Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-82871 | 8.2 (v4.0) 7.7 (v3.1) | ToolJet before v3.16.208 Cross-Organization Data Read … |
ToolJet |
ToolJet |
2026-08-31T08:46:40.261Z | 2026-08-31T08:46:40.261Z |
| cve-2026-82866 | 8.9 (v4.0) 6.8 (v3.1) | @pdfme/common before 5.5.10 SSRF via Unvalidated URL Fetch |
pdfme |
common |
2026-08-31T08:46:36.781Z | 2026-08-31T08:46:36.781Z |
| cve-2026-82861 | 8.7 (v4.0) 7.5 (v3.1) | @hulumi/policies before 1.3.2 SecureBucket Parent Spoo… |
hulumi |
policies |
2026-08-31T08:46:33.202Z | 2026-08-31T08:46:33.202Z |
| cve-2026-82856 | 9.3 (v4.0) 9.8 (v3.1) | @hulumi/policies before 1.3.2 OIDC Trust Policy Bypass |
hulumi |
policies |
2026-08-31T08:46:29.785Z | 2026-08-31T08:46:29.785Z |
| cve-2026-82661 | 5.3 (v4.0) 5.4 (v3.1) | Nodemailer CRLF Injection via List-* Header Comments |
nodemailer |
nodemailer |
2026-08-31T08:46:26.291Z | 2026-08-31T08:46:26.291Z |
| cve-2026-14330 | 5.5 (v3.1) | Pipewire: pulse server alloca stack overflow |
Red Hat |
Red Hat Enterprise Linux 9 |
2026-07-01T14:09:25.189Z | 2026-08-31T08:07:36.938Z |
| cve-2026-14324 | 6.5 (v3.1) | Pipewire: raop rtsp null deref |
Red Hat |
Red Hat Enterprise Linux 10 |
2026-07-01T14:09:20.582Z | 2026-08-31T08:07:31.118Z |
| cve-2026-41226 | 4.7 (v3.0) 5.1 (v4.0) | Open redirect vulnerability exists in Multiple la… |
Ricoh Company, Ltd. |
Multiple laser printers and MFPs which implement Web Image Monitor |
2026-04-30T06:08:41.213Z | 2026-08-31T07:07:31.342Z |
| cve-2026-56809 | 6.1 (v3.0) 5.1 (v4.0) | Multiple laser printers and MFPs (multifunction p… |
Ricoh Company, Ltd. |
Multiple laser printers and MFPs which implement Ricoh Web Image Monitor |
2026-06-30T06:02:36.439Z | 2026-08-31T06:55:56.116Z |
| cve-2026-80158 | 5.5 (v3.1) | Ansible-collection-community-general: community.genera… |
Red Hat |
Red Hat Ceph Storage 5 |
2026-08-26T22:06:07.301Z | 2026-08-31T06:55:08.052Z |
| cve-2026-80724 | ptp: vmclock: prevent read-only mappings from becoming… |
Linux |
Linux |
2026-08-28T07:03:08.410Z | 2026-08-31T06:12:23.089Z | |
| cve-2026-80590 | inet: frags: strip GSO state from fragments before rea… |
Linux |
Linux |
2026-08-28T06:35:12.516Z | 2026-08-31T06:12:21.989Z | |
| cve-2026-67271 | 9.8 (v3.1) | Dell PowerStore SDNAS, contains an Out-of-bounds … |
Dell |
PowerStore 500T |
2026-08-18T16:44:13.150Z | 2026-08-31T06:05:51.740Z |
| cve-2026-70415 | 8.1 (v3.1) | Dell PowerStore SDNAS contains a Buffer Copy with… |
Dell |
PowerStore 500T |
2026-08-18T16:54:57.477Z | 2026-08-31T06:04:14.301Z |
| cve-2026-82082 | 9.3 (v4.0) 9.8 (v3.1) | Green-Computing|NUMail - OS Command Injection |
Green-Computing |
NUMail |
2026-08-28T03:12:09.813Z | 2026-08-31T03:51:41.595Z |
| cve-2026-16445 | 7.5 (v3.1) | Dracut: dracut: root code execution via dhcp options c… |
Red Hat |
Red Hat Enterprise Linux 8 |
2026-07-21T12:51:08.650Z | 2026-08-31T03:33:45.524Z |
| cve-2025-5222 | 7 (v3.1) | Icu: stack buffer overflow in the srbroot::addtag function |
|
|
2025-05-27T20:51:50.958Z | 2026-08-31T02:07:59.312Z |
| cve-2026-76131 | 5.3 (v3.1) 6.9 (v4.0) | Use of hard-coded credentials issue exists in VOC… |
Yamaha Corporation |
VOCALOID6 |
2026-08-21T02:02:44.579Z | 2026-08-31T00:33:50.858Z |
| cve-2025-10939 | 3.7 (v3.1) | Org.keycloak/keycloak-quarkus-server: unable to restri… |
Keycloak |
keycloak |
2025-10-28T03:08:30.103Z | 2026-08-31T00:28:27.541Z |
| cve-2025-8419 | 5.3 (v3.1) | Org.keycloak/keycloak-services: keycloak smtp inject v… |
Keycloak |
keycloak |
2025-08-06T17:10:02.560Z | 2026-08-31T00:28:11.470Z |
| cve-2025-7365 | 7.1 (v3.1) | Keycloak: phishing attack via email verification step … |
|
|
2025-07-10T14:20:45.775Z | 2026-08-31T00:28:06.544Z |
| cve-2025-0604 | 5.4 (v3.1) | Keycloak-ldap-federation: authentication bypass due to… |
|
|
2025-01-22T14:34:45.923Z | 2026-08-31T00:28:03.468Z |
| cve-2024-11736 | 4.9 (v3.1) | Org.keycloak:keycloak-quarkus-server: unrestricted adm… |
|
|
2025-01-14T08:36:08.583Z | 2026-08-31T00:27:57.051Z |
| cve-2024-11734 | 6.5 (v3.1) | Org.keycloak:keycloak-quarkus-server: denial of servic… |
|
|
2025-01-14T08:35:42.107Z | 2026-08-31T00:27:52.546Z |
| cve-2024-10451 | 5.9 (v3.1) | Org.keycloak:keycloak-quarkus-server: sensitive data e… |
Red Hat |
Red Hat build of Keycloak 24 |
2024-11-25T07:37:05.161Z | 2026-08-31T00:27:50.571Z |
| cve-2024-10270 | 6.5 (v3.1) | Org.keycloak:keycloak-services: keycloak denial of service |
|
|
2024-11-25T07:37:04.542Z | 2026-08-31T00:27:42.766Z |
| cve-2024-9666 | 4.7 (v3.1) | Org.keycloak/keycloak-quarkus-server: keycloak proxy h… |
|
|
2024-11-25T07:29:52.073Z | 2026-08-31T00:27:33.780Z |
| cve-2025-11537 | 5 (v3.1) | Keycloak-server: sensitive headers shown in the http a… |
Red Hat |
Red Hat Build of Keycloak |
2026-02-10T10:53:28.147Z | 2026-08-31T00:23:13.307Z |
| cve-2026-64194 | N/A | Net::DNS versions through 1.55 for Perl allow Denial o… |
NLNETLABS |
Net::DNS |
2026-07-20T17:55:05.169Z | 2026-08-30T20:06:49.756Z |
| cve-2026-64844 | N/A | {'providerMetadata': {'orgId': '83251b91-4cc7-4094-a5c7-464a1b83ea10', 'shortName': 'VulnCheck', 'dateUpdated': '2026-08-30T19:16:59.716Z'}, 'rejectedReasons': [{'lang': 'en', 'value': 'This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.'}]} | N/A | N/A | 2026-08-30T19:16:59.716Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2007-000598 | Apache Tomcat Host Manager cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000572 | WebCart cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000560 | Safari URL spoofing vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000559 | Yayoi Kaikei improper handling of credential information | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000551 | Aruba Mobility Controller Series cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000548 | Nessus report function vulnerable to arbitrary script execution | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000507 | Flash Player allows to send arbitrary Referer headers | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000494 | KDDI sample CGI download program directory traversal vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000491 | Lhaca LHZ Archive Extended Header Size Processing Buffer Overflow Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000487 | sHTTPd cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000486 | rktSNS cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000476 | Hiki arbitrary file deletion vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000471 | RaidenHTTPD cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000454 | dotProject cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000447 | Internet Explorer vulnerable in handling MHTML protocol | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000446 | Internet Explorer vulnerable in MHTML handling | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000434 | ADPLAN cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000429 | Meneame cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000420 | HP System Management Homepage cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000400 | Advance-Flow cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000395 | Homepage Builder sample CGI programs vulnerable to OS command injection | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000322 | Lunascape RSS reader arbitrary script execution vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000301 | Canon Network Camera Server VB100 Series vulnerable to cross-site scripting | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000290 | InfoBarrier4 self-decrypted file vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000260 | Shihonkanri Plus Ver2 GOOUT directory traversal vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000259 | open-gorotto cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000236 | Overlay Weaver cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000229 | MailDwarf vulnerability allows unauthorized sending of emails | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000228 | MailDwarf cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2007-000227 | CruiseWorks and Minna De Office vulnerable in access restrictions | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2024-avi-0274 | Multiples vulnérabilités dans Apache HTTP Server | 2024-04-05T00:00:00.000000 | 2024-04-05T00:00:00.000000 |
| certfr-2024-avi-0273 | Multiples vulnérabilités dans Microsoft Edge | 2024-04-05T00:00:00.000000 | 2024-04-05T00:00:00.000000 |
| certfr-2024-avi-0272 | Multiples vulnérabilités dans Google Android et Pixel | 2024-04-04T00:00:00.000000 | 2024-04-04T00:00:00.000000 |
| certfr-2024-avi-0271 | Multiples vulnérabilités dans les produits Ivanti | 2024-04-04T00:00:00.000000 | 2024-04-04T00:00:00.000000 |
| certfr-2024-avi-0270 | Vulnérabilité dans Cisco Nexus Dashboard Fabric Controller | 2024-04-04T00:00:00.000000 | 2024-04-04T00:00:00.000000 |
| certfr-2024-avi-0269 | Multiples vulnérabilités dans Mozilla Firefox | 2024-04-04T00:00:00.000000 | 2024-04-04T00:00:00.000000 |
| certfr-2024-avi-0268 | Multiples vulnérabilités dans VMware SD-WAN | 2024-04-03T00:00:00.000000 | 2024-04-03T00:00:00.000000 |
| certfr-2024-avi-0267 | Vulnérabilité dans les produits Palo Alto Networks | 2024-04-02T00:00:00.000000 | 2024-04-02T00:00:00.000000 |
| certfr-2024-avi-0266 | Multiples vulnérabilités dans Synology Surveillance Station | 2024-04-02T00:00:00.000000 | 2024-04-02T00:00:00.000000 |
| certfr-2024-avi-0265 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2024-03-29T00:00:00.000000 | 2024-03-29T00:00:00.000000 |
| certfr-2024-avi-0264 | Multiples vulnérabilités dans le noyau Linux de RedHat | 2024-03-29T00:00:00.000000 | 2024-03-29T00:00:00.000000 |
| certfr-2024-avi-0263 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2024-03-29T00:00:00.000000 | 2024-03-29T00:00:00.000000 |
| certfr-2024-avi-0262 | Multiples vulnérabilités dans les produits IBM | 2024-03-29T00:00:00.000000 | 2024-03-29T00:00:00.000000 |
| certfr-2024-avi-0257 | Multiples vulnérabilités dans Elasticsearch | 2024-03-28T00:00:00.000000 | 2024-03-29T00:00:00.000000 |
| certfr-2024-avi-0261 | Multiples vulnérabilités dans Microsoft Edge | 2024-03-28T00:00:00.000000 | 2024-03-28T00:00:00.000000 |
| certfr-2024-avi-0260 | Multiples vulnérabilités dans les produits Cisco | 2024-03-28T00:00:00.000000 | 2024-03-28T00:00:00.000000 |
| certfr-2024-avi-0259 | Multiples vulnérabilités dans GitLab | 2024-03-28T00:00:00.000000 | 2024-03-28T00:00:00.000000 |
| certfr-2024-avi-0258 | Multiples vulnérabilités dans les produits Splunk | 2024-03-28T00:00:00.000000 | 2024-03-28T00:00:00.000000 |
| certfr-2024-avi-0256 | Vulnérabilité dans Wireshark | 2024-03-28T00:00:00.000000 | 2024-03-28T00:00:00.000000 |
| certfr-2024-avi-0255 | Vulnérabilité dans GLPI | 2024-03-28T00:00:00.000000 | 2024-03-28T00:00:00.000000 |
| certfr-2024-avi-0254 | Multiples vulnérabilités dans Google Chrome | 2024-03-27T00:00:00.000000 | 2024-03-27T00:00:00.000000 |
| certfr-2024-avi-0253 | Vulnérabilité dans Aruba ArubaOS-Switch | 2024-03-27T00:00:00.000000 | 2024-03-27T00:00:00.000000 |
| certfr-2024-avi-0252 | Multiples vulnérabilités dans Nagios XI | 2024-03-27T00:00:00.000000 | 2024-03-27T00:00:00.000000 |
| certfr-2024-avi-0251 | Multiples vulnérabilités dans Kaspersky Anti Targeted Attack | 2024-03-26T00:00:00.000000 | 2024-03-26T00:00:00.000000 |
| certfr-2024-avi-0250 | Vulnérabilité dans les produits Apple | 2024-03-26T00:00:00.000000 | 2024-03-26T00:00:00.000000 |
| certfr-2024-avi-0249 | Multiples vulnérabilités dans Tenable Security Center | 2024-03-26T00:00:00.000000 | 2024-03-26T00:00:00.000000 |
| certfr-2024-avi-0248 | Vulnérabilité dans Microsoft .Net | 2024-03-25T00:00:00.000000 | 2024-03-25T00:00:00.000000 |
| certfr-2024-avi-0247 | Multiples vulnérabilités dans Microsoft Edge | 2024-03-25T00:00:00.000000 | 2024-03-25T00:00:00.000000 |
| certfr-2024-avi-0246 | Multiples vulnérabilités dans Mozilla Firefox | 2024-03-25T00:00:00.000000 | 2024-03-25T00:00:00.000000 |
| certfr-2024-avi-0245 | Multiples vulnérabilités dans MISP | 2024-03-25T00:00:00.000000 | 2024-03-25T00:00:00.000000 |