Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-77144 | 7.1 (v4.0) | Broken Access Control in extension "Events 2" (events2) |
TYPO3 |
Extension "Events 2" |
2026-08-25T09:00:33.297Z | 2026-08-27T17:39:46.343Z |
| cve-2026-77145 | 7.1 (v4.0) | Broken Access Control in extension "Events 2" (events2) |
TYPO3 |
Extension "Events 2" |
2026-08-25T09:00:32.558Z | 2026-08-27T17:41:43.730Z |
| cve-2026-77146 | 8.3 (v4.0) | Broken Access Control in extension "femanager" (femanager) |
TYPO3 |
Extension "femanager" |
2026-08-25T09:00:31.815Z | 2026-08-25T14:51:55.066Z |
| cve-2026-63587 | 8.8 (v4.0) 8.6 (v3.1) | SMS Password Authorization Bypass via Failed Attempt Counter |
Weidmueller Interface |
IE-SR-2TX-WL-4G-EU |
2026-08-25T08:55:12.442Z | 2026-08-27T15:04:29.396Z |
| cve-2026-63586 | 9.3 (v4.0) 9.8 (v3.1) | Unauthenticated Remote Code Execution via Shell Inject… |
Weidmueller Interface |
IE-SR-2TX-WL |
2026-08-25T08:54:55.934Z | 2026-08-25T14:39:22.570Z |
| cve-2026-17548 | Missing authorization for viewing background jobs |
Checkmk GmbH |
Checkmk |
2026-08-25T08:35:17.301Z | 2026-08-25T19:48:40.302Z | |
| cve-2026-78566 | N/A | {'rejectedReasons': [{'lang': 'en', 'value': '** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.'}], 'providerMetadata': {'orgId': 'b15e7b5b-3da4-40ae-a43c-f7aa60e62599', 'shortName': 'Wordfence', 'dateUpdated': '2026-09-01T13:21:26.656Z'}} | N/A | N/A | 2026-08-25T08:28:27.091Z | 2026-09-01T13:21:26.656Z |
| cve-2026-78562 | N/A | {'rejectedReasons': [{'lang': 'en', 'value': '** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.'}], 'providerMetadata': {'orgId': 'b15e7b5b-3da4-40ae-a43c-f7aa60e62599', 'shortName': 'Wordfence', 'dateUpdated': '2026-09-01T13:19:14.120Z'}} | N/A | N/A | 2026-08-25T08:28:26.764Z | 2026-09-01T13:19:14.120Z |
| cve-2026-78568 | N/A | {'rejectedReasons': [{'lang': 'en', 'value': '** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.'}], 'providerMetadata': {'orgId': 'b15e7b5b-3da4-40ae-a43c-f7aa60e62599', 'shortName': 'Wordfence', 'dateUpdated': '2026-09-01T13:22:04.699Z'}} | N/A | N/A | 2026-08-25T08:28:26.449Z | 2026-09-01T13:22:04.699Z |
| cve-2026-78563 | N/A | {'rejectedReasons': [{'lang': 'en', 'value': '** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.'}], 'providerMetadata': {'orgId': 'b15e7b5b-3da4-40ae-a43c-f7aa60e62599', 'shortName': 'Wordfence', 'dateUpdated': '2026-09-01T13:20:32.146Z'}} | N/A | N/A | 2026-08-25T08:28:25.993Z | 2026-09-01T13:20:32.146Z |
| cve-2026-65633 | 7.6 (v4.0) | Purpose-limited JWT accepted as full bearer authentica… |
team-alembic |
ash_authentication |
2026-08-25T08:03:51.846Z | 2026-08-25T19:49:22.437Z |
| cve-2026-66882 | 2.1 (v4.0) | Reflected XSS in AshAuthentication confirmation and ma… |
team-alembic |
ash_authentication |
2026-08-25T08:03:47.721Z | 2026-08-25T19:51:21.332Z |
| cve-2026-19851 | 7.7 (v3.1) | Use of Default Password vulnerability affecting Tuleap… |
Dassault Systèmes |
Tuleap Enterprise Edition |
2026-08-25T07:47:18.067Z | 2026-08-25T14:51:55.235Z |
| cve-2026-59769 | 9.1 (v3.1) 8.8 (v4.0) | FA-50 all versions contain hard-coded credentials… |
FURUNO ELECTRIC CO., LTD. |
FA-50 |
2026-08-25T07:43:10.005Z | 2026-08-25T14:51:55.400Z |
| cve-2026-67578 | 7.5 (v3.1) 8.7 (v4.0) | FA-50 all versions miss authentication for some c… |
FURUNO ELECTRIC CO., LTD. |
FA-50 |
2026-08-25T07:42:26.438Z | 2026-08-25T14:51:55.561Z |
| cve-2026-18512 | TranslatePress <= 3.2.6 - Authenticated (Subscriber+) … |
cozmoslabs |
TranslatePress – Translate Multilingual sites with AI Translation |
2026-08-25T07:39:51.116Z | 2026-08-25T11:34:36.708Z | |
| cve-2026-18328 | Forminator Forms <= 1.57.0 - Unauthenticated DOM-Based… |
wpmudev |
Forminator Forms – Contact Form, Payment Form & Custom Form Builder |
2026-08-25T07:39:50.754Z | 2026-08-25T19:22:02.061Z | |
| cve-2026-18100 | MetForm <= 4.1.8 - Authenticated (Contributor+) Stored… |
roxnor |
MetForm – Contact Form, Survey, Quiz, Conditional Forms, Form Templates & Custom Form Builder for Elementor |
2026-08-25T07:39:50.408Z | 2026-08-25T18:12:52.098Z | |
| cve-2026-18323 | Forminator Forms <= 1.57.0.2 - Unauthenticated Stored … |
wpmudev |
Forminator Forms – Contact Form, Payment Form & Custom Form Builder |
2026-08-25T07:39:50.038Z | 2026-08-25T14:51:54.599Z | |
| cve-2026-16601 | CM Map Locations <= 2.1.8 - Authenticated (Subscriber+… |
creativemindssolutions |
CM Map Locations – Visualize and share your locations in a few clicks |
2026-08-25T07:39:49.527Z | 2026-08-27T15:01:02.198Z | |
| cve-2026-78701 | 6.5 (v3.1) | 389-ds-base: 389-ds-base: cve-2026-11610 incomplete fi… |
Red Hat |
Red Hat Directory Server 11 |
2026-08-25T07:33:02.549Z | 2026-08-25T11:38:49.372Z |
| cve-2026-78322 | 6.5 (v3.1) | File-roller: file-roller: stack buffer overflow in par… |
Red Hat |
Red Hat Enterprise Linux 6 |
2026-08-25T07:21:38.573Z | 2026-08-27T14:59:54.395Z |
| cve-2026-68959 | 8.5 (v3.0) 5.8 (v4.0) | SKYSEA Client View and SKYMEC IT Manager contain … |
Sky Co., LTD. |
SKYSEA Client View |
2026-08-25T06:27:59.698Z | 2026-08-25T19:52:07.568Z |
| cve-2026-68062 | 8.5 (v3.0) 5.8 (v4.0) | SKYSEA Client View and SKYMEC IT Manager contain … |
Sky Co., LTD. |
SKYSEA Client View |
2026-08-25T06:27:54.700Z | 2026-08-25T15:07:18.811Z |
| cve-2026-66109 | 7.8 (v3.0) 8.5 (v4.0) | A missing authorization vulnerability exists in S… |
Sky Co., LTD. |
SKYSEA Client View |
2026-08-25T06:27:50.328Z | 2026-08-25T19:02:20.730Z |
| cve-2026-68960 | 8.5 (v3.0) 5.8 (v4.0) | A stack-based buffer overflow vulnerability exist… |
Sky Co., LTD. |
SKYSEA Client View |
2026-08-25T06:27:20.798Z | 2026-08-25T15:07:50.519Z |
| cve-2026-69665 | 7.8 (v3.0) 8.5 (v4.0) | SKYSEA Client View and SKYMEC IT Manager contain … |
Sky Co., LTD. |
SKYSEA Client View |
2026-08-25T06:27:10.352Z | 2026-08-25T15:08:24.081Z |
| cve-2026-78656 | itsourcecode Sales and Inventory System cust_del.php s… |
itsourcecode |
Sales and Inventory System |
2026-08-25T06:15:09.674Z | 2026-08-25T11:55:24.465Z | |
| cve-2026-78654 | cleverbrush framework/deep deepExtend.ts deepExtend pr… |
cleverbrush |
framework |
2026-08-25T06:00:13.406Z | 2026-08-25T13:17:33.100Z | |
| cve-2026-78477 | N/A | {'rejectedReasons': [{'lang': 'en', 'value': '** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.'}], 'providerMetadata': {'orgId': 'b15e7b5b-3da4-40ae-a43c-f7aa60e62599', 'shortName': 'Wordfence', 'dateUpdated': '2026-09-01T13:19:48.296Z'}} | N/A | N/A | 2026-08-25T05:31:29.287Z | 2026-09-01T13:19:48.296Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2006-000849 | SugarCRM cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000816 | Shobo Shobo Nikki System (sns) cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000812 | Hanako buffer overflow vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000809 | TikiWiki cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000808 | Denial of service vulnerability in Ruby CGI library (cgi.rb) | 2008-05-21T00:00+09:00 | 2008-11-14T12:20+09:00 |
| jvndb-2006-000803 | Chama Cargo cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000802 | Blogn cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000792 | tDiary cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000791 | phpComasy cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000784 | eyeOS cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000781 | EC-CUBE cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000777 | Nucleus cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000771 | Kahua vulnerable in allowing to share login sessions | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000760 | Hyper NIKKI System cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000758 | MyODBC Japanese Conversion Edition denial of service vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000753 | Ruby cgi.rb Denial of Service Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000742 | desknet's buffer overflow vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000737 | NEC MultiWriter 1700C/7500C FTP server vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000736 | NEC MultiWriter 1700C web server authentication bypass vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000734 | Ichitaro buffer overflow vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000695 | Kmail CGI authentication bypass vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000665 | TeraStation HD-HTGL series cross-site request forgery vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000654 | SugarCRM cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000653 | Movable Type vulnerabile to cross-site scripting | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000652 | MDPro cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000651 | Cybozu products vulnerable to directory traversal | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000650 | Cybozu products vulnerable to directory traversal | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000649 | Cybozu Office 6 information disclosure vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000648 | mail f/w system vulnerable to allow unauthorized email transmissionk | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2006-000647 | Owl cross-site scripting vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2024-avi-0209 | Multiples vulnérabilités dans les produits SAP | 2024-03-13T00:00:00.000000 | 2024-03-13T00:00:00.000000 |
| certfr-2024-avi-0208 | Multiples vulnérabilités dans les produits Microsoft | 2024-03-13T00:00:00.000000 | 2024-03-13T00:00:00.000000 |
| certfr-2024-avi-0207 | Multiples vulnérabilités dans Microsoft Azure | 2024-03-13T00:00:00.000000 | 2024-03-13T00:00:00.000000 |
| certfr-2024-avi-0206 | Multiples vulnérabilités dans Microsoft .Net | 2024-03-13T00:00:00.000000 | 2024-03-13T00:00:00.000000 |
| certfr-2024-avi-0205 | Multiples vulnérabilités dans Microsoft Windows | 2024-03-13T00:00:00.000000 | 2024-03-13T00:00:00.000000 |
| certfr-2024-avi-0204 | Multiples vulnérabilités dans Microsoft Office | 2024-03-13T00:00:00.000000 | 2024-03-13T00:00:00.000000 |
| certfr-2024-avi-0203 | Multiples vulnérabilités dans les produits Siemens | 2024-03-12T00:00:00.000000 | 2024-03-12T00:00:00.000000 |
| certfr-2024-avi-0202 | Multiples vulnérabilités dans les produits Schneider | 2024-03-12T00:00:00.000000 | 2024-03-12T00:00:00.000000 |
| certfr-2024-avi-0201 | Multiples vulnérabilités dans les produits Qnap | 2024-03-11T00:00:00.000000 | 2024-03-11T00:00:00.000000 |
| certfr-2024-avi-0200 | Vulnérabilité dans les produits MongoDB | 2024-03-11T00:00:00.000000 | 2024-03-11T00:00:00.000000 |
| certfr-2024-avi-0199 | Multiples vulnérabilités dans IBM | 2024-03-08T00:00:00.000000 | 2024-03-08T00:00:00.000000 |
| certfr-2024-avi-0198 | Multiples vulnérabilités dans le noyau Linux de RedHat | 2024-03-08T00:00:00.000000 | 2024-03-08T00:00:00.000000 |
| certfr-2024-avi-0197 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2024-03-08T00:00:00.000000 | 2024-03-08T00:00:00.000000 |
| certfr-2024-avi-0196 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2024-03-08T00:00:00.000000 | 2024-03-08T00:00:00.000000 |
| certfr-2024-avi-0195 | Multiples vulnérabilités dans Microsoft Edge | 2024-03-08T00:00:00.000000 | 2024-03-08T00:00:00.000000 |
| certfr-2024-avi-0194 | Multiples vulnérabilités dans les produits Apple | 2024-03-08T00:00:00.000000 | 2024-03-08T00:00:00.000000 |
| certfr-2024-avi-0193 | Vulnérabilité dans Grafana | 2024-03-08T00:00:00.000000 | 2024-03-08T00:00:00.000000 |
| certfr-2024-avi-0192 | Vulnérabilité dans VMware Cloud Director | 2024-03-07T00:00:00.000000 | 2024-03-07T00:00:00.000000 |
| certfr-2024-avi-0191 | Multiples vulnérabilités dans GitLab | 2024-03-07T00:00:00.000000 | 2024-03-07T00:00:00.000000 |
| certfr-2024-avi-0190 | Multiples vulnérabilités dans les produits Cisco | 2024-03-07T00:00:00.000000 | 2024-03-07T00:00:00.000000 |
| certfr-2024-avi-0189 | Vulnérabilité dans Moxa NPort W2150A/W2250A Series | 2024-03-06T00:00:00.000000 | 2024-03-06T00:00:00.000000 |
| certfr-2024-avi-0188 | Multiples vulnérabilités dans les produits HPE Aruba Networking | 2024-03-06T00:00:00.000000 | 2024-03-06T00:00:00.000000 |
| certfr-2024-avi-0187 | Multiples vulnérabilités dans Google Chrome | 2024-03-06T00:00:00.000000 | 2024-03-06T00:00:00.000000 |
| certfr-2024-avi-0186 | Multiples vulnérabilités dans les produits VMware | 2024-03-06T00:00:00.000000 | 2024-03-06T00:00:00.000000 |
| certfr-2024-avi-0185 | Multiples vulnérabilités dans les produits Apple | 2024-03-06T00:00:00.000000 | 2024-03-06T00:00:00.000000 |
| certfr-2024-avi-0184 | Vulnérabilité dans SolarWinds Security Event Manager | 2024-03-05T00:00:00.000000 | 2024-03-05T00:00:00.000000 |
| certfr-2024-avi-0183 | Vulnérabilité dans Mozilla Thunderbird | 2024-03-05T00:00:00.000000 | 2024-03-05T00:00:00.000000 |
| certfr-2024-avi-0182 | Vulnérabilité dans les produits Squid | 2024-03-05T00:00:00.000000 | 2024-03-05T00:00:00.000000 |
| certfr-2024-avi-0181 | Multiples vulnérabilités dans Google Android | 2024-03-05T00:00:00.000000 | 2024-03-05T00:00:00.000000 |
| certfr-2024-avi-0180 | Multiples vulnérabilités dans les produits IBM | 2024-03-01T00:00:00.000000 | 2024-03-01T00:00:00.000000 |