Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
CVE-1999-0191
N/A
IIS newdsn.exe CGI script allows remote users to … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:27:57.921Z
CVE-1999-0192
N/A
Buffer overflow in telnet daemon tgetent routing … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:27:57.939Z
CVE-1999-0194
N/A
Denial of service in in.comsat allows attackers t… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:27:57.881Z
CVE-1999-0196
N/A
websendmail in Webgais 1.0 allows a remote user t… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:27:57.784Z
CVE-1999-0201
N/A
A quote cwd command on FTP servers can reveal the… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:27:57.874Z
CVE-1999-0202
N/A
The GNU tar command, when used in FTP sessions, m… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:27:57.936Z
CVE-1999-0204
N/A
Sendmail 8.6.9 allows remote attackers to execute… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:27:57.921Z
CVE-1999-0206
N/A
MIME buffer overflow in Sendmail 8.8.0 and 8.8.1 … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:27:57.892Z
CVE-1999-0207
N/A
Remote attacker can execute commands through Majo… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.904Z
CVE-1999-0208
N/A
rpc.ypupdated (NIS) allows remote users to execut… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:50.915Z
CVE-1999-0209
N/A
The SunView (SunTools) selection_svc facility all… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.726Z
CVE-1999-0214
N/A
Denial of service by sending forged ICMP unreacha… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.621Z
CVE-1999-0215
N/A
Routed allows attackers to append data to files. n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.766Z
CVE-1999-0217
N/A
Malicious option settings in UDP packets could fo… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.865Z
CVE-1999-0218
N/A
Livingston portmaster machines could be rebooted … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:50.895Z
CVE-1999-0219
N/A
Buffer overflow in FTP Serv-U 2.5 allows remote a… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.571Z
CVE-1999-0221
N/A
Denial of service of Ascend routers through port … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.726Z
CVE-1999-0224
N/A
Denial of service in Windows NT messenger service… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.647Z
CVE-1999-0227
N/A
Access violation in LSASS.EXE (LSA/LSARPC) progra… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:50.918Z
CVE-1999-0228
N/A
Denial of service in RPCSS.EXE program (RPC Locat… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.505Z
CVE-1999-0230
N/A
Buffer overflow in Cisco 7xx routers through the … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.562Z
CVE-1999-0234
N/A
Bash treats any character with a value of 255 as … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:50.903Z
CVE-1999-0236
N/A
ScriptAlias directory in NCSA and Apache httpd al… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.858Z
CVE-1999-0237
N/A
Remote execution of arbitrary commands through Gu… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.883Z
CVE-1999-0239
N/A
Netscape FastTrack Web server lists files when a … n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.836Z
CVE-1999-0244
N/A
Livingston RADIUS code has a buffer overflow whic… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.546Z
CVE-1999-0245
N/A
Some configurations of NIS+ in Linux allowed atta… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.874Z
CVE-1999-0251
N/A
Denial of service in talk program allows remote a… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.687Z
CVE-1999-0252
N/A
Buffer overflow in listserv allows arbitrary comm… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.727Z
CVE-1999-0256
N/A
Buffer overflow in War FTP allows remote executio… n/a
n/a
1999-09-29T08:00:00.000Z 2024-08-01T16:34:51.870Z
ID CVSS Description Vendor Product Published Updated
ID Severity Description Published Updated
ghsa-3vfw-7rcp-3xgm
actionpack Improper Input Validation vulnerability 2017-10-24T18:33:38Z 2023-05-12T15:20:04Z
ghsa-4ww3-3rxj-8v6q
actionpack allows remote attackers to bypass intended access restrictions 2017-10-24T18:33:38Z 2023-05-12T15:23:22Z
ghsa-6mq2-37j5-w6r6
WEBrick Improper Input Validation vulnerability 2017-10-24T18:33:38Z 2025-05-22T16:55:39Z
ghsa-6x46-7rrv-m4h8
sqlite3-ruby uses weak permissions for unspecified files, which allows local users to gain privileges 2017-10-24T18:33:38Z 2023-05-12T16:04:23Z
ghsa-75w6-p6mg-vh8j
Rails actionpack gem vulnerable to Cross-site Scripting 2017-10-24T18:33:38Z 2023-05-26T16:09:49Z
ghsa-76wq-xw4h-f8wj
activerecord vulnerable to SQL Injection 2017-10-24T18:33:38Z 2025-01-21T15:12:23Z
ghsa-8fqx-7pv4-3jwm
Improper Input Validation in actionpack 2017-10-24T18:33:38Z 2023-05-26T16:54:58Z
ghsa-8qrh-h9m2-5fvf
Cross site scripting that affects rails 2017-10-24T18:33:38Z 2025-04-09T19:51:09Z
ghsa-92w9-2pqw-rhjj
actionpack Improper Authentication vulnerability 2017-10-24T18:33:38Z 2025-01-22T15:09:51Z
ghsa-9fh3-vh3h-q4g3
activesupport Cross-site Scripting vulnerability 2017-10-24T18:33:38Z 2023-05-12T17:06:32Z
ghsa-9p3v-wf2w-v29c
Moderate severity vulnerability that affects rails 2017-10-24T18:33:38Z 2025-04-09T19:53:05Z
ghsa-9wrq-xvmp-xjc8
Rails Denial of Service vulnerability 2017-10-24T18:33:38Z 2025-04-03T14:26:59Z
ghsa-c5qq-g673-5p49
Puppet allows local users to overwrite arbitrary files via a symlink attack 2017-10-24T18:33:38Z 2023-05-12T17:08:19Z
ghsa-cj92-c4fj-w9c5
Mail Gem Path Traversal vulnerability 2017-10-24T18:33:38Z 2023-09-05T21:10:15Z
ghsa-cpjc-p7fc-j9xh
Mail Improper Input Validation vulnerability 2017-10-24T18:33:38Z 2023-01-23T21:15:08Z
ghsa-fcqf-h4h4-695m
actionpack CRLF injection vulnerability 2017-10-24T18:33:38Z 2023-07-19T18:42:54Z
ghsa-fg9w-g6m4-557j
actionpack and activesupport vulnerable to information leaks 2017-10-24T18:33:38Z 2023-05-26T17:12:19Z
ghsa-fh39-v733-mxfr
Active Record vulnerable to SQL Injection via nested query parameters 2017-10-24T18:33:38Z 2023-03-14T22:18:13Z
ghsa-fjfg-q662-gm6j
Moderate severity vulnerability that affects rails 2017-10-24T18:33:38Z 2025-05-01T18:12:56Z
ghsa-gjxw-5w2q-7grf
Rails activerecord gem has Improper Input Validation vulnerability 2017-10-24T18:33:38Z 2023-05-26T16:50:51Z
ghsa-gm25-fpmr-43fj
Moderate severity vulnerability that affects rails 2017-10-24T18:33:38Z 2025-04-09T15:18:55Z
ghsa-h6w6-xmqv-7q78
activerecord vulnerable to SQL Injection 2017-10-24T18:33:38Z 2025-11-03T13:56:05Z
ghsa-hgpp-pp89-4fgf
Action Pack contains database-query restrictions bypass 2017-10-24T18:33:38Z 2025-01-22T15:18:25Z
ghsa-j24p-r6wx-r79w
High severity vulnerability that affects thin 2017-10-24T18:33:38Z 2021-09-14T18:09:44Z
ghsa-jmgf-p46x-982h
rails is vulnerable to CRLF injection 2017-10-24T18:33:38Z 2025-04-09T16:49:45Z
ghsa-jmm9-2p29-vh2w
activerecord vulnerable to SQL Injection 2017-10-24T18:33:38Z 2023-05-12T17:17:16Z
ghsa-jwhv-rgqc-fqj5
Session fixation vulnerability in Rails 2017-10-24T18:33:38Z 2025-04-09T15:20:58Z
ghsa-p4c6-77gc-694x
session fixation protection mechanism in cgi_process.rb in Rails 2017-10-24T18:33:38Z 2025-04-09T15:21:26Z
ghsa-q34c-48gc-m9g8
actionpack allows remote attackers to bypass database-query restrictions, perform NULL checks via c… 2017-10-24T18:33:38Z 2025-01-20T16:29:10Z
ghsa-qv8p-v9qw-wc7g
activesupport Cross-site Scripting vulnerability 2017-10-24T18:33:38Z 2023-01-23T18:01:41Z
ID Severity Description Package Published Updated
pysec-2013-44
OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) does not properly i… nova 2013-03-22T21:55:00Z 2024-11-25T18:35:18.357593Z
pysec-2013-16
The administrative interface for Django 1.3.x before 1.3.6, 1.4.x before 1.4.4, and 1.5 b… django 2013-05-02T14:55:00Z 2021-07-15T02:22:08.650123Z
pysec-2013-17
The form library in Django 1.3.x before 1.3.6, 1.4.x before 1.4.4, and 1.5 before release… django 2013-05-02T14:55:00Z 2021-07-15T02:22:08.748982Z
pysec-2013-40
OpenStack Identity (Keystone) Grizzly 2013.1.1, when DEBUG mode logging is enabled, logs … keystone 2013-05-21T18:55:00Z 2024-11-21T14:22:52.515884Z
pysec-2013-41
OpenStack Identity (Keystone) Folsom 2012.2.4 and earlier, Grizzly before 2013.1.1, and H… keystone 2013-05-21T18:55:00Z 2024-11-25T18:35:18.357593Z
pysec-2013-10
pyshop before 0.7.1 uses HTTP to retrieve packages from the PyPI repository, and does not… pyshop 2013-08-06T02:52:00Z 2021-07-05T00:01:25.257414Z
pysec-2013-22
easy_install in setuptools before 0.7 uses HTTP to retrieve packages from the PyPI reposi… setuptools 2013-08-06T02:52:00Z 2021-07-15T02:22:20.324113Z
pysec-2013-8
pip before 1.3 uses HTTP to retrieve packages from the PyPI repository, and does not perf… pip 2013-08-06T02:52:00Z 2021-07-05T00:01:24.339020Z
pysec-2013-30
bson/_cbsonmodule.c in the mongo-python-driver (aka. pymongo) before 2.5.2, as used in Mo… pymongo 2013-08-15T17:55:00Z 2021-08-27T03:22:17.455260Z
pysec-2013-9
pip before 1.3 allows local users to overwrite arbitrary files via a symlink attack on a … pip 2013-08-17T06:54:00Z 2021-07-05T00:01:24.378636Z
pysec-2013-25
The Python client in Apache Qpid before 2.2 does not verify that the server hostname matc… qpid-python 2013-08-23T16:55:00Z 2021-07-25T23:34:52.564224Z
pysec-2013-11
The Python client library for Glance (python-glanceclient) before 0.10.0 does not properl… python-glanceclient 2013-08-28T21:55:00Z 2021-07-05T00:01:25.393576Z
pysec-2013-1
runner/connection_plugins/ssh.py in Ansible before 1.2.3, when using ControlPersist, allo… ansible 2013-09-16T19:14:00Z 2021-07-02T02:41:32.926386Z
pysec-2013-2
lib/ansible/playbook/__init__.py in Ansible 1.2.x before 1.2.3, when playbook does not ru… ansible 2013-09-16T19:14:00Z 2021-07-02T02:41:32.973358Z
pysec-2013-20
Directory traversal vulnerability in Django 1.4.x before 1.4.7, 1.5.x before 1.5.3, and 1… django 2013-09-16T19:14:00Z 2021-07-15T02:22:08.994909Z
pysec-2013-35
The clear_volume function in LVMVolumeDriver driver in OpenStack Cinder 2013.1.1 through … cinder 2013-09-16T19:14:00Z 2024-11-25T18:33:04.123836Z
pysec-2013-18
The authentication framework (django.contrib.auth) in Django 1.4.x before 1.4.8, 1.5.x be… django 2013-09-23T20:55:00Z 2021-07-15T02:22:08.840916Z
pysec-2013-32
cache.py in Suds 0.4, when tempdir is set to None, allows local users to redirect SOAP qu… suds 2013-09-23T20:55:00Z 2022-09-08T23:05:05.113905Z
pysec-2013-33
cache.py in Suds 0.4, when tempdir is set to None, allows local users to redirect SOAP qu… suds-py3 2013-09-23T20:55:00Z 2021-08-27T03:22:21.834987Z
pysec-2013-42
The (1) mamcache and (2) KVS token backends in OpenStack Identity (Keystone) Folsom 2012.… keystone 2013-09-23T20:55:00Z 2024-11-25T18:35:18.357593Z
pysec-2013-3
The renderLocalView function in render/views.py in graphite-web in Graphite 0.9.5 through… graphite-web 2013-09-27T10:08:00Z 2021-07-05T00:01:21.746777Z
pysec-2013-34
Graphite 0.9.5 through 0.9.10 uses the pickle Python module unsafely, which allows remote… graphite-web 2013-09-27T10:08:00Z 2021-11-16T21:20:28.715114Z
pysec-2013-4
Multiple cross-site scripting (XSS) vulnerabilities in Graphite before 0.9.11 allow remot… graphite-web 2013-09-27T10:08:00Z 2021-07-05T00:01:21.777451Z
pysec-2013-31
The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a '\0' character in… pyopenssl 2013-09-30T21:55:00Z 2021-08-27T03:22:17.495539Z
pysec-2013-24
The user-password-update command in python-keystoneclient before 0.2.4 accepts the new pa… python-keystoneclient 2013-10-01T20:55:00Z 2021-07-25T23:34:51.897352Z
pysec-2013-19
Cross-site scripting (XSS) vulnerability in the AdminURLFieldWidget widget in contrib/adm… django 2013-10-04T17:55:00Z 2021-07-15T02:22:08.907870Z
pysec-2013-21
The is_safe_url function in utils/http.py in Django 1.4.x before 1.4.6, 1.5.x before 1.5.… django 2013-10-04T17:55:00Z 2021-07-15T02:22:09.088856Z
pysec-2013-29
The Crypto.Random.atfork function in PyCrypto before 2.6.1 does not properly reseed the p… pycrypto 2013-10-26T17:55:00Z 2021-08-27T03:22:16.634811Z
pysec-2013-12
Salt (aka SaltStack) 0.15.0 through 0.17.0 allows remote authenticated users who are usin… salt 2013-11-05T18:55:00Z 2021-07-05T00:01:25.968572Z
pysec-2013-13
Salt (aka SaltStack) before 0.17.1 allows remote attackers to execute arbitrary YAML code… salt 2013-11-05T18:55:00Z 2021-07-05T00:01:26.005200Z
ID Description Type
ID Description Updated
ID Description Published Updated
mal-2022-5566 Malicious code in qunit-begin (npm) 2022-05-31T13:13:55Z 2022-05-31T13:14:05Z
mal-2022-1863 Malicious code in ceye-test-0001 (npm) 2022-05-31T13:13:56Z 2022-05-31T13:13:56Z
mal-2022-4949 Malicious code in npmupload_test-xxxxxxxxxxxxx (npm) 2022-05-31T13:13:56Z 2022-05-31T13:14:04Z
mal-2022-4318 Malicious code in linter-marlint (npm) 2022-05-31T13:14:46Z 2022-05-31T13:14:47Z
mal-2022-5636 Malicious code in react-devtools-release-script (npm) 2022-05-31T13:14:46Z 2022-05-31T13:14:47Z
mal-2022-7154 Malicious code in wireit-website (npm) 2022-05-31T13:14:46Z 2022-05-31T13:14:47Z
mal-2022-4446 Malicious code in maddysmith-test (npm) 2022-05-31T13:15:19Z 2022-05-31T13:15:20Z
mal-2022-3647 Malicious code in hls-outreach-sms (npm) 2022-05-31T13:16:10Z 2022-05-31T13:16:10Z
mal-2022-5299 Malicious code in perfetto-ui (npm) 2022-05-31T13:16:10Z 2022-05-31T13:16:10Z
mal-2022-6263 Malicious code in spotify.github.io (npm) 2022-05-31T13:16:10Z 2022-05-31T13:16:14Z
mal-2022-7071 Malicious code in web-playback-sdk-sample-app (npm) 2022-05-31T13:16:10Z 2022-05-31T13:16:10Z
mal-2022-2927 Malicious code in express-lastest (npm) 2022-05-31T13:18:42Z 2022-05-31T13:18:43Z
mal-2022-2017 Malicious code in colors-rgb (npm) 2022-05-31T13:19:32Z 2022-05-31T13:19:33Z
mal-2022-2108 Malicious code in com.unity.xr.magicleap (npm) 2022-05-31T13:22:05Z 2022-05-31T13:22:06Z
mal-2022-2751 Malicious code in enterprise_api_app (npm) 2022-05-31T13:22:05Z 2022-05-31T13:22:06Z
mal-2022-6084 Malicious code in sherlocksecure (npm) 2022-05-31T13:22:05Z 2022-05-31T13:22:06Z
mal-2022-5380 Malicious code in pm-web-mapp-shared (npm) 2022-05-31T13:22:06Z 2022-05-31T13:22:06Z
mal-2022-871 Malicious code in ads-monsuperpackage-dependency-confusion (npm) 2022-05-31T13:23:31Z 2022-05-31T13:24:08Z
mal-2022-4825 Malicious code in next-plugin-normal (npm) 2022-05-31T13:24:03Z 2022-05-31T13:24:12Z
mal-2022-5376 Malicious code in plugin-welcome (npm) 2022-05-31T13:24:03Z 2022-05-31T13:24:11Z
mal-2022-6210 Malicious code in some-crazy-dep-that-doesnt-exist (npm) 2022-05-31T13:24:03Z 2022-05-31T13:24:11Z
mal-2022-6645 Malicious code in trezor-translations-manager (npm) 2022-05-31T13:24:03Z 2022-05-31T13:24:08Z
mal-2022-6646 Malicious code in trezor-ui-components (npm) 2022-05-31T13:24:03Z 2022-05-31T13:24:08Z
mal-2022-6647 Malicious code in trezor-wallet (npm) 2022-05-31T13:24:03Z 2022-05-31T13:24:08Z
mal-2022-6364 Malicious code in sushi-client (npm) 2022-05-31T13:24:36Z 2022-05-31T13:24:37Z
mal-2022-6362 Malicious code in survey-widgets (npm) 2022-05-31T13:25:26Z 2022-05-31T13:25:27Z
mal-2022-4469 Malicious code in malicious-pre-install-package (npm) 2022-05-31T13:25:41Z 2022-05-31T13:25:42Z
mal-2022-2823 Malicious code in eslint-plugin-pan (npm) 2022-05-31T13:26:34Z 2022-05-31T13:26:34Z
mal-2022-837 Malicious code in activity-dropdown-legacy (npm) 2022-05-31T13:27:24Z 2022-05-31T13:27:24Z
mal-2022-4645 Malicious code in mmccii (npm) 2022-05-31T13:28:47Z 2022-05-31T13:28:47Z
ID Description Published Updated
bit-django-2022-36359 2024-03-06T10:52:34.080Z 2025-04-03T14:40:37.652Z
bit-golang-2023-45285 Command 'go get' may unexpectedly fallback to insecure git in cmd/go 2024-03-06T10:52:37.296Z 2025-05-20T10:02:07.006Z
bit-envoy-2023-35945 Envoy vulnerable to HTTP/2 memory leak in nghttp2 codec 2024-03-06T10:52:37.891Z 2025-05-20T10:02:07.006Z
bit-ejbca-2020-25276 2024-03-06T10:52:38.396Z 2025-04-03T14:40:37.652Z
bit-gitea-2022-38795 2024-03-06T10:52:39.003Z 2025-04-03T14:40:37.652Z
bit-apache-2022-28615 Read beyond bounds in ap_strcmp_match() 2024-03-06T10:52:39.207Z 2025-05-20T10:02:07.006Z
bit-ghost-2023-26510 2024-03-06T10:52:39.807Z 2025-04-03T14:40:37.652Z
bit-etcd-2020-15106 Improper Input Validation in etcd 2024-03-06T10:52:40.894Z 2025-05-20T10:02:07.006Z
bit-gitlab-2024-1250 Privilege Chaining in GitLab 2024-03-06T10:52:40.993Z 2025-05-20T10:02:07.006Z
bit-elasticsearch-2021-37937 Elasticsearch privilege escalation 2024-03-06T10:52:41.376Z 2025-05-20T10:02:07.006Z
bit-consul-2021-41803 2024-03-06T10:52:42.202Z 2025-04-03T14:40:37.652Z
bit-dotnet-2023-38171 Microsoft QUIC Denial of Service Vulnerability 2024-03-06T10:52:42.705Z 2025-05-20T10:02:07.006Z
bit-discourse-2023-45816 Unread bookmark reminder notifications that the user cannot access can be seen 2024-03-06T10:52:43.699Z 2025-05-20T10:02:07.006Z
bit-gradle-2023-42445 Possible local file exfiltration by XML External entity injection 2024-03-06T10:52:45.671Z 2025-05-20T10:02:07.006Z
bit-airflow-2023-42781 Apache Airflow: Permission verification bypass allows viewing dagruns of other dags 2024-03-06T10:52:45.892Z 2025-05-20T10:02:07.006Z
bit-django-2022-34265 2024-03-06T10:52:46.204Z 2025-04-03T14:40:37.652Z
bit-drupal-2022-25277 2024-03-06T10:52:46.499Z 2025-04-03T14:40:37.652Z
bit-envoy-2023-35944 Envoy vulnerable to incorrect handling of HTTP requests and responses with mixed case schemes 2024-03-06T10:52:47.709Z 2025-05-20T10:02:07.006Z
bit-gitea-2022-38183 2024-03-06T10:52:48.810Z 2025-04-03T14:40:37.652Z
bit-golang-2023-45284 Incorrect detection of reserved device names on Windows in path/filepath 2024-03-06T10:52:50.966Z 2025-05-20T10:02:07.006Z
bit-gitlab-2024-1066 Allocation of Resources Without Limits or Throttling in GitLab 2024-03-06T10:52:51.603Z 2025-05-20T10:02:07.006Z
bit-apache-2022-28614 read beyond bounds via ap_rwrite() 2024-03-06T10:52:51.677Z 2025-05-20T10:02:07.006Z
bit-elasticsearch-2021-22147 2024-03-06T10:52:52.691Z 2025-04-03T14:40:37.652Z
bit-ghost-2022-47197 2024-03-06T10:52:52.881Z 2025-11-06T13:25:46.476Z
bit-consul-2021-38698 2024-03-06T10:52:52.988Z 2025-04-03T14:40:37.652Z
bit-handlebars-2021-32820 File disclosure in Express Handlebars 2024-03-06T10:52:54.181Z 2025-05-20T10:02:07.006Z
bit-dotnet-2023-36799 .NET Core and Visual Studio Denial of Service Vulnerability 2024-03-06T10:52:55.313Z 2025-05-20T10:02:07.006Z
bit-drupal-2022-25276 2024-03-06T10:52:55.802Z 2025-04-03T14:40:37.652Z
bit-gradle-2023-35947 Path traversal vulnerabilities in handling of Tar archives in Gradle 2024-03-06T10:52:56.608Z 2025-05-20T10:02:07.006Z
bit-airflow-2023-42780 Apache Airflow: Improper access control vulnerability in the "List dag warnings" feature 2024-03-06T10:52:56.668Z 2025-05-20T10:02:07.006Z
ID Description Published Updated
cleanstart-2026-oj15484 SSH clients receiving SSH_AGENT_SUCCESS when expecting a typed response will panic and cause early termination of the client process 2026-01-30T16:37:55.388839Z 2026-01-29T18:58:54Z
cleanstart-2026-iy17697 excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate 2026-01-30T16:37:55.497960Z 2026-01-29T18:58:54Z
cleanstart-2026-hj34439 Go before 1 2026-01-30T16:39:55.415446Z 2026-01-29T18:58:54Z
cleanstart-2026-lz10721 Within HostnameError 2026-01-30T16:40:55.517816Z 2026-01-29T18:58:54Z
cleanstart-2026-pz62650 Cancelling a query (e 2026-01-30T16:41:55.453512Z 2026-01-29T18:58:54Z
cleanstart-2026-sb25660 net/http package improperly accepts a bare LF as a line terminator in chunked data chunk-size lines 2026-01-30T16:44:27.197226Z 2026-01-29T18:58:54Z
cleanstart-2026-tk38210 Due to the design of the name constraint checking algorithm, the processing time of some inputs scale non-linearly with respect to the size of the certificate 2026-01-30T16:46:25.995358Z 2026-01-29T18:58:54Z
cleanstart-2026-hl71566 excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate 2026-01-30T16:50:56.129322Z 2026-01-29T18:58:54Z
cleanstart-2026-dn29911 attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing 2026-01-30T16:57:26.436107Z 2026-01-29T18:58:54Z
cleanstart-2026-yb44027 Moby is an open-source project created by Docker for software containerization 2026-01-30T17:04:26.396860Z 2026-01-29T18:58:54Z
cleanstart-2026-zc18474 PostgreSQL optimizer statistics allow a user to read sampled data within a view that the user cannot access 2026-01-30T17:04:56.559720Z 2026-01-29T18:58:54Z
cleanstart-2026-zz61324 Hunspell 1 2026-01-30T17:14:26.562334Z 2026-01-29T18:58:54Z
cleanstart-2026-ht23337 flaw was found in the way certificate signatures could be forged using collisions found in the SHA-1 algorithm 2026-01-30T17:15:56.746125Z 2026-01-29T18:58:54Z
cleanstart-2026-nf19624 ParseAddress function constructs domain-literal address components through repeated string concatenation 2026-01-30T17:20:26.466437Z 2026-01-29T18:58:54Z
cleanstart-2026-hf39630 potential heap based buffer overflow was found in _bfd_elf_slurp_version_tables() in bfd/elf 2026-01-30T17:20:56.632450Z 2026-01-29T18:58:54Z
cleanstart-2026-hj04971 vulnerability was found in PostgreSQL with the use of the MERGE command, which fails to test new rows against row security policies defined for UPDATE and SELECT 2026-01-30T17:21:56.808972Z 2026-01-29T18:58:54Z
cleanstart-2026-pb78859 ParseAddress function constructs domain-literal address components through repeated string concatenation 2026-01-30T17:25:56.763674Z 2026-01-29T18:58:54Z
cleanstart-2026-yt18139 issue was discovered in libexpat before 2 2026-01-30T17:26:57.202658Z 2026-01-29T18:58:54Z
cleanstart-2026-wi17406 Redis is an open source, in-memory database that persists on disk 2026-01-30T17:35:28.375848Z 2026-01-29T18:58:54Z
cleanstart-2026-cc08655 Security fixes for GHSA-f6x5-jh6r-wrfv, GHSA-j5w8-q4qc-rx2x applied in versions: 0.8.4-r0 2026-02-03T00:36:29.405423Z 2026-02-02T12:32:10Z
cleanstart-2026-am95501 When using the RemoteIpFilter with requests received from a reverse proxy via HTTP that include the X-Forwarded-Proto header set to https, session cookies created by Apache Tomcat 11 2026-02-03T00:37:00.849369Z 2026-02-02T12:32:10Z
cleanstart-2026-nb26505 Security fixes for GHSA-f6x5-jh6r-wrfv, GHSA-j5w8-q4qc-rx2x applied in versions: 4.5.1-r0 2026-02-03T16:02:27.744077Z 2026-02-03T11:13:56Z
cleanstart-2026-my73913 Security fixes for GHSA-r6j8-c6r2-37rr applied in versions: 4.12.1-r0 2026-02-03T16:02:28.659120Z 2026-02-03T11:13:56Z
cleanstart-2026-fc21713 Cancelling a query (e 2026-02-03T16:02:29.570272Z 2026-02-03T11:13:56Z
cleanstart-2026-xr99875 Security fixes for GHSA-389x-839f-4rhx, GHSA-3p8m-j85q-pgmj, GHSA-5jpm-x58v-624v, GHSA-84h7-rjj3-6jx4, GHSA-fghv-69vj-qj49, GHSA-jq43-27x9-3v86, GHSA-qqpg-mvqg-649v applied in versions: 0.1.109-r0, 0.1.113-r1 2026-02-03T16:02:30.597873Z 2026-02-03T11:13:56Z
cleanstart-2026-bz58799 Within HostnameError 2026-02-06T00:39:29.590361Z 2026-02-05T12:20:16Z
cleanstart-2026-jn44153 Security fixes for GHSA-f6x5-jh6r-wrfv, GHSA-gx3x-vq4p-mhhv, GHSA-j5w8-q4qc-rx2x applied in versions: 1.18.0-r0, 1.19.0-r1 2026-02-06T00:39:29.662228Z 2026-02-05T12:20:16Z
cleanstart-2026-zm20570 Moby is an open-source project created by Docker for software containerization 2026-02-06T00:54:29.621254Z 2026-02-03T13:35:45Z
cleanstart-2026-wx01708 vulnerability in the OLE2 file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device 2026-02-06T01:10:02.024980Z 2026-02-03T13:35:45Z
cleanstart-2026-xe32069 Buffer Overflow vulnerability in Ffmpeg before github commit 4565747056a11356210ed8edcecb920105e40b60 allows a remote attacker to achieve an out-of-array write, execute arbitrary code, and cause a ... 2026-02-06T01:10:32.733224Z 2026-02-03T13:35:45Z
ID Description Published Updated
drupal-contrib-2022-018 2022-01-25T18:39:50.000Z 2023-08-11T13:46:46.000Z
drupal-contrib-2022-019 2022-01-25T18:40:00.000Z 2023-10-24T16:11:02.000Z
drupal-contrib-2022-021 2022-01-25T18:41:04.000Z 2023-08-11T13:47:07.000Z
drupal-contrib-2022-014 2022-01-26T17:18:11.000Z 2023-08-11T13:48:18.000Z
drupal-contrib-2022-023 2022-02-09T15:17:56.000Z 2023-08-11T13:48:49.000Z
drupal-contrib-2022-024 2022-02-09T15:20:08.000Z 2023-08-11T13:49:13.000Z
drupal-contrib-2022-025 2022-02-16T17:07:35.000Z 2023-08-11T13:49:36.000Z
drupal-contrib-2022-026 2022-02-23T17:10:52.000Z 2023-08-11T13:50:17.000Z
drupal-contrib-2022-027 2022-02-23T17:18:07.000Z 2023-08-10T21:37:54.000Z
drupal-contrib-2022-028 2022-03-09T18:28:39.000Z 2023-08-10T21:39:01.000Z
drupal-contrib-2022-029 2022-03-09T18:57:52.000Z 2023-08-10T21:39:44.000Z
drupal-contrib-2022-032 2022-03-30T18:23:29.000Z 2023-08-10T21:41:21.000Z
drupal-contrib-2022-035 2022-05-04T16:06:53.000Z 2023-08-10T21:43:30.000Z
drupal-contrib-2022-036 2022-05-04T16:11:07.000Z 2023-08-10T21:43:53.000Z
drupal-contrib-2022-038 2022-05-04T16:26:47.000Z 2023-08-10T21:00:44.000Z
drupal-contrib-2022-040 2022-05-18T17:13:43.000Z 2023-08-10T21:05:48.000Z
drupal-contrib-2022-042 2022-05-25T16:45:17.000Z 2023-08-10T21:02:21.000Z
drupal-contrib-2022-043 2022-05-25T16:49:46.000Z 2023-08-10T21:32:49.000Z
drupal-contrib-2022-044 2022-05-25T16:53:45.000Z 2023-08-10T21:33:53.000Z
drupal-contrib-2022-045 2022-05-25T17:03:55.000Z 2023-08-10T21:35:00.000Z
drupal-contrib-2022-046 2022-06-29T16:51:17.000Z 2023-08-10T21:35:30.000Z
drupal-contrib-2022-047 2022-06-29T17:25:39.000Z 2023-08-10T21:35:49.000Z
drupal-contrib-2022-048 2022-07-13T15:44:42.000Z 2023-08-10T21:36:29.000Z
drupal-contrib-2022-050 2022-07-27T17:03:38.000Z 2023-08-10T19:24:22.000Z
drupal-contrib-2022-051 2022-07-27T17:07:39.000Z 2023-08-10T19:25:28.000Z
drupal-contrib-2022-052 2022-08-10T15:09:36.000Z 2023-08-10T19:25:47.000Z
drupal-contrib-2022-053 2022-08-24T18:21:02.000Z 2023-08-10T19:26:24.000Z
drupal-contrib-2022-054 2022-09-07T16:57:28.000Z 2023-08-10T19:26:43.000Z
drupal-contrib-2022-055 2022-09-07T17:04:31.000Z 2023-08-10T19:27:28.000Z
drupal-contrib-2022-056 2022-09-07T17:06:06.000Z 2023-08-10T19:28:12.000Z
ID Description Updated
ID Description Published Updated
jvndb-2006-000736 NEC MultiWriter 1700C web server authentication bypass vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000737 NEC MultiWriter 1700C/7500C FTP server vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000742 desknet's buffer overflow vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000753 Ruby cgi.rb Denial of Service Vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000758 MyODBC Japanese Conversion Edition denial of service vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000760 Hyper NIKKI System cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000771 Kahua vulnerable in allowing to share login sessions 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000777 Nucleus cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000781 EC-CUBE cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000784 eyeOS cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000791 phpComasy cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000792 tDiary cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000802 Blogn cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000803 Chama Cargo cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000808 Denial of service vulnerability in Ruby CGI library (cgi.rb) 2008-05-21T00:00+09:00 2008-11-14T12:20+09:00
jvndb-2006-000809 TikiWiki cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000812 Hanako buffer overflow vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000816 Shobo Shobo Nikki System (sns) cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000849 SugarCRM cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000850 a-blog cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000851 pnamazu cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000852 Joomla! cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000853 tDiary arbitrary Ruby script execution vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000858 Ruby vulnerability caused by a problem with the alias funtion so that safe level 4 does not function as a sandbox 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000938 Webmin directory traversal vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000939 Multiple vulnerabilities in Webmin and Usermin 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000975 Hitachi Soumu Workflow Authentication Bypassing Vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000983 JP1 Request Handling Denial of Service Vulnerabilities 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000006 Serene Bach cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2007-000070 Drupal cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
ID Description Updated
ID Description
ID Description Published Updated
cnvd-2015-00109 Eucalyptus拒绝服务漏洞(CNVD-2015-00109) 2015-01-04 2015-01-07
cnvd-2015-00110 phpThumb服务器端请求伪造漏洞 2015-01-04 2015-01-07
cnvd-2015-00111 Splunk跨站脚本漏洞(CNVD-2015-00111) 2015-01-04 2015-01-07
cnvd-2015-00112 Hillstone HS TFTP Server拒绝服务漏洞 2015-01-04 2015-01-07
cnvd-2015-00113 SyndeoCMS跨站请求伪造漏洞 2015-01-04 2015-01-07
cnvd-2015-00114 AjaXplorer 'save_zoho.php'任意文件上传漏洞 2015-01-04 2015-01-07
cnvd-2015-00115 Owl Intranet Knowledgebase存在多个跨站脚本漏洞 2015-01-04 2015-01-07
cnvd-2015-00064 SweetRice CMS密码重置漏洞 2015-01-05 2015-01-06
cnvd-2015-00065 SweetRice CMS存在多个SQL注入漏洞 2015-01-05 2015-01-06
cnvd-2015-00066 SweetRice CMS跨站脚本漏洞 2015-01-05 2015-01-06
cnvd-2015-00067 Kandidat CMS存在多个跨站请求伪造漏洞 2015-01-05 2015-01-06
cnvd-2015-00068 Microweber CMS SQL注入漏洞 2015-01-05 2015-01-06
cnvd-2015-00069 MantisBT信息泄露漏洞 2015-01-05 2015-01-06
cnvd-2015-00070 MediaWiki跨站脚本漏洞(CNVD-2015-00070) 2015-01-05 2015-01-06
cnvd-2015-00071 BEdita存在多个跨站请求伪造漏洞 2015-01-05 2015-01-06
cnvd-2015-00072 BEdita跨站脚本漏洞 2015-01-05 2015-01-06
cnvd-2015-00073 WordPress插件Cart66 Lite 'models/Cart66.php'目录遍历漏洞 2015-01-05 2015-01-06
cnvd-2015-00074 IPCop Firewall cgi-bin/iptablesgui.cgi任意代码执行漏洞 2015-01-05 2015-01-06
cnvd-2015-00075 WordPress插件WP-ViperGB存在多个跨站请求伪造漏洞 2015-01-05 2015-01-06
cnvd-2015-00076 RabbitMQ 'rabbit_mgmt_util.erl'安全绕过漏洞 2015-01-05 2015-01-06
cnvd-2015-00116 D-link IP camera DCS-2103 with firmware跨站脚本漏洞 2015-01-06 2015-01-07
cnvd-2015-00117 Social Microblogging PRO跨站脚本漏洞 2015-01-06 2015-01-07
cnvd-2015-00118 Sonatype Nexus OSS and Pro目录遍历漏洞 2015-01-06 2015-01-07
cnvd-2015-00119 WordPress插件Our Team Showcase (our-team-enhanced)跨站请求伪造漏洞 2015-01-06 2015-01-07
cnvd-2015-00120 WordPress插件Facebook Like Box (cardoza-facebook-like-box)跨站请求伪造漏洞 2015-01-06 2015-01-07
cnvd-2015-00121 WordPress插件Timed Popup (wp-timed-popup)跨站请求伪造漏洞 2015-01-06 2015-01-07
cnvd-2015-00122 raven-ruby 'okjson_spec.rb'拒绝服务漏洞 2015-01-06 2015-01-07
cnvd-2015-00123 Zarafa WebAccess and WebApp存在多个拒绝服务漏洞 2015-01-06 2015-01-07
cnvd-2015-00124 PHP Address Book SQL注入漏洞(CNVD-2015-00124) 2015-01-06 2015-01-07
cnvd-2015-00125 PHP Address Book跨站脚本漏洞 2015-01-06 2015-01-07
ID Description Published Updated
bdu:2015-02541 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02542 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02543 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02544 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02545 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02546 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02547 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02548 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02549 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02550 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02551 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02552 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02553 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02554 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02555 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02556 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02557 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02558 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02559 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02560 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02561 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02562 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02563 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02564 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02565 Уязвимости операционной системы Debian GNU/Linux, позволяющие локальному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02566 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02567 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 05.07.2024
bdu:2015-02568 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02569 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
bdu:2015-02570 Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику н… 28.04.2015 28.11.2016
ID Description Published Updated
certa-2001-avi-058 Vulnérabilités dans Windows Media Player 2001-05-29T00:00:00.000000 2001-05-29T00:00:00.000000
certa-2001-avi-059 Vulnérabilité d'Exchange 2000 2001-06-07T00:00:00.000000 2001-06-07T00:00:00.000000
certa-2001-avi-060 Multiples vulnérabilités du service telnet sous Windows 2000 2001-06-08T00:00:00.000000 2001-06-08T00:00:00.000000
certa-2001-avi-061 Vulnérabilité de Qpopper 2001-06-08T00:00:00.000000 2001-06-08T00:00:00.000000
certa-2001-avi-062 Vulnérabilité de Xinetd 2001-06-11T00:00:00.000000 2001-06-11T00:00:00.000000
certa-2001-avi-063 Vulnérabilité de MS SQL Server 2001-06-13T00:00:00.000000 2001-06-13T00:00:00.000000
certa-2001-avi-064 Vulnérabilité dans le serveur d'indéxation Windows 2001-06-19T00:00:00.000000 2001-06-19T00:00:00.000000
certa-2001-avi-065 Vulnérabilité dans la gestion des macros dans Microsoft Word 2001-06-25T00:00:00.000000 2001-06-25T00:00:00.000000
certa-2001-avi-066 Vulnérabilité des Extensions FrontPage de Microsoft IIS 2001-06-26T00:00:00.000000 2001-06-26T00:00:00.000000
certa-2001-avi-067 Vulnérabilité dans fetchmail 2001-06-27T00:00:00.000000 2001-06-27T00:00:00.000000
certa-2001-avi-068 Vulnérabilité de LDAP sous Microsoft Windows 2000 2001-06-27T00:00:00.000000 2001-06-27T00:00:00.000000
certa-2001-avi-069 Vulnérabilité dans Samba 2001-06-27T00:00:00.000000 2001-06-27T00:00:00.000000
certa-2001-avi-070 Vulnérabilité dans Exim 2001-06-27T00:00:00.000000 2001-06-27T00:00:00.000000
certa-2001-avi-071 Vulnérabilité du serveur HTTP IOS 2001-06-28T00:00:00.000000 2001-06-28T00:00:00.000000
certa-2001-avi-072 Vulnérabilité dans ypbind sous SunOS 2001-07-05T00:00:00.000000 2001-07-05T00:00:00.000000
certa-2001-avi-073 Vulnérabilité d'Oracle 2001-07-05T00:00:00.000000 2001-07-05T00:00:00.000000
certa-2001-avi-074 Vulnérabilités dans les Cisco VN 5420 2001-07-12T00:00:00.000000 2001-07-12T00:00:00.000000
certa-2001-avi-075 Vulnérabilité de Firewall-1 2001-07-13T00:00:00.000000 2001-07-13T00:00:00.000000
certa-2001-avi-076 Vulnérabilité dans PPTP sous CISCO IOS 2001-07-13T00:00:00.000000 2001-07-13T00:00:00.000000
certa-2001-avi-077 Vulnérabilité dans xloadimage 2001-07-13T00:00:00.000000 2001-07-13T00:00:00.000000
certa-2001-avi-078 Vulnérabilité de l'identification SMTP sous Windows 2000 2001-07-19T00:00:00.000000 2001-07-19T00:00:00.000000
certa-2001-avi-079 Vulnérabilité dans SSH Secure Shell 3.0.0 2001-07-24T00:00:00.000000 2001-07-24T00:00:00.000000
certa-2001-avi-080 Vulnérabilité dans Microsoft Services pour Unix 2.0 2001-07-25T00:00:00.000000 2001-07-25T00:00:00.000000
certa-2001-avi-081 Débordement de mémoire dans telnetd 2001-07-25T00:00:00.000000 2002-06-11T00:00:00.000000
certa-2001-avi-082 Vulnérabilité dans le serveur Terminal sous Windows NT et 2000 2001-07-26T00:00:00.000000 2001-07-26T00:00:00.000000
certa-2001-avi-083 Débordement de mémoire de Windows Media Player 2001-07-27T00:00:00.000000 2001-07-27T00:00:00.000000
certa-2001-avi-084 Vulnérabilité dans les serveurs RPC sous Windows 2001-07-27T00:00:00.000000 2002-04-24T00:00:00.000000
certa-2001-avi-085 Vulnérabilité dans sendmail 2001-08-23T00:00:00.000000 2001-08-23T00:00:00.000000
certa-2001-avi-086 Multiples vulnérabilités dans Cisco CBOS 2001-08-27T00:00:00.000000 2001-08-27T00:00:00.000000
certa-2001-avi-087 Vulnérabilité de HP Openview NNM 2001-08-28T00:00:00.000000 2001-08-28T00:00:00.000000
ID Description Published Updated
certa-2010-ale-003 Vulnérabilité dans Microsoft VBScript 2010-03-02T00:00:00.000000 2010-04-13T00:00:00.000000
certa-2010-ale-004 Vulnérabilité dans Microsoft Internet Explorer 2010-03-10T00:00:00.000000 2010-03-31T00:00:00.000000
certa-2010-ale-005 Vulnérabilité dans Java Deployment Toolkit 2010-04-09T00:00:00.000000 2010-04-16T00:00:00.000000
certa-2010-ale-006 Vulnérabilité de Safari 2010-05-14T00:00:00.000000 2010-05-27T00:00:00.000000
certa-2010-ale-007 Vulnérabilité Shockwave Flash pour les produits Adobe 2010-06-05T00:00:00.000000 2010-06-30T00:00:00.000000
certa-2010-ale-008 Vulnérabilité dans le Centre d'aide et de support Windows 2010-06-10T00:00:00.000000 2010-07-15T00:00:00.000000
certa-2010-ale-009 Exploitation par un code malveillant d'une vulnérabilité Microsoft Windows non corrigée 2010-07-16T00:00:00.000000 2010-08-03T00:00:00.000000
certa-2010-ale-010 Vulnérabilité dans le Shell de Microsoft Windows 2010-07-19T00:00:00.000000 2010-08-03T00:00:00.000000
certa-2010-ale-011 Vulnérabilités dans Apple iOS 2010-08-04T00:00:00.000000 2010-08-12T00:00:00.000000
certa-2010-ale-012 Vulnérabilité dans Adobe Reader et Adobe Acrobat 2010-08-06T00:00:00.000000 2010-08-20T00:00:00.000000
certa-2010-ale-013 Vulnérabilité dans le contrôle ActiveX Apple QuickTime 2010-08-31T00:00:00.000000 2010-09-17T00:00:00.000000
certa-2010-ale-014 Vulnérabilité dans Adobe Reader et Adobe Acrobat 2010-09-09T00:00:00.000000 2010-10-06T00:00:00.000000
certa-2010-ale-015 Vulnérabilité dans Adobe Flash Player 2010-09-14T00:00:00.000000 2010-09-21T00:00:00.000000
certa-2010-ale-016 Vulnérabilité Adobe Shockwave Player 2010-10-22T00:00:00.000000 2010-10-29T00:00:00.000000
certa-2010-ale-017 Vulnérabilité dans Mozilla Firefox 2010-10-27T00:00:00.000000 2010-10-28T00:00:00.000000
certa-2010-ale-018 Vulnérabilité dans Adobe Flash Player, Adobe Reader et Acrobat 2010-10-28T00:00:00.000000 2010-11-18T00:00:00.000000
certa-2010-ale-019 Vulnérabilité dans Microsoft Internet Explorer 2010-11-03T00:00:00.000000 2010-12-17T00:00:00.000000
certa-2010-ale-020 Vulnérabilité dans Adobe Reader et Acrobat 2010-11-05T00:00:00.000000 2010-11-17T00:00:00.000000
certa-2010-ale-021 Vulnérabilité dans Microsoft Internet Explorer 2010-12-22T00:00:00.000000 2011-02-09T00:00:00.000000
certa-2011-ale-001 Vulnérabilité dans le moteur de rendu graphique de Windows 2011-01-05T00:00:00.000000 2011-02-10T00:00:00.000000
certa-2011-ale-002 Vulnérabilité dans Adobe Flash Player, Adobe Reader et Acrobat 2011-03-15T00:00:00.000000 2011-03-22T00:00:00.000000
certa-2011-ale-003 Vulnérabilité dans Adobe Flash Player, Adobe Reader et Acrobat 2011-04-12T00:00:00.000000 2011-06-20T00:00:00.000000
certa-2011-ale-004 Vulnérabilités dans Apple iOS 2011-07-05T00:00:00.000000 2011-07-18T00:00:00.000000
certa-2011-ale-005 Exploitation malveillante d'une fonctionnalité du protocole SSL afin de provoquer un déni de service 2011-10-27T00:00:00.000000 2011-10-27T00:00:00.000000
certa-2011-ale-006 Exploitation d'une vulnérabilité dans la gestion des polices TrueType sur Windows 2011-11-04T00:00:00.000000 2011-12-14T00:00:00.000000
certa-2011-ale-007 Vulnérabilité dans ftpd et ProFTPD sur FreeBSD 2011-12-02T00:00:00.000000 2011-12-26T00:00:00.000000
certa-2011-ale-008 Vulnérabilité dans Adobe Reader et Acrobat 2011-12-07T00:00:00.000000 2012-01-10T00:00:00.000000
certa-2012-ale-001 Vulnérabilité dans Cisco IronPort 2012-02-01T00:00:00.000000 2013-02-05T00:00:00.000000
certa-2012-ale-002 Vulnérabilité dans Windows RDP 2012-03-14T00:00:00.000000 2012-04-13T00:00:00.000000
certa-2012-ale-003 Vulnérabilité dans Microsoft XML Core Services 2012-06-14T00:00:00.000000 2012-08-17T00:00:00.000000
ID Description Published Updated
osv-2020-242 Heap-buffer-overflow in ndpi_workflow_process_packet 2020-06-26T00:00:09.227452Z 2022-04-13T03:04:36.221336Z
osv-2020-243 Heap-buffer-overflow in OT::VarRegionList::serialize 2020-06-26T00:00:09.657756Z 2022-04-13T03:32:46.403544Z
osv-2020-244 Heap-buffer-overflow in BEInt<unsigned short, 2>::operator unsigned short 2020-06-26T00:00:09.734552Z 2022-04-13T03:04:33.033666Z
osv-2020-245 Heap-use-after-free in ndpi_http_check_content 2020-06-26T00:00:09.813827Z 2022-04-13T03:04:35.940031Z
osv-2020-247 Use-of-uninitialized-value in WavpackDeleteTagItem 2020-06-26T00:00:10.203402Z 2022-04-13T03:04:42.376138Z
osv-2020-248 Heap-use-after-free in LocalizedText_clear 2020-06-26T00:00:10.285084Z 2023-02-24T01:56:18.769278Z
osv-2020-249 Heap-buffer-overflow in cipher_generic_initiv 2020-06-26T00:00:10.386061Z 2022-04-13T03:04:35.116242Z
osv-2020-250 UNKNOWN READ in Sass::Inspect::operator 2020-06-26T00:00:10.424929Z 2022-04-13T03:04:38.471160Z
osv-2020-252 Global-buffer-overflow in json_tokener_parse_ex 2020-06-26T00:00:11.383919Z 2022-04-13T03:04:37.689323Z
osv-2020-253 Stack-buffer-overflow in mrb_str_len_to_dbl 2020-06-26T00:00:11.566328Z 2022-04-13T03:04:39.682918Z
osv-2020-254 Heap-buffer-overflow in pixReadFromTiffStream 2020-06-26T00:00:11.669926Z 2022-04-13T03:04:32.633763Z
osv-2020-255 Heap-buffer-overflow in dname_pkt_copy 2020-06-26T00:00:11.725033Z 2022-04-13T03:04:31.465910Z
osv-2020-256 Global-buffer-overflow in dissect_wassp_sub_tlv 2020-06-27T00:00:07.839773Z 2022-04-13T03:04:37.821970Z
osv-2020-257 Heap-use-after-free in ihevcd_jobq_lock 2020-06-30T00:00:41.839764Z 2022-04-13T03:04:30.955722Z
osv-2020-258 Stack-buffer-overflow in ot::Message::Write 2020-06-30T00:00:42.072474Z 2022-04-13T03:04:38.925390Z
osv-2020-261 Use-of-uninitialized-value in WelsDec::CWelsDecoder::ReleaseBufferedReadyPicture 2020-06-30T00:00:43.014785Z 2022-04-13T03:04:37.631728Z
osv-2020-263 Heap-use-after-free in dotnet_parse_tilde_2 2020-06-30T00:00:43.227504Z 2022-04-13T03:04:42.283035Z
osv-2020-273 Heap-use-after-free in copy_string 2020-06-30T00:00:44.820643Z 2022-04-13T03:04:41.226766Z
osv-2020-278 Heap-buffer-overflow in ih264d_decode_slice_thread 2020-06-30T00:00:45.549045Z 2022-04-13T03:33:31.667722Z
osv-2020-279 Global-buffer-overflow in lex_multiline_string 2020-06-30T00:00:45.609366Z 2022-04-13T03:04:31.705665Z
osv-2020-280 Null-dereference READ 2020-06-30T00:00:45.791652Z 2022-04-13T03:04:36.411292Z
osv-2020-286 Use-of-uninitialized-value in ZSTD_loadCEntropy 2020-06-30T00:00:46.352280Z 2022-04-13T03:04:31.658980Z
osv-2020-287 Heap-use-after-free in condition_free_list_type 2020-06-30T00:00:46.614113Z 2022-04-13T03:04:40.093838Z
osv-2020-288 Heap-use-after-free in pixReadMemBmp 2020-06-30T00:00:46.704258Z 2022-04-13T03:04:32.649721Z
osv-2020-289 Stack-buffer-overflow in ot::Message::Write 2020-06-30T00:00:46.759589Z 2022-04-13T03:04:38.982639Z
osv-2020-290 Use-of-uninitialized-value in rawspeed::RawImageData::checkMemIsInitialized 2020-06-30T00:00:46.872041Z 2022-04-13T03:04:36.470535Z
osv-2020-294 Heap-buffer-overflow in ihevcd_process 2020-06-30T00:00:47.385955Z 2022-04-13T03:04:31.021048Z
osv-2020-299 Bad-free in sig_destroyed 2020-06-30T00:00:47.672996Z 2022-04-13T03:04:33.978934Z
osv-2020-300 Heap-buffer-overflow in sas_read4 2020-06-30T00:00:48.024475Z 2022-04-13T03:04:40.684148Z
osv-2020-303 UNKNOWN READ in dav1d_put_bilin_avx2 2020-06-30T00:00:48.527659Z 2023-02-24T01:46:54.568363Z
ID Description Published Updated
rustsec-2020-0058 crate has been renamed to `cipher` 2020-10-15T12:00:00Z 2020-10-25T19:14:03Z
rustsec-2020-0053 dirs is unmaintained, use dirs-next instead 2020-10-16T12:00:00Z 2022-08-16T02:38:08Z
rustsec-2020-0054 directories is unmaintained, use directories-next instead 2020-10-16T12:00:00Z 2022-08-16T02:38:08Z
rustsec-2020-0055 Please see RUSTSEC-2018-0020 2020-10-21T12:00:00Z 2022-08-16T02:38:08Z
rustsec-2020-0059 MutexGuard::map can cause a data race in safe code 2020-10-22T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0122 beef::Cow lacks a Sync bound on its Send trait allowing for data races 2020-10-28T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0072 GenericMutexGuard allows data races of non-Sync types across threads 2020-10-31T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0113 AtomicOption should have Send + Sync bound on its type argument. 2020-10-31T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0063 crate has been renamed to `safe-nd` 2020-11-02T12:00:00Z 2020-11-02T14:43:36Z
rustsec-2020-0064 crate has been renamed to `sn_ffi_utils` 2020-11-02T12:00:00Z 2020-11-02T14:45:15Z
rustsec-2020-0065 crate has been renamed to `sn_fake_clock` 2020-11-02T12:00:00Z 2020-11-02T14:46:33Z
rustsec-2020-0066 crate has been renamed to `sn_bindgen` 2020-11-02T12:00:00Z 2020-11-02T14:48:54Z
rustsec-2020-0067 crate has been renamed to `qp2p` 2020-11-02T12:00:00Z 2020-11-02T14:50:19Z
rustsec-2020-0076 crate has been renamed to `sn_routing` 2020-11-02T12:00:00Z 2020-12-02T17:59:27Z
rustsec-2020-0081 `mio` invalidly assumes the memory layout of std::net::SocketAddr 2020-11-02T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0145 Use-after-free when cloning a partially consumed `Vec` iterator 2020-11-02T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0163 `term_size` is unmaintained; use `terminal_size` instead 2020-11-03T12:00:00Z 2022-08-02T14:03:23Z
rustsec-2020-0079 `socket2` invalidly assumes the memory layout of std::net::SocketAddr 2020-11-06T12:00:00Z 2024-02-10T15:57:43Z
rustsec-2020-0078 `net2` invalidly assumes the memory layout of std::net::SocketAddr 2020-11-07T12:00:00Z 2023-07-08T12:30:19Z
rustsec-2020-0068 Unexpected panic in multihash `from_slice` parsing code 2020-11-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0070 Some lock_api lock guard objects can cause data races 2020-11-08T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0096 TreeFocus lacks bounds on its Send and Sync traits 2020-11-09T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0102 LateStatic has incorrect Sync bound 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0107 hashconsing's HConsed lacks Send/Sync bound for its Send/Sync trait. 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0111 may_queue's Queue lacks Send/Sync bound for its Send/Sync trait. 2020-11-10T12:00:00Z 2024-10-25T18:45:36Z
rustsec-2020-0120 `Decoder<R>` can carry `R: !Send` to other threads 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0121 AtomicBox<T> implements Send/Sync for any `T: Sized` 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0137 AtomicBox<T> lacks bound on its Send and Sync traits allowing data races 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0138 ReaderResult should be bounded by Sync 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
rustsec-2020-0140 `Shared` can cause a data race 2020-11-10T12:00:00Z 2023-06-13T13:10:24Z
ID Description Published Updated
alsa-2021:1791 Moderate: spice-vdagent security and bug fix update 2021-05-18T06:05:33Z 2021-11-12T10:20:56Z
alsa-2021:1796 Moderate: container-tools:rhel8 security, bug fix, and enhancement update 2021-05-18T06:06:39Z 2021-05-18T06:06:07Z
alsa-2021:1804 Moderate: userspace graphics, xorg-x11, and mesa security, bug fix, and enhancement update 2021-05-18T06:07:47Z 2021-11-12T10:20:56Z
alsa-2021:1809 Moderate: httpd:2.4 security, bug fix, and enhancement update 2021-05-18T06:08:34Z 2022-01-26T07:27:24Z
alsa-2021:1811 Moderate: libvncserver security update 2021-05-18T06:09:01Z 2021-11-12T10:20:56Z
alsa-2021:1842 Moderate: raptor2 security and bug fix update 2021-05-18T06:13:17Z 2021-11-12T10:20:56Z
alsa-2021:1846 Moderate: idm:DL1 and idm:client security, bug fix, and enhancement update 2021-05-18T06:14:07Z 2021-12-15T23:07:56Z
alsa-2021:1849 Moderate: freerdp security, bug fix, and enhancement update 2021-05-18T06:14:36Z 2021-08-11T08:54:00Z
alsa-2021:1852 Moderate: ghostscript security, bug fix, and enhancement update 2021-05-18T06:14:55Z 2021-11-12T10:20:56Z
alsa-2021:1879 Moderate: python38:3.8 security update 2021-05-18T06:18:31Z 2021-05-18T06:18:14Z
alsa-2021:1881 Moderate: poppler and evince security, bug fix, and enhancement update 2021-05-18T06:18:48Z 2021-08-11T08:54:00Z
alsa-2021:1887 Moderate: dovecot security and bug fix update 2021-05-18T06:19:41Z 2021-11-12T10:20:56Z
alsa-2021:1924 Low: spice security update 2021-05-18T06:24:46Z 2021-11-12T10:20:56Z
alsa-2021:1968 Moderate: mingw packages security and bug fix update 2021-05-18T06:30:39Z 2021-08-11T08:54:00Z
alsa-2021:1972 Moderate: pandoc security update 2021-05-18T06:31:29Z 2021-08-11T08:54:00Z
alsa-2021:1979 Important: squid:4 security update 2021-05-18T17:06:56Z 2021-05-18T17:06:52Z
alsa-2021:1983 Important: idm:DL1 security update 2021-05-18T17:07:31Z 2021-12-15T23:07:56Z
alsa-2021:2168 Important: kernel security and bug fix update 2021-06-01T09:02:01Z 2021-08-11T08:54:00Z
alsa-2021:2170 Important: glib2 security and bug fix update 2021-06-01T09:04:25Z 2021-08-11T08:54:00Z
alsa-2021:2259 Important: nginx:1.18 security update 2021-06-07T10:02:53Z 2021-06-07T10:02:53Z
alsa-2021:2290 Important: nginx:1.16 security update 2021-06-08T09:47:28Z 2021-06-08T09:47:28Z
alsa-2021:2291 Important: container-tools:2.0 security update 2021-06-08T11:20:15Z 2021-06-08T11:20:15Z
alsa-2021:2360 Important: postgresql:9.6 security update 2021-06-09T11:21:04Z 2021-06-09T11:21:04Z
alsa-2021:2363 Important: gupnp security update 2021-06-09T12:54:08Z 2021-11-12T10:20:56Z
alsa-2021:2370 Important: container-tools:3.0 security update 2021-06-10T07:45:37Z 2021-06-10T07:45:37Z
alsa-2021:2371 Important: container-tools:rhel8 security update 2021-06-10T07:45:39Z 2023-03-13T16:34:06Z
alsa-2021:2372 Important: postgresql:12 security update 2021-06-10T08:45:14Z 2021-06-10T08:45:14Z
alsa-2021:2375 Important: postgresql:13 security update 2021-06-10T09:54:30Z 2021-12-22T08:23:18Z
alsa-2021:2569 Moderate: libxml2 security update 2021-06-29T13:42:19Z 2021-11-12T10:20:56Z
alsa-2021:2570 Important: kernel security and bug fix update 2021-06-29T13:42:37Z 2021-08-11T08:54:00Z