Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
cve-2026-76839 8.7 (v4.0) 6.5 (v3.1) Grav before 2.0.16 Information Disclosure via offsetGet getgrav
grav
2026-08-25T01:30:31.050Z 2026-08-25T15:45:24.322Z
cve-2026-75575 6.9 (v4.0) 5.3 (v3.1) Rocket.Chat Missing DDP Rate Limit on the sendForgotPa… RocketChat
Rocket.Chat
2026-08-25T01:30:29.898Z 2026-08-29T11:47:47.758Z
cve-2026-75574 8.7 (v4.0) 8.8 (v3.1) Grav before 4.2.2 Remote Code Execution via Email Twig getgrav
grav
2026-08-25T01:30:26.910Z 2026-08-27T16:46:04.470Z
cve-2026-72702 9.3 (v4.0) 5.4 (v3.1) Grav CMS before 2.0.16 Origin Validation Bypass via Referer getgrav
grav
2026-08-25T01:30:25.032Z 2026-08-28T17:52:31.939Z
cve-2026-72701 6.3 (v4.0) 3.7 (v3.1) Grav CMS before 2.0.16 Timing Attack via verifyNonce getgrav
grav
2026-08-25T01:30:23.965Z 2026-08-27T14:54:28.112Z
cve-2026-72700 8.7 (v4.0) 7.5 (v3.1) Grav before 3.9.1 Timing Attack via Non-Constant-Time … getgrav
grav
2026-08-25T01:30:22.914Z 2026-08-25T17:25:36.693Z
cve-2026-72699 9.3 (v4.0) 5.3 (v3.1) Grav Login Plugin before 3.9.1 Email Enumeration via R… getgrav
grav-plugin-login
2026-08-25T01:30:21.863Z 2026-08-29T11:47:42.332Z
cve-2026-72698 7.1 (v4.0) 6.5 (v3.1) Grav CMS before 2.0.16 Information Disclosure via Twig… getgrav
grav
2026-08-25T01:30:21.127Z 2026-08-26T16:12:36.558Z
cve-2026-72697 7.1 (v4.0) 6.5 (v3.1) Grav CMS before 2.0.16 Path Traversal via media_directory getgrav
grav
2026-08-25T01:30:18.001Z 2026-08-25T18:01:46.215Z
cve-2026-72696 8.6 (v4.0) 8.4 (v3.1) Grav CMS before 2.0.16 Symlink Following via createLockFile getgrav
grav
2026-08-25T01:30:14.848Z 2026-08-27T14:52:18.096Z
cve-2026-72695 7.1 (v4.0) 8.1 (v3.1) Grav before 2.0.16 Path Traversal via MediaUploadTrait… getgrav
grav
2026-08-25T01:30:11.868Z 2026-08-25T17:38:09.024Z
cve-2026-56710 9.3 (v4.0) 9.8 (v3.1) Grav Login Plugin before 1.0.16 Privilege Escalation v… getgrav
grav
2026-08-25T01:30:11.042Z 2026-08-25T15:28:35.494Z
cve-2026-56709 8.7 (v4.0) 7.5 (v3.1) Grav before 3.9.2 Host Header Injection via sendInvita… getgrav
grav
2026-08-25T01:30:10.057Z 2026-08-26T16:12:46.333Z
cve-2026-56708 6.9 (v4.0) 5.3 (v3.1) Grav API Plugin before 1.0.16 SSRF via DNS Rebinding getgrav
grav
2026-08-25T01:30:08.721Z 2026-08-25T18:07:04.185Z
cve-2026-56707 8.3 (v4.0) 7.7 (v3.1) Grav Flex Objects 1.4.0 through 1.4.7 Authorization By… getgrav
grav
2026-08-25T01:30:06.601Z 2026-08-27T14:50:54.881Z
cve-2026-56706 6.1 (v4.0) 6.8 (v3.1) Adminer before 5.4.3 CSRF Token Secret Recovery via XO… vrana
adminer
2026-08-25T01:30:05.474Z 2026-08-25T15:34:21.769Z
cve-2026-56705 9.3 (v4.0) 9.8 (v3.1) Adminer before 5.4.3 Remote Code Execution via MSSQL P… vrana
adminer
2026-08-25T01:30:03.759Z 2026-08-25T15:29:15.538Z
cve-2026-56704 5.3 (v4.0) 6.1 (v3.1) Adminer before 5.4.3 Cross-Site Scripting via MySQL Ve… vrana
adminer
2026-08-25T01:30:02.831Z 2026-08-26T16:12:57.028Z
cve-2026-56703 8.6 (v4.0) 7.2 (v3.1) Adminer before 5.4.3 Remote Code Execution via SQLite … vrana
adminer
2026-08-25T01:30:01.161Z 2026-08-25T18:13:21.776Z
cve-2026-56702 7.1 (v4.0) 8.8 (v3.1) Adminer before 5.4.3 Unrestricted File Upload via Admi… vrana
adminer
2026-08-25T01:30:00.475Z 2026-08-27T14:36:04.749Z
cve-2026-34968 7.2 (v4.0) 8.1 (v3.1) Adminer before 5.4.3 Arbitrary File Deletion via SQLite Drop vrana
adminer
2026-08-25T01:29:59.711Z 2026-08-25T15:29:34.632Z
cve-2026-34967 5.3 (v4.0) 5.4 (v3.1) Adminer sql-log Plugin 5.3.0 through 5.4.2 Arbitrary F… vrana
adminer
2026-08-25T01:29:59.097Z 2026-08-25T15:29:49.378Z
cve-2026-34964 6.9 (v4.0) 5.8 (v3.1) Adminer before 5.5.0 SSRF via PDO DSN Injection vrana
adminer
2026-08-25T01:29:58.396Z 2026-08-26T16:13:06.384Z
cve-2026-34959 5.3 (v4.0) 4.7 (v3.1) Adminer before 5.5.0 Open Redirect via X-Forwarded-Prefix vrana
adminer
2026-08-25T01:29:57.683Z 2026-08-26T14:18:27.241Z
cve-2026-16434 2.3 (v4.0) Adminer before 5.5.1 X-Forwarded-Prefix Backslash Bypass vrana
adminer
2026-08-25T01:29:57.018Z 2026-08-27T14:34:04.155Z
cve-2026-15023 Events Manager <= 7.4.0 - Authenticated (Contributor+)… netweblogic
Events Manager – Calendar, Bookings, Tickets, and more!
2026-08-25T01:26:44.361Z 2026-08-25T15:18:18.613Z
cve-2026-19801 BetterLinks <= 3.1.0 - Missing Authorization to Authen… wpdevteam
BetterLinks – Link Shortener, Link Cloaking, Redirects, Affiliate Link Manager & MCP
2026-08-25T01:26:44.025Z 2026-08-25T19:22:38.068Z
cve-2026-10630 WP Courses LMS <= 3.2.29 - Insecure Direct Object Refe… hookandhook
WP Courses LMS – Online Courses Builder, eLearning Courses, Courses Solution, Education Courses
2026-08-25T01:26:43.510Z 2026-08-25T18:10:00.099Z
cve-2026-66766 7.5 (v3.1) Denial of Service (DoS) in SAP S/4HANA (Manage Supply … SAP_SE
SAP S/4HANA (Manage Supply Protection)
2026-08-25T01:08:36.749Z 2026-08-25T09:52:18.316Z
cve-2026-59183 OpenEXR: Signed Integer Overflow Leading to Out-of-Bou… AcademySoftwareFoundation
openexr
2026-08-25T00:45:02.860Z 2026-08-25T19:05:14.664Z
ID CVSS Description Vendor Product Published Updated
ID Description Package Published Updated
ID Description Type
ID Description Updated
ID Description Updated
ID Description Published Updated
jvndb-2006-000613 Trac cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000612 FreeStyleWiki cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000611 QUICK CART cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000610 QUICK CART OS command injection vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000609 CAFEMILK Shopping Cart CGI cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000606 Minnu's filer2 vulnerable in allowing arbitrary Ruby script execution 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000605 Hyper NIKKI System allows unauthorized email submission 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000604 Nagasaki Electronic Prefectural Office System SQL injection vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000603 Hatena Toolbar sends URL information unecnrypted 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000602 Multiple email clients vulnerable in handling an attachement inapropriately 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000601 Eudora Japanese version stops working after the application crashes 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000600 Nagasaki Electronic Prefectural Office System authentication information vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000599 Nagasaki Electronic Prefectural Office System vulnerable to bypass authentication 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000540 Microsoft Windows Indexing Service cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000392 Ruby contains a vulnerability that prevents safe level 4 from functioning as a sandbox. 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000345 Microsoft Internet Explorer address bar spoofing vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000326 Mozilla Firefox vulnerable to HTTP response splitting 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000293 Sun Java System Web Server cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2006-000251 SquirrelMail cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2005-000864 XOOPS cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2005-000805 nProtect Netizen has multiple vulnerabilities 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2005-000804 Tomcat vulnerable in request processing 2008-05-21T00:00+09:00 2008-07-07T18:04+09:00
jvndb-2005-000802 BBSNote cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2005-000801 WebNote Clip vulnerable to OS command injection 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2005-000800 Opera bookmark function vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2005-000799 Problem with referer header handling on mobile phone web browsers 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2005-000798 MitakeSearch cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2005-000797 Multiple vulnerabilities in FreeStyleWiki including cross-site scripting 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2005-000796 Multiple vulnerabilities in FreeStyleWiki including cross-site scripting 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
jvndb-2005-000795 HTTPD-User-Manage cross-site scripting vulnerability 2008-05-21T00:00+09:00 2008-05-21T00:00+09:00
ID Description Updated
ID Description
ID Description Published Updated
certfr-2024-avi-0149 Multiples vulnérabilités dans Moodle 2024-02-20T00:00:00.000000 2024-02-20T00:00:00.000000
certfr-2024-avi-0148 Vulnérabilité dans Kaspersky Anti Targeted Attack 2024-02-20T00:00:00.000000 2024-02-20T00:00:00.000000
certfr-2024-avi-0147 Vulnérabilité dans Spring Security 2024-02-19T00:00:00.000000 2024-02-19T00:00:00.000000
certfr-2024-avi-0146 Multiples vulnérabilités dans le noyau Linux de RedHat 2024-02-16T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2024-avi-0145 Multiples vulnérabilités dans les produits IBM 2024-02-16T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2024-avi-0144 Multiples vulnérabilités dans le noyau Linux de SUSE 2024-02-16T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2024-avi-0143 Multiples vulnérabilités dans le noyau Linux Ubuntu 2024-02-16T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2024-avi-0142 Vulnérabilité dans NetApp SnapCenter 2024-02-16T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2024-avi-0141 Vulnérabilité dans Liferay 2024-02-16T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2024-avi-0140 Multiples vulnérabilités dans Liferay 2024-02-15T00:00:00.000000 2024-02-15T00:00:00.000000
certfr-2024-avi-0139 Multiples vulnérabilités dans les produits Palo Alto Networks 2024-02-15T00:00:00.000000 2024-02-19T00:00:00.000000
certfr-2024-avi-0138 Vulnérabilité dans Stormshield Network Security 2024-02-15T00:00:00.000000 2024-02-15T00:00:00.000000
certfr-2024-avi-0137 Multiples vulnérabilités dans les produits F5 2024-02-15T00:00:00.000000 2024-02-15T00:00:00.000000
certfr-2024-avi-0136 Vulnérabilité dans les produits ESET 2024-02-15T00:00:00.000000 2024-02-15T00:00:00.000000
certfr-2024-avi-0135 Vulnérabilité dans Squid 2024-02-15T00:00:00.000000 2024-02-15T00:00:00.000000
certfr-2024-avi-0134 Multiples vulnérabilités dans les produits Tenable 2024-02-15T00:00:00.000000 2024-02-15T00:00:00.000000
certfr-2024-avi-0133 Multiples vulnérabilités dans Nginx 2024-02-15T00:00:00.000000 2024-02-15T00:00:00.000000
certfr-2024-avi-0132 Vulnérabilité dans Grafana 2024-02-15T00:00:00.000000 2024-02-15T00:00:00.000000
certfr-2024-avi-0131 Multiples vulnérabilités dans les produits Microsoft 2024-02-14T00:00:00.000000 2024-02-14T00:00:00.000000
certfr-2024-avi-0130 Multiples vulnérabilités dans Microsoft Azure 2024-02-14T00:00:00.000000 2024-02-14T00:00:00.000000
certfr-2024-avi-0129 Multiples vulnérabilités dans Microsoft .Net 2024-02-14T00:00:00.000000 2024-02-14T00:00:00.000000
certfr-2024-avi-0128 Multiples vulnérabilités dans Microsoft Windows 2024-02-14T00:00:00.000000 2024-02-14T00:00:00.000000
certfr-2024-avi-0127 Multiples vulnérabilités dans Microsoft Office 2024-02-14T00:00:00.000000 2024-02-14T00:00:00.000000
certfr-2024-avi-0126 Vulnérabilité dans Google Chrome 2024-02-14T00:00:00.000000 2024-02-14T00:00:00.000000
certfr-2024-avi-0125 Multiples vulnérabilités dans SAP 2024-02-14T00:00:00.000000 2024-02-14T00:00:00.000000
certfr-2024-avi-0124 Multiples vulnérabilités dans les produits Intel 2024-02-14T00:00:00.000000 2024-02-14T00:00:00.000000
certfr-2024-avi-0123 Multiples vulnérabilités dans les produits Adobe 2024-02-14T00:00:00.000000 2024-02-14T00:00:00.000000
certfr-2024-avi-0122 Multiples vulnérabilités dans Bind 2024-02-13T00:00:00.000000 2024-02-13T00:00:00.000000
certfr-2024-avi-0121 Multiples vulnérabilités dans Typo3 2024-02-13T00:00:00.000000 2024-02-13T00:00:00.000000
certfr-2024-avi-0120 Multiples vulnérabilités dans les produits Schneider 2024-02-13T00:00:00.000000 2024-02-13T00:00:00.000000