Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2025-69301 |
9.8 (3.1)
|
WordPress PhotoMe theme <= 5.6.11 - PHP Object Injecti… |
ThemeGoods |
PhotoMe |
2026-02-20T15:46:46.725Z | 2026-02-24T21:13:02.981Z |
| CVE-2025-68541 |
9.8 (3.1)
|
WordPress Ippsum theme <= 1.2.0 - PHP Object Injection… |
BoldThemes |
Ippsum |
2026-02-20T15:46:40.047Z | 2026-02-24T21:13:02.672Z |
| CVE-2025-67997 |
9.8 (3.1)
|
WordPress Travelicious theme < 1.6.7 - PHP Object Inje… |
BoldThemes |
Travelicious |
2026-02-20T15:46:33.519Z | 2026-02-24T21:13:01.776Z |
| CVE-2025-68526 |
8.8 (3.1)
|
WordPress Modal Popup Box plugin <= 1.6.1 - PHP Object… |
A WP Life |
Modal Popup Box |
2026-02-20T15:46:39.001Z | 2026-02-24T21:05:05.513Z |
| CVE-2026-21410 |
9.8 (3.1)
9.3 (4.0)
|
InSAT MasterSCADA BUK-TS SQL Injection |
InSAT |
MasterSCADA BUK-TS |
2026-02-24T20:53:55.150Z | 2026-02-24T21:00:53.595Z |
| CVE-2026-22553 |
9.8 (3.1)
9.3 (4.0)
|
InSAT MasterSCADA BUK-TS OS Command Injection |
InSAT |
MasterSCADA BUK-TS |
2026-02-24T20:56:14.099Z | 2026-02-24T21:00:29.951Z |
| CVE-2025-67996 |
9.8 (3.1)
|
WordPress Nestin theme < 1.2.6 - PHP Object Injection … |
BoldThemes |
Nestin |
2026-02-20T15:46:33.328Z | 2026-02-24T20:59:31.083Z |
| CVE-2026-22766 |
7.2 (3.1)
|
Dell Wyse Management Suite, versions prior to WMS… |
Dell |
Wyse Management Suite |
2026-02-24T19:28:14.566Z | 2026-02-24T20:54:20.065Z |
| CVE-2025-67995 |
9.8 (3.1)
|
WordPress PatioTime theme < 2.1 - PHP Object Injection… |
LoftOcean |
PatioTime |
2026-02-20T15:46:33.136Z | 2026-02-24T20:53:56.722Z |
| CVE-2026-25316 |
7.2 (3.1)
|
WordPress CartFlows plugin <= 2.1.19 - PHP Object Inje… |
Brainstorm Force |
CartFlows |
2026-02-19T08:26:54.560Z | 2026-02-24T20:53:02.283Z |
| CVE-2026-22333 |
7.2 (3.1)
|
WordPress YITH WooCommerce Compare plugin <= 3.6.0 - D… |
YITHEMES |
YITH WooCommerce Compare |
2026-02-19T08:26:47.849Z | 2026-02-24T20:52:27.444Z |
| CVE-2025-68543 |
8.1 (3.1)
|
WordPress Diza theme <= 1.3.15 - Local File Inclusion … |
thembay |
Diza |
2026-02-20T15:46:40.451Z | 2026-02-24T20:51:07.084Z |
| CVE-2025-68539 |
8.1 (3.1)
|
WordPress Fana theme <= 1.1.35 - Local File Inclusion … |
thembay |
Fana |
2026-02-20T15:46:39.873Z | 2026-02-24T20:51:06.923Z |
| CVE-2025-68536 |
8.1 (3.1)
|
WordPress Zota theme <= 1.3.14 - Local File Inclusion … |
thembay |
Zota |
2026-02-20T15:46:39.679Z | 2026-02-24T20:51:06.751Z |
| CVE-2025-67992 |
8.1 (3.1)
|
WordPress PatioTime theme < 2.1 - Local File Inclusion… |
LoftOcean |
PatioTime |
2026-02-20T15:46:32.513Z | 2026-02-24T20:51:06.557Z |
| CVE-2025-67988 |
8.1 (3.1)
|
WordPress CozyStay theme < 1.9.1 - Local File Inclusio… |
LoftOcean |
CozyStay |
2026-02-20T15:46:31.946Z | 2026-02-24T20:51:06.372Z |
| CVE-2025-67982 |
8.1 (3.1)
|
WordPress Urna theme <= 2.5.12 - Local File Inclusion … |
thembay |
Urna |
2026-02-20T15:46:31.376Z | 2026-02-24T20:51:06.097Z |
| CVE-2025-67981 |
8.1 (3.1)
|
WordPress Besa theme <= 2.3.15 - Local File Inclusion … |
thembay |
Besa |
2026-02-20T15:46:31.208Z | 2026-02-24T20:51:05.942Z |
| CVE-2025-60087 |
8.1 (3.1)
|
WordPress Extensive VC Addons for WPBakery page builde… |
Nenad Obradovic |
Extensive VC Addons for WPBakery page builder |
2026-02-20T15:46:27.515Z | 2026-02-24T20:51:04.478Z |
| CVE-2025-67980 |
8.1 (3.1)
|
WordPress Hara theme <= 1.2.17 - Local File Inclusion … |
thembay |
Hara |
2026-02-20T15:46:31.029Z | 2026-02-24T20:51:04.121Z |
| CVE-2025-69322 |
8.1 (3.1)
|
WordPress PeakShops theme < 1.5.9 - Local File Inclusi… |
fuelthemes |
PeakShops |
2026-02-20T15:46:48.754Z | 2026-02-24T20:51:03.943Z |
| CVE-2025-69374 |
8.1 (3.1)
|
WordPress Eleblog – Elementor Blog And Magazine Addons… |
SolverWp |
Eleblog – Elementor Blog And Magazine Addons |
2026-02-20T15:46:51.890Z | 2026-02-24T20:51:03.717Z |
| CVE-2025-69375 |
8.1 (3.1)
|
WordPress Portfolio Builder plugin <= 1.2.5 - Local Fi… |
SolverWp |
Portfolio Builder |
2026-02-20T15:46:52.069Z | 2026-02-24T20:51:03.533Z |
| CVE-2025-69395 |
8.1 (3.1)
|
WordPress Gable theme <= 1.5 - Local File Inclusion vu… |
ThemeREX |
Gable |
2026-02-20T15:46:56.223Z | 2026-02-24T20:51:03.370Z |
| CVE-2025-69396 |
8.1 (3.1)
|
WordPress Splendour theme <= 1.23 - Local File Inclusi… |
ThemeREX |
Splendour |
2026-02-20T15:46:56.394Z | 2026-02-24T20:51:03.165Z |
| CVE-2025-69397 |
8.1 (3.1)
|
WordPress Tint theme <= 1.7 - Local File Inclusion vul… |
ThemeREX |
Tint |
2026-02-20T15:46:56.567Z | 2026-02-24T20:51:03.011Z |
| CVE-2025-69398 |
8.1 (3.1)
|
WordPress Plank theme <= 1.7 - Local File Inclusion vu… |
ThemeREX |
Plank |
2026-02-20T15:46:56.752Z | 2026-02-24T20:51:02.811Z |
| CVE-2025-69399 |
8.1 (3.1)
|
WordPress Cobble theme <= 1.7 - Local File Inclusion v… |
ThemeREX |
Cobble |
2026-02-20T15:46:56.948Z | 2026-02-24T20:51:02.652Z |
| CVE-2025-69400 |
8.1 (3.1)
|
WordPress Yokoo theme <= 1.1.11 - Local File Inclusion… |
ThemeREX |
Yokoo |
2026-02-20T15:46:57.137Z | 2026-02-24T20:51:02.474Z |
| CVE-2025-69402 |
8.1 (3.1)
|
WordPress R&F theme <= 1.5 - Local File Inclusion vuln… |
ThemeREX |
R&F |
2026-02-20T15:46:57.536Z | 2026-02-24T20:51:02.244Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| fkie_cve-2026-2460 | A vulnerability exists in REB500 for an authenticated user with low-level privileges to access and … | 2026-02-24T14:16:23.647 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-2459 | A vulnerability exists in REB500 for an authenticated user with Installer role to access and alter … | 2026-02-24T14:16:23.477 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-24443 | EventSentry versions prior to 6.0.1.20 contain an unverified password change vulnerability in the a… | 2026-02-24T21:16:29.293 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-24241 | NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an at… | 2026-02-24T20:27:47.620 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-23984 | An Improper Input Validation vulnerability exists in Apache Superset that allows an authenticated u… | 2026-02-24T14:16:23.307 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-23983 | A Sensitive Data Exposure vulnerability exists in Apache Superset allowing authenticated users to r… | 2026-02-24T14:16:23.143 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-23982 | An Improper Authorization vulnerability exists in Apache Superset that allows a low-privileged user… | 2026-02-24T14:16:22.980 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-23980 | Improper Neutralization of Special Elements used in a SQL Command ('SQL Injection') vulnerability i… | 2026-02-24T14:16:22.807 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-23969 | Apache Superset utilizes a configurable dictionary, DISALLOWED_SQL_FUNCTIONS, to restrict the execu… | 2026-02-24T14:16:22.623 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-23859 | Dell Wyse Management Suite, versions prior to WMS 5.5, contain a Client-Side Enforcement of Server-… | 2026-02-24T20:27:47.460 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-23858 | Dell Wyse Management Suite, versions prior to WMS 5.5, contain an Improper Neutralization of Input … | 2026-02-24T20:27:47.303 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-23678 | Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior contain a command i… | 2026-02-24T16:24:08.090 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-22766 | Dell Wyse Management Suite, versions prior to WMS 5.5, contain an Unrestricted Upload of File with … | 2026-02-24T20:27:46.957 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-22765 | Dell Wyse Management Suite, versions prior to WMS 5.5, contain a Missing Authorization vulnerabilit… | 2026-02-24T20:27:46.790 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-22553 | All versions of InSAT MasterSCADA BUK-TS are susceptible to OS command injection through a field in… | 2026-02-24T21:16:28.713 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-21410 | InSAT MasterSCADA BUK-TS is susceptible to SQL Injection through its main web interface. Malicious … | 2026-02-24T21:16:25.790 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-1773 | IEC 60870-5-104: Potential Denial of Service impact on reception of invalid U-format frame. Product… | 2026-02-24T14:16:22.420 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-1772 | RTU500 web interface: An unprivileged user can read user management information. The information ca… | 2026-02-24T14:16:22.180 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-1768 | A permission cache poisoning vulnerability in Devolutions Server allows authenticated users to bypa… | 2026-02-24T20:27:46.300 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-0402 | A post-authentication Out-of-bounds Read vulnerability in SonicOS allows a remote attacker to crash… | 2026-02-24T15:21:37.410 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-0401 | A post-authentication NULL Pointer Dereference vulnerability in SonicOS allows a remote attacker to… | 2026-02-24T15:21:37.267 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-0400 | A post-authentication Format String vulnerability in SonicOS allows a remote attacker to crash a fi… | 2026-02-24T15:21:37.127 | 2026-02-24T21:52:01.367 |
| fkie_cve-2026-0399 | Multiple post-authentication stack-based buffer overflow vulnerabilities in the SonicOS management … | 2026-02-24T15:21:36.980 | 2026-02-24T21:52:01.367 |
| fkie_cve-2025-69985 | FUXA 1.2.8 and prior contains an Authentication Bypass vulnerability leading to Remote Code Executi… | 2026-02-24T16:24:07.120 | 2026-02-24T21:52:01.367 |
| fkie_cve-2025-67445 | TOTOLINK X5000R V9.1.0cu.2415_B20250515 contains a denial-of-service vulnerability in /cgi-bin/cste… | 2026-02-24T15:21:36.707 | 2026-02-24T21:52:01.367 |
| fkie_cve-2025-63409 | Privilege escalation and improper access control in GCOM EPON 1GE C00R371V00B01 allows remote authe… | 2026-02-24T16:24:06.990 | 2026-02-24T21:52:01.367 |
| fkie_cve-2025-62512 | Piwigo is an open source photo gallery application for the web. In version 15.5.0 and likely earlie… | 2026-02-24T18:29:32.930 | 2026-02-24T21:52:01.367 |
| fkie_cve-2025-47904 | Download of Code Without Integrity Check vulnerability in Microchip Time Provider 4100 allows Malic… | 2026-02-24T16:24:06.680 | 2026-02-24T21:52:01.367 |
| fkie_cve-2025-33181 | NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-p… | 2026-02-24T20:27:43.127 | 2026-02-24T21:52:01.367 |
| fkie_cve-2025-33180 | NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-p… | 2026-02-24T20:27:42.943 | 2026-02-24T21:52:01.367 |
| ID | Severity | Description | Published | Updated |
|---|---|---|---|---|
| ghsa-hhfx-5x8j-f5f6 |
6.5 (3.1)
|
Payload: Server-Side Request Forgery (SSRF) in External File URL Uploads | 2026-02-24T20:10:32Z | 2026-02-24T20:10:32Z |
| ghsa-4894-xqv6-vrfq |
8.8 (3.1)
|
MindsDB: Path Traversal in /api/files Leading to Remote Code Execution | 2026-02-24T20:07:58Z | 2026-02-24T20:07:59Z |
| ghsa-vxg3-v4p6-f3fp |
6.9 (4.0)
|
Pimcore vulnerable to SQL injection via unsanitized filter value in Dependency Dao RLIKE clause | 2026-02-24T20:03:23Z | 2026-02-24T20:03:23Z |
| ghsa-78qv-3mpx-9cqq |
6.1 (3.1)
8.6 (4.0)
|
NiceGUI vulnerable to XSS via Code Injection during client-side element function execution | 2026-02-24T19:56:18Z | 2026-02-24T19:56:18Z |
| ghsa-gfvx-3cf3-5x6x |
10.0 (4.0)
|
Altec DocLink (now maintained by Beyond Limits Inc.) version 4.0.336.0 exposes insecure .NET Remoti… | 2026-02-24T18:31:03Z | 2026-02-24T18:31:03Z |
| ghsa-8fr6-83vj-w7xh |
6.2 (4.0)
|
A vulnerability identified in the Trellix HX Agent driver file fekern.sys allowed a threat actor w… | 2026-02-24T18:31:03Z | 2026-02-24T18:31:03Z |
| ghsa-xx53-6qqj-gr7w |
|
Memory safety bugs present in Firefox 147 and Thunderbird 147. Some of these bugs showed evidence o… | 2026-02-24T15:30:33Z | 2026-02-24T18:31:02Z |
| ghsa-xqx8-2c6c-9g3g |
4.9 (3.1)
|
A post-authentication NULL Pointer Dereference vulnerability in SonicOS allows a remote attacker to… | 2026-02-24T15:30:33Z | 2026-02-24T18:31:02Z |
| ghsa-xjw5-9f76-gvpv |
7.5 (3.1)
8.7 (4.0)
|
Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior use RC4 with a hard… | 2026-02-24T18:31:02Z | 2026-02-24T18:31:02Z |
| ghsa-xfph-w5p7-mhh4 |
5.4 (3.1)
5.1 (4.0)
|
Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior reflect unsanitized… | 2026-02-24T18:31:02Z | 2026-02-24T18:31:02Z |
| ghsa-xchm-7954-5wvg |
|
Use-after-free in the DOM: Window and Location component. This vulnerability affects Firefox < 148,… | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-wcpx-2xqg-ff43 |
|
Spoofing issue in the WebAuthn component in Firefox for Android. This vulnerability affects Firefox… | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-vxjv-c6cq-74m6 |
|
Mitigation bypass in the Networking: Cache component. This vulnerability affects Firefox < 148 and … | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-vrfc-p4p2-v8r2 |
|
Privilege escalation and improper access control in GCOM EPON 1GE C00R371V00B01 allows remote authe… | 2026-02-24T18:31:02Z | 2026-02-24T18:31:02Z |
| ghsa-pr9m-7cjw-258w |
4.9 (3.1)
|
A post-authentication Out-of-bounds Read vulnerability in SonicOS allows a remote attacker to crash… | 2026-02-24T15:30:33Z | 2026-02-24T18:31:02Z |
| ghsa-pq5g-x5q3-3g25 |
4.9 (3.1)
|
Multiple post-authentication stack-based buffer overflow vulnerabilities in the SonicOS management … | 2026-02-24T15:30:33Z | 2026-02-24T18:31:02Z |
| ghsa-p9gc-q2gc-jc6r |
4.2 (3.1)
|
Race condition in the JavaScript: GC component. This vulnerability affects Firefox < 148. | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-m84g-fpm8-mqg8 |
7.5 (3.1)
8.7 (4.0)
|
Binardat 10G08-0800GSM network switch firmware versions prior to V300SP10260209 store a user passwo… | 2026-02-24T18:31:02Z | 2026-02-24T18:31:02Z |
| ghsa-jvc5-7j9r-q4m6 |
|
Same-origin policy bypass in the Networking: JAR component. This vulnerability affects Firefox < 14… | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-jj9w-3m27-jg69 |
8.1 (3.1)
8.6 (4.0)
|
Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior expose user passwor… | 2026-02-24T18:31:02Z | 2026-02-24T18:31:02Z |
| ghsa-hwjj-g6g7-p8cf |
|
Uninitialized memory in the Graphics: Text component. This vulnerability affects Firefox < 148. | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-hjg3-g5mq-q5qp |
8.6 (4.0)
|
Multiple Finka programs use hard-coded Firebird database credentials (shared across all instances o… | 2026-02-24T18:31:02Z | 2026-02-24T18:31:02Z |
| ghsa-h79p-mfpr-8qm4 |
|
Use-after-free in the Graphics: ImageLib component. This vulnerability affects Firefox < 148, Firef… | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-h4vm-j32v-95qm |
|
Use-after-free in the JavaScript: GC component. This vulnerability affects Firefox < 148. | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-gvwq-qfp3-3pvf |
8.8 (3.1)
8.7 (4.0)
|
Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior contain a command i… | 2026-02-24T18:31:02Z | 2026-02-24T18:31:02Z |
| ghsa-gvhp-5j8m-528x |
|
Use-after-free in the DOM: Core & HTML component. This vulnerability affects Firefox < 148. | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-gmfh-mhfh-2g3q |
4.3 (3.1)
5.1 (4.0)
|
Binardat 10G08-0800GSM network switch firmware version V300SP10260209 and prior lack CSRF protectio… | 2026-02-24T18:31:02Z | 2026-02-24T18:31:02Z |
| ghsa-cgrc-pwqf-64v8 |
|
Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability affects Firefox… | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-c5fj-xq9f-fjxm |
|
Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 148 and Fir… | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ghsa-c3q8-4689-m4p6 |
|
JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148. | 2026-02-24T15:30:32Z | 2026-02-24T18:31:02Z |
| ID | Severity | Description | Package | Published | Updated |
|---|---|---|---|---|---|
| pysec-2024-171 |
8.0 (3.1)
|
Strawberry GraphQL is a library for creating GraphQL APIs. Prior to version 0.243.0, mult… | strawberry-graphql | 2024-09-25T18:15:05+00:00 | 2025-01-18T22:21:43.412172+00:00 |
| pysec-2024-170 |
4.8 (3.1)
|
A stored Cross-Site Scripting (XSS) vulnerability was identified in the zenml-io/zenml re… | zenml | 2024-06-06T19:15:53+00:00 | 2025-01-18T19:19:08.253212+00:00 |
| pysec-2024-169 |
6.5 (3.1)
|
An improper authorization vulnerability exists in the zenml-io/zenml repository, specific… | zenml | 2024-06-06T19:15:53+00:00 | 2025-01-18T19:19:08.205431+00:00 |
| pysec-2024-168 |
6.5 (3.1)
|
Taipy is an open-source Python library for easy, end-to-end application development for d… | taipy | 2024-10-09T19:15:14+00:00 | 2025-01-18T19:19:07.718423+00:00 |
| pysec-2024-167 |
|
NLTK through 3.8.1 allows remote code execution if untrusted packages have pickled Python… | nltk | 2024-06-27T22:15:10+00:00 | 2025-01-18T19:19:06.317325+00:00 |
| pysec-2024-166 |
|
Nautobot is a Network Source of Truth and Network Automation Platform. A user with permis… | nautobot | 2024-05-28T23:15:17+00:00 | 2025-01-18T19:19:06.277166+00:00 |
| pysec-2024-165 |
7.5 (3.1)
|
The Jupyter Server provides the backend for Jupyter web applications. Jupyter Server on W… | jupyter-server | 2024-06-06T16:15:11+00:00 | 2025-01-18T19:19:04.842426+00:00 |
| pysec-2024-164 |
5.3 (3.1)
|
Vyper is a pythonic Smart Contract Language for the ethereum virtual machine. If an exces… | vyper | 2024-02-26T20:19:05+00:00 | 2025-01-16T21:21:41.436934+00:00 |
| pysec-2025-1 |
|
An issue was discovered in Django 5.1 before 5.1.5, 5.0 before 5.0.11, and 4.2 before 4.2… | django | 2025-01-14T19:15:32+00:00 | 2025-01-14T21:22:18.665005+00:00 |
| pysec-2024-163 |
5.3 (3.1)
|
Vyper is a pythonic Smart Contract Language for the Ethereum virtual machine. Prior to ve… | vyper | 2024-04-25T18:15:09+00:00 | 2025-01-14T05:22:23.036505+00:00 |
| pysec-2024-162 |
6.5 (3.1)
|
A Regular Expression Denial of Service (ReDoS) vulnerability exists in the XMLFeedSpider … | scrapy | 2024-02-28T00:15:53+00:00 | 2025-01-14T05:22:21.870348+00:00 |
| pysec-2024-161 |
|
Deserialization of untrusted data in IPC and Parquet readers in the Apache Arrow R packag… | pyarrow | 2024-11-28T17:15:48+00:00 | 2025-01-14T05:22:20.554292+00:00 |
| pysec-2024-160 |
6.1 (3.1)
|
lxml_html_clean is a project for HTML cleaning functionalities copied from `lxml.html.cle… | lxml-html-clean | 2024-11-19T22:15:21+00:00 | 2025-01-14T05:22:17.244267+00:00 |
| pysec-2024-159 |
|
Versions of the package luigi before 3.6.0 are vulnerable to Arbitrary File Write via Arc… | luigi | 2024-12-10T05:15:07+00:00 | 2025-01-14T05:22:17.204098+00:00 |
| pysec-2024-158 |
|
Versions of the package djoser before 2.3.0 are vulnerable to Authentication Bypass when … | djoser | 2024-12-13T05:15:07+00:00 | 2025-01-14T05:22:11.856636+00:00 |
| pysec-2024-157 |
|
An issue was discovered in Django 5.1 before 5.1.4, 5.0 before 5.0.10, and 4.2 before 4.2… | django | 2024-12-06T12:15:18+00:00 | 2025-01-14T05:22:11.817473+00:00 |
| pysec-2024-156 |
|
An issue was discovered in Django 5.1 before 5.1.4, 5.0 before 5.0.10, and 4.2 before 4.2… | django | 2024-12-06T12:15:17+00:00 | 2025-01-14T05:22:11.736011+00:00 |
| pysec-2024-155 |
7.5 (3.1)
|
cbor2 provides encoding and decoding for the Concise Binary Object Representation (CBOR) … | cbor2 | 2024-02-19T23:15:07+00:00 | 2025-01-14T05:22:09.226388+00:00 |
| pysec-2019-255 |
6.1 (3.1)
|
data/interfaces/default/history.html in Tautulli 2.1.26 has XSS via a crafted Plex userna… | tautulli | 2019-02-19T16:29:00Z | 2025-01-12T05:34:20.550037Z |
| pysec-2019-254 |
6.5 (3.1)
|
In Tautulli 2.1.9, CSRF in the /shutdown URI allows an attacker to shut down the remote m… | tautulli | 2019-12-18T18:15:00Z | 2025-01-12T05:34:20.505254Z |
| pysec-2022-43131 |
6.5 (3.1)
|
diplib v3.0.0 is vulnerable to Double Free. | diplib | 2022-11-04T17:15:00Z | 2024-12-27T22:48:17.996707Z |
| pysec-2022-43162 |
7.5 (3.1)
|
Redis v7.0 was discovered to contain a memory leak via the component streamGetEdgeID. | redis | 2022-06-23T17:15:00Z | 2024-12-23T11:33:23.546447Z |
| pysec-2019-253 |
7.4 (3.1)
|
Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutab… | tahoe-lafs | 2019-11-07T18:15:00Z | 2024-12-19T05:47:49.035329Z |
| pysec-2020-343 |
7.8 (3.1)
|
blosc2.c in Blosc C-Blosc2 through 2.0.0.beta.5 has a heap-based buffer overflow when the… | blosc2 | 2020-11-27T20:15:00Z | 2024-12-12T14:22:45.450508Z |
| pysec-2024-154 |
8.6 (3.1)
8.7 (4.0)
|
Ultralytics has identified a supply chain attack affecting affecting multiple versions of… | ultralytics | 2024-12-10T19:20:27.097505+00:00 | |
| pysec-2015-42 |
|
providers/saml2/admin.py in the Identity Provider (IdP) server in Ipsilon 0.1.0 before 1.… | ipsilon | 2015-11-17T15:59:00Z | 2024-12-05T09:35:27.751929Z |
| pysec-2015-41 |
|
providers/saml2/admin.py in the Identity Provider (IdP) server in Ipsilon 0.1.0 before 1.… | ipsilon | 2015-11-17T15:59:00Z | 2024-12-05T09:35:27.711043Z |
| pysec-2021-125 |
|
A flaw was found in Ansible where the secret information present in async_files are getti… | ansible | 2021-06-09T12:15:00Z | 2024-12-03T18:23:29.400148Z |
| pysec-2019-251 |
7.5 (3.1)
|
The modoboa-dmarc plugin 1.1.0 for Modoboa is vulnerable to an XML External Entity Inject… | modoboa | 2019-12-10T20:15:00Z | 2024-12-02T10:49:36.349040Z |
| pysec-2023-298 |
5.3 (3.1)
|
isInList in the safeurl-python package before 1.2 for Python has an insufficiently restri… | safeurl-python | 2023-01-30T05:15:00Z | 2024-11-25T22:26:07.130924Z |
| ID | Description | Updated |
|---|---|---|
| gsd-2024-33756 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.430035Z |
| gsd-2024-33717 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.429699Z |
| gsd-2024-33724 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.429383Z |
| gsd-2024-33706 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.427436Z |
| gsd-2024-33787 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.424661Z |
| gsd-2024-33799 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.424348Z |
| gsd-2024-33813 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.424031Z |
| gsd-2024-33735 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.410261Z |
| gsd-2024-33721 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.408369Z |
| gsd-2024-33695 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vuln… | 2024-04-27T05:02:18.407619Z |
| gsd-2024-33752 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.406190Z |
| gsd-2024-33692 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vuln… | 2024-04-27T05:02:18.404770Z |
| gsd-2024-33696 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vuln… | 2024-04-27T05:02:18.403548Z |
| gsd-2024-33761 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.399777Z |
| gsd-2024-33689 | Cross-Site Request Forgery (CSRF) vulnerability in Tony Zeoli, Tony Hayes Radio Station.T… | 2024-04-27T05:02:18.398121Z |
| gsd-2024-33730 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.396940Z |
| gsd-2024-33708 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.395735Z |
| gsd-2024-33830 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.395389Z |
| gsd-2024-33843 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.393431Z |
| gsd-2024-33841 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.393169Z |
| gsd-2024-33686 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.392053Z |
| gsd-2024-33816 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.388757Z |
| gsd-2024-33785 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.387543Z |
| gsd-2024-33703 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.386761Z |
| gsd-2024-33705 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.385891Z |
| gsd-2024-33824 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.385552Z |
| gsd-2024-33844 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.384822Z |
| gsd-2024-33728 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.380564Z |
| gsd-2024-33754 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.379823Z |
| gsd-2024-33837 | The format of the source doesn't require a description, click on the link for more details. | 2024-04-27T05:02:18.377806Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| mal-2026-911 | Malicious code in malpkgv2-0 (PyPI) | 2026-02-16T00:00:09Z | 2026-02-16T00:00:09Z |
| mal-2026-909 | Malicious code in clawdist (PyPI) | 2026-02-15T21:58:17Z | 2026-02-15T22:44:50Z |
| mal-2026-898 | Malicious code in magicwolf (PyPI) | 2026-02-14T02:02:26Z | 2026-02-15T22:44:50Z |
| mal-2026-897 | Malicious code in clawdest (PyPI) | 2026-02-13T23:10:47Z | 2026-02-15T22:44:50Z |
| mal-2026-878 | Malicious code in magichat (PyPI) | 2026-02-13T10:56:11Z | 2026-02-15T22:44:50Z |
| mal-2026-907 | Malicious code in tronpad (PyPI) | 2026-02-15T15:24:18Z | 2026-02-15T15:24:18Z |
| mal-2026-906 | Malicious code in cucumber_json_schema (RubyGems) | 2026-02-15T14:20:25Z | 2026-02-15T14:20:25Z |
| mal-2026-904 | Malicious code in strands-agents-anthropic (PyPI) | 2026-02-15T07:34:00Z | 2026-02-15T07:34:00Z |
| mal-2026-903 | Malicious code in requests-toolkit (PyPI) | 2026-02-15T00:02:57Z | 2026-02-15T00:02:57Z |
| mal-2025-193013 | Malicious code in tablixs (PyPI) | 2026-02-11T10:04:22Z | 2026-02-14T18:48:58Z |
| mal-2025-193012 | Malicious code in gridifies (PyPI) | 2026-02-06T14:04:11Z | 2026-02-14T18:48:58Z |
| mal-2024-12375 | Malicious code in langraph (PyPI) | 2026-02-14T05:25:23Z | 2026-02-14T18:48:58Z |
| mal-2024-12374 | Malicious code in ci-metadata-python-logging (PyPI) | 2026-02-11T10:26:41Z | 2026-02-14T18:48:58Z |
| mal-2024-12373 | Malicious code in gpu-discovery (PyPI) | 2026-02-10T22:28:06Z | 2026-02-14T18:48:58Z |
| mal-2026-902 | Malicious code in crc32fast (PyPI) | 2026-02-14T13:26:41Z | 2026-02-14T14:13:09Z |
| mal-2026-900 | Malicious code in cubaflixdownload (PyPI) | 2026-02-14T12:34:41Z | 2026-02-14T12:34:41Z |
| mal-2026-901 | Malicious code in platforms (PyPI) | 2026-02-14T12:29:36Z | 2026-02-14T12:29:36Z |
| mal-2026-899 | Malicious code in dzuseragents (PyPI) | 2026-02-14T11:56:39Z | 2026-02-14T11:56:39Z |
| mal-2026-894 | Malicious code in troncloud (PyPI) | 2026-02-13T17:22:10Z | 2026-02-13T18:20:45Z |
| mal-2026-875 | Malicious code in displaydoc (PyPI) | 2026-02-13T10:45:53Z | 2026-02-13T11:45:52Z |
| mal-2026-876 | Malicious code in acpi-tables (PyPI) | 2026-02-13T10:35:04Z | 2026-02-13T10:35:04Z |
| mal-2026-877 | Malicious code in arrayvec (PyPI) | 2026-02-13T10:27:10Z | 2026-02-13T10:27:10Z |
| mal-2026-874 | Malicious code in google-search-result (PyPI) | 2026-02-12T23:27:54Z | 2026-02-13T00:38:45Z |
| mal-2026-870 | Malicious code in b10connoisseur (PyPI) | 2026-02-12T12:10:26Z | 2026-02-12T12:10:26Z |
| mal-2026-862 | Malicious code in get-incorrect-name-bob (PyPI) | 2026-02-12T00:01:39Z | 2026-02-12T00:01:39Z |
| mal-2026-860 | Malicious code in osopackagepy (PyPI) | 2026-02-11T15:50:58Z | 2026-02-11T16:53:59Z |
| mal-2025-6515 | Malicious code in graphdict (PyPI) | 2025-07-09T18:18:10Z | 2026-02-11T16:53:59Z |
| mal-2025-192430 | Malicious code in bigpyx (PyPI) | 2025-12-10T08:44:43Z | 2026-02-11T16:53:59Z |
| mal-2025-192391 | Malicious code in bignum (PyPI) | 2025-12-09T16:32:42Z | 2026-02-11T16:53:59Z |
| mal-2025-192385 | Malicious code in graphsync (PyPI) | 2025-12-09T08:01:54Z | 2026-02-11T16:53:59Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| bit-gitea-2026-20800 | Notification API Leaks Private Repository Issue Titles After Collaborator Permission Revocation | 2026-01-30T08:40:39.688Z | 2026-01-30T09:12:31.676Z |
| bit-gitea-2026-20750 | Gitea Organization Projects Cross-Organization Authorization Bypass via Project ID (IDOR) | 2026-01-30T08:40:37.768Z | 2026-01-30T09:12:31.676Z |
| bit-gitea-2026-20736 | Gitea Web Attachment Deletion: Cross-Repository Unauthorized Deletion via Missing Repo Ownership Check | 2026-01-30T08:40:35.702Z | 2026-01-30T09:12:31.676Z |
| bit-gitea-2026-0798 | Gitea Release Email Notifications Leak Private Repository Release Details After Access Revocation | 2026-01-30T08:40:33.870Z | 2026-01-30T09:12:31.676Z |
| bit-rum-2022-50806 | 4images 1.9 - Remote Command Execution (RCE) | 2026-01-29T20:50:41.024Z | 2026-01-29T21:11:31.203Z |
| bit-ghost-2025-9862 | Ghost 6.0.6 - SSRF via oEmbed Bookmark | 2026-01-29T20:40:02.993Z | 2026-01-29T21:11:31.203Z |
| bit-pytorch-2026-24747 | PyTorch Vulnerable to Remote Code Execution via Untrusted Checkpoint Files | 2026-01-29T08:50:25.994Z | 2026-01-29T09:11:54.406Z |
| bit-python-2025-13836 | Excessive read buffering DoS in http.client | 2025-12-05T11:13:05.077Z | 2026-01-27T09:14:53.416Z |
| bit-python-2025-12084 | Quadratic complexity in node ID cache clearing | 2025-12-10T17:49:06.243Z | 2026-01-27T09:14:53.416Z |
| bit-libpython-2025-13836 | Excessive read buffering DoS in http.client | 2025-12-05T11:07:36.854Z | 2026-01-27T09:14:53.416Z |
| bit-libpython-2025-12084 | Quadratic complexity in node ID cache clearing | 2025-12-10T17:41:46.450Z | 2026-01-27T09:14:53.416Z |
| bit-gitlab-2026-1102 | Allocation of Resources Without Limits or Throttling in GitLab | 2026-01-27T09:13:24.685Z | 2026-01-27T09:14:53.416Z |
| bit-gitlab-2026-0723 | Unchecked Return Value in GitLab | 2026-01-27T09:13:22.812Z | 2026-01-27T09:14:53.416Z |
| bit-gitlab-2025-13928 | Incorrect Authorization in GitLab | 2026-01-27T09:10:58.706Z | 2026-01-27T09:14:53.416Z |
| bit-gitlab-2025-13927 | Allocation of Resources Without Limits or Throttling in GitLab | 2026-01-27T09:10:56.771Z | 2026-01-27T09:14:53.416Z |
| bit-gitlab-2025-13335 | Loop with Unreachable Exit Condition ('Infinite Loop') in GitLab | 2026-01-27T09:10:47.144Z | 2026-01-27T09:14:53.416Z |
| bit-tensorflow-2022-29204 | Missing validation causes denial of service in TensorFlow via `Conv3DBackpropFilterV2` | 2024-03-06T11:14:25.120Z | 2026-01-26T15:09:56.435Z |
| bit-solr-2026-22444 | Apache Solr: Insufficient file-access checking in standalone core-creation requests | 2026-01-26T14:49:58.661Z | 2026-01-26T15:09:56.435Z |
| bit-solr-2026-22022 | Apache Solr: Unauthorized bypass of certain "predefined permission" rules in the RuleBasedAuthorizationPlugin | 2026-01-26T14:49:57.084Z | 2026-01-26T15:09:56.435Z |
| bit-solr-2025-24814 | Apache Solr: Core-creation with "trusted" configset can use arbitrary untrusted files | 2025-01-29T07:20:22.315Z | 2026-01-26T15:09:56.435Z |
| bit-php-2025-14178 | Heap buffer overflow in array_merge() | 2026-01-08T11:48:32.142Z | 2026-01-26T15:09:56.435Z |
| bit-node-2025-59465 | 2026-01-26T14:47:56.981Z | 2026-01-26T15:09:56.435Z | |
| bit-node-2025-55131 | 2026-01-26T14:47:51.686Z | 2026-01-26T15:09:56.435Z | |
| bit-moodle-2025-3647 | Moodle: idor when accessing the cohorts report | 2026-01-26T14:49:52.208Z | 2026-01-26T15:09:56.435Z |
| bit-moodle-2025-3645 | Moodle: idor in messaging web service allows access to some user details | 2026-01-26T14:49:50.806Z | 2026-01-26T15:09:56.435Z |
| bit-moodle-2025-3644 | Moodle: ajax section delete does not respect course_can_delete_section() | 2026-01-26T14:49:49.408Z | 2026-01-26T15:09:56.435Z |
| bit-moodle-2025-3643 | Moodle: reflected xss risk in policy tool | 2026-01-26T14:49:47.987Z | 2026-01-26T15:09:56.435Z |
| bit-moodle-2025-3642 | Moodle: authenticated remote code execution risk in the moodle lms equella repository | 2026-01-26T14:49:46.287Z | 2026-01-26T15:09:56.435Z |
| bit-moodle-2025-3641 | Moodle: authenticated remote code execution risk in the moodle lms dropbox repository | 2026-01-26T14:49:44.921Z | 2026-01-26T15:09:56.435Z |
| bit-moodle-2025-3640 | Moodle: idor in web service allows users enrolled in a course to access some details of other users | 2026-01-26T14:49:43.349Z | 2026-01-26T15:09:56.435Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| cleanstart-2026-ek72220 | excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate | 2026-01-30T16:24:55.137022Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-dv06422 | excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate | 2026-01-30T15:40:54.415037Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-dp30290 | processing time for parsing some invalid inputs scales non-linearly with respect to the size of the input | 2026-01-30T15:52:54.729374Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-dn37053 | Within HostnameError | 2026-01-30T16:30:25.711037Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-dn29911 | attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing | 2026-01-30T16:57:26.436107Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-di91874 | Cancelling a query (e | 2026-01-30T15:02:23.274144Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-dd39330 | excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate | 2026-01-30T14:53:22.793144Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-cz81512 | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes | 2026-01-30T16:11:25.451968Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-cy03855 | tar | 2026-01-30T15:18:53.133348Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-ct39828 | Due to the design of the name constraint checking algorithm, the processing time of some inputs scale non-linearly with respect to the size of the certificate | 2026-01-30T15:31:23.928259Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-ck72347 | excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate | 2026-01-30T15:07:23.436298Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-ch38544 | excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate | 2026-01-30T16:19:55.527550Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-bz92766 | beego is an open-source web framework for the Go programming language | 2026-01-30T15:34:54.149400Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-bx37171 | Redis is an open source, in-memory database that persists on disk | 2026-01-30T14:43:22.549529Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-bt39952 | Moby is an open source container framework developed by Docker Inc | 2026-01-30T15:45:23.955705Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-bl06950 | excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate | 2026-01-30T15:08:23.121647Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-bj28314 | Within HostnameError | 2026-01-30T15:00:22.906070Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-bh03809 | excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate | 2026-01-30T15:04:53.009971Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-av38242 | Cancelling a query (e | 2026-01-30T15:33:23.662793Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-au31441 | excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate | 2026-01-30T16:29:25.997506Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-an66259 | attacker can cause excessive memory growth in a Go server accepting HTTP/2 requests | 2026-01-30T16:28:25.281484Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-aj76138 | tar | 2026-01-30T14:58:52.957172Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-ai42483 | PostgreSQL optimizer statistics allow a user to read sampled data within a view that the user cannot access | 2026-01-30T16:26:55.732852Z | 2026-01-29T18:58:54Z |
| cleanstart-2026-ad41794 | SSH clients receiving SSH_AGENT_SUCCESS when expecting a typed response will panic and cause early termination of the client process | 2026-01-30T15:47:54.368234Z | 2026-01-29T18:58:54Z |
| cleanstart-2025-us16386 | Security fixes for GHSA-qxp5-gwg8-xv66, GHSA-vvgc-356p-c3xw applied in versions: 1.7.2-r0 | 2026-01-16T11:58:18.007779Z | 2025-12-23T06:02:25Z |
| cleanstart-2025-jl63399 | Security fixes for CVE-2025-61729 applied in versions: 0.20.2-r1 | 2026-01-16T12:00:43.312220Z | 2025-12-06T13:34:11Z |
| cleanstart-2025-cn65903 | Security fixes for GHSA-6v2p-p543-phr9, GHSA-qxp5-gwg8-xv66, GHSA-vvgc-356p-c3xw applied in versions: 1.5.0-r0, 1.7.0-r0 | 2026-01-16T12:00:42.667592Z | 2025-09-29T13:20:40Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| drupal-contrib-2024-030 | 2024-08-21T16:23:02.000Z | 2025-02-20T19:11:48.000Z | |
| drupal-contrib-2024-011 | 2024-02-28T18:14:40.000Z | 2025-02-20T19:10:16.000Z | |
| drupal-contrib-2024-012 | 2024-02-28T18:19:01.000Z | 2025-02-20T19:09:55.000Z | |
| drupal-contrib-2024-014 | 2024-02-28T18:36:35.000Z | 2025-02-20T19:09:20.000Z | |
| drupal-contrib-2024-015 | 2024-03-06T17:06:37.000Z | 2025-02-20T19:08:51.000Z | |
| drupal-contrib-2024-016 | 2024-03-27T17:16:26.000Z | 2025-02-20T19:08:34.000Z | |
| drupal-contrib-2024-017 | 2024-04-24T13:16:40.000Z | 2025-02-20T18:44:32.000Z | |
| drupal-contrib-2024-018 | 2024-04-24T14:23:34.000Z | 2025-02-20T18:44:08.000Z | |
| drupal-contrib-2024-020 | 2024-05-22T16:03:46.000Z | 2025-02-20T18:43:21.000Z | |
| drupal-contrib-2024-002 | 2024-01-10T18:00:05.000Z | 2025-02-20T18:40:20.000Z | |
| drupal-contrib-2024-003 | 2024-01-24T15:42:46.000Z | 2025-02-20T18:39:54.000Z | |
| drupal-contrib-2024-004 | 2024-01-24T15:45:49.000Z | 2025-02-20T18:39:20.000Z | |
| drupal-contrib-2024-005 | 2024-01-24T15:47:36.000Z | 2025-02-20T18:38:57.000Z | |
| drupal-contrib-2024-006 | 2024-01-24T15:54:55.000Z | 2025-02-20T18:38:32.000Z | |
| drupal-contrib-2024-007 | 2024-01-31T17:22:36.000Z | 2025-02-20T18:38:01.000Z | |
| drupal-contrib-2024-008 | 2024-02-07T17:56:55.000Z | 2025-02-20T18:37:40.000Z | |
| drupal-contrib-2024-009 | 2024-02-14T19:31:10.000Z | 2025-02-20T18:37:01.000Z | |
| drupal-contrib-2024-010 | 2024-02-21T16:58:11.000Z | 2025-02-20T18:36:16.000Z | |
| drupal-contrib-2022-013 | 2022-01-25T18:37:38.000Z | 2024-01-25T20:19:13.000Z | |
| drupal-contrib-2023-055 | 2023-12-20T17:02:51.000Z | 2023-12-20T17:53:15.000Z | |
| drupal-contrib-2023-054 | 2023-12-06T16:16:28.000Z | 2023-12-07T02:47:34.000Z | |
| drupal-contrib-2023-053 | 2023-11-29T15:27:05.000Z | 2023-11-29T18:08:04.000Z | |
| drupal-contrib-2023-052 | 2023-11-15T14:24:12.000Z | 2023-11-15T17:19:15.000Z | |
| drupal-contrib-2023-051 | 2023-11-08T15:33:12.000Z | 2023-11-08T17:10:24.000Z | |
| drupal-contrib-2023-050 | 2023-11-08T15:30:45.000Z | 2023-11-08T17:10:18.000Z | |
| drupal-contrib-2023-049 | 2023-11-01T16:56:37.000Z | 2023-11-06T14:25:23.000Z | |
| drupal-contrib-2023-025 | 2023-06-28T17:10:15.000Z | 2023-10-26T13:22:52.000Z | |
| drupal-contrib-2022-019 | 2022-01-25T18:40:00.000Z | 2023-10-24T16:11:02.000Z | |
| drupal-contrib-2022-016 | 2022-01-25T18:39:26.000Z | 2023-10-06T19:27:29.000Z | |
| drupal-contrib-2023-048 | 2023-10-04T15:41:34.000Z | 2023-10-04T16:35:18.000Z |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2025-005050 | Multiple vulnerabilities in a-blog cms | 2025-05-15T18:11+09:00 | 2025-05-15T18:11+09:00 |
| jvndb-2025-000031 | Pgpool-II vulnerable to authentication bypass by primary weakness | 2025-05-15T16:14+09:00 | 2025-05-15T16:14+09:00 |
| jvndb-2025-004863 | Panasonic IR Control Hub vulnerable to Unauthorised firmware loading | 2025-05-14T11:30+09:00 | 2025-05-14T11:30+09:00 |
| jvndb-2025-004671 | Multiple vulnerabilities in GL-MT2500 and GL-MT2500A | 2025-05-12T17:52+09:00 | 2025-05-12T17:52+09:00 |
| jvndb-2025-001016 | OMRON NJ/NX series vulnerable to path traversal | 2025-02-06T18:27+09:00 | 2025-05-08T17:44+09:00 |
| jvndb-2025-004079 | Improper access permission settings in multiple SEIKO EPSON printer drivers for Windows OS | 2025-04-30T11:46+09:00 | 2025-04-30T11:46+09:00 |
| jvndb-2025-004076 | Security Update for Trend Micro Trend Vision One (April 2025) | 2025-04-30T10:38+09:00 | 2025-04-30T10:38+09:00 |
| jvndb-2025-000029 | Multiple vulnerabilities in Quick Agent | 2025-04-25T13:49+09:00 | 2025-04-25T13:49+09:00 |
| jvndb-2025-000028 | i-PRO Configuration Tool vulnerable to use of hard-coded cryptographic key | 2025-04-24T13:50+09:00 | 2025-04-24T13:50+09:00 |
| jvndb-2025-000027 | Active! mail vulnerable to stack-based buffer overflow | 2025-04-18T16:50+09:00 | 2025-04-18T16:50+09:00 |
| jvndb-2016-000129 | Android OS issue where it is affected by the CRIME attack | 2016-07-25T11:15+09:00 | 2025-04-18T16:36+09:00 |
| jvndb-2025-003213 | TP-Link Deco BE65 Pro vulnerable to OS command injection | 2025-04-11T13:52+09:00 | 2025-04-11T13:52+09:00 |
| jvndb-2025-000026 | Multiple vulnerabilities in BizRobo! | 2025-04-10T15:36+09:00 | 2025-04-10T15:36+09:00 |
| jvndb-2025-003091 | Multiple vulnerabilities in Trend Micro Endpoint security products for enterprises (April 2025) | 2025-04-09T14:55+09:00 | 2025-04-09T14:55+09:00 |
| jvndb-2025-002990 | Multiple vulnerabilities in Inaba Denki Sangyo Wi-Fi AP UNIT 'AC-WPS-11ac series' | 2025-04-07T17:44+09:00 | 2025-04-07T17:44+09:00 |
| jvndb-2025-002714 | Improper symbolic link file handling in FutureNet NXR series, VXR series and WXR series routers | 2025-03-31T16:59+09:00 | 2025-04-03T15:19+09:00 |
| jvndb-2025-000025 | WinRAR vulnerable to the symbolic link based "Mark of the Web" check bypass | 2025-04-03T12:29+09:00 | 2025-04-03T12:29+09:00 |
| jvndb-2025-000022 | Multiple vulnerabilities in JTEKT ELECTRONICS CORPORATION's products | 2025-04-02T15:12+09:00 | 2025-04-02T15:12+09:00 |
| jvndb-2025-002790 | Out-of-bounds Write vulnerabilities in Canon Printer Drivers for Production Printers, Office/Small Office Multifunction Printers and Laser Printers | 2025-04-02T15:05+09:00 | 2025-04-02T15:05+09:00 |
| jvndb-2025-000023 | WordPress plugin "Welcart e-Commerce" vulnerable to untrusted data deserialization | 2025-04-01T14:20+09:00 | 2025-04-01T14:20+09:00 |
| jvndb-2024-003016 | Multiple vulnerabilities in home gateway HGW BL1500HM | 2024-03-25T17:28+09:00 | 2025-03-28T12:01+09:00 |
| jvndb-2025-000018 | Multiple vulnerabilities in home gateway HGW-BL1500HM | 2025-03-19T15:33+09:00 | 2025-03-28T11:48+09:00 |
| jvndb-2025-000024 | a-blog cms vulnerable to untrusted data deserialization | 2025-03-28T10:46+09:00 | 2025-03-28T10:46+09:00 |
| jvndb-2025-000021 | Multiple vulnerabilities in PowerCMS | 2025-03-26T18:13+09:00 | 2025-03-26T18:13+09:00 |
| jvndb-2025-002592 | Multiple vulnerabilities in CHOCO TEI WATCHER mini | 2025-03-26T13:25+09:00 | 2025-03-26T13:25+09:00 |
| jvndb-2025-000019 | Multiple vulnerabilities in AssetView | 2025-03-25T17:10+09:00 | 2025-03-25T17:10+09:00 |
| jvndb-2025-000020 | +F FS010M vulnerable to OS command injection | 2025-03-18T15:01+09:00 | 2025-03-18T15:01+09:00 |
| jvndb-2025-000017 | hostapd vulnerable to improper processing of RADIUS packets | 2025-03-12T14:19+09:00 | 2025-03-12T14:19+09:00 |
| jvndb-2025-000016 | Multiple vulnerabilities in RemoteView Agent (for Windows) | 2025-03-06T14:27+09:00 | 2025-03-10T15:22+09:00 |
| jvndb-2025-001898 | Multiple vulnerabilities in FutureNet AS series (Industrial Routers) and FA series (Protocol Conversion Machine) | 2025-03-04T14:56+09:00 | 2025-03-04T14:56+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| cnvd-2026-08345 | Google Android权限提升漏洞(CNVD-2026-08345) | 2025-09-08 | 2026-01-29 |
| cnvd-2026-08343 | Juniper Networks Junos Space跨站脚本漏洞(CNVD-2026-08343) | 2025-10-15 | 2026-01-29 |
| cnvd-2026-08328 | Tenda AX1806堆栈溢出漏洞(CNVD-2026-08328) | 2026-01-26 | 2026-01-29 |
| cnvd-2026-08327 | Tenda AX1803堆栈溢出漏洞 | 2026-01-26 | 2026-01-29 |
| cnvd-2026-08326 | Tenda AX1806堆栈溢出漏洞 | 2026-01-26 | 2026-01-29 |
| cnvd-2026-07575 | Google Android权限提升漏洞(CNVD-2026-07575) | 2025-09-08 | 2026-01-29 |
| cnvd-2026-08531 | Job Portal /login.php跨站脚本漏洞 | 2024-09-10 | 2026-01-28 |
| cnvd-2026-08530 | Job Portal index.php跨站脚本漏洞 | 2024-09-10 | 2026-01-28 |
| cnvd-2026-08529 | Job Portal SQL注入漏洞 | 2024-09-10 | 2026-01-28 |
| cnvd-2026-08528 | Job Portal index.php文件SQL注入漏洞 | 2024-09-10 | 2026-01-28 |
| cnvd-2026-08527 | Job Portal /process.php跨站脚本漏洞 | 2024-09-10 | 2026-01-28 |
| cnvd-2026-08342 | Juniper Networks Junos Space跨站脚本漏洞(CNVD-2026-08342) | 2025-10-15 | 2026-01-28 |
| cnvd-2026-08341 | Juniper Networks Junos Space跨站脚本漏洞(CNVD-2026-08341) | 2025-10-15 | 2026-01-28 |
| cnvd-2026-08269 | 新华三技术有限公司H3C Magic AX3001存在信息泄露漏洞 | 2025-09-02 | 2026-01-28 |
| cnvd-2026-08240 | 上海居亦科技发展有限公司vigor 3900和vigor 2960存在命令执行漏洞 | 2025-10-22 | 2026-01-28 |
| cnvd-2026-08212 | 湖南强智科技发展有限公司强智科技教务系统存在SQL注入漏洞 | 2025-10-23 | 2026-01-28 |
| cnvd-2026-08206 | 北京神州视翰科技有限公司多媒体综合业务显示系统存在SQL注入漏洞(CNVD-2026-08206) | 2025-10-23 | 2026-01-28 |
| cnvd-2026-08197 | 北京凯特伟业科技有限公司JEPasS云平台存在SQL注入漏洞 | 2025-10-23 | 2026-01-28 |
| cnvd-2026-07580 | Google Android权限提升漏洞(CNVD-2026-07580) | 2025-09-08 | 2026-01-28 |
| cnvd-2026-07579 | Google Android权限提升漏洞(CNVD-2026-07579) | 2025-09-08 | 2026-01-28 |
| cnvd-2026-07578 | Google Android越界读取漏洞(CNVD-2026-07578) | 2025-09-08 | 2026-01-28 |
| cnvd-2026-07577 | Google Android权限提升漏洞(CNVD-2026-07577) | 2025-09-08 | 2026-01-28 |
| cnvd-2026-07576 | Google Android权限提升漏洞(CNVD-2026-07576) | 2025-09-08 | 2026-01-28 |
| cnvd-2026-07574 | Siemens Spectrum Power 4存在未明漏洞(CNVD-2026-07574) | 2025-11-14 | 2026-01-28 |
| cnvd-2026-07573 | Siemens Spectrum Power 4存在未明漏洞(CNVD-2026-07573) | 2025-11-14 | 2026-01-28 |
| cnvd-2026-07572 | Siemens Spectrum Power 4关键资源权限分配错误漏洞 | 2025-11-14 | 2026-01-28 |
| cnvd-2026-07571 | Siemens Spectrum Power 4权限分配错误漏洞 | 2025-11-14 | 2026-01-28 |
| cnvd-2026-07570 | Siemens Spectrum Power 4存在未明漏洞 | 2025-11-14 | 2026-01-28 |
| cnvd-2026-07569 | Siemens Software Center和Siemens Solid Edge SE2025代码问题漏洞 | 2025-11-14 | 2026-01-28 |
| cnvd-2026-07568 | Siemens Altair Grid Engine信息泄露漏洞 | 2025-11-14 | 2026-01-28 |
| ID | Description | Published | Updated |
|---|---|---|---|
| bdu:2025-15548 | Уязвимость компонента jfs/file.c ядра операционной системы Linux, позволяющая нарушителю … | 11.12.2025 | 16.02.2026 |
| bdu:2025-15547 | Уязвимость компонента fs/ext4/inline.c ядра операционной системы Linux, позволяющая наруш… | 11.12.2025 | 16.02.2026 |
| bdu:2025-15546 | Уязвимость драйвера gve ядра операционной системы Linux, позволяющая нарушителю вызвать о… | 11.12.2025 | 16.02.2026 |
| bdu:2025-15545 | Уязвимость компонента arch/parisc/kernel/syscall.S ядра операционной системы Linux, позво… | 11.12.2025 | 16.02.2026 |
| bdu:2025-15544 | Уязвимость компонента arch/parisc/include/asm/uaccess.h ядра операционной системы Linux, … | 11.12.2025 | 16.02.2026 |
| bdu:2025-15543 | Уязвимость ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании | 11.12.2025 | 16.02.2026 |
| bdu:2025-15289 | Уязвимость функции atmtcp_recv_control() ядра операционной системы Linux, позволяющая нар… | 08.12.2025 | 16.02.2026 |
| bdu:2025-15261 | Уязвимость компонента hid-asus.c ядра операционной системы Linux, позволяющая нарушителю … | 05.12.2025 | 16.02.2026 |
| bdu:2025-15252 | Уязвимость функции sctp_v6_from_sk() ядра операционной системы Linux, позволяющая нарушит… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15248 | Уязвимость функции btrfs_copy_root() компонента btrfs ядра операционной системы Linux, по… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15240 | Уязвимость функции blk_stack_limits() компонента block/blk-settings.c ядра операционной с… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15238 | Уязвимость библиотеки resolv языка программирования Ruby, позволяющая нарушителю вызвать … | 05.12.2025 | 16.02.2026 |
| bdu:2025-15231 | Уязвимость функции tls_do_decryption() (net/tls/tls_sw.c) ядра операционной системы Linux… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15230 | Уязвимость функций ovl_encode_real_fh() (fs/overlayfs/copy_up.c) и show_mark_fhandle() (f… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15228 | Уязвимость системы мониторинга ИТ-инфраструктуры Zabbix, связанная с хранением пароля в н… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15227 | Уязвимость ядра операционной системы Linux, связанная с ошибками инициализации памяти, по… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15226 | Уязвимость компонента drivers/soc/qcom/mdt_loader.c ядра операционной системы Linux, позв… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15225 | Уязвимость модуля vfs_streams_xattr пакета программ сетевого взаимодействия Samba, позвол… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15224 | Уязвимость функции Item_direct_view_ref::derived_field_transformer_for_where системы упра… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15223 | Уязвимость функции pci_epf_remove_cfs() компонента drivers/pci/endpoint/pci-epf-core.c яд… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15222 | Уязвимость функции JOIN::fix_all_splittings_in_plan системы управления базами данных Mari… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15221 | Уязвимость системы управления базами данных MariaDB, связанная с неправильным порядком по… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15220 | Уязвимость функции jbd2_log_do_checkpoint() компонента fs/jbd2/checkpoint.c ядра операцио… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15218 | Уязвимость функции relocate_one_folio() модуля fs/btrfs/relocation.c поддержки файловой с… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15216 | Уязвимость функций EXPORT_SYMBOL(), destroy_cm_id() и cm_work_handler() ядра операционной… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15213 | Уязвимость функции usb_parse_ss_endpoint_companion() компонента drivers/usb/core/config.c… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15212 | Уязвимость компонента fs/btrfs/qgroup.c ядра операционной системы Linux, позволяющая нару… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15211 | Уязвимость компонента fs ядра операционной системы Linux, позволяющая нарушителю вызвать … | 05.12.2025 | 16.02.2026 |
| bdu:2025-15209 | Уязвимость компонента media/usb/usbtv/usbtv-video.c ядра операционной системы Linux, позв… | 05.12.2025 | 16.02.2026 |
| bdu:2025-15201 | Уязвимость компонента qcom/venus/core.c ядра операционной системы Linux, позволяющая нару… | 05.12.2025 | 16.02.2026 |
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2026-avi-0027 | Vulnérabilité dans NetApp ONTAP | 2026-01-13T00:00:00.000000 | 2026-01-13T00:00:00.000000 |
| certfr-2026-avi-0026 | Vulnérabilité dans Google Pixel | 2026-01-13T00:00:00.000000 | 2026-01-13T00:00:00.000000 |
| certfr-2026-avi-0025 | Vulnérabilité dans Microsoft Edge | 2026-01-12T00:00:00.000000 | 2026-01-12T00:00:00.000000 |
| certfr-2026-avi-0024 | Multiples vulnérabilités dans VMware Tanzu Greenplum Backup and Restore | 2026-01-12T00:00:00.000000 | 2026-01-12T00:00:00.000000 |
| certfr-2026-avi-0023 | Multiples vulnérabilités dans les produits Axis | 2026-01-12T00:00:00.000000 | 2026-01-12T00:00:00.000000 |
| certfr-2026-avi-0022 | Multiples vulnérabilités dans les produits Microsoft | 2026-01-09T00:00:00.000000 | 2026-01-09T00:00:00.000000 |
| certfr-2026-avi-0021 | Vulnérabilité dans Microsoft Edge | 2026-01-09T00:00:00.000000 | 2026-01-09T00:00:00.000000 |
| certfr-2026-avi-0020 | Multiples vulnérabilités dans les produits IBM | 2026-01-09T00:00:00.000000 | 2026-01-09T00:00:00.000000 |
| certfr-2026-avi-0019 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2026-01-09T00:00:00.000000 | 2026-01-09T00:00:00.000000 |
| certfr-2026-avi-0018 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2026-01-09T00:00:00.000000 | 2026-01-09T00:00:00.000000 |
| certfr-2026-avi-0017 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2026-01-09T00:00:00.000000 | 2026-01-09T00:00:00.000000 |
| certfr-2026-avi-0016 | Vulnérabilité dans les produits Moxa | 2026-01-09T00:00:00.000000 | 2026-01-09T00:00:00.000000 |
| certfr-2026-avi-0015 | Multiples vulnérabilités dans les produits Centreon | 2026-01-08T00:00:00.000000 | 2026-01-08T00:00:00.000000 |
| certfr-2026-avi-0014 | Multiples vulnérabilités dans GitLab | 2026-01-08T00:00:00.000000 | 2026-01-08T00:00:00.000000 |
| certfr-2026-avi-0013 | Vulnérabilité dans Tenable Nessus Agent | 2026-01-08T00:00:00.000000 | 2026-01-08T00:00:00.000000 |
| certfr-2026-avi-0012 | Multiples vulnérabilités dans Trend Micro Apex Central | 2026-01-08T00:00:00.000000 | 2026-01-08T00:00:00.000000 |
| certfr-2026-avi-0011 | Vulnérabilité dans Google Android | 2026-01-08T00:00:00.000000 | 2026-01-08T00:00:00.000000 |
| certfr-2026-avi-0010 | Multiples vulnérabilités dans Curl | 2026-01-07T00:00:00.000000 | 2026-01-07T00:00:00.000000 |
| certfr-2026-avi-0009 | Vulnérabilité dans Google Chrome | 2026-01-07T00:00:00.000000 | 2026-01-07T00:00:00.000000 |
| certfr-2026-avi-0008 | Multiples vulnérabilités dans Joomla! | 2026-01-07T00:00:00.000000 | 2026-01-07T00:00:00.000000 |
| certfr-2026-avi-0007 | Vulnérabilité dans Stormshield Network Security | 2026-01-06T00:00:00.000000 | 2026-01-06T00:00:00.000000 |
| certfr-2026-avi-0006 | Multiples vulnérabilités dans Veeam Backup & Replication | 2026-01-06T00:00:00.000000 | 2026-01-06T00:00:00.000000 |
| certfr-2026-avi-0005 | Multiples vulnérabilités dans Centreon Open Tickets | 2026-01-06T00:00:00.000000 | 2026-01-06T00:00:00.000000 |
| certfr-2025-avi-1097 | Vulnérabilité dans les produits Mitel | 2025-12-11T00:00:00.000000 | 2026-01-06T00:00:00.000000 |
| certfr-2026-avi-0004 | Vulnérabilité dans MariaDB | 2026-01-05T00:00:00.000000 | 2026-01-05T00:00:00.000000 |
| certfr-2026-avi-0003 | Multiples vulnérabilités dans les produits Qnap | 2026-01-05T00:00:00.000000 | 2026-01-05T00:00:00.000000 |
| certfr-2025-avi-1111 | Multiples vulnérabilités dans Roundcube | 2025-12-15T00:00:00.000000 | 2026-01-05T00:00:00.000000 |
| certfr-2026-avi-0002 | Multiples vulnérabilités dans les produits IBM | 2026-01-02T00:00:00.000000 | 2026-01-02T00:00:00.000000 |
| certfr-2026-avi-0001 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2026-01-02T00:00:00.000000 | 2026-01-02T00:00:00.000000 |
| certfr-2025-avi-1142 | Multiples vulnérabilités dans Moxa NPort | 2025-12-31T00:00:00.000000 | 2025-12-31T00:00:00.000000 |
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2014-ale-010 | Vulnérabilité de l'implémentation des protocoles SSL/TLS dans Microsoft Windows | 2014-11-11T00:00:00.000000 | 2015-01-30T00:00:00.000000 |
| certfr-2014-ale-008 | Vulnérabilité dans Drupal | 2014-10-16T00:00:00.000000 | 2015-01-30T00:00:00.000000 |
| certfr-2014-ale-009 | Vulnérabilité dans Microsoft OLE | 2014-10-22T00:00:00.000000 | 2014-11-12T00:00:00.000000 |
| certfr-2014-ale-007 | Vulnérabilité dans SSLv3 | 2014-10-15T00:00:00.000000 | 2014-10-15T00:00:00.000000 |
| certfr-2014-ale-006 | Vulnérabilité dans GNU bash | 2014-09-25T00:00:00.000000 | 2014-09-30T00:00:00.000000 |
| certfr-2014-ale-003 | Vulnérabilité dans OpenSSL | 2014-04-08T00:00:00.000000 | 2014-07-30T00:00:00.000000 |
| certfr-2014-ale-005 | Vulnérabilité dans Microsoft Internet Explorer | 2014-04-28T00:00:00.000000 | 2014-05-02T00:00:00.000000 |
| certfr-2014-ale-004 | Vulnérabilité dans Apache Struts | 2014-04-25T00:00:00.000000 | 2014-04-29T00:00:00.000000 |
| certfr-2014-ale-002 | Vulnérabilité dans Microsoft Word | 2014-03-25T00:00:00.000000 | 2014-04-09T00:00:00.000000 |
| certfr-2014-ale-001 | Vulnérabilité dans Microsoft Internet Explorer | 2014-02-21T00:00:00.000000 | 2014-03-12T00:00:00.000000 |
| certa-2013-ale-008 | Vulnérabilité critique dans le noyau de Microsoft Windows | 2013-11-28T00:00:00.000000 | 2014-01-16T00:00:00.000000 |
| certa-2013-ale-007 | Vulnérabilité dans un composant graphique de Microsoft | 2013-11-06T00:00:00.000000 | 2013-12-10T00:00:00.000000 |
| certa-2013-ale-006 | Vulnérabilité dans Microsoft Internet Explorer | 2013-09-18T00:00:00.000000 | 2013-10-09T00:00:00.000000 |
| certa-2005-ale-013 | Vulnérabilité dans Citrix Metaframe Presentation | 2005-10-07T00:00:00.000000 | 2013-06-06T00:00:00.000000 |
| certa-2013-ale-005 | Vulnérabilité dans le noyau Linux | 2013-05-14T00:00:00.000000 | 2013-05-24T00:00:00.000000 |
| certa-2013-ale-004 | Vulnérabilité dans Adobe ColdFusion | 2013-05-10T00:00:00.000000 | 2013-05-15T00:00:00.000000 |
| certa-2013-ale-003 | Vulnérabilité dans Microsoft Internet Explorer 8 | 2013-05-06T00:00:00.000000 | 2013-05-15T00:00:00.000000 |
| certa-2013-ale-002 | Vulnérabilités dans Adobe Reader et Acrobat | 2013-02-14T00:00:00.000000 | 2013-02-21T00:00:00.000000 |
| certa-2008-ale-013 | Vulnérabilité du service sadmind de Sun Solaris | 2008-10-17T00:00:00.000000 | 2013-02-21T00:00:00.000000 |
| certa-2009-ale-017 | Vulnérabilités dans l'implémentation TCP/IP de divers produits | 2009-09-09T00:00:00.000000 | 2013-02-19T00:00:00.000000 |
| certa-2007-ale-011 | Vulnérabilité du composant d'indexation des serveurs Microsoft IIS | 2007-06-06T00:00:00.000000 | 2013-02-19T00:00:00.000000 |
| certa-2012-ale-001 | Vulnérabilité dans Cisco IronPort | 2012-02-01T00:00:00.000000 | 2013-02-05T00:00:00.000000 |
| certa-2009-ale-014 | Multiples vulnérabilités du client de messagerie Mozilla Thunderbird | 2009-08-07T00:00:00.000000 | 2013-02-05T00:00:00.000000 |
| certa-2013-ale-001 | Vulnérabilités dans Oracle Java | 2013-01-10T00:00:00.000000 | 2013-01-15T00:00:00.000000 |
| certa-2012-ale-010 | Vulnérabilité dans Internet Explorer | 2012-12-31T00:00:00.000000 | 2013-01-15T00:00:00.000000 |
| certa-2012-ale-009 | Vulnérabilité dans les pilotes NVidia | 2012-12-26T00:00:00.000000 | 2013-01-07T00:00:00.000000 |
| certa-2012-ale-007 | Vulnérabilité dans MySQL | 2012-12-06T00:00:00.000000 | 2013-01-07T00:00:00.000000 |
| certa-2012-ale-008 | Vulnérabilité dans certains terminaux Samsung | 2012-12-18T00:00:00.000000 | 2012-12-18T00:00:00.000000 |
| certa-2012-ale-006 | Vulnérabilité dans Internet Explorer | 2012-09-18T00:00:00.000000 | 2012-09-21T00:00:00.000000 |
| certa-2012-ale-005 | Vulnérabilité dans Oracle Java | 2012-08-27T00:00:00.000000 | 2012-08-31T00:00:00.000000 |
| ID | Description | Published | Updated |
|---|---|---|---|
| osv-2025-593 | Heap-buffer-overflow in mmcall | 2025-08-02T00:16:19.626747Z | 2025-12-20T14:30:41.473113Z |
| osv-2025-538 | Heap-double-free in policydb_destroy | 2025-07-09T00:05:37.052433Z | 2025-12-20T14:25:14.356814Z |
| osv-2025-92 | Null-dereference READ in session_startup | 2025-02-05T00:18:00.385170Z | 2025-12-20T14:25:08.038174Z |
| osv-2022-881 | Heap-use-after-free in AcquireCodePageWithCapacity | 2022-09-11T00:00:52.269838Z | 2025-12-20T14:17:45.282070Z |
| osv-2022-784 | Segv on unknown address in FreeCodePages | 2022-08-26T00:01:54.152651Z | 2025-12-20T14:16:22.419962Z |
| osv-2025-90 | Null-dereference READ in ubsan_GetStackTrace | 2025-02-03T00:02:54.185593Z | 2025-12-20T14:15:37.974751Z |
| osv-2023-298 | UNKNOWN READ in active_edges | 2023-04-12T14:02:04.134251Z | 2025-12-19T14:30:39.005796Z |
| osv-2022-763 | Heap-buffer-overflow in sqlite3VdbeExec | 2022-08-21T00:00:23.656015Z | 2025-12-18T14:23:37.838687Z |
| osv-2025-989 | Bad-cast to UT_hash_bucket' (aka 'struct UT_hash_bucket')password_file__cleanup | 2025-12-17T00:01:12.806838Z | 2025-12-17T00:01:12.807184Z |
| osv-2025-983 | Dynamic-stack-buffer-overflow in _ox_err_set_with_location | 2025-12-14T00:14:21.963982Z | 2025-12-14T00:14:21.964726Z |
| osv-2024-112 | Stack-overflow in boost::read_graphviz_detail::parser::parse_subgraph | 2024-02-16T00:05:47.896843Z | 2025-12-11T14:18:11.511418Z |
| osv-2024-914 | UNKNOWN READ in boost::re_detail_500::basic_regex_formatter<std::__1::ostream_iterator<char, cha | 2024-08-16T00:08:20.277708Z | 2025-12-11T14:11:53.186916Z |
| osv-2023-107 | Heap-buffer-overflow in DecodeBasicOcspResponse | 2023-02-25T13:00:07.390537Z | 2025-12-06T14:29:49.534899Z |
| osv-2022-842 | Stack-buffer-overflow in wc_Shake256_Final | 2022-09-05T00:00:28.251072Z | 2025-12-06T14:25:22.084208Z |
| osv-2025-698 | Use-of-uninitialized-value in AesEncrypt_C | 2025-09-02T00:02:49.308939Z | 2025-12-05T14:58:11.846817Z |
| osv-2025-970 | Heap-buffer-overflow in check_sync_pes | 2025-12-05T00:18:22.703657Z | 2025-12-05T00:18:22.704029Z |
| osv-2025-965 | Stack-use-after-scope in Assimp::FBX::FBXExportProperty::FBXExportProperty | 2025-12-04T00:10:11.975493Z | 2025-12-04T00:10:11.975920Z |
| osv-2024-372 | Security exception in java.base/java.util.Arrays.copyOf | 2024-04-30T00:09:04.989259Z | 2025-12-01T14:21:29.544925Z |
| osv-2024-28 | Security exception in java.base/java.util.Arrays.copyOf | 2024-01-21T00:12:30.613951Z | 2025-12-01T14:21:19.263844Z |
| osv-2024-661 | Security exception in java.base/java.util.ArrayList.<init> | 2024-07-18T00:05:57.665844Z | 2025-12-01T14:21:01.321021Z |
| osv-2023-955 | Security exception in org.apache.poi.ddf.EscherPropertyFactory$$Lambda$285/ADDRESS.apply | 2023-10-03T13:03:23.482168Z | 2025-12-01T14:19:00.140619Z |
| osv-2024-269 | Security exception in java.base/java.util.stream.AbstractPipeline.evaluate | 2024-04-18T00:04:02.456948Z | 2025-11-29T14:27:29.156170Z |
| osv-2025-959 | Heap-buffer-overflow in re_parse_term | 2025-11-29T00:18:54.036831Z | 2025-11-29T00:18:54.037236Z |
| osv-2025-955 | Use-of-uninitialized-value in decoder_context::construct_reference_picture_lists | 2025-11-29T00:15:46.812919Z | 2025-11-29T00:15:46.813402Z |
| osv-2022-150 | Heap-buffer-overflow in coap_split_uri_sub | 2022-02-14T00:00:50.308933Z | 2025-11-27T14:04:04.584406Z |
| osv-2025-938 | Use-of-uninitialized-value in comp_func_SourceOver_avx2 | 2025-11-23T00:03:38.943405Z | 2025-11-23T00:03:38.943780Z |
| osv-2025-932 | Heap-use-after-free in password_file__cleanup | 2025-11-22T00:01:32.642847Z | 2025-11-22T00:01:32.643269Z |
| osv-2025-926 | Security exception in com.puppycrawl.tools.checkstyle.grammar.java.JavaLanguageParser.statement | 2025-11-21T00:05:31.621567Z | 2025-11-21T00:05:31.621958Z |
| osv-2022-937 | Use-after-poison in rx_ip | 2022-09-23T00:02:21.434097Z | 2025-11-20T10:20:02.746746Z |
| osv-2025-906 | Use-of-uninitialized-value in QImage::pixel | 2025-11-18T00:08:20.557059Z | 2025-11-18T00:08:20.557392Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| rustsec-2025-0075 | `unic-char-range` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-22T14:41:04Z |
| rustsec-2025-0104 | `unic-ucd-segment` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0103 | `unic-ucd-core` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0102 | `unic-ucd-age` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0101 | `unic-ucd-common` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0100 | `unic-ucd-ident` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0099 | `unic-ucd-block` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0098 | `unic-ucd-version` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0097 | `unic-idna-mapping` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0096 | `unic-bidi` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0095 | `unic` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0094 | `unic-ucd-category` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0093 | `unic-char-basics` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0092 | `unic-ucd-case` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0091 | `unic-utils` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0090 | `unic-emoji-char` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0089 | `unic-ucd-name_aliases` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0088 | `unic-idna-punycode` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0087 | `unic-cli` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0086 | `unic-char` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0085 | `unic-idna` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0084 | `unic-emoji` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0083 | `unic-ucd-bidi` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0082 | `unic-normal` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0081 | `unic-char-property` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0080 | `unic-common` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0079 | `unic-ucd-hangul` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0078 | `unic-ucd-normal` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0077 | `unic-ucd` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| rustsec-2025-0076 | `unic-ucd-name` is unmaintained | 2025-10-18T12:00:00Z | 2025-10-21T11:12:59Z |
| ID | Description | Published | Updated |
|---|---|---|---|
| alsa-2026:0128 | Moderate: poppler security update | 2026-01-06T00:00:00Z | 2026-01-07T14:29:22Z |
| alsa-2026:0130 | Moderate: poppler security update | 2026-01-06T00:00:00Z | 2026-01-07T14:26:34Z |
| alsa-2026:0137 | Important: mariadb security update | 2026-01-06T00:00:00Z | 2026-01-07T14:24:03Z |
| alsa-2026:0126 | Moderate: poppler security update | 2026-01-06T00:00:00Z | 2026-01-07T14:21:37Z |
| alsa-2026:0123 | Moderate: python3.12 security update | 2026-01-06T00:00:00Z | 2026-01-07T14:18:43Z |
| alsa-2026:0108 | Moderate: gcc-toolset-15-binutils security update | 2026-01-06T00:00:00Z | 2026-01-07T14:17:02Z |
| alsa-2025:14999 | Moderate: resource-agents security update | 2025-09-02T00:00:00Z | 2026-01-05T21:07:54Z |
| alsa-2025:19434 | Moderate: xorg-x11-server security update | 2025-11-03T00:00:00Z | 2026-01-05T21:05:53Z |
| alsa-2025:23062 | Moderate: ruby:3.3 security update | 2025-12-10T00:00:00Z | 2026-01-05T20:45:40Z |
| alsa-2025:23063 | Moderate: ruby:3.3 security update | 2025-12-10T00:00:00Z | 2026-01-05T20:38:49Z |
| alsa-2025:23141 | Moderate: ruby security update | 2025-12-11T00:00:00Z | 2026-01-05T20:34:29Z |
| alsa-2025:23241 | Important: kernel security update | 2025-12-16T00:00:00Z | 2026-01-05T20:29:24Z |
| alsa-2025:23279 | Important: kernel security update | 2025-12-16T00:00:00Z | 2026-01-05T20:25:38Z |
| alsa-2025:23919 | Important: httpd security update | 2025-12-22T00:00:00Z | 2026-01-05T20:20:59Z |
| alsa-2026:0052 | Moderate: gcc-toolset-14-binutils security update | 2026-01-05T00:00:00Z | 2026-01-05T20:18:34Z |
| alsa-2026:0026 | Important: thunderbird security update | 2026-01-05T00:00:00Z | 2026-01-05T10:18:14Z |
| alsa-2026:0025 | Important: thunderbird security update | 2026-01-05T00:00:00Z | 2026-01-05T10:10:00Z |
| alsa-2026:0002 | Moderate: tar security update | 2026-01-05T00:00:00Z | 2026-01-05T09:20:37Z |
| alsa-2025:23543 | Important: container-tools:rhel8 security update | 2025-12-17T00:00:00Z | 2025-12-24T09:25:49Z |
| alsa-2025:23856 | Important: thunderbird security update | 2025-12-22T00:00:00Z | 2025-12-23T16:45:01Z |
| alsa-2025:23948 | Moderate: grafana security update | 2025-12-22T00:00:00Z | 2025-12-23T13:42:03Z |
| alsa-2025:23664 | Important: opentelemetry-collector security update | 2025-12-18T00:00:00Z | 2025-12-23T13:09:37Z |
| alsa-2025:23729 | Important: opentelemetry-collector security update | 2025-12-21T00:00:00Z | 2025-12-23T13:07:45Z |
| alsa-2025:23932 | Important: httpd security update | 2025-12-22T00:00:00Z | 2025-12-23T06:01:50Z |
| alsa-2025:23940 | Moderate: python3.12 security update | 2025-12-22T00:00:00Z | 2025-12-23T05:59:49Z |
| alsa-2025:23382 | Moderate: binutils security update | 2025-12-16T00:00:00Z | 2025-12-22T14:14:14Z |
| alsa-2025:23383 | Moderate: curl security update | 2025-12-16T00:00:00Z | 2025-12-22T14:12:06Z |
| alsa-2025:23530 | Important: python39:3.9 security update | 2025-12-17T00:00:00Z | 2025-12-22T14:10:23Z |
| alsa-2025:23663 | Important: webkit2gtk3 security update | 2025-12-18T00:00:00Z | 2025-12-22T14:04:48Z |
| alsa-2025:23732 | Important: httpd:2.4 security update | 2025-12-22T00:00:00Z | 2025-12-22T14:02:23Z |