Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-77701 | N/A | WCFM Marketplace < 3.8.2 - Unauthenticated Refund Requ… |
Unknown |
WCFM Marketplace |
2026-08-28T06:00:16.799Z | 2026-08-28T13:03:20.688Z |
| cve-2026-79615 | N/A | Quiz And Survey Master < 11.2.4 - Contributor+ Cross-Q… |
Unknown |
Quiz and Survey Master (QSM) |
2026-08-28T06:00:17.000Z | 2026-08-28T13:03:20.541Z |
| cve-2026-79706 | N/A | Breeze Cache < 2.5.13 - Unauthenticated File Creation … |
Unknown |
Breeze Cache |
2026-08-28T06:00:17.170Z | 2026-08-28T13:03:20.389Z |
| cve-2026-79995 | N/A | User Registration & Membership < 5.2.5 - Subscriber+ P… |
Unknown |
User Registration & Membership |
2026-08-28T06:00:17.343Z | 2026-08-28T13:03:20.229Z |
| cve-2026-79996 | N/A | User Registration & Membership < 5.2.6 - Authenticated… |
Unknown |
User Registration & Membership |
2026-08-28T06:00:17.519Z | 2026-08-28T13:03:20.076Z |
| cve-2026-80697 | N/A | erofs: ensure valid f_path for page cache sharing |
Linux |
Linux |
2026-08-28T06:53:02.236Z | 2026-08-28T12:08:17.218Z |
| cve-2026-44020 | Docling: Unsafe XML Entity Expansion in USPTO Patent Backend |
docling-project |
docling |
2026-06-24T17:45:46.644Z | 2026-08-28T12:04:31.876Z | |
| cve-2026-44513 | Diffusers: `trust_remote_code` bypass via `custom_pipe… |
huggingface |
diffusers |
2026-05-14T16:26:03.907Z | 2026-08-28T12:04:31.466Z | |
| cve-2026-42557 | jupyterlab: Command linker attributes in HTML enable o… |
jupyterlab |
jupyterlab |
2026-05-13T15:06:14.222Z | 2026-08-28T12:04:30.875Z | |
| cve-2026-44017 | Docling: Unsafe Zip Extraction in EasyOCR Model Download |
docling-project |
docling |
2026-06-24T17:48:46.833Z | 2026-08-28T12:04:30.580Z | |
| cve-2026-44488 | Axios: Allocation of Resources Without Limits or Throt… |
axios |
axios |
2026-06-11T15:37:38.013Z | 2026-08-28T12:04:28.387Z | |
| cve-2026-35397 | jupyter-server path traversal allows access to sibling… |
jupyter-server |
jupyter_server |
2026-05-05T19:37:33.810Z | 2026-08-28T12:04:28.358Z | |
| cve-2026-0545 | Missing Authentication for Critical Function in mlflow… |
mlflow |
mlflow/mlflow |
2026-04-03T17:03:12.833Z | 2026-08-28T12:04:27.665Z | |
| cve-2026-2614 | Arbitrary File Read via Prompt Tag Source Validation B… |
mlflow |
mlflow/mlflow |
2026-05-11T19:02:46.025Z | 2026-08-28T12:04:27.071Z | |
| cve-2026-44289 | protobufjs: Denial of service through unbounded protob… |
protobufjs |
protobuf.js |
2026-05-13T14:39:09.791Z | 2026-08-28T12:04:26.986Z | |
| cve-2026-44494 | Axios: Full Man-in-the-Middle via Prototype Pollution … |
axios |
axios |
2026-06-11T15:32:03.155Z | 2026-08-28T12:04:26.956Z | |
| cve-2026-44727 | Jupyter Server: Stored XSS in `NbconvertFileHandler` /… |
jupyter-server |
jupyter_server |
2026-06-22T19:56:56.776Z | 2026-08-28T12:04:25.625Z | |
| cve-2026-54293 | NLTK: URL-Encoded Path Traversal in nltk.data.load() A… |
nltk |
nltk |
2026-06-22T17:25:05.611Z | 2026-08-28T12:04:24.058Z | |
| cve-2026-41672 | xmldom: XML node injection through unvalidated comment… |
xmldom |
xmldom |
2026-05-07T03:36:16.914Z | 2026-08-28T12:04:23.913Z | |
| cve-2026-44724 | systeminformation: Linux command injection in networkI… |
sebhildebrandt |
systeminformation |
2026-05-27T19:26:28.392Z | 2026-08-28T12:04:23.314Z | |
| cve-2026-49851 | Mistune: Potential DoS via quadratic-time parsing in p… |
lepture |
mistune |
2026-06-24T17:05:33.602Z | 2026-08-28T12:04:23.106Z | |
| cve-2026-42266 | JupyterLab has an Extension Manager API/GUI Policy Dis… |
jupyterlab |
jupyterlab |
2026-05-13T15:08:49.846Z | 2026-08-28T12:04:22.624Z | |
| cve-2026-48526 | PyJWT: Public-key JWK accepted as HMAC secret enables … |
jpadilla |
pyjwt |
2026-05-28T15:09:09.258Z | 2026-08-28T12:04:21.183Z | |
| cve-2026-41673 | xmldom: Denial of service via uncontrolled recursion i… |
xmldom |
xmldom |
2026-05-07T03:40:28.378Z | 2026-08-28T12:04:19.816Z | |
| cve-2026-41675 | xmldom: XML node injection through unvalidated process… |
xmldom |
xmldom |
2026-05-07T03:49:34.056Z | 2026-08-28T12:04:19.054Z | |
| cve-2026-33079 | Mistune ReDoS in LINK_TITLE_RE allows denial of servic… |
lepture |
mistune |
2026-05-06T17:25:09.026Z | 2026-08-28T12:04:18.949Z | |
| cve-2026-44293 | protobufjs: Code injection through bytes field default… |
protobufjs |
protobuf.js |
2026-05-13T14:43:33.342Z | 2026-08-28T12:04:17.860Z | |
| cve-2026-53322 | vfio/pci: Clean up DMABUFs before disabling function |
Linux |
Linux |
2026-06-26T19:41:13.245Z | 2026-08-28T12:04:17.735Z | |
| cve-2026-44487 | Axios: Proxy-Authorization Credential Leak to Origin S… |
axios |
axios |
2026-06-11T15:38:25.150Z | 2026-08-28T12:04:17.170Z | |
| cve-2026-44486 | Axios: Proxy-Authorization header leaks to redirect ta… |
axios |
axios |
2026-06-11T15:39:07.714Z | 2026-08-28T12:04:16.797Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2022-avi-466 | Multiples vulnérabilités dans les produits Apple | 2022-05-17T00:00:00.000000 | 2022-05-17T00:00:00.000000 |
| certfr-2022-avi-465 | Vulnérabilité dans VMware Spring Security | 2022-05-17T00:00:00.000000 | 2022-05-17T00:00:00.000000 |
| certfr-2022-avi-464 | Multiples vulnérabilités dans Microsoft Edge | 2022-05-16T00:00:00.000000 | 2022-05-16T00:00:00.000000 |
| certfr-2022-avi-463 | Vulnérabilité dans OpenLDAP | 2022-05-13T00:00:00.000000 | 2022-05-13T00:00:00.000000 |
| certfr-2022-avi-462 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2022-05-13T00:00:00.000000 | 2022-05-13T00:00:00.000000 |
| certfr-2022-avi-461 | Multiples vulnérabilités dans SonicWall SSLVPN SMA 1000 | 2022-05-13T00:00:00.000000 | 2022-05-13T00:00:00.000000 |
| certfr-2022-avi-460 | Vulnérabilité dans PostgreSQL | 2022-05-13T00:00:00.000000 | 2022-05-13T00:00:00.000000 |
| certfr-2022-avi-459 | Multiples vulnérabilités dans les produits IBM | 2022-05-13T00:00:00.000000 | 2022-05-13T00:00:00.000000 |
| certfr-2022-avi-448 | Multiples vulnérabilités dans Microsoft Windows | 2022-05-11T00:00:00.000000 | 2022-05-13T00:00:00.000000 |
| certfr-2022-avi-458 | Multiples vulnérabilités dans les produits Check Point | 2022-05-12T00:00:00.000000 | 2022-05-12T00:00:00.000000 |
| certfr-2022-avi-457 | Vulnérabilité dans Stormshield Network Security | 2022-05-12T00:00:00.000000 | 2022-05-12T00:00:00.000000 |
| certfr-2022-avi-456 | Multiples vulnérabilités dans les produits SAP | 2022-05-12T00:00:00.000000 | 2022-05-12T00:00:00.000000 |
| certfr-2022-avi-455 | Multiples vulnérabilités dans les produits Palo Alto Networks | 2022-05-12T00:00:00.000000 | 2022-05-12T00:00:00.000000 |
| certfr-2022-avi-454 | Multiples vulnérabilités dans VMware Spring | 2022-05-12T00:00:00.000000 | 2022-05-12T00:00:00.000000 |
| certfr-2022-avi-453 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2022-05-12T00:00:00.000000 | 2022-05-12T00:00:00.000000 |
| certfr-2022-avi-452 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2022-05-12T00:00:00.000000 | 2022-05-12T00:00:00.000000 |
| certfr-2022-avi-451 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2022-05-12T00:00:00.000000 | 2022-05-12T00:00:00.000000 |
| certfr-2022-avi-450 | Multiples vulnérabilités dans les produits Microsoft | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-449 | Multiples vulnérabilités dans Microsoft .Net | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-447 | Multiples vulnérabilités dans Microsoft Office | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-446 | Multiples vulnérabilités dans Microsoft Edge | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-445 | Vulnérabilité dans F5 BIG-IP | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-444 | Multiples vulnérabilités dans les produits Intel | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-443 | Vulnérabilité dans Apache Tomcat | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-442 | Vulnérabilité dans Zimbra | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-441 | Vulnérabilité dans Adobe ColdFusion | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-440 | Multiples vulnérabilités dans Google Chrome | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-439 | Multiples vulnérabilités dans Axis OS | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-438 | Vulnérabilité dans Nextcloud Talk | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |
| certfr-2022-avi-437 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2022-05-11T00:00:00.000000 | 2022-05-11T00:00:00.000000 |