Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-40069 | bsv-sdk ARC broadcaster treats INVALID/MALFORMED/ORPHA… |
sgbett |
bsv-ruby-sdk |
2026-04-09T17:22:28.416Z | 2026-04-13T20:11:51.134Z | |
| cve-2026-39987 | marimo Affected by Pre-Auth Remote Code Execution via … |
marimo-team |
marimo |
2026-04-09T17:16:55.639Z | 2026-04-24T03:55:20.777Z | |
| cve-2026-39961 | Aiven Operator has cross-namespace secret exfiltration… |
aiven |
aiven-operator |
2026-04-09T17:14:07.330Z | 2026-04-10T14:08:22.087Z | |
| cve-2026-39985 | LORIS has an open redirect field on login |
aces |
Loris |
2026-04-09T17:08:49.668Z | 2026-04-10T14:07:40.047Z | |
| cve-2026-39983 | FTP Command Injection via CRLF in basic-ftp |
patrickjuchli |
basic-ftp |
2026-04-09T17:05:46.228Z | 2026-04-09T19:31:42.093Z | |
| cve-2026-39981 | AGiXT has a Path Traversal in safe_join() |
Josh-XT |
AGiXT |
2026-04-09T17:01:27.069Z | 2026-04-13T20:10:13.881Z | |
| cve-2026-5970 | FoundationAgents MetaGPT HumanEvalBenchmark/MBPPBenchm… |
FoundationAgents |
MetaGPT |
2026-04-09T17:00:21.409Z | 2026-04-09T18:07:11.915Z | |
| cve-2026-39980 | OpenCTI affected by RCE via notifier template |
OpenCTI-Platform |
opencti |
2026-04-09T16:54:31.566Z | 2026-04-09T18:44:10.616Z | |
| cve-2026-39976 | Laravel Passport's TokenGuard Authenticates Unrelated … |
laravel |
passport |
2026-04-09T16:50:42.326Z | 2026-04-09T19:31:53.801Z | |
| cve-2026-39974 | n8n-MCP has an Authenticated SSRF via instance-URL hea… |
czlonkowski |
n8n-mcp |
2026-04-09T16:45:20.490Z | 2026-04-13T20:09:26.781Z | |
| cve-2026-39972 | Mercure has a Topic Selector Cache Key Collision |
dunglas |
mercure |
2026-04-09T16:42:22.903Z | 2026-04-09T18:59:49.306Z | |
| cve-2026-39962 | LDAP injection in MISP ApacheAuthenticate when using a… |
MISP |
MISP |
2026-04-09T16:37:38.880Z | 2026-04-10T14:07:02.751Z | |
| cve-2026-5962 | Tenda CH22 httpd R7WebsSecurityHandlerfunction path tr… |
Tenda |
CH22 |
2026-04-09T16:30:16.464Z | 2026-04-09T19:01:37.732Z | |
| cve-2026-39959 | Tmds.DBus: malicious D-Bus peers can spoof signals, ex… |
tmds |
Tmds.DBus |
2026-04-09T16:29:20.616Z | 2026-04-09T19:32:09.891Z | |
| cve-2026-39958 | oma-topic: name Field in Topic Manifests (topic.json) … |
AOSC-Dev |
oma |
2026-04-09T16:28:18.758Z | 2026-04-13T20:08:17.849Z | |
| cve-2026-5961 | code-projects Simple IT Discussion Forum topic-details… |
code-projects |
Simple IT Discussion Forum |
2026-04-09T16:15:13.362Z | 2026-04-09T19:37:15.178Z | |
| cve-2026-39957 | Lychee has Broken Access Control in SharingController:… |
LycheeOrg |
Lychee |
2026-04-09T16:14:56.133Z | 2026-04-09T19:08:20.555Z | |
| cve-2026-39943 | Directus exposes sensitive fields in revision history |
directus |
directus |
2026-04-09T16:12:09.963Z | 2026-04-10T14:06:06.440Z | |
| cve-2026-39942 | Directus has a Path Traversal and Broken Access Contro… |
directus |
directus |
2026-04-09T16:07:54.100Z | 2026-04-09T19:37:24.389Z | |
| cve-2026-39856 | osslsigncode has an Out-of-Bounds Read via Unvalidated… |
mtrojnar |
osslsigncode |
2026-04-09T16:03:28.233Z | 2026-04-13T20:06:35.283Z | |
| cve-2026-39855 | osslsigncode has an Integer Underflow in PE Page Hash … |
mtrojnar |
osslsigncode |
2026-04-09T15:58:38.559Z | 2026-04-09T19:22:16.659Z | |
| cve-2026-40046 | Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ … |
Apache Software Foundation |
Apache ActiveMQ |
2026-04-09T15:58:32.966Z | 2026-04-10T19:41:00.618Z | |
| cve-2026-33005 | Apache OpenMeetings: Insufficient checks in FileWebService |
Apache Software Foundation |
Apache OpenMeetings |
2026-04-09T15:52:50.770Z | 2026-04-10T18:44:45.976Z | |
| cve-2026-33266 | Apache OpenMeetings: Hardcoded Remember-Me Cookie Encr… |
Apache Software Foundation |
Apache OpenMeetings |
2026-04-09T15:52:36.105Z | 2026-04-10T18:49:13.351Z | |
| cve-2026-34020 | Apache OpenMeetings: Login Credentials Passed via GET … |
Apache Software Foundation |
Apache OpenMeetings |
2026-04-09T15:52:06.599Z | 2026-04-10T20:13:47.789Z | |
| cve-2026-39853 | osslsigncode has a Stack Buffer Overflow via Unbounded… |
mtrojnar |
osslsigncode |
2026-04-09T15:50:26.548Z | 2026-04-09T16:15:19.583Z | |
| cve-2026-39843 | Plane has a Server-Side Request Forgery (SSRF) in Favi… |
makeplane |
plane |
2026-04-09T15:43:34.963Z | 2026-04-13T20:05:32.594Z | |
| cve-2026-39941 | ChurchCRM has an XSS vulnerability |
ChurchCRM |
CRM |
2026-04-09T15:38:07.444Z | 2026-04-10T14:05:39.204Z | |
| cve-2026-5960 | code-projects Patient Record Management System SQL Dat… |
code-projects |
Patient Record Management System |
2026-04-09T15:15:11.648Z | 2026-04-10T14:04:51.221Z | |
| cve-2026-35205 | Helm's plugin verification fails open when .prov is mi… |
helm |
helm |
2026-04-09T15:06:41.052Z | 2026-04-09T16:05:00.744Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2023-avi-0014 | Multiples vulnérabilités dans les produits Schneider Electric | 2023-01-10T00:00:00.000000 | 2023-01-10T00:00:00.000000 |
| certfr-2023-avi-0013 | Multiples vulnérabilités dans GitLab | 2023-01-10T00:00:00.000000 | 2023-01-10T00:00:00.000000 |
| certfr-2023-avi-0012 | Multiples vulnérabilités dans IBM Sterling | 2023-01-10T00:00:00.000000 | 2023-01-10T00:00:00.000000 |
| certfr-2023-avi-0011 | Multiples vulnérabilités dans les produits Nextcloud | 2023-01-09T00:00:00.000000 | 2023-01-09T00:00:00.000000 |
| certfr-2023-avi-0010 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2023-01-06T00:00:00.000000 | 2023-01-06T00:00:00.000000 |
| certfr-2023-avi-0009 | Multiples vulnérabilités dans PHP | 2023-01-06T00:00:00.000000 | 2023-01-06T00:00:00.000000 |
| certfr-2023-avi-0008 | Multiples vulnérabilités dans les produits IBM | 2023-01-06T00:00:00.000000 | 2023-01-06T00:00:00.000000 |
| certfr-2023-avi-0007 | Multiples vulnérabilités dans IBM AIX et VIOS | 2023-01-05T00:00:00.000000 | 2023-01-18T00:00:00.000000 |
| certfr-2023-avi-0006 | Multiples vulnérabilités dans les produits Symantec | 2023-01-04T00:00:00.000000 | 2023-01-04T00:00:00.000000 |
| certfr-2023-avi-0005 | Vulnérabilité dans Synology VPN Plus Server | 2023-01-04T00:00:00.000000 | 2023-01-04T00:00:00.000000 |
| certfr-2023-avi-0004 | Multiples vulnérabilités dans IBM Sterling Global Mailbox | 2023-01-04T00:00:00.000000 | 2023-01-04T00:00:00.000000 |
| certfr-2023-avi-0003 | Multiples vulnérabilités dans les produits Android | 2023-01-04T00:00:00.000000 | 2023-01-04T00:00:00.000000 |
| certfr-2023-avi-0002 | Multiples vulnérabilités dans les produits Fortinet | 2023-01-04T00:00:00.000000 | 2023-01-04T00:00:00.000000 |
| certfr-2023-avi-0001 | Vulnérabilité dans Apache Tomcat | 2023-01-04T00:00:00.000000 | 2023-01-04T00:00:00.000000 |
| certfr-2022-avi-1127 | Multiples vulnérabilités dans le noyau Linux de Debian | 2022-12-27T00:00:00.000000 | 2022-12-29T00:00:00.000000 |
| certfr-2022-avi-1126 | Vulnérabilité dans Synology SRM | 2022-12-27T00:00:00.000000 | 2022-12-27T00:00:00.000000 |
| certfr-2022-avi-1125 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2022-12-26T00:00:00.000000 | 2022-12-26T00:00:00.000000 |
| certfr-2022-avi-1124 | Vulnérabilité dans Thunderbird | 2022-12-22T00:00:00.000000 | 2022-12-22T00:00:00.000000 |
| certfr-2022-avi-1123 | Multiples vulnérabilités dans les produits SolarWinds | 2022-12-22T00:00:00.000000 | 2022-12-22T00:00:00.000000 |
| certfr-2022-avi-1122 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2022-12-21T00:00:00.000000 | 2022-12-21T00:00:00.000000 |
| certfr-2022-avi-1121 | Vulnérabilité dans Elastic Kibana | 2022-12-21T00:00:00.000000 | 2022-12-21T00:00:00.000000 |
| certfr-2022-avi-1120 | Vulnérabilité dans NetApp OnCommand Insight | 2022-12-21T00:00:00.000000 | 2022-12-21T00:00:00.000000 |
| certfr-2022-avi-1119 | Multiples vulnérabilités dans Tenable Nessus Network Monitor | 2022-12-20T00:00:00.000000 | 2022-12-20T00:00:00.000000 |
| certfr-2022-avi-1118 | Multiples vulnérabilités dans Citrix Hypervisor | 2022-12-20T00:00:00.000000 | 2022-12-20T00:00:00.000000 |
| certfr-2022-avi-1117 | Multiples vulnérabilités dans les produits Cisco | 2022-12-19T00:00:00.000000 | 2022-12-19T00:00:00.000000 |
| certfr-2022-avi-1116 | Multiples vulnérabilités dans Microsoft Edge | 2022-12-19T00:00:00.000000 | 2022-12-19T00:00:00.000000 |
| certfr-2022-avi-1115 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2022-12-19T00:00:00.000000 | 2022-12-19T00:00:00.000000 |
| certfr-2022-avi-1114 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2022-12-16T00:00:00.000000 | 2022-12-16T00:00:00.000000 |
| certfr-2022-avi-1113 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2022-12-16T00:00:00.000000 | 2022-12-16T00:00:00.000000 |
| certfr-2022-avi-1112 | Multiples vulnérabilités dans Samba | 2022-12-16T00:00:00.000000 | 2022-12-16T00:00:00.000000 |