-01-25T10:04:44Z |
| mal-2026-498 | Malicious code in instascan-pro (PyPI) | 2026-01-24T16:15:55Z | 2026-01-24T16:15:55Z |
| mal-2026-491 | Malicious code in test-on-other-again (npm) | 2026-01-23T12:02:07Z | 2026-01-23T18:48:56Z |
| mal-2026-488 | Malicious code in ntwsx (npm) | 2026-01-23T06:32:37Z | 2026-01-23T18:48:55Z |
| mal-2026-487 | Malicious code in ntwsc (npm) | 2026-01-23T06:32:37Z | 2026-01-23T18:48:55Z |
| mal-2026-486 | Malicious code in a5xm (npm) | 2026-01-23T06:32:37Z | 2026-01-23T18:48:54Z |
| mal-2026-485 | Malicious code in a4wu (npm) | 2026-01-23T06:32:36Z | 2026-01-23T18:48:54Z |
| mal-2026-497 | Malicious code in test-on-other (npm) | 2026-01-23T18:12:42Z | 2026-01-23T18:12:42Z |
| mal-2025-192877 | Malicious code in tdm-react (npm) | 2025-12-23T08:32:44Z | 2026-01-23T15:44:07Z |
| mal-2026-434 | Malicious code in weaviate-js (npm) | 2026-01-21T04:49:30Z | 2026-01-23T01:39:05Z |
| mal-2026-433 | Malicious code in wallet-adapter-react (npm) | 2026-01-21T04:37:07Z | 2026-01-23T01:39:05Z |
| mal-2026-404 | Malicious code in worldposition (npm) | 2026-01-21T04:21:35Z | 2026-01-23T01:39:05Z |
| mal-2026-403 | Malicious code in worldnormal (npm) | 2026-01-21T04:21:35Z | 2026-01-23T01:39:05Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| bit-libphp-2024-5458 | Filter bypass in filter_var (FILTER_VALIDATE_URL) | 2025-08-11T13:54:20.794Z | 2025-11-06T13:25:46.476Z |
| bit-libphp-2024-3096 | PHP function password_verify can erroneously return true when argument contains NUL | 2025-08-11T13:54:16.977Z | 2025-11-06T13:25:46.476Z |
| bit-libphp-2024-2757 | PHP mb_encode_mimeheader runs endlessly for some inputs | 2025-08-11T13:54:14.986Z | 2025-11-06T13:25:46.476Z |
| bit-libphp-2024-2756 | __Host-/__Secure- cookie bypass due to partial CVE-2022-31629 fix | 2025-08-11T13:54:12.793Z | 2025-11-06T13:25:46.476Z |
| bit-libphp-2024-1874 | Command injection via array-ish $command parameter of proc_open() | 2025-08-11T13:54:08.513Z | 2025-11-06T13:25:46.476Z |
| bit-libphp-2024-11236 | Integer overflow in the firebird and dblib quoters causing OOB writes | 2025-08-11T13:54:06.723Z | 2025-11-06T13:25:46.476Z |
| bit-libphp-2024-11234 | Configuring a proxy in a stream context might allow for CRLF injection in URIs | 2025-08-11T13:54:03.025Z | 2025-11-06T13:25:46.476Z |
| bit-libphp-2024-11233 | Single byte overread with convert.quoted-printable-decode filter | 2025-08-11T13:54:01.202Z | 2025-11-06T13:25:46.476Z |
| bit-libphp-2022-31629 | $_COOKIE names string replacement (. -> _): cookie integrity vulnerabilities | 2025-08-11T13:53:41.681Z | 2025-11-06T13:25:46.476Z |
| bit-kibana-2025-25018 | Kibana Stored Cross-Site Scripting (XSS) | 2025-10-14T08:43:02.190Z | 2025-11-06T13:25:46.476Z |
| bit-kibana-2025-25017 | Kibana Stored Cross-Site Scripting (XSS) | 2025-10-14T08:43:00.623Z | 2025-11-06T13:25:46.476Z |
| bit-kibana-2025-25009 | Kibana Cross-Site Scripting (XSS) | 2025-10-09T08:43:15.178Z | 2025-11-06T13:25:46.476Z |
| bit-keydb-2025-49844 | Redis Lua Use-After-Free may lead to remote code execution | 2025-10-16T09:12:52.562Z | 2025-11-06T13:25:46.476Z |
| bit-keydb-2025-46819 | Redis is vulnerable to DoS via specially crafted LUA scripts | 2025-10-08T08:43:23.522Z | 2025-11-06T13:25:46.476Z |
| bit-keydb-2024-31228 | Denial-of-service due to unbounded pattern matching in Redis | 2024-10-09T16:30:39.030Z | 2025-11-06T13:25:46.476Z |
| bit-keydb-2022-35977 | Integer overflow in certain command arguments can drive Redis to OOM panic | 2024-08-22T19:25:58.150Z | 2025-11-06T13:25:46.476Z |
| bit-joomla-2020-13763 | 2025-04-03T14:10:16.806Z | 2025-11-06T13:25:46.476Z | |
| bit-joomla-2020-13761 | 2025-04-03T14:10:08.600Z | 2025-11-06T13:25:46.476Z | |
| bit-joomla-2020-13760 | 2025-04-03T14:10:04.787Z | 2025-11-06T13:25:46.476Z | |
| bit-jenkins-2025-59476 | 2025-09-19T09:57:11.182Z | 2025-11-06T13:25:46.476Z | |
| bit-jenkins-2025-59475 | 2025-09-19T09:57:09.400Z | 2025-11-06T13:25:46.476Z | |
| bit-jenkins-2025-59474 | 2025-09-19T09:57:07.574Z | 2025-11-06T13:25:46.476Z | |
| bit-jenkins-2021-43859 | Denial of Service by injecting highly recursive collections or maps in XStream | 2025-05-26T07:13:32.699Z | 2025-11-06T13:25:46.476Z |
| bit-harbor-2025-32019 | Harbor's repository description page allows for XSS | 2025-07-29T05:40:29.320Z | 2025-11-06T13:25:46.476Z |
| bit-grafana-2022-39201 | Data source and plugin proxy endpoints could leak the authentication cookie to some destination plugins | 2024-03-06T10:55:22.080Z | 2025-11-06T13:25:46.476Z |
| bit-golang-2025-61724 | Excessive CPU consumption in Reader.ReadResponse in net/textproto | 2025-11-06T12:58:38.217Z | 2025-11-06T13:25:46.476Z |
| bit-golang-2025-61723 | Quadratic complexity when parsing some invalid inputs in encoding/pem | 2025-11-06T12:58:34.335Z | 2025-11-06T13:25:46.476Z |
| bit-golang-2025-58189 | ALPN negotiation error contains attacker controlled information in crypto/tls | 2025-11-06T12:58:30.596Z | 2025-11-06T13:25:46.476Z |
| bit-golang-2025-58188 | Panic when validating certificates with DSA public keys in crypto/x509 | 2025-11-06T12:58:26.740Z | 2025-11-06T13:25:46.476Z |
| bit-golang-2025-58186 | Lack of limit when parsing cookies can cause memory exhaustion in net/http | 2025-11-06T12:58:17.587Z | 2025-11-06T13:25:46.476Z |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2023-000084 | WordPress Plugin "Advanced Custom Fields" vulnerable to cross-site scripting | 2023-08-21T14:05+09:00 | 2024-03-25T17:55+09:00 |
| jvndb-2024-000033 | WordPress Plugin "easy-popup-show" vulnerable to cross-site request forgery | 2024-03-25T13:31+09:00 | 2024-03-25T13:31+09:00 |
| jvndb-2023-000055 | ESS REC Agent Server Edition for Linux etc. vulnerable to directory traversal | 2023-05-26T13:58+09:00 | 2024-03-21T17:15+09:00 |
| jvndb-2023-000053 | Tornado vulnerable to open redirect | 2023-05-22T13:30+09:00 | 2024-03-21T17:05+09:00 |
| jvndb-2023-000058 | Pleasanter vulnerable to cross-site scripting | 2023-05-31T15:34+09:00 | 2024-03-19T18:17+09:00 |
| jvndb-2023-002002 | Multiple vulnerabilities in Contec CONPROSYS HMI System (CHS) | 2023-06-01T13:48+09:00 | 2024-03-19T18:13+09:00 |
| jvndb-2023-000072 | Improper restriction of XML external entity references (XXE) in XBRL data create application | 2023-07-18T15:22+09:00 | 2024-03-19T18:11+09:00 |
| jvndb-2023-000056 | Starlette vulnerable to directory traversal | 2023-05-30T13:34+09:00 | 2024-03-19T18:08+09:00 |
| jvndb-2023-000125 | Multiple vulnerabilities in BUFFALO VR-S1000 | 2023-12-26T15:51+09:00 | 2024-03-19T17:56+09:00 |
| jvndb-2023-000123 | Multiple vulnerabilities in GROWI | 2023-12-13T15:30+09:00 | 2024-03-19T17:46+09:00 |
| jvndb-2023-000052 | DataSpider Servista uses a hard-coded cryptographic key | 2023-05-31T15:34+09:00 | 2024-03-19T17:44+09:00 |
| jvndb-2024-000032 | Multiple vulnerabilities in FitNesse | 2024-03-18T14:08+09:00 | 2024-03-19T11:02+09:00 |
| jvndb-2023-014781 | Brother iPrint&Scan Desktop for Windows vulnerable to improper link resolution before file access | 2023-12-26T09:27+09:00 | 2024-03-18T18:05+09:00 |
| jvndb-2023-000126 | Multiple vulnerabilities in PowerCMS | 2023-12-26T16:46+09:00 | 2024-03-18T17:58+09:00 |
| jvndb-2024-000031 | "ABEMA" App for Android fails to restrict access permissions | 2024-03-15T16:37+09:00 | 2024-03-15T16:37+09:00 |
| jvndb-2024-000013 | Android App "Spoon" uses a hard-coded API key for an external service | 2024-01-23T16:53+09:00 | 2024-03-14T17:44+09:00 |
| jvndb-2024-000010 | Improper restriction of XML external entity references (XXE) in "Electronic Delivery Check System (Ministry of Agriculture, Forestry and Fisheries The Agriculture and Rural Development Project Version)" | 2024-01-23T15:25+09:00 | 2024-03-14T17:33+09:00 |
| jvndb-2024-001002 | Multiple TP-Link products vulnerable to OS command injection | 2024-01-10T13:57+09:00 | 2024-03-14T13:52+09:00 |
| jvndb-2024-000001 | Improper input validation vulnerability in WordPress Plugin "WordPress Quiz Maker Plugin" | 2024-01-12T13:51+09:00 | 2024-03-14T12:28+09:00 |
| jvndb-2023-003757 | Trend Micro Mobile Security vulnerable to cross-site scripting | 2023-09-26T11:30+09:00 | 2024-03-13T18:07+09:00 |
| jvndb-2023-002796 | Multiple server-side request forgery vulnerabilities in Trend Micro Apex Central (July 2023) | 2023-08-10T16:04+09:00 | 2024-03-13T17:58+09:00 |
| jvndb-2024-000011 | Multiple vulnerabilities in a-blog cms | 2024-01-22T15:08+09:00 | 2024-03-13T17:50+09:00 |
| jvndb-2024-000009 | Improper restriction of XML external entity references (XXE) in Electronic Deliverables Creation Support Tool provided by Ministry of Defense | 2024-01-23T15:13+09:00 | 2024-03-13T17:46+09:00 |
| jvndb-2024-000008 | Improper restriction of XML external entity references (XXE) in MLIT "Electronic Delivery Check System" and "Electronic delivery item Inspection Support System" | 2024-01-23T16:57+09:00 | 2024-03-13T17:40+09:00 |
| jvndb-2024-000012 | Access analysis CGI An-Analyzer vulnerable to open redirect | 2024-01-22T15:57+09:00 | 2024-03-13T17:34+09:00 |
| jvndb-2023-006199 | Multiple security updates for Trend Micro Apex One and Apex One as a Service (November 2023) | 2023-11-13T17:28+09:00 | 2024-03-13T17:28+09:00 |
| jvndb-2024-001062 | Yamaha wireless LAN access point devices vulnerable to active debug code | 2024-01-24T17:16+09:00 | 2024-03-13T17:24+09:00 |
| jvndb-2024-002961 | Information Exposure Vulnerability in Cosminexus Component Container | 2024-03-13T12:10+09:00 | 2024-03-13T12:10+09:00 |
| jvndb-2024-000004 | Drupal vulnerable to improper handling of structural elements | 2024-01-16T13:41+09:00 | 2024-03-12T17:33+09:00 |
| jvndb-2024-000006 | FusionPBX vulnerable to cross-site scripting | 2024-01-19T12:30+09:00 | 2024-03-12T17:31+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| cnvd-2026-04215 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04215) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04214 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04214) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04213 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04213) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04212 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04212) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04211 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04211) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04210 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04210) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04209 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04209) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04208 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04208) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04207 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04207) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04206 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04206) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04205 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04205) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04192 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04192) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04191 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04191) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04190 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04190) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04189 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04189) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04188 | Adobe Experience Manager跨站脚本漏洞(CNVD-2026-04188) | 2025-12-15 | 2026-01-16 |
| cnvd-2026-04187 | WordPress插件Download Manager信息泄露漏洞 | 2025-12-25 | 2026-01-16 |
| cnvd-2026-04186 | WordPress插件All In One SEO Pack信息泄露漏洞 | 2025-12-25 | 2026-01-16 |
| cnvd-2026-04185 | D-Link DWR-M920命令注入漏洞 | 2026-01-14 | 2026-01-16 |
| cnvd-2026-04184 | D-Link DSL-124访问控制错误漏洞 | 2026-01-14 | 2026-01-16 |
| cnvd-2026-04863 | Google Android释放后重用漏洞(CNVD-2026-04863) | 2025-11-11 | 2026-01-15 |
| cnvd-2026-04862 | Google Android缺少权限检查漏洞 | 2025-12-10 | 2026-01-15 |
| cnvd-2026-04861 | Google Android输入验证不当漏洞 | 2025-12-10 | 2026-01-15 |
| cnvd-2026-04860 | Google Android越界写入漏洞 | 2025-12-10 | 2026-01-15 |
| cnvd-2026-04859 | Google Android竞争条件漏洞 | 2025-12-10 | 2026-01-15 |
| cnvd-2026-04858 | Google Android越界写入漏洞 | 2025-12-10 | 2026-01-15 |
| cnvd-2026-04857 | Google Android堆缓冲区溢出漏洞 | 2025-12-10 | 2026-01-15 |
| cnvd-2026-04856 | Huawei HarmonyOS特权升级漏洞 | 2024-01-23 | 2026-01-15 |
| cnvd-2026-04855 | Huawei HarmonyOS/EMUI授权漏洞 | 2024-01-23 | 2026-01-15 |
| cnvd-2026-04854 | Huawei HarmonyOS/EMUI拒绝服务漏洞 | 2024-01-23 | 2026-01-15 |
| ID | Description | Published | Updated |
|---|---|---|---|
| bdu:2025-10781 | Уязвимость функции vmci_host_setup_notify() файла mm/gup.c ядра операционной системы Linu… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10780 | Уязвимость компонента net_sched ядра операционной системы Linux, позволяющая нарушителю о… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10779 | Уязвимость функции usbhid_parse() компонента bNumDescriptors ядра операционной системы Li… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10778 | Уязвимость функции for_each_possible_cpu() ядра операционной системы Linux, позволяющая н… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10777 | Уязвимость компонента mdiobus ядра операционной системы Linux, позволяющая нарушителю вып… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10774 | Уязвимость функции __red_change() ядра операционной системы Linux, позволяющая нарушителю… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10773 | Уязвимость функции sk_is_readable() ядра операционной системы Linux, позволяющая нарушите… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10772 | Уязвимость функции nfs4_state_start_net операционной системы Linux, позволяющая нарушител… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10770 | Уязвимость функции usb_bulk_msg() операционной системы Linux, позволяющая нарушителю вызв… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10768 | Уязвимость ядра операционной системы Linux, связанная с недостаточной проверкой входных д… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10766 | Уязвимость функции fbcon_info_from_console ядра операционной системы Linux, позволяющая н… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10764 | Уязвимость функции rcu_read_lock_trace_held ядра операционной системы Linux, позволяющая … | 05.09.2025 | 16.02.2026 |
| bdu:2025-10763 | Уязвимость функции dell_rbu операционной системы Linux, позволяющая нарушителю вызвать от… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10762 | Уязвимость функции nvmet_tcp_set_queue_sock операционной системы Linux, позволяющая наруш… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10758 | Уязвимость функции af_alg ядра операционной системы Linux, позволяющая нарушителю вызвать… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10755 | Уязвимость функции megaraid_sas ядра операционной системы Linux, позволяющая нарушителю в… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10752 | Уязвимость функции memdup_user ядра операционной системы Linux, позволяющая нарушителю вы… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10749 | Уязвимость функции clip_push ядра операционной системы Linux, позволяющая нарушителю вызв… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10747 | Уязвимость функции jbd2_journal_dirty_metadata ядра операционной системы Linux, позволяющ… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10746 | Уязвимость функции pata_via ядра операционной системы Linux, позволяющая нарушителю вызва… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10745 | Уязвимость функции gpio_keys_irq_timer ядра операционной системы Linux, позволяющая наруш… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10744 | Уязвимость функции arch_memory_failure ядра операционной системы Linux, позволяющая наруш… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10743 | Уязвимость функции memcpy ядра операционной системы Linux, позволяющая нарушителю вызвать… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10739 | Уязвимость функции ptp_vclock_in_use ядра операционной системы Linux, позволяющая нарушит… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10737 | Уязвимость функции rcu_dereference_rtnl ядра операционной системы Linux, позволяющая нару… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10735 | Уязвимость функции lecd_attach ядра операционной системы Linux, позволяющая нарушителю вы… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10730 | Уязвимость функции generate_encryptionkey() компонента ksmbd ядра операционной системы Li… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10729 | Уязвимость функции smb2_sess_setup() в модуле fs/smb/server/smb2pdu.c поддержки сервера S… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10727 | Уязвимость функции mmap() ядра операционной системы Linux, позволяющая нарушителю вызвать… | 05.09.2025 | 16.02.2026 |
| bdu:2025-10726 | Уязвимость ядра операционной системы Linux, связанная с ошибками управления состоянием, п… | 05.09.2025 | 16.02.2026 |
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2025-avi-0716 | Vulnérabilité dans les produits Apple | 2025-08-21T00:00:00.000000 | 2025-08-21T00:00:00.000000 |
| certfr-2025-avi-0715 | Multiples vulnérabilités dans les produits Liferay | 2025-08-21T00:00:00.000000 | 2025-08-21T00:00:00.000000 |
| certfr-2025-avi-0614 | Multiples vulnérabilités dans les produits Mattermost | 2025-07-23T00:00:00.000000 | 2025-08-21T00:00:00.000000 |
| certfr-2025-avi-0714 | Multiples vulnérabilités dans les produits Mozilla | 2025-08-20T00:00:00.000000 | 2025-08-20T00:00:00.000000 |
| certfr-2025-avi-0713 | Multiples vulnérabilités dans les produits Liferay | 2025-08-20T00:00:00.000000 | 2025-08-20T00:00:00.000000 |
| certfr-2025-avi-0712 | Vulnérabilité dans Apereo CAS | 2025-08-20T00:00:00.000000 | 2025-08-20T00:00:00.000000 |
| certfr-2025-avi-0711 | Vulnérabilité dans Google Chrome | 2025-08-20T00:00:00.000000 | 2025-08-20T00:00:00.000000 |
| certfr-2025-avi-0710 | Multiples vulnérabilités dans les produits F5 | 2025-08-19T00:00:00.000000 | 2025-08-19T00:00:00.000000 |
| certfr-2025-avi-0709 | Multiples vulnérabilités dans les produits Liferay | 2025-08-19T00:00:00.000000 | 2025-08-19T00:00:00.000000 |
| certfr-2025-avi-0525 | Multiples vulnérabilités dans Mattermost Server | 2025-06-19T00:00:00.000000 | 2025-08-19T00:00:00.000000 |
| certfr-2025-avi-0453 | Vulnérabilité dans Mattermost Server | 2025-05-27T00:00:00.000000 | 2025-08-19T00:00:00.000000 |
| certfr-2025-avi-0441 | Vulnérabilité dans Mattermost Server | 2025-05-22T00:00:00.000000 | 2025-08-19T00:00:00.000000 |
| certfr-2025-avi-0355 | Multiples vulnérabilités dans Mattermost Server | 2025-04-30T00:00:00.000000 | 2025-08-19T00:00:00.000000 |
| certfr-2025-avi-0708 | Multiples vulnérabilités dans les produits Cisco | 2025-08-18T00:00:00.000000 | 2025-08-18T00:00:00.000000 |
| certfr-2025-avi-0706 | Multiples vulnérabilités dans Matrix | 2025-08-18T00:00:00.000000 | 2025-08-18T00:00:00.000000 |
| certfr-2025-avi-0705 | Multiples vulnérabilités dans Microsoft Edge | 2025-08-18T00:00:00.000000 | 2025-08-18T00:00:00.000000 |
| certfr-2025-avi-0704 | Vulnérabilité dans les produits Siemens | 2025-08-18T00:00:00.000000 | 2025-08-18T00:00:00.000000 |
| certfr-2025-avi-0703 | Vulnérabilité dans Synology BeeDrive | 2025-08-18T00:00:00.000000 | 2025-08-18T00:00:00.000000 |
| certfr-2025-avi-0702 | Multiples vulnérabilités dans PostgreSQL | 2025-08-18T00:00:00.000000 | 2025-08-18T00:00:00.000000 |
| certfr-2025-avi-0701 | Vulnérabilité dans IBM WebSphere | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| certfr-2025-avi-0700 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| certfr-2025-avi-0699 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| certfr-2025-avi-0698 | Multiples vulnérabilités dans le noyau Linux de Debian | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| certfr-2025-avi-0697 | Multiples vulnérabilités dans le noyau Linux de Debian LTS | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| certfr-2025-avi-0696 | Vulnérabilité dans Spring Framework | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| certfr-2025-avi-0695 | Multiples vulnérabilités dans les produits Palo Alto Networks | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| certfr-2025-avi-0694 | Vulnérabilité dans Apache Tomcat | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| certfr-2025-avi-0693 | Multiples vulnérabilités dans VMware Tanzu | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| certfr-2025-avi-0692 | Multiples vulnérabilités dans Ruby on Rails | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| certfr-2025-avi-0691 | Vulnérabilité dans Nginx | 2025-08-14T00:00:00.000000 | 2025-08-14T00:00:00.000000 |
| ID | Description | Published | Updated |
|---|---|---|---|
| osv-2024-574 | Heap-buffer-overflow in spvtools::disassemble::InstructionDisassembler::EmitInstruction | 2024-06-19T00:15:01.983925Z | 2024-06-25T14:22:08.649397Z |
| osv-2024-535 | Use-of-uninitialized-value in spvTextEncodeOperand | 2024-06-06T00:00:55.007699Z | 2024-06-25T14:21:53.898093Z |
| osv-2024-518 | Security exception in com.github.javaparser.CommentsInserter.insertComments | 2024-05-30T00:16:42.628026Z | 2024-06-24T14:17:55.597576Z |
| osv-2024-577 | Heap-use-after-free in sputs | 2024-06-22T00:14:08.186738Z | 2024-06-22T00:14:08.187320Z |
| osv-2024-575 | UNKNOWN READ in H5SL_remove | 2024-06-20T00:03:37.435999Z | 2024-06-20T00:03:37.436551Z |
| osv-2024-567 | Security exception in jflex.core.NFA.insertNFA | 2024-06-16T00:06:55.824759Z | 2024-06-16T00:06:55.825276Z |
| osv-2024-552 | UNKNOWN READ in ndpi_search_zoom | 2024-06-12T00:12:06.312903Z | 2024-06-12T00:12:06.313282Z |
| osv-2024-551 | Heap-buffer-overflow in mz_zip_mem_read_func | 2024-06-12T00:06:30.075962Z | 2024-06-12T00:06:30.076324Z |
| osv-2024-550 | Heap-buffer-overflow in mz_zip_mem_read_func | 2024-06-12T00:06:02.418206Z | 2024-06-12T00:06:02.418563Z |
| osv-2024-548 | Use-of-uninitialized-value in icalmemory_strdup | 2024-06-12T00:00:26.364017Z | 2024-06-12T00:00:26.364669Z |
| osv-2024-521 | Heap-buffer-overflow in ubidi_writeReordered_76 | 2024-05-31T00:06:51.180600Z | 2024-05-31T00:06:51.181049Z |
| osv-2024-345 | Use-of-uninitialized-value in aesEncryptBlock | 2024-04-30T00:03:14.686810Z | 2024-05-27T14:03:03.110153Z |
| osv-2024-456 | Heap-buffer-overflow in ih264d_read_coeff4x4_cabac | 2024-05-09T00:08:35.451422Z | 2024-05-27T14:02:56.983104Z |
| osv-2024-323 | Security exception in com.puppycrawl.tools.checkstyle.JavaAstVisitor.getInnerBopAst | 2024-04-29T05:41:42.743610Z | 2024-05-27T14:02:31.976819Z |
| osv-2024-333 | UNKNOWN READ in Mat_VarPrint | 2024-04-30T00:01:20.039792Z | 2024-05-27T14:01:03.854129Z |
| osv-2024-330 | UNKNOWN READ in std::__1::__POW10_SPLIT_2 | 2024-04-30T00:00:31.577722Z | 2024-05-27T14:01:02.168724Z |
| osv-2024-504 | Heap-buffer-overflow in ultrahdr::getYuv420Pixel | 2024-05-25T00:01:08.542552Z | 2024-05-25T00:01:08.543179Z |
| osv-2024-503 | Heap-buffer-overflow in pdf_save_viewer_state | 2024-05-24T00:02:37.047119Z | 2024-05-24T00:02:37.047771Z |
| osv-2024-496 | UNKNOWN READ in chunk_free_object | 2024-05-22T00:06:41.510071Z | 2024-05-22T00:06:41.510555Z |
| osv-2024-495 | UNKNOWN READ in chunk_free_object | 2024-05-22T00:04:27.058012Z | 2024-05-22T00:04:27.058432Z |
| osv-2024-493 | UNKNOWN READ in chunk_free_object | 2024-05-22T00:00:49.459478Z | 2024-05-22T00:00:49.459808Z |
| osv-2024-490 | Security exception in com.github.javaparser.CommentsInserter.insertComments | 2024-05-20T00:07:13.417197Z | 2024-05-20T00:07:13.417898Z |
| osv-2024-477 | Heap-buffer-overflow in ultrahdr::gain_map_metadata::decodeGainmapMetadata | 2024-05-16T00:07:25.350135Z | 2024-05-16T00:07:25.350518Z |
| osv-2024-476 | Heap-buffer-overflow in ultrahdr::getYuv420Pixel | 2024-05-16T00:01:52.617825Z | 2024-05-16T00:01:52.618175Z |
| osv-2024-471 | Use-of-uninitialized-value in vpx_codec_peek_stream_info | 2024-05-15T00:02:46.464995Z | 2024-05-15T00:02:46.465573Z |
| osv-2024-469 | Heap-buffer-overflow in check_content_type_and_change_protocol | 2024-05-13T00:06:08.552810Z | 2024-05-13T00:06:08.553286Z |
| osv-2024-402 | Stack-buffer-overflow in SwiftProtobuf.TextFormatScanner. | 2024-05-03T00:00:37.545228Z | 2024-05-10T00:00:37.545806Z |
| osv-2024-432 | Use-of-uninitialized-value in ssl_ctx_make_profiles | 2024-05-05T00:15:04.589857Z | 2024-05-08T03:26:30Z |
| osv-2024-430 | Use-of-uninitialized-value in ssl_str_to_group_ids | 2024-05-05T00:14:35.047133Z | 2024-05-08T03:26:30Z |
| osv-2024-417 | Use-of-uninitialized-value in bssl::ssl_cipher_process_rulestr | 2024-05-05T00:05:37.413119Z | 2024-05-08T03:26:30Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| rustsec-2020-0090 | Thex<T> allows data races of non-Send types across threads | 2020-12-08T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0089 | nanorand 0.5.0 - RNGs failed to generate properly for non-64-bit numbers | 2020-12-09T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0088 | MPMCConsumer/Producer allows sending non-Send type across threads | 2020-11-29T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0087 | TryMutex<T> allows sending non-Send type across threads | 2020-11-17T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0082 | ordered_float:NotNan may contain NaN after panic in assignment operators | 2020-12-06T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0081 | `mio` invalidly assumes the memory layout of std::net::SocketAddr | 2020-11-02T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0080 | `miow` invalidly assumes the memory layout of std::net::SocketAddr | 2020-11-13T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0075 | Unexpected panic when decoding tokens | 2020-11-29T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0074 | Reference counting error in `From<Py<T>>` | 2020-11-28T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0073 | Mutable reference with immutable provenance | 2020-11-12T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0072 | GenericMutexGuard allows data races of non-Sync types across threads | 2020-10-31T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0070 | Some lock_api lock guard objects can cause data races | 2020-11-08T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0069 | Argument injection in sendmail transport | 2020-11-11T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0068 | Unexpected panic in multihash `from_slice` parsing code | 2020-11-08T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0062 | Improper `Sync` implementation on `FuturesUnordered` in futures-utils can cause data corruption | 2020-01-24T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0061 | futures_task::noop_waker_ref can segfault due to dereferencing a NULL pointer | 2020-05-03T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0060 | futures_task::waker may cause a use-after-free if used on a type that isn't 'static | 2020-09-04T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0059 | MutexGuard::map can cause a data race in safe code | 2020-10-22T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0052 | Undefined Behavior in bounded channel | 2020-06-26T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0050 | VecCopy allows misaligned access to elements | 2020-09-27T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0049 | Use-after-free in Framed due to lack of pinning | 2020-01-30T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0048 | Use-after-free in BodyStream due to lack of pinning | 2020-01-24T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0047 | array_queue pop_back() may cause a use-after-free | 2020-09-26T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0046 | bespoke Cell implementation allows obtaining several mutable references to the same data | 2020-01-08T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0045 | bespoke Cell implementation allows obtaining several mutable references to the same data | 2020-01-08T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0044 | Unsafe Send implementation in Atom allows data races | 2020-09-21T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0043 | Insufficient size checks in outgoing buffer in ws allows remote attacker to run the process out of memory | 2020-09-25T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0042 | Missing check in ArrayVec leads to out-of-bounds write. | 2020-09-24T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0041 | Multiple soundness issues in Chunk and InlineArray | 2020-09-06T12:00:00Z | 2023-06-13T13:10:24Z |
| rustsec-2020-0040 | Obstack generates unaligned references | 2020-09-03T12:00:00Z | 2023-06-13T13:10:24Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| alsa-2025:9327 | Important: libblockdev security update | 2025-06-23T00:00:00Z | 2025-07-03T08:41:41Z |
| alsa-2025:9318 | Important: javapackages-tools:201801 security update | 2025-06-23T00:00:00Z | 2025-07-03T08:39:03Z |
| alsa-2025:9330 | Important: perl-YAML-LibYAML security update | 2025-06-23T00:00:00Z | 2025-07-03T08:23:21Z |
| alsa-2025:9392 | Important: tigervnc security update | 2025-06-23T00:00:00Z | 2025-07-03T08:21:18Z |
| alsa-2025:9396 | Important: mod_auth_openidc security update | 2025-06-23T00:00:00Z | 2025-07-03T08:18:42Z |
| alsa-2025:10196 | Important: thunderbird security update | 2025-07-02T00:00:00Z | 2025-07-03T07:55:59Z |
| alsa-2025:10195 | Important: thunderbird security update | 2025-07-02T00:00:00Z | 2025-07-03T07:55:03Z |
| alsa-2025:10140 | Important: python3.12 security update | 2025-07-01T00:00:00Z | 2025-07-03T07:53:50Z |
| alsa-2025:10189 | Important: python3.12 security update | 2025-07-02T00:00:00Z | 2025-07-02T13:57:56Z |
| alsa-2025:10148 | Important: python3.11 security update | 2025-07-01T00:00:00Z | 2025-07-02T13:55:59Z |
| alsa-2025:6977 | Moderate: python3.9 security update | 2025-05-13T00:00:00Z | 2025-07-02T13:51:48Z |
| alsa-2025:6990 | Moderate: grub2 security update | 2025-05-13T00:00:00Z | 2025-07-02T13:49:48Z |
| alsa-2025:7043 | Moderate: microcode_ctl security update | 2025-05-13T00:00:00Z | 2025-07-02T13:47:48Z |
| alsa-2025:7049 | Moderate: python-requests security update | 2025-05-13T00:00:00Z | 2025-07-02T13:46:12Z |
| alsa-2025:7050 | Moderate: rsync security update | 2025-05-13T00:00:00Z | 2025-07-02T13:44:15Z |
| alsa-2025:7064 | Moderate: iptraf-ng security update | 2025-05-13T00:00:00Z | 2025-07-02T13:42:29Z |
| alsa-2025:7067 | Moderate: krb5 security update | 2025-05-13T00:00:00Z | 2025-07-02T13:41:00Z |
| alsa-2025:7076 | Moderate: gnutls security update | 2025-05-13T00:00:00Z | 2025-07-02T13:39:03Z |
| alsa-2025:7077 | Moderate: libtasn1 security update | 2025-05-13T00:00:00Z | 2025-07-02T13:37:08Z |
| alsa-2025:7107 | Moderate: python3.12 security update | 2025-05-13T00:00:00Z | 2025-07-02T13:35:29Z |
| alsa-2025:7094 | Moderate: aardvark-dns security update | 2025-05-13T00:00:00Z | 2025-07-02T13:33:31Z |
| alsa-2025:7109 | Moderate: python3.11 security update | 2025-05-13T00:00:00Z | 2025-07-02T13:32:00Z |
| alsa-2025:7118 | Important: osbuild and osbuild-composer security update | 2025-05-13T00:00:00Z | 2025-07-02T13:30:04Z |
| alsa-2025:7138 | Moderate: protobuf security update | 2025-05-13T00:00:00Z | 2025-07-02T13:27:31Z |
| alsa-2025:7147 | Moderate: rpm-ostree security update | 2025-05-13T00:00:00Z | 2025-07-02T13:25:32Z |
| alsa-2025:7160 | Moderate: bootc security update | 2025-05-13T00:00:00Z | 2025-07-02T13:23:57Z |
| alsa-2025:7165 | Moderate: xorg-x11-server-Xwayland security update | 2025-05-13T00:00:00Z | 2025-07-02T13:22:24Z |
| alsa-2025:7163 | Moderate: xorg-x11-server security update | 2025-05-13T00:00:00Z | 2025-07-02T13:20:45Z |
| alsa-2025:7178 | Moderate: gstreamer1, gstreamer1-plugins-bad-free, gstreamer1-plugins-ugly-free, and gstreamer1-rtsp-server security update | 2025-05-13T00:00:00Z | 2025-07-02T13:18:46Z |
| alsa-2025:7201 | Moderate: corosync security update | 2025-05-13T00:00:00Z | 2025-07-02T13:16:42Z |