Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-73839 | 4.6 (v3.1) 5.1 (v4.0) | Ebyte NE2-D11 Insufficiently Protected Credentials |
Ebyte |
Ebyte NE2-D11 Firmware |
2026-08-27T21:18:13.771Z | 2026-08-28T14:13:52.903Z |
| cve-2026-75813 | 7.5 (v3.1) 8.7 (v4.0) | Ebyte NE2-D11 Missing Authorization |
Ebyte |
Ebyte NE2-D11 Firmware |
2026-08-27T21:33:40.124Z | 2026-08-28T14:13:51.879Z |
| cve-2026-76945 | 7.5 (v3.1) 8.7 (v4.0) | Ebyte NE2-D11 Use of Client-Side Authentication |
Ebyte |
Ebyte NE2-D11 Firmware |
2026-08-27T21:35:38.060Z | 2026-08-28T14:13:51.722Z |
| cve-2026-78037 | 8.8 (v3.1) 8.7 (v4.0) | Xiiaozet LK100W OS Command Injection |
Xiiaozet |
Xiiaozet LK100W |
2026-08-27T21:46:32.067Z | 2026-08-28T14:13:51.266Z |
| cve-2026-78239 | 9.8 (v3.1) 9.3 (v4.0) | Xiiaozet LK100W Missing Authentication for Critical Function |
Xiiaozet |
Xiiaozet LK100W |
2026-08-27T21:48:30.879Z | 2026-08-28T14:13:51.112Z |
| cve-2026-76943 | 9.8 (v3.1) 9.3 (v4.0) | Xiiaozet LK100W Authentication Bypass Using an Alterna… |
Xiiaozet |
Xiiaozet LK100W |
2026-08-27T21:50:49.310Z | 2026-08-28T14:13:50.949Z |
| cve-2026-25250 | 6 (v3.1) | EAZ EazyFix 12.9 allows a Security Feature Bypass… |
eazsolution |
EazyFix |
2026-08-27T16:55:27.336Z | 2026-08-28T14:11:20.298Z |
| cve-2026-81728 | 8.6 (v4.0) 8.1 (v3.1) | Dolibarr before 24.0.0 SQL Injection via the CSV and X… |
Dolibarr |
dolibarr |
2026-08-27T20:07:33.503Z | 2026-08-28T14:08:40.368Z |
| cve-2026-82247 | 8.7 (v4.0) 7.5 (v3.1) | gitoxide before 0.37.1 HTTP Basic credential leak via … |
GitoxideLabs |
gitoxide |
2026-08-28T10:49:33.476Z | 2026-08-28T14:07:19.207Z |
| cve-2026-82242 | 8.3 (v4.0) 7.7 (v3.1) | Budibase before 3.41.3 Cross-Application Resource Inje… |
budibase |
server |
2026-08-28T10:49:30.049Z | 2026-08-28T14:02:53.417Z |
| cve-2023-43902 | N/A | Incorrect access control in the Forgot Your Passw… |
n/a |
n/a |
2023-11-14T00:00:00.000Z | 2026-08-28T14:01:20.555Z |
| cve-2026-59277 | 3.7 (v3.1) | Spring Security InetAddressMatchers Incomplete Interna… |
Spring |
Spring Security |
2026-08-27T17:57:36.006Z | 2026-08-28T14:01:04.295Z |
| cve-2026-59276 | 5.9 (v3.1) | Timing Attack via Non-Constant-Time Comparison of Sens… |
Spring |
Spring Security |
2026-08-27T17:57:34.993Z | 2026-08-28T14:00:41.248Z |
| cve-2026-82237 | 2.3 (v4.0) 3.1 (v3.1) | filebrowser through 2.63.23 Stale Share Link via File Rename |
filebrowser |
filebrowser |
2026-08-28T10:49:26.624Z | 2026-08-28T14:00:00.263Z |
| cve-2026-82254 | 8.7 (v4.0) 7.5 (v3.1) | gitoxide before 0.69.0 Denial of Service via gix-pack |
GitoxideLabs |
gitoxide |
2026-08-28T10:49:38.250Z | 2026-08-28T13:59:07.704Z |
| cve-2023-43901 | N/A | Incorrect access control in the AdHoc User creati… |
n/a |
n/a |
2023-11-14T00:00:00.000Z | 2026-08-28T13:58:36.985Z |
| cve-2026-82257 | 5.3 (v4.0) 4.3 (v3.1) | SvelteKit before 2.69.1 Prototype Pollution via File Input |
sveltejs |
kit |
2026-08-28T10:49:41.355Z | 2026-08-28T13:58:28.653Z |
| cve-2026-82259 | 8.7 (v4.0) 7.5 (v3.1) | SvelteKit 2.49.0 before 2.53.3 Denial of Service via form |
sveltejs |
kit |
2026-08-28T10:49:42.969Z | 2026-08-28T13:51:52.024Z |
| cve-2023-43900 | N/A | Insecure Direct Object References (IDOR) in eMudh… |
n/a |
n/a |
2023-11-14T00:00:00.000Z | 2026-08-28T13:49:23.239Z |
| cve-2026-74802 | 7.1 (v4.0) 8.2 (v3.1) | SiYuan 3.7.3 Cross-Site WebSocket Hijacking via networ… |
siyuan-note |
siyuan |
2026-08-17T11:04:37.285Z | 2026-08-28T13:45:55.771Z |
| cve-2026-73626 | 7.7 (v4.0) 7.5 (v3.1) | JupyterLab before 4.6.2 Authentication Bypass via PyPI… |
jupyterlab |
jupyterlab |
2026-08-13T11:28:25.551Z | 2026-08-28T13:45:55.401Z |
| cve-2026-50768 | N/A | File Upload vulnerability in T-Systems Internatio… |
n/a |
n/a |
2026-08-17T00:00:00.000Z | 2026-08-28T13:22:50.868Z |
| cve-2026-14942 | N/A | {'providerMetadata': {'orgId': '1bfdd5d7-9bf6-4a53-96ea-42e2716d7a81', 'shortName': 'WPScan', 'dateUpdated': '2026-08-28T13:07:30.293Z'}, 'rejectedReasons': [{'lang': 'en', 'value': 'This CVE ID was assigned to a reported vulnerability in the Customer Reviews for WooCommerce WordPress plugin and was never published. The report was withdrawn: the precondition it depends on, an attacker obtaining a review form identifier belonging to a customer they do not already have access to, could not be demonstrated. No advisory was issued for this ID.'}]} | N/A | N/A | 2026-08-28T13:07:30.293Z | |
| cve-2026-19092 | Tutor LMS < 4.0.6 - Unauthenticated Arbitrary Zero-Arg… |
Unknown |
Tutor LMS |
2026-08-27T17:05:37.621Z | 2026-08-28T13:03:21.752Z | |
| cve-2026-12513 | N/A | Shared Files < 1.7.68 - Unauthenticated Arbitrary File… |
Unknown |
Shared Files |
2026-08-28T06:00:15.488Z | 2026-08-28T13:03:21.606Z |
| cve-2026-12514 | N/A | Shared Files < 1.7.70 - Unauthenticated Limited File Upload |
Unknown |
Shared Files |
2026-08-28T06:00:15.667Z | 2026-08-28T13:03:21.464Z |
| cve-2026-14558 | N/A | WP User Frontend < 4.3.10 - Editor+ PHP Object Injecti… |
Unknown |
User Frontend |
2026-08-28T06:00:15.842Z | 2026-08-28T13:03:21.317Z |
| cve-2026-14567 | N/A | WP User Frontend < 4.3.10 - Unauthenticated User Email… |
Unknown |
User Frontend |
2026-08-28T06:00:16.015Z | 2026-08-28T13:03:21.166Z |
| cve-2026-19084 | N/A | Shared Files < 1.7.70 - Unauthenticated Arbitrary File Read |
Unknown |
shared-files-pro |
2026-08-28T06:00:16.188Z | 2026-08-28T13:03:21.003Z |
| cve-2026-19423 | N/A | Ultimate Member 2.6.7 - 2.12.1 - Unauthenticated Privi… |
Unknown |
Ultimate Member |
2026-08-28T06:00:16.618Z | 2026-08-28T13:03:20.842Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2022-avi-496 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2022-05-25T00:00:00.000000 | 2022-05-25T00:00:00.000000 |
| certfr-2022-avi-495 | Multiples vulnérabilités dans le noyau Linux de Ubuntu | 2022-05-25T00:00:00.000000 | 2022-05-25T00:00:00.000000 |
| certfr-2022-avi-494 | Multiples vulnérabilités dans les produits IBM | 2022-05-25T00:00:00.000000 | 2022-05-25T00:00:00.000000 |
| certfr-2022-avi-493 | Vulnérabilité dans VMware Tools | 2022-05-25T00:00:00.000000 | 2022-05-25T00:00:00.000000 |
| certfr-2022-avi-492 | Vulnérabilité dans le noyau Linux de Red Hat | 2022-05-24T00:00:00.000000 | 2022-05-24T00:00:00.000000 |
| certfr-2022-avi-491 | Multiples vulnérabilités dans Google Chrome OS | 2022-05-24T00:00:00.000000 | 2022-05-24T00:00:00.000000 |
| certfr-2022-avi-490 | Vulnérabilité dans le noyau Linux de SUSE | 2022-05-24T00:00:00.000000 | 2022-05-24T00:00:00.000000 |
| certfr-2022-avi-489 | Multiples vulnérabilités dans IBM Spectrum Scale | 2022-05-24T00:00:00.000000 | 2022-05-24T00:00:00.000000 |
| certfr-2022-avi-488 | Multiples vulnérabilités dans les produits F-Secure | 2022-05-23T00:00:00.000000 | 2022-05-23T00:00:00.000000 |
| certfr-2022-avi-487 | Multiples vulnérabilités dans les produits IBM | 2022-05-23T00:00:00.000000 | 2022-05-23T00:00:00.000000 |
| certfr-2022-avi-486 | Vulnérabilité dans le noyau Linux de SUSE | 2022-05-23T00:00:00.000000 | 2022-05-23T00:00:00.000000 |
| certfr-2022-avi-485 | Multiples vulnérabilités dans Mozilla Thunderbird | 2022-05-23T00:00:00.000000 | 2022-05-23T00:00:00.000000 |
| certfr-2022-avi-484 | Multiples vulnérabilités dans Mozilla Firefox et Firefox ESR | 2022-05-23T00:00:00.000000 | 2022-05-23T00:00:00.000000 |
| certfr-2022-avi-483 | Multiples vulnérabilités dans les produits Nextcloud | 2022-05-20T00:00:00.000000 | 2022-05-20T00:00:00.000000 |
| certfr-2022-avi-482 | Vulnérabilité dans Oracle E-Business Suite | 2022-05-20T00:00:00.000000 | 2022-05-20T00:00:00.000000 |
| certfr-2022-avi-481 | Multiples vulnérabilités dans les produits IBM | 2022-05-20T00:00:00.000000 | 2022-05-20T00:00:00.000000 |
| certfr-2022-avi-480 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2022-05-20T00:00:00.000000 | 2022-05-20T00:00:00.000000 |
| certfr-2022-avi-479 | Vulnérabilité dans Grafana Enterprise | 2022-05-20T00:00:00.000000 | 2022-05-20T00:00:00.000000 |
| certfr-2022-avi-478 | Vulnérabilité dans le noyau Linux de Red Hat | 2022-05-20T00:00:00.000000 | 2022-05-20T00:00:00.000000 |
| certfr-2022-avi-477 | Vulnérabilité dans IBM PowerVC | 2022-05-19T00:00:00.000000 | 2022-05-19T00:00:00.000000 |
| certfr-2022-avi-476 | Multiples vulnérabilités dans les produits VMware | 2022-05-19T00:00:00.000000 | 2022-05-19T00:00:00.000000 |
| certfr-2022-avi-475 | Multiples vulnérabilités dans Trend Micro Apex One | 2022-05-19T00:00:00.000000 | 2022-05-19T00:00:00.000000 |
| certfr-2022-avi-474 | Vulnérabilité dans ISC Bind | 2022-05-19T00:00:00.000000 | 2022-05-19T00:00:00.000000 |
| certfr-2022-avi-473 | Multiples vulnérabilités dans les produits Aruba | 2022-05-18T00:00:00.000000 | 2022-05-18T00:00:00.000000 |
| certfr-2022-avi-472 | Multiples vulnérabilités dans les produits IBM | 2022-05-18T00:00:00.000000 | 2022-05-18T00:00:00.000000 |
| certfr-2022-avi-471 | Vulnérabilité dans SolarWinds Serv-U | 2022-05-18T00:00:00.000000 | 2022-05-18T00:00:00.000000 |
| certfr-2022-avi-470 | Vulnérabilité dans VMware Sping Security | 2022-05-18T00:00:00.000000 | 2022-05-18T00:00:00.000000 |
| certfr-2022-avi-469 | Vulnérabilité dans SonicWall SSL-VPN SMA100 | 2022-05-18T00:00:00.000000 | 2022-05-18T00:00:00.000000 |
| certfr-2022-avi-468 | Multiples vulnérabilités dans Moodle | 2022-05-18T00:00:00.000000 | 2022-05-18T00:00:00.000000 |
| certfr-2022-avi-467 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2022-05-17T00:00:00.000000 | 2022-05-17T00:00:00.000000 |