Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-40023 | 6.3 (v4.0) | Apache Log4cxx, Apache Log4cxx (Conan), Apache Log4cxx… |
Apache Software Foundation |
Apache Log4cxx |
2026-04-10T15:45:52.895Z | 2026-04-10T17:29:20.009Z |
| cve-2026-34727 | Vikunja ahs a TOTP Two-Factor Authentication Bypass vi… |
go-vikunja |
vikunja |
2026-04-10T15:45:30.662Z | 2026-04-13T15:37:32.071Z | |
| cve-2026-40021 | 6.3 (v4.0) | Apache Log4net: Silent log event loss in XmlLayout and… |
Apache Software Foundation |
Apache Log4net |
2026-04-10T15:44:17.451Z | 2026-04-10T17:35:01.228Z |
| cve-2026-34481 | 6.3 (v4.0) | Apache Log4j JSON Template Layout: Improper serializat… |
Apache Software Foundation |
Apache Log4j JSON Template Layout |
2026-04-10T15:43:00.100Z | 2026-04-10T17:41:38.229Z |
| cve-2026-34480 | 6.9 (v4.0) | Apache Log4j Core: Silent log event loss in XmlLayout … |
Apache Software Foundation |
Apache Log4j Core |
2026-04-10T15:42:03.843Z | 2026-04-10T17:45:07.434Z |
| cve-2026-34479 | 6.9 (v4.0) | Apache Log4j 1 to Log4j 2 bridge: Silent log event los… |
Apache Software Foundation |
Apache Log4j 1 to Log4j 2 bridge |
2026-04-10T15:41:07.888Z | 2026-04-10T17:47:34.402Z |
| cve-2026-34478 | 6.9 (v4.0) | Apache Log4j Core: Log injection in Rfc5424Layout due … |
Apache Software Foundation |
Apache Log4j Core |
2026-04-10T15:40:17.713Z | 2026-04-10T17:50:12.484Z |
| cve-2026-34477 | 6.3 (v4.0) | Apache Log4j Core: verifyHostName attribute silently i… |
Apache Software Foundation |
Apache Log4j Core |
2026-04-10T15:36:19.740Z | 2026-04-10T17:38:57.154Z |
| cve-2026-29043 | HDF5 H5T__ref_mem_setnull Heap Buffer Overflow |
HDFGroup |
hdf5 |
2026-04-10T15:35:51.682Z | 2026-04-14T14:50:46.566Z | |
| cve-2026-40227 | 6.2 (v3.1) | In systemd 260 before 261, a local unprivileged u… |
systemd |
systemd |
2026-04-10T15:19:51.433Z | 2026-04-14T14:49:32.971Z |
| cve-2026-40226 | 6.4 (v3.1) | In nspawn in systemd 233 through 259 before 260, … |
systemd |
systemd |
2026-04-10T15:18:10.447Z | 2026-04-14T14:48:20.451Z |
| cve-2026-40225 | 6.4 (v3.1) | In udev in systemd before 260, local root executi… |
systemd |
systemd |
2026-04-10T15:16:19.827Z | 2026-04-14T14:40:30.611Z |
| cve-2026-40224 | 6.7 (v3.1) | In systemd 259 before 260, there is local privile… |
systemd |
systemd |
2026-04-10T15:14:21.904Z | 2026-04-10T18:13:05.818Z |
| cve-2026-29002 | 8.6 (v4.0) 7.2 (v3.1) | CouchCMS Privilege Escalation via f_k_levels_list Parameter |
CouchCMS |
CouchCMS |
2026-04-10T15:11:43.411Z | 2026-04-10T16:20:02.847Z |
| cve-2026-40223 | 4.7 (v3.1) | In systemd 258 before 260, a local unprivileged u… |
systemd |
systemd |
2026-04-10T15:10:56.605Z | 2026-04-15T14:42:11.727Z |
| cve-2026-40217 | 8.8 (v3.1) | LiteLLM through 2026-04-08 allows remote attacker… |
BerriAI |
LiteLLM |
2026-04-10T13:43:23.147Z | 2026-04-14T14:39:03.619Z |
| cve-2026-6069 | N/A | CVE-2026-6069 |
NASM |
NASM |
2026-04-10T13:30:48.302Z | 2026-04-10T14:53:37.082Z |
| cve-2026-6068 | N/A | CVE-2026-6068 |
NASM |
NASM |
2026-04-10T13:30:38.420Z | 2026-04-10T14:56:52.908Z |
| cve-2026-6067 | N/A | CVE-2026-6067 |
NASM |
NASM |
2026-04-10T13:30:26.140Z | 2026-04-10T14:58:07.818Z |
| cve-2025-58920 | 7.1 (v3.1) | WordPress Cerato theme <= 2.2.18 - Reflected Cross Sit… |
Zootemplate |
Cerato |
2026-04-10T13:25:31.611Z | 2026-04-28T16:13:49.426Z |
| cve-2025-58913 | 8.1 (v3.1) | WordPress VideoPro theme <= 2.3.8.1 - Local File Inclu… |
CactusThemes |
VideoPro |
2026-04-10T13:21:05.820Z | 2026-04-28T16:13:49.305Z |
| cve-2025-5804 | 7.5 (v3.1) | WordPress Case Theme User < 1.0.4 - Local File Inclusi… |
Case Themes |
Case Theme User |
2026-04-10T13:19:43.457Z | 2026-04-28T16:13:41.220Z |
| cve-2026-33092 | 7.8 (v3.0) | Local privilege escalation due to improper handli… |
Acronis |
Acronis True Image OEM |
2026-04-10T13:17:45.275Z | 2026-04-14T03:55:40.860Z |
| cve-2026-5412 | 9.9 (v3.1) | Juju CloudSpec API could leak senstive information |
Canonical |
Juju |
2026-04-10T12:22:05.403Z | 2026-04-10T14:04:30.155Z |
| cve-2026-5774 | 6.1 (v4.0) | Juju API Server Denial of Service and Authentication R… |
Canonical |
Juju |
2026-04-10T12:10:55.634Z | 2026-04-10T12:41:28.720Z |
| cve-2026-5777 | 8.7 (v4.0) | Security Misconfiguration Vulnerability in Atom 3x Projector |
EGate |
Atom 3X Projector |
2026-04-10T11:40:55.335Z | 2026-04-10T12:42:10.282Z |
| cve-2026-39304 | Apache ActiveMQ Client, Apache ActiveMQ Broker, Apache… |
Apache Software Foundation |
Apache ActiveMQ Client |
2026-04-10T10:54:04.130Z | 2026-04-10T14:10:55.784Z | |
| cve-2026-31412 | N/A | usb: gadget: f_mass_storage: Fix potential integer ove… |
Linux |
Linux |
2026-04-10T10:35:05.796Z | 2026-04-13T06:08:41.150Z |
| cve-2026-4162 | Gravity SMTP <= 2.1.4 - Missing Authorization to Authe… |
RocketGenius |
Gravity SMTP |
2026-04-10T09:25:56.478Z | 2026-04-13T15:15:09.053Z | |
| cve-2021-47961 | 8.1 (v3.1) | A plaintext storage of a password vulnerability i… |
Synology |
Synology SSL VPN Client |
2026-04-10T09:22:37.522Z | 2026-04-10T12:42:56.656Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2023-avi-0405 | Vulnérabilité dans VMware NSX-T | 2023-05-24T00:00:00.000000 | 2023-05-24T00:00:00.000000 |
| certfr-2023-avi-0404 | Vulnérabilité dans Apache Tomcat | 2023-05-22T00:00:00.000000 | 2023-05-22T00:00:00.000000 |
| certfr-2023-avi-0402 | Vulnérabilité dans Wordpress | 2023-05-22T00:00:00.000000 | 2023-05-22T00:00:00.000000 |
| certfr-2023-avi-0401 | Multiples vulnérabilités dans les produits Cisco | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0400 | Multiples vulnérabilités dans les produits Mitel | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0399 | Multiples vulnérabilités dans les produits NetApp HCI | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0398 | Multiples vulnérabilités dans le cadriciel VMware Spring | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0397 | Vulnérabilité dans IBM Sterling Connect | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0396 | Multiples vulnérabilités dans Microsoft Edge | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0395 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0394 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0393 | Multiples vulnérabilités dans le noyau Linux de RedHat | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0392 | Multiples vulnérabilités dans le noyau Linux de DebianLTS | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0391 | Multiples vulnérabilités dans le noyau Linux de Debian | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0390 | Multiples vulnérabilités dans les produits Apple | 2023-05-19T00:00:00.000000 | 2023-05-19T00:00:00.000000 |
| certfr-2023-avi-0389 | Vulnérabilité dans les produits Xen | 2023-05-17T00:00:00.000000 | 2023-05-17T00:00:00.000000 |
| certfr-2023-avi-0388 | Multiples vulnérabilités dans les produits Google Chrome | 2023-05-17T00:00:00.000000 | 2023-05-17T00:00:00.000000 |
| certfr-2023-avi-0387 | Multiples vulnérabilités dans TrendMicro Apex One et Apex Central | 2023-05-17T00:00:00.000000 | 2023-05-17T00:00:00.000000 |
| certfr-2023-avi-0386 | Multiples vulnérabilités dans WordPress | 2023-05-17T00:00:00.000000 | 2023-05-17T00:00:00.000000 |
| certfr-2023-avi-0385 | Multiples vulnérabilités dans les produits VMware Tanzu | 2023-05-15T00:00:00.000000 | 2023-05-15T00:00:00.000000 |
| certfr-2023-avi-0384 | Multiples vulnérabilités dans TrendMicro Mobile Security (entreprise) | 2023-05-15T00:00:00.000000 | 2023-05-15T00:00:00.000000 |
| certfr-2023-avi-0383 | Multiples vulnérabilités dans le noyau Linux de RedHat | 2023-05-12T00:00:00.000000 | 2023-05-12T00:00:00.000000 |
| certfr-2023-avi-0382 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2023-05-12T00:00:00.000000 | 2023-05-12T00:00:00.000000 |
| certfr-2023-avi-0381 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2023-05-12T00:00:00.000000 | 2023-05-12T00:00:00.000000 |
| certfr-2023-avi-0380 | Multiples vulnérabilités dans Tenable Nessus | 2023-05-12T00:00:00.000000 | 2023-05-12T00:00:00.000000 |
| certfr-2023-avi-0379 | Multiples vulnérabilités Vmware Aria Operations | 2023-05-12T00:00:00.000000 | 2023-05-12T00:00:00.000000 |
| certfr-2023-avi-0378 | Multiples vulnérabilités dans PostgreSQL | 2023-05-12T00:00:00.000000 | 2023-05-12T00:00:00.000000 |
| certfr-2023-avi-0377 | Multiples vulnérabilités dans PAN-OS | 2023-05-11T00:00:00.000000 | 2023-05-11T00:00:00.000000 |
| certfr-2023-avi-0376 | Vulnérabilité dans les produits GitLab | 2023-05-11T00:00:00.000000 | 2023-05-11T00:00:00.000000 |
| certfr-2023-avi-0375 | Multiples vulnérabilités dans Thunderbird | 2023-05-11T00:00:00.000000 | 2023-05-11T00:00:00.000000 |