Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-6125 | Dromara warm-flow Workflow Definition save-json SpelHe… |
Dromara |
warm-flow |
2026-04-12T09:30:22.132Z | 2026-04-13T17:47:46.421Z | |
| cve-2026-6124 | Tenda F451 httpd SafeMacFilter fromSafeMacFilter stack… |
Tenda |
F451 |
2026-04-12T09:00:18.190Z | 2026-04-14T16:33:20.025Z | |
| cve-2026-6123 | Tenda F451 httpd addressNat fromAddressNat stack-based… |
Tenda |
F451 |
2026-04-12T08:15:11.890Z | 2026-04-13T20:51:33.016Z | |
| cve-2026-6122 | Tenda F451 httpd L7Prot frmL7ProtForm stack-based overflow |
Tenda |
F451 |
2026-04-12T07:30:14.700Z | 2026-04-14T19:37:43.798Z | |
| cve-2026-6121 | Tenda F451 httpd WrlclientSet stack-based overflow |
Tenda |
F451 |
2026-04-12T07:15:13.799Z | 2026-04-13T12:13:51.214Z | |
| cve-2026-6120 | Tenda F451 httpd DhcpListClient fromDhcpListClient sta… |
Tenda |
F451 |
2026-04-12T06:00:20.674Z | 2026-04-13T17:51:13.291Z | |
| cve-2026-31413 | bpf: Fix unsound scalar forking in maybe_fork_scalars(… |
Linux |
Linux |
2026-04-12T05:36:14.632Z | 2026-04-27T14:02:58.059Z | |
| cve-2026-6119 | AstrBotDevs AstrBot API Endpoint post_data.get server-… |
AstrBotDevs |
AstrBot |
2026-04-12T05:00:20.093Z | 2026-04-14T16:33:26.198Z | |
| cve-2026-6118 | AstrBotDevs AstrBot MCP Endpoint tools.py add_mcp_serv… |
AstrBotDevs |
AstrBot |
2026-04-12T04:45:09.857Z | 2026-04-14T13:56:56.956Z | |
| cve-2026-6117 | AstrBotDevs AstrBot install-upload Endpoint plugin.py … |
AstrBotDevs |
AstrBot |
2026-04-12T04:30:12.395Z | 2026-04-15T15:18:45.908Z | |
| cve-2026-6116 | Totolink A7100RU CGI cstecgi.cgi setDiagnosisCfg os co… |
Totolink |
A7100RU |
2026-04-12T04:15:13.953Z | 2026-04-13T12:16:37.916Z | |
| cve-2026-6115 | Totolink A7100RU CGI cstecgi.cgi setAppCfg os command … |
Totolink |
A7100RU |
2026-04-12T04:00:21.967Z | 2026-04-13T17:50:25.532Z | |
| cve-2026-6114 | Totolink A7100RU CGI cstecgi.cgi setNetworkCfg os comm… |
Totolink |
A7100RU |
2026-04-12T03:30:16.504Z | 2026-04-14T16:33:32.690Z | |
| cve-2026-6113 | Totolink A7100RU CGI cstecgi.cgi setTtyServiceCfg os c… |
Totolink |
A7100RU |
2026-04-12T03:00:20.188Z | 2026-04-14T13:58:57.661Z | |
| cve-2026-6112 | Totolink A7100RU CGI cstecgi.cgi setRadvdCfg os comman… |
Totolink |
A7100RU |
2026-04-12T02:45:13.694Z | 2026-04-15T15:17:02.716Z | |
| cve-2026-6111 | FoundationAgents MetaGPT common.py decode_image server… |
FoundationAgents |
MetaGPT |
2026-04-12T02:30:14.605Z | 2026-04-13T12:19:44.261Z | |
| cve-2026-1116 | Cross-site Scripting (XSS) in parisneo/lollms |
parisneo |
parisneo/lollms |
2026-04-12T02:22:52.389Z | 2026-04-13T17:49:36.132Z | |
| cve-2026-6110 | FoundationAgents MetaGPT Tree-of-Thought Solver tot.py… |
FoundationAgents |
MetaGPT |
2026-04-12T02:00:21.626Z | 2026-04-13T17:48:44.488Z | |
| cve-2026-6109 | FoundationAgents MetaGPT Mineflayer HTTP API index.js … |
FoundationAgents |
MetaGPT |
2026-04-12T01:30:15.439Z | 2026-04-14T16:33:38.654Z | |
| cve-2026-6108 | 1Panel-dev MaxKB Model Context Protocol Node base_mcp_… |
1Panel-dev |
MaxKB |
2026-04-12T01:00:19.735Z | 2026-04-14T14:00:16.365Z | |
| cve-2026-6107 | 1Panel-dev MaxKB ChatHeadersMiddleware chat_headers_mi… |
1Panel-dev |
MaxKB |
2026-04-12T00:45:18.908Z | 2026-04-15T15:16:00.722Z | |
| cve-2026-6106 | 1Panel-dev MaxKB Public Chat static_headers_middleware… |
1Panel-dev |
MaxKB |
2026-04-11T22:15:14.027Z | 2026-04-13T12:26:30.360Z | |
| cve-2026-6105 | perfree go-fastdfs-web doInstall InstallController.jav… |
perfree |
go-fastdfs-web |
2026-04-11T22:00:24.856Z | 2026-04-13T17:41:44.218Z | |
| cve-2026-31845 | 9.3 (v4.0) 9.3 (v3.1) 6.4 (v2.0) | A reflected cross-site scripting (XSS) vulnerabil… |
Rukovoditel |
Rukovoditel CRM |
2026-04-11T18:26:46.481Z | 2026-04-13T17:44:03.965Z |
| cve-2026-32146 | 8.3 (v4.0) | Improper Path Validation in Git Dependency Handling Al… |
Gleam |
Gleam |
2026-04-11T12:59:22.911Z | 2026-04-22T16:03:21.163Z |
| cve-2026-23900 | N/A | Extension - phoca.cz - Stored XSS vectors in Phoca Map… |
phoca.cz |
phoca.cz - Phoca Maps for Joomla |
2026-04-11T12:52:12.525Z | 2026-04-14T05:14:12.556Z |
| cve-2026-5809 | wpForo Forum <= 3.0.2 - Authenticated (Subscriber+) Ar… |
tomdever |
wpForo Forum |
2026-04-11T07:40:15.574Z | 2026-04-13T15:15:07.646Z | |
| cve-2026-34621 | 8.6 (v3.1) | Acrobat Reader | Improperly Controlled Modification of… |
Adobe |
Acrobat Reader |
2026-04-11T06:45:43.512Z | 2026-04-14T03:55:27.955Z |
| cve-2026-3371 | Tutor LMS <= 3.9.7 - Authenticated (Subscriber+) Insec… |
themeum |
Tutor LMS – eLearning and online course solution |
2026-04-11T01:25:01.083Z | 2026-04-13T15:15:07.829Z | |
| cve-2026-4979 | UsersWP <= 1.2.58 - Authenticated (Subscriber+) Server… |
stiofansisland |
UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for WP |
2026-04-11T01:25:00.447Z | 2026-04-13T15:15:07.967Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2004-000511 | DeleGate Multiple Buffer Overflow Vulnerabilities | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2004-000473 | Ruby cgi.rb Denial of Service Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2004-000323 | Ruby CGI Session Management Insecure File Permission Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2004-000231 | KAME Racoon eay_check_x509cert Improper Certificate Verification Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2004-000197 | LHA extrace_one Vuffer Overflow Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2004-000196 | LHA Buffer Overflow Vulnerability with lack of Path Length Validation | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2004-000195 | LHA Arbitrary Command Execution Vulnerability with Shell Metacharacter in Directory Name | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2004-000179 | DeleGate SSLway Filter Buffer Overflow Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2004-000170 | Lha Directory Traversal Vulnerability in Testing and Extracting Process | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2004-000169 | LHa Vuffer Overflow Vulnerability in Testing and Extracting Process | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2003-000242 | skk Arbitrary Code Execution Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2003-000163 | KON2 Buffer Overflow Vulnerability in Command Argument Validation | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2003-000149 | lv Arbitrary Command Execution Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2003-000144 | IP Messenger for Win Filename Buffer Overflow Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2003-000030 | w3m Vulnerability of Unauthorized Access to Files or Cookies | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2003-000029 | w3m Cross-Site Scripting Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| jvndb-2002-000291 | Canna irw_through Buffer Overflow Vulnerability | 2008-05-21T00:00+09:00 | 2008-05-21T00:00+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2023-avi-0616 | Multiples vulnérabilités dans F5 Big-IP | 2023-08-03T00:00:00.000000 | 2023-08-03T00:00:00.000000 |
| certfr-2023-avi-0615 | Vulnérabilité dans Ivanti MobileIron Core et Endpoint Manager Mobile | 2023-08-03T00:00:00.000000 | 2023-08-11T00:00:00.000000 |
| certfr-2023-avi-0614 | Multiples vulnérabilités dans Mitel MiVoice | 2023-08-03T00:00:00.000000 | 2023-08-03T00:00:00.000000 |
| certfr-2023-avi-0613 | Multiples vulnérabilités dans Mozilla Thunderbird | 2023-08-03T00:00:00.000000 | 2023-08-03T00:00:00.000000 |
| certfr-2023-avi-0612 | Multiples vulnérabilités dans Tenable Nessus | 2023-08-03T00:00:00.000000 | 2023-08-03T00:00:00.000000 |
| certfr-2023-avi-0611 | Multiples vulnérabilités dans Mozilla Firefox | 2023-08-02T00:00:00.000000 | 2023-08-02T00:00:00.000000 |
| certfr-2023-avi-0610 | Multiples vulnérabilités dans GitLab | 2023-08-02T00:00:00.000000 | 2023-08-02T00:00:00.000000 |
| certfr-2023-avi-0609 | Vulnérabilité dans les commutateurs Aruba | 2023-08-02T00:00:00.000000 | 2023-08-02T00:00:00.000000 |
| certfr-2023-avi-0608 | Vulnérabilité dans Xen | 2023-08-02T00:00:00.000000 | 2023-08-02T00:00:00.000000 |
| certfr-2023-avi-0607 | Vulnérabilité dans Palo Alto Networks GlobalProtect App | 2023-08-01T00:00:00.000000 | 2023-08-01T00:00:00.000000 |
| certfr-2023-avi-0606 | Vulnérabilité dans Splunk SOAR | 2023-08-01T00:00:00.000000 | 2023-08-01T00:00:00.000000 |
| certfr-2023-avi-0605 | Vulnérabilité dans OpenSSL | 2023-08-01T00:00:00.000000 | 2023-08-01T00:00:00.000000 |
| certfr-2023-avi-0604 | Vulnérabilité dans Ivanti Endpoint Manager Mobile | 2023-07-31T00:00:00.000000 | 2023-07-31T00:00:00.000000 |
| certfr-2023-avi-0603 | Multiples vulnérabilités dans Samba | 2023-07-31T00:00:00.000000 | 2023-07-31T00:00:00.000000 |
| certfr-2023-avi-0602 | Multiples vulnérabilités dans les produits Qnap | 2023-07-28T00:00:00.000000 | 2023-07-28T00:00:00.000000 |
| certfr-2023-avi-0601 | Multiples vulnérabilités dans le noyau Linux de Debian | 2023-07-28T00:00:00.000000 | 2023-07-28T00:00:00.000000 |
| certfr-2023-avi-0600 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2023-07-28T00:00:00.000000 | 2023-07-28T00:00:00.000000 |
| certfr-2023-avi-0599 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2023-07-28T00:00:00.000000 | 2023-07-28T00:00:00.000000 |
| certfr-2023-avi-0598 | Multiples vulnérabilités dans Synology SRM | 2023-07-28T00:00:00.000000 | 2023-09-25T00:00:00.000000 |
| certfr-2023-avi-0597 | Multiples vulnérabilités dans IBM Cognos Analytics | 2023-07-28T00:00:00.000000 | 2023-07-28T00:00:00.000000 |
| certfr-2023-avi-0596 | Multiples vulnérabilités dans les produits SolarWinds | 2023-07-27T00:00:00.000000 | 2023-07-27T00:00:00.000000 |
| certfr-2023-avi-0595 | Vulnérabilité dans Thunderbird | 2023-07-27T00:00:00.000000 | 2023-07-27T00:00:00.000000 |
| certfr-2023-avi-0594 | Multiples vulnérabilités dans Trend Micro Apex Central | 2023-07-27T00:00:00.000000 | 2023-07-27T00:00:00.000000 |
| certfr-2023-avi-0593 | Multiples vulnérabilités dans SonicWall GMS et Analytics | 2023-07-26T00:00:00.000000 | 2023-07-26T00:00:00.000000 |
| certfr-2023-avi-0592 | Multiples vulnérabilités dans Zimbra | 2023-07-26T00:00:00.000000 | 2023-07-26T00:00:00.000000 |
| certfr-2023-avi-0591 | Vulnérabilité dans IBM AIX et VIOS | 2023-07-26T00:00:00.000000 | 2023-07-26T00:00:00.000000 |
| certfr-2023-avi-0590 | Multiples vulnérabilités dans Aruba ArubaOS et InstantOS | 2023-07-26T00:00:00.000000 | 2023-07-26T00:00:00.000000 |
| certfr-2023-avi-0589 | Multiples vulnérabilités dans Symantec Advanced Authentication | 2023-07-26T00:00:00.000000 | 2023-07-26T00:00:00.000000 |
| certfr-2023-avi-0588 | Multiples vulnérabilités dans Tenable Security Center | 2023-07-26T00:00:00.000000 | 2023-07-26T00:00:00.000000 |
| certfr-2023-avi-0587 | Vulnérabilité dans les produits VMware | 2023-07-26T00:00:00.000000 | 2023-07-26T00:00:00.000000 |