Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
cve-2026-82279 7.2 (v4.0) 8.1 (v3.1) HyperDX Team Management Operations Missing Role-Based … hyperdxio
hyperdx
2026-08-28T16:18:59.661Z 2026-08-28T20:25:37.335Z
cve-2026-82278 8.7 (v4.0) 8.8 (v3.1) BISHENG Authenticated Arbitrary Python Code Execution … dataelement
bisheng
2026-08-28T16:18:58.973Z 2026-08-28T20:26:23.410Z
cve-2026-82277 9.3 (v4.0) 9.8 (v3.1) Argo Rollouts Dashboard Unauthenticated Mutating Operations argoproj
argo-rollouts
2026-08-28T16:18:58.295Z 2026-08-28T16:18:58.295Z
cve-2026-82276 5.3 (v3.1) StarRocks Frontend REST Handlers Bypass the Base Class… StarRocks
starrocks
2026-08-28T16:18:57.611Z 2026-08-28T16:18:57.611Z
cve-2026-82275 8.7 (v4.0) 7.5 (v3.1) Qwen-Agent Arbitrary File Read via Caller-Supplied Doc… QwenLM
Qwen-Agent
2026-08-28T16:18:56.927Z 2026-08-28T16:18:56.927Z
cve-2026-82274 5.3 (v4.0) 4.7 (v3.1) Twenty Open Redirect via OAuth Propagator Callback twentyhq
twenty
2026-08-28T16:18:56.238Z 2026-08-28T20:18:56.881Z
cve-2026-82273 7.1 (v4.0) 6.5 (v3.1) Mastra Memory API Thread Ownership Check Is a No-op Wh… mastra-ai
mastra
2026-08-28T16:18:55.518Z 2026-08-28T20:25:25.139Z
cve-2026-82272 7.1 (v4.0) 6.5 (v3.1) Immich Locked Assets Remain Readable Through Albums an… immich-app
immich
2026-08-28T16:18:54.845Z 2026-08-28T16:18:54.845Z
cve-2026-82271 7.1 (v4.0) 6.5 (v3.1) R2R Missing Ownership Check Allows Modifying Other Use… SciPhi-AI
R2R
2026-08-28T16:18:54.164Z 2026-08-28T16:18:54.164Z
cve-2026-82270 8.7 (v4.0) 7.5 (v3.1) Portkey AI Gateway Server-Side Request Forgery via /v1… Portkey-AI
gateway
2026-08-28T16:18:53.484Z 2026-08-28T16:18:53.484Z
cve-2026-82269 8.6 (v4.0) 8.1 (v3.1) Gophish Account Lockout and Forced Password Change Byp… gophish
gophish
2026-08-28T16:18:52.778Z 2026-08-28T20:29:19.133Z
cve-2026-82268 8.7 (v4.0) 7.5 (v3.1) Qwen-Agent Server-Side Request Forgery via Caller-Supp… QwenLM
Qwen-Agent
2026-08-28T16:18:52.089Z 2026-08-28T20:24:39.353Z
cve-2026-82267 5.3 (v4.0) 5.4 (v3.1) Komodo Resource Identifier Disclosure and Audit Log Po… moghtech
komodo
2026-08-28T16:18:51.391Z 2026-08-28T16:18:51.391Z
cve-2026-82266 9.3 (v4.0) 9.8 (v3.1) Redpanda Admin API Unauthenticated Superuser Access vi… redpanda-data
redpanda
2026-08-28T16:18:50.727Z 2026-08-28T16:18:50.727Z
cve-2026-82265 6.9 (v4.0) 6.5 (v3.1) Zipkin Unauthenticated Spring Boot Actuator Endpoints … openzipkin
zipkin
2026-08-28T16:18:50.031Z 2026-08-28T16:18:50.031Z
cve-2026-82264 6.1 (v4.0) 6.8 (v3.1) Duplicacy Path Traversal during Restore via Unsanitize… gilbertchen
duplicacy
2026-08-28T16:18:49.329Z 2026-08-28T20:28:04.153Z
cve-2026-82263 8.2 (v4.0) 6.8 (v3.1) Logto Server-Side Request Forgery via OIDC SSO Connect… logto-io
logto
2026-08-28T16:18:48.639Z 2026-08-28T20:23:27.541Z
cve-2026-82262 8.2 (v4.0) 6.8 (v3.1) Logto Server-Side Request Forgery via webhook test endpoint logto-io
logto
2026-08-28T16:18:47.953Z 2026-08-28T16:18:47.953Z
cve-2026-55108 KubeVela Terraform remote loader DoS via unbounded file read kubevela
kubevela
2026-08-28T16:11:58.923Z 2026-08-28T20:21:47.902Z
cve-2026-54746 Hatchet: Cross-tenant write/DoS to other tenants' work… hatchet-dev
hatchet
2026-08-28T16:08:37.816Z 2026-08-28T20:20:37.452Z
cve-2026-54745 Kubeflow Pipelines: Unauthenticated SSRF and HTTP smug… kubeflow
pipelines
2026-08-28T15:59:01.118Z 2026-08-28T15:59:01.118Z
cve-2026-75486 8.5 (v4.0) 8 (v3.1) Synk Sweater Comb < 3.8.8 Command Injection via .verve… snyk
sweater-comb
2026-08-28T15:47:21.519Z 2026-08-29T11:47:47.089Z
cve-2026-77218 6.9 (v4.0) 4.9 (v3.1) PLANET GS-4210-16P2S Stack Buffer Overflow via dispatc… PLANET Technology Corp.
PLANET GS-4210-16P2S
2026-08-28T15:34:56.381Z 2026-08-28T20:19:44.760Z
cve-2026-77217 6.9 (v4.0) 4.9 (v3.1) PLANET GS-4210-16P2S Stack Buffer Overflow and NULL Po… PLANET Technology Corp.
PLANET GS-4210-16P2S
2026-08-28T15:34:19.474Z 2026-08-28T15:34:19.474Z
cve-2026-75126 6.9 (v4.0) 4.9 (v3.1) PLANET GS-4210-16P2S Stack Buffer Overflow via dispatc… PLANET Technology Corp.
PLANET GS-4210-16P2S
2026-08-28T15:33:38.656Z 2026-08-28T15:33:38.656Z
cve-2026-75125 6.9 (v4.0) 4.9 (v3.1) PLANET GS-4210-16P2S Null Pointer Dereference DoS via … PLANET Technology Corp.
PLANET GS-4210-16P2S
2026-08-28T15:32:49.481Z 2026-08-28T20:26:47.795Z
cve-2026-75124 8.7 (v4.0) 7.5 (v3.1) PLANET GS-4210-16P2S Memory Corruption via dispatcher.… PLANET Technology Corp.
PLANET GS-4210-16P2S
2026-08-28T15:32:13.356Z 2026-08-28T20:18:46.068Z
cve-2026-75123 8.6 (v4.0) 7.2 (v3.1) PLANET GS-4210-16P2S Command Injection via dispatcher.… PLANET Technology Corp.
PLANET GS-4210-16P2S
2026-08-28T15:31:28.762Z 2026-08-28T15:31:28.762Z
cve-2026-75122 8.6 (v4.0) 7.2 (v3.1) PLANET GS-4210-16P2S Command Injection via httpuploadc… PLANET Technology Corp.
PLANET GS-4210-16P2S
2026-08-28T15:30:45.246Z 2026-08-28T15:30:45.246Z
cve-2026-75121 8.6 (v4.0) 7.2 (v3.1) PLANET GS-4210-16P2S Command Injection via dispatcher.… PLANET Technology Corp.
PLANET GS-4210-16P2S
2026-08-28T15:29:54.168Z 2026-08-28T15:29:54.168Z
ID CVSS Description Vendor Product Published Updated
ID Description Package Published Updated
ID Description Type
ID Description Updated
ID Description Updated
ID Description Published Updated
jvndb-2025-000061 Multiple vulnerabilities in Movable Type 2025-08-20T15:30+09:00 2025-08-20T15:30+09:00
jvndb-2025-000060 PgManage vulnerable to injection 2025-08-18T13:40+09:00 2025-08-18T13:40+09:00
jvndb-2025-000059 Seagate Toolkit registers a Windows service with an unquoted file path 2025-08-14T12:32+09:00 2025-08-19T14:40+09:00
jvndb-2025-000058 WordPress plugin "Advanced Custom Fields" vulnerable to HTML injection 2025-08-08T15:29+09:00 2025-08-08T15:29+09:00
jvndb-2025-010972 Multiple SEIKO EPSON products use weak initial passwords 2025-08-08T14:50+09:00 2025-08-08T14:50+09:00
jvndb-2025-000057 Multiple vulnerabilities in Mubit Powered BLUE 870 2025-08-08T14:47+09:00 2025-08-08T14:47+09:00
jvndb-2025-010854 Trend Micro Endpoint security products for enterprises vulnerable to multiple OS command injection 2025-08-07T12:25+09:00 2025-08-19T11:36+09:00
jvndb-2025-000056 Multiple vulnerabilities in Sato label printers CL4/6NX Plus and CL4/6NX-J Plus series 2025-08-06T16:38+09:00 2025-08-06T16:38+09:00
jvndb-2025-010603 Out-of-bounds write vulnerability in FUJIFILM Business Innovation MFPs 2025-08-05T11:29+09:00 2025-08-05T11:29+09:00
jvndb-2025-010408 Multiple vulnerabilities in PowerCMS 2025-08-01T12:05+09:00 2025-08-01T12:05+09:00
jvndb-2025-000055 ZXHN-F660T and ZXHN-F660A use a common credential for all installations 2025-07-31T15:12+09:00 2025-07-31T15:12+09:00
jvndb-2025-000054 Apache Jena Fuseki vulnerable to path traversal 2025-07-30T14:17+09:00 2025-07-30T14:17+09:00
jvndb-2025-000053 "SwitchBot" App vulnerable to insertion of sensitive information into log file 2025-07-29T13:44+09:00 2025-07-29T13:44+09:00
jvndb-2025-010056 TP-Link VIGI NVR1104H-4P and VIGI NVR2016H-16MP vulnerable to OS command injection 2025-07-28T17:53+09:00 2025-07-28T17:53+09:00
jvndb-2025-000052 TP-Link Archer C1200 vulnerable to clickjacking 2025-07-24T14:16+09:00 2025-07-24T14:16+09:00
jvndb-2025-000051 Real-time Bus Tracking System vulnerable to improper validation of specified quantity in input 2025-07-23T13:54+09:00 2025-07-23T13:54+09:00
jvndb-2025-009576 Multiple vulnerabilities in ELECOM wireless LAN routers 2025-07-23T11:13+09:00 2025-07-23T11:13+09:00
jvndb-2025-000050 "region PAY" App for Android vulnerable to insertion of sensitive information into log file 2025-07-22T13:33+09:00 2025-07-22T13:33+09:00
jvndb-2025-009150 Security updates for Trend Micro products (June 2025) 2025-07-17T17:03+09:00 2025-07-17T17:03+09:00
jvndb-2025-000049 ZWX-2000CSW2-HN and ZWX-2000CS2-HN vulnerable to use of hard-coded credentials 2025-07-16T13:54+09:00 2025-07-16T13:54+09:00
jvndb-2025-008881 Least Privilege Violation Vulnerability in the communications functions of NJ/NX series Machine Automation Controllers 2025-07-15T15:54+09:00 2025-07-15T15:54+09:00
jvndb-2025-008783 Firebox T15 contains an issue with hidden functionality 2025-07-14T17:22+09:00 2025-07-14T17:22+09:00
jvndb-2025-008145 Epson Web Installer for Mac vulnerable to missing authentication for critical function 2025-07-08T14:08+09:00 2025-07-08T14:08+09:00
jvndb-2025-008106 Heap-based buffer overflow vulnerability in V-SFT and TELLUS 2025-07-07T16:26+09:00 2025-07-07T16:26+09:00
jvndb-2025-008105 Windows shortcut following (.LNK) vulnerability in Trend Micro Security for Windows (CVE-2025-52521) 2025-07-07T16:04+09:00 2025-07-07T16:04+09:00
jvndb-2025-000047 Multiple vulnerabilities in Nimesa Backup and Recovery 2025-07-07T15:26+09:00 2025-07-07T15:26+09:00
jvndb-2025-007978 Multiple vulnerabilities in Trend Micro Password Manager for Windows (CVE-2025-48443, CVE-2025-52837) 2025-07-04T13:28+09:00 2025-07-04T13:28+09:00
jvndb-2025-000045 Multiple vulnerabilities in Active! mail 2025-07-02T14:13+09:00 2025-07-02T14:13+09:00
jvndb-2025-007754 Multiple vulnerabilities in Contec CONPROSYS HMI System (CHS) 2025-07-02T11:31+09:00 2025-07-02T11:31+09:00
jvndb-2025-007607 Pass-Back Attack vulnerability in Konica Minorta bizhub series 2025-07-01T14:09+09:00 2025-07-01T14:09+09:00
ID Description Updated
ID Description
ID Description Published Updated
certfr-2026-avi-0825 Multiples vulnérabilités dans les produits Cisco 2026-07-02T00:00:00.000000 2026-07-02T00:00:00.000000
certfr-2026-avi-0824 Multiples vulnérabilités dans ClamAV 2026-07-02T00:00:00.000000 2026-07-02T00:00:00.000000
certfr-2026-avi-0823 Multiples vulnérabilités dans Traefik 2026-07-02T00:00:00.000000 2026-07-02T00:00:00.000000
certfr-2026-avi-0822 Multiples vulnérabilités dans les produits Citrix 2026-07-01T00:00:00.000000 2026-07-01T00:00:00.000000
certfr-2026-avi-0821 Multiples vulnérabilités dans Adobe ColdFusion 2026-07-01T00:00:00.000000 2026-07-01T00:00:00.000000
certfr-2026-avi-0820 Vulnérabilité dans Mozilla Firefox 2026-07-01T00:00:00.000000 2026-07-01T00:00:00.000000
certfr-2026-avi-0819 Multiples vulnérabilités dans Synology MailPlus Server 2026-06-30T00:00:00.000000 2026-06-30T00:00:00.000000
certfr-2026-avi-0818 Multiples vulnérabilités dans les produits Apple 2026-06-30T00:00:00.000000 2026-06-30T00:00:00.000000
certfr-2026-avi-0817 Multiples vulnérabilités dans Apache Tomcat 2026-06-30T00:00:00.000000 2026-06-30T00:00:00.000000
certfr-2026-avi-0816 Multiples vulnérabilités dans Stormshield Management Center 2026-06-29T00:00:00.000000 2026-06-29T00:00:00.000000
certfr-2026-avi-0815 Multiples vulnérabilités dans KeyCloak 2026-06-29T00:00:00.000000 2026-06-29T00:00:00.000000
certfr-2026-avi-0814 Vulnérabilité dans HAProxy 2026-06-29T00:00:00.000000 2026-06-29T00:00:00.000000
certfr-2026-avi-0813 Multiples vulnérabilités dans Mattermost Server 2026-06-29T00:00:00.000000 2026-07-15T00:00:00.000000
certfr-2026-avi-0812 Multiples vulnérabilités dans Microsoft Azure Linux 2026-06-29T00:00:00.000000 2026-06-29T00:00:00.000000
certfr-2026-avi-0811 Multiples vulnérabilités dans Microsoft Edge 2026-06-29T00:00:00.000000 2026-06-29T00:00:00.000000
certfr-2026-avi-0810 Multiples vulnérabilités dans les produits IBM 2026-06-26T00:00:00.000000 2026-06-26T00:00:00.000000
certfr-2026-avi-0809 Multiples vulnérabilités dans le noyau Linux de Debian 2026-06-26T00:00:00.000000 2026-06-26T00:00:00.000000
certfr-2026-avi-0808 Multiples vulnérabilités dans le noyau Linux de Red Hat 2026-06-26T00:00:00.000000 2026-06-26T00:00:00.000000
certfr-2026-avi-0807 Multiples vulnérabilités dans le noyau Linux de SUSE 2026-06-26T00:00:00.000000 2026-06-26T00:00:00.000000
certfr-2026-avi-0806 Multiples vulnérabilités dans le noyau Linux d'Ubuntu 2026-06-26T00:00:00.000000 2026-06-26T00:00:00.000000
certfr-2026-avi-0805 Multiples vulnérabilités dans Asterisk 2026-06-26T00:00:00.000000 2026-06-26T00:00:00.000000
certfr-2026-avi-0804 Multiples vulnérabilités dans Tenable Nessus 2026-06-26T00:00:00.000000 2026-06-26T00:00:00.000000
certfr-2026-avi-0803 Multiples vulnérabilités dans Google Chrome 2026-06-26T00:00:00.000000 2026-06-26T00:00:00.000000
certfr-2026-avi-0802 Multiples vulnérabilités dans Microsoft Azure Linux 2026-06-25T00:00:00.000000 2026-06-25T00:00:00.000000
certfr-2026-avi-0801 Multiples vulnérabilités dans Google Chrome 2026-06-25T00:00:00.000000 2026-06-25T00:00:00.000000
certfr-2026-avi-0800 Multiples vulnérabilités dans CPython 2026-06-25T00:00:00.000000 2026-06-25T00:00:00.000000
certfr-2026-avi-0799 Multiples vulnérabilités dans GitLab 2026-06-25T00:00:00.000000 2026-06-25T00:00:00.000000
certfr-2026-avi-0798 Multiples vulnérabilités dans Microsoft Azure Linux 2026-06-24T00:00:00.000000 2026-06-24T00:00:00.000000
certfr-2026-avi-0797 Multiples vulnérabilités dans cURL et libcurl 2026-06-24T00:00:00.000000 2026-06-24T00:00:00.000000
certfr-2026-avi-0796 Multiples vulnérabilités dans Tenable Identity Exposure 2026-06-24T00:00:00.000000 2026-06-24T00:00:00.000000
ID Description Published Updated
certa-2008-ale-014 Vulnérabilité dans Opera 2008-11-20T00:00:00.000000 2009-01-06T00:00:00.000000
certa-2008-ale-013 Vulnérabilité du service sadmind de Sun Solaris 2008-10-17T00:00:00.000000 2013-02-21T00:00:00.000000
certa-2008-ale-012 Vulnérabilité dans Microsoft Windows 2008-10-10T00:00:00.000000 2009-04-15T00:00:00.000000
certa-2008-ale-011 Vulnérabilité dans Oracle BEA WebLogic Server 2008-07-24T00:00:00.000000 2008-08-08T00:00:00.000000
certa-2008-ale-010 Vulnérabilité dans Microsoft Word 2008-07-09T00:00:00.000000 2008-08-13T00:00:00.000000
certa-2008-ale-009 Vulnérabilité dans Microsoft Access Snapshot Viewer 2008-07-08T00:00:00.000000 2008-08-13T00:00:00.000000
certa-2008-ale-008 Vulnérabilité du navigateur Safari 2008-06-02T00:00:00.000000 2008-06-20T00:00:00.000000
certa-2008-ale-007 Multiples vulnérabilités dans Apple iCal 2008-05-23T00:00:00.000000 2008-05-29T00:00:00.000000
certa-2008-ale-006 Vulnérabilités dans HP OpenView NNM 2008-04-18T00:00:00.000000 2010-06-10T00:00:00.000000
certa-2008-ale-005 Vulnérabilité dans Microsoft Jet Database Engine 2008-03-25T00:00:00.000000 2008-05-14T00:00:00.000000
certa-2008-ale-004 Vulnérabilité dans VMware 2008-02-27T00:00:00.000000 2008-04-16T00:00:00.000000
certa-2008-ale-003 Vulnérabilité dans Excel 2008-01-16T00:00:00.000000 2008-03-12T00:00:00.000000
certa-2008-ale-002 Vulnérabilité dans Joomla! 2008-01-14T00:00:00.000000 2008-02-25T00:00:00.000000
certa-2008-ale-001 Vulnérabilité dans Apple QuickTime 2008-01-11T00:00:00.000000 2008-02-07T00:00:00.000000
certa-2007-ale-017 Vulnérabilité dans la gestion RTSP d'Apple QuickTime 2007-11-27T00:00:00.000000 2007-12-14T00:00:00.000000
certa-2007-ale-016 Vulnérabilité d'Oracle 10g 2007-11-16T00:00:00.000000 2007-11-16T00:00:00.000000
certa-2007-ale-015 Vulnérabilité dans le traitement des URI sous Windows 2007-10-10T00:00:00.000000 2007-11-14T00:00:00.000000
certa-2007-ale-014 Vulnérabilité dans Apple QuickTime 2007-09-13T00:00:00.000000 2007-10-12T00:00:00.000000
certa-2007-ale-013 Vulnérabilité dans Mozilla Firefox 2007-07-27T00:00:00.000000 2007-07-31T00:00:00.000000
certa-2007-ale-012 Multiples vulnérabilités dans Mozilla Firefox 2007-06-06T00:00:00.000000 2007-07-18T00:00:00.000000
certa-2007-ale-011 Vulnérabilité du composant d'indexation des serveurs Microsoft IIS 2007-06-06T00:00:00.000000 2013-02-19T00:00:00.000000
certa-2007-ale-010 Vulnérabilité de Microsoft DNS Server 2007-04-16T00:00:00.000000 2007-05-09T00:00:00.000000
certa-2007-ale-009 Vulnérabilité dans BrightStor ARCServe Backup 2007-03-30T00:00:00.000000 2007-04-27T00:00:00.000000
certa-2007-ale-008 Vulnérabilité dans Mirosoft Windows 2007-03-29T00:00:00.000000 2007-04-03T00:00:00.000000
certa-2007-ale-007 Vulnérabilité de Microsoft Windows Explorer 2007-03-09T00:00:00.000000 2008-10-09T00:00:00.000000
certa-2007-ale-006 Vulnérabilité dans le logiciel Microsoft Word 2007-02-16T00:00:00.000000 2007-05-09T00:00:00.000000
certa-2007-ale-005 Vulnérabilité de Sun Solaris 2007-02-12T00:00:00.000000 2008-09-18T00:00:00.000000
certa-2007-ale-004 Vulnérabilité dans Microsoft Office 2007-02-03T00:00:00.000000 2007-02-13T00:00:00.000000
certa-2007-ale-003 Filoutage contre le site voyages-sncf.com 2007-01-15T00:00:00.000000 2007-01-15T00:00:00.000000
certa-2007-ale-002 Vulnérabilité dans Windows 2007-01-12T00:00:00.000000 2007-04-03T00:00:00.000000