Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-5979 | D-Link DIR-605L POST Request formVirtualServ buffer overflow |
D-Link |
DIR-605L |
2026-04-09T20:45:15.856Z | 2026-04-10T18:08:05.848Z | |
| cve-2026-5978 | Totolink A7100RU CGI cstecgi.cgi setWiFiAclRules os co… |
Totolink |
A7100RU |
2026-04-09T20:30:15.179Z | 2026-04-14T16:34:03.036Z | |
| cve-2026-40093 | nimiq-blockchain is missing a wall-clock upper bound o… |
nimiq |
core-rs-albatross |
2026-04-09T20:29:46.026Z | 2026-04-13T15:38:14.634Z | |
| cve-2026-5977 | Totolink A7100RU CGI cstecgi.cgi setWiFiBasicCfg os co… |
Totolink |
A7100RU |
2026-04-09T20:15:14.227Z | 2026-04-14T14:48:40.525Z | |
| cve-2026-5447 | 6.3 (v4.0) | Heap buffer overflow in CertFromX509() via AuthorityKe… |
wolfSSL |
wolfSSL |
2026-04-09T20:13:34.398Z | 2026-04-10T18:07:28.848Z |
| cve-2026-4436 | 8.6 (v3.1) | GPL Odorizers GPL750 Missing Authentication for Critic… |
GPL Odorizers |
GPL750 (XL4) |
2026-04-09T20:04:26.208Z | 2026-04-14T14:04:53.417Z |
| cve-2026-5976 | Totolink A7100RU CGI cstecgi.cgi setStorageCfg os comm… |
Totolink |
A7100RU |
2026-04-09T20:00:21.322Z | 2026-04-13T20:21:31.141Z | |
| cve-2025-13926 | 9.8 (v3.1) 9.3 (v4.0) | Contemporary Controls BASC 20T Reliance on Untrusted I… |
Contemporary Controls |
BASControl20 |
2026-04-09T19:47:17.841Z | 2026-04-10T14:11:21.320Z |
| cve-2026-5187 | 2.3 (v4.0) | Heap Out-of-Bounds Write in DecodeObjectId() in wolfSSL |
wolfSSL |
wolfSSL |
2026-04-09T19:45:39.937Z | 2026-04-14T14:04:53.585Z |
| cve-2026-5975 | Totolink A7100RU CGI cstecgi.cgi setDmzCfg os command … |
Totolink |
A7100RU |
2026-04-09T19:45:18.440Z | 2026-04-09T20:10:54.661Z | |
| cve-2026-40088 | Improper Neutralization of Special Elements used in an… |
MervinPraison |
PraisonAI |
2026-04-09T19:45:13.203Z | 2026-04-09T20:14:56.938Z | |
| cve-2026-40089 | Sonicverse has Server-Side Request Forgery via user-co… |
sonicverse-eu |
audiostreaming-stack |
2026-04-09T19:43:09.606Z | 2026-04-13T20:20:37.737Z | |
| cve-2026-35577 | Missing Host Header Validation in Apollo MCP Server fo… |
apollographql |
apollo-mcp-server |
2026-04-09T19:40:25.604Z | 2026-04-13T15:38:20.875Z | |
| cve-2026-34500 | Apache Tomcat: OCSP checks sometimes soft-fail with FF… |
Apache Software Foundation |
Apache Tomcat |
2026-04-09T19:36:52.857Z | 2026-04-10T14:22:31.310Z | |
| cve-2026-34487 | Apache Tomcat: Cloud membership for clustering compone… |
Apache Software Foundation |
Apache Tomcat |
2026-04-09T19:36:12.048Z | 2026-04-10T17:49:44.314Z | |
| cve-2026-34486 | Apache Tomcat: Fix for CVE-2026-29146 allowed bypass o… |
Apache Software Foundation |
Apache Tomcat |
2026-04-09T19:35:35.994Z | 2026-04-10T20:20:56.605Z | |
| cve-2026-40087 | LangChain has incomplete f-string validation in prompt… |
langchain-ai |
langchain |
2026-04-09T19:34:55.198Z | 2026-04-14T14:48:03.160Z | |
| cve-2026-34483 | Apache Tomcat: Incomplete escaping of JSON access logs |
Apache Software Foundation |
Apache Tomcat |
2026-04-09T19:30:28.874Z | 2026-04-10T20:17:38.858Z | |
| cve-2026-5194 | 9.3 (v4.0) | wolfSSL ECDSA Certificate Verification |
wolfSSL |
wolfSSL |
2026-04-09T19:30:24.095Z | 2026-04-22T03:55:45.778Z |
| cve-2026-5974 | FoundationAgents MetaGPT terminal.py Bash.run os comma… |
FoundationAgents |
MetaGPT |
2026-04-09T19:30:15.216Z | 2026-04-09T20:17:26.123Z | |
| cve-2026-40077 | Beszel has an IDOR in hub API endpoints that read syst… |
henrygd |
beszel |
2026-04-09T19:27:39.364Z | 2026-04-13T20:19:45.967Z | |
| cve-2026-32990 | Apache Tomcat: Fix for CVE-2025-66614 is incomplete |
Apache Software Foundation |
Apache Tomcat |
2026-04-09T19:23:49.618Z | 2026-04-10T18:39:25.498Z | |
| cve-2026-29146 | Apache Tomcat: EncryptInterceptor vulnerable to paddin… |
Apache Software Foundation |
Apache Tomcat |
2026-04-09T19:21:57.289Z | 2026-04-10T18:17:59.908Z | |
| cve-2026-29145 | Apache Tomcat, Apache Tomcat Native: OCSP checks somet… |
Apache Software Foundation |
Apache Tomcat |
2026-04-09T19:20:24.601Z | 2026-04-10T18:11:31.014Z | |
| cve-2026-29129 | Apache Tomcat: TLS cipher order is not preserved |
Apache Software Foundation |
Apache Tomcat |
2026-04-09T19:19:40.645Z | 2026-04-10T18:06:45.771Z | |
| cve-2026-5973 | FoundationAgents MetaGPT common.py get_mime_type os co… |
FoundationAgents |
MetaGPT |
2026-04-09T19:15:13.464Z | 2026-04-14T16:34:08.668Z | |
| cve-2026-25854 | Apache Tomcat: Occasionally open redirect |
Apache Software Foundation |
Apache Tomcat |
2026-04-09T19:13:13.529Z | 2026-04-10T18:22:34.359Z | |
| cve-2026-24880 | Apache Tomcat: Request smuggling via invalid chunk extension |
Apache Software Foundation |
Apache Tomcat |
2026-04-09T19:12:10.730Z | 2026-04-10T18:33:49.308Z | |
| cve-2026-39977 | flatpak-builder has a path traversal leading to arbitr… |
flatpak |
flatpak-builder |
2026-04-09T19:05:23.616Z | 2026-04-09T20:19:28.323Z | |
| cve-2026-34734 | HDF5: H5T__conv_struct Use After Free |
HDFGroup |
hdf5 |
2026-04-09T19:01:21.794Z | 2026-04-13T20:47:37.724Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2023-avi-0104 | Vulnérabilité dans les produits Nextcloud | 2023-02-09T00:00:00.000000 | 2023-02-09T00:00:00.000000 |
| certfr-2023-avi-0103 | Vulnérabilité dans phpMyAdmin | 2023-02-08T00:00:00.000000 | 2023-02-08T00:00:00.000000 |
| certfr-2023-avi-0102 | Multiples vulnérabilités dans OpenSSL | 2023-02-08T00:00:00.000000 | 2023-02-08T00:00:00.000000 |
| certfr-2023-avi-0101 | Multiples vulnérabilités dans IBM Sterling | 2023-02-08T00:00:00.000000 | 2023-02-08T00:00:00.000000 |
| certfr-2023-avi-0100 | Vulnérabilité dans TYPO3 | 2023-02-08T00:00:00.000000 | 2023-02-08T00:00:00.000000 |
| certfr-2023-avi-0099 | Multiples vulnérabilités dans Chrome | 2023-02-08T00:00:00.000000 | 2023-02-08T00:00:00.000000 |
| certfr-2023-avi-0098 | Multiples vulnérabilités dans les produits IBM | 2023-02-07T00:00:00.000000 | 2023-02-07T00:00:00.000000 |
| certfr-2023-avi-0097 | Multiples vulnérabilités dans Google Android | 2023-02-07T00:00:00.000000 | 2023-02-07T00:00:00.000000 |
| certfr-2023-avi-0096 | Multiples vulnérabilités dans les produits Nextcloud | 2023-02-06T00:00:00.000000 | 2023-02-06T00:00:00.000000 |
| certfr-2023-avi-0095 | Vulnérabilité dans Microsoft Edge | 2023-02-06T00:00:00.000000 | 2023-02-06T00:00:00.000000 |
| certfr-2023-avi-0094 | Multiples vulnérabilités dans les produits Elastic | 2023-02-06T00:00:00.000000 | 2023-02-06T00:00:00.000000 |
| certfr-2023-avi-0093 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2023-02-03T00:00:00.000000 | 2023-02-03T00:00:00.000000 |
| certfr-2023-avi-0092 | Multiples vulnérabilités dans le noyau Linux de RedHat | 2023-02-03T00:00:00.000000 | 2023-02-03T00:00:00.000000 |
| certfr-2023-avi-0091 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2023-02-03T00:00:00.000000 | 2023-02-03T00:00:00.000000 |
| certfr-2023-avi-0090 | Vulnérabilité dans VMware Workstation | 2023-02-03T00:00:00.000000 | 2023-02-03T00:00:00.000000 |
| certfr-2023-avi-0089 | Multiples vulnérabilités dans OpenSSH | 2023-02-03T00:00:00.000000 | 2023-02-13T00:00:00.000000 |
| certfr-2023-avi-0088 | Multiples vulnérabilités dans F5 BIG-IP | 2023-02-02T00:00:00.000000 | 2023-02-02T00:00:00.000000 |
| certfr-2023-avi-0087 | Vulnérabilité dans les produits NetApp | 2023-02-02T00:00:00.000000 | 2023-02-02T00:00:00.000000 |
| certfr-2023-avi-0086 | Multiples vulnérabilités dans les produits IBM | 2023-02-02T00:00:00.000000 | 2023-02-02T00:00:00.000000 |
| certfr-2023-avi-0085 | Multiples vulnérabilités dans Nagios XI | 2023-02-02T00:00:00.000000 | 2023-02-02T00:00:00.000000 |
| certfr-2023-avi-0084 | Vulnérabilité dans Grafana | 2023-02-02T00:00:00.000000 | 2023-02-02T00:00:00.000000 |
| certfr-2023-avi-0083 | Vulnérabilité dans Cisco IOx | 2023-02-02T00:00:00.000000 | 2023-02-02T00:00:00.000000 |
| certfr-2023-avi-0082 | Vulnérabilité dans Trend Micro Apex One | 2023-02-02T00:00:00.000000 | 2023-02-02T00:00:00.000000 |
| certfr-2023-avi-0081 | Multiples vulnérabilités dans Moxa SDS-3008 | 2023-02-02T00:00:00.000000 | 2023-02-02T00:00:00.000000 |
| certfr-2023-avi-0080 | Multiples vulnérabilités dans Symfony | 2023-02-01T00:00:00.000000 | 2023-02-01T00:00:00.000000 |
| certfr-2023-avi-0079 | Vulnérabilité dans Pulse Secure Pulse Connect Secure | 2023-02-01T00:00:00.000000 | 2023-02-01T00:00:00.000000 |
| certfr-2023-avi-0078 | Multiples vulnérabilités dans GitLab | 2023-02-01T00:00:00.000000 | 2023-02-01T00:00:00.000000 |
| certfr-2023-avi-0077 | Multiples vulnérabilités dans Joomla | 2023-02-01T00:00:00.000000 | 2023-02-01T00:00:00.000000 |
| certfr-2023-avi-0076 | Multiples vulnérabilités dans les produits IBM | 2023-02-01T00:00:00.000000 | 2023-02-01T00:00:00.000000 |
| certfr-2023-avi-0075 | Vulnérabilité dans VMware vRealize Operations | 2023-02-01T00:00:00.000000 | 2023-02-01T00:00:00.000000 |