Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2020-37216 | 7.5 (v3.1) 8.7 (v4.0) | Hirschmann HiOS EtherNet/IP Stack Denial of Service |
Belden |
Hirschmann HiOS |
2026-04-03T20:19:25.269Z | 2026-04-04T03:23:19.214Z |
| cve-2026-28767 | 6.9 (v4.0) 5.3 (v3.1) | Gardyn Cloud API Missing Authentication for Critical F… |
Gardyn |
Cloud API |
2026-04-03T20:18:05.470Z | 2026-04-07T14:23:23.456Z |
| cve-2026-32646 | 8.7 (v4.0) 7.5 (v3.1) | Gardyn Cloud API Missing Authentication for Critical F… |
Gardyn |
Cloud API |
2026-04-03T20:15:45.736Z | 2026-04-07T14:24:15.629Z |
| cve-2022-4987 | 7.3 (v3.1) 8.4 (v4.0) | Hirschmann Industrial HiVision External Application Pa… |
Belden |
Hirschmann Industrial HiVision |
2026-04-03T20:15:24.713Z | 2026-04-06T16:51:22.758Z |
| cve-2026-35558 | 7.8 (v3.1) 7.3 (v4.0) | Improper neutralization of special elements in authent… |
Amazon |
Amazon Athena ODBC driver |
2026-04-03T20:15:09.386Z | 2026-04-07T13:07:22.816Z |
| cve-2026-35559 | 6.5 (v3.1) 7.1 (v4.0) | Out-of-bounds write in query processing components in … |
Amazon |
Amazon Athena ODBC driver |
2026-04-03T20:13:29.590Z | 2026-04-07T14:25:39.392Z |
| cve-2026-5485 | 7.8 (v3.1) 7.3 (v4.0) | OS command injection in Amazon Athena ODBC driver on Linux |
Amazon |
Amazon Athena ODBC driver |
2026-04-03T20:13:14.946Z | 2026-04-07T03:55:34.174Z |
| cve-2026-25742 | Zulip: Anonymous File Access After Disabling Spectator… |
zulip |
zulip |
2026-04-03T20:12:07.296Z | 2026-04-08T18:53:28.819Z | |
| cve-2026-32662 | 6.9 (v4.0) 5.3 (v3.1) | Gardyn Cloud API Active Debug Code |
Gardyn |
Cloud API |
2026-04-03T20:11:56.176Z | 2026-04-06T14:51:59.384Z |
| cve-2026-35562 | 7.5 (v3.1) 8.7 (v4.0) | Allocation of resources without limits in parsing comp… |
Amazon |
Amazon Athena ODBC driver |
2026-04-03T20:10:51.206Z | 2026-04-06T15:03:06.176Z |
| cve-2026-35561 | 7.4 (v3.1) 9.1 (v4.0) | Insufficient authentication security controls in brows… |
Amazon |
Amazon Athena ODBC driver |
2026-04-03T20:10:40.591Z | 2026-04-07T13:09:01.619Z |
| cve-2026-35560 | 7.4 (v3.1) 9.1 (v4.0) | Improper certificate validation in identity provider c… |
Amazon |
Amazon Athena ODBC driver |
2026-04-03T20:10:38.830Z | 2026-04-07T13:09:13.079Z |
| cve-2026-25726 | Cloudreve is vulnerable to Account Takeover via Weak C… |
cloudreve |
cloudreve |
2026-04-03T20:06:21.629Z | 2026-04-04T03:21:18.970Z | |
| cve-2026-28798 | Arbitrary internal service access via /v1/sys/proxy wh… |
IceWhaleTech |
ZimaOS |
2026-04-03T20:00:48.045Z | 2026-04-06T15:42:48.777Z | |
| cve-2026-5484 | BookStackApp BookStack Chapter Export ExportFormatter.… |
BookStackApp |
BookStack |
2026-04-03T19:45:12.967Z | 2026-04-08T18:52:44.563Z | |
| cve-2026-3184 | 3.7 (v3.1) | Util-linux: util-linux: access control bypass due to i… |
Red Hat |
Red Hat Hardened Images |
2026-04-03T18:43:45.725Z | 2026-05-01T19:33:12.808Z |
| cve-2026-2625 | 4 (v3.1) | Rust-rpm-sequoia: rust-rpm-sequoia: denial of service … |
Red Hat |
Red Hat Hardened Images |
2026-04-03T18:38:09.601Z | 2026-05-01T21:13:18.195Z |
| cve-2026-5476 | NASA cFS cfe_tbl_passthru_codec.c CFE_TBL_ValidateCode… |
NASA |
cFS |
2026-04-03T17:30:12.629Z | 2026-04-04T03:20:03.080Z | |
| cve-2026-32186 | 10 (v3.1) | Microsoft Bing Elevation of Privilege Vulnerability |
Microsoft |
Microsoft Bing |
2026-04-03T17:22:45.504Z | 2026-04-30T14:41:45.433Z |
| cve-2026-5475 | NASA cFS CCSDS Header Size cfe_sb_priv.c CFE_SB_Transm… |
NASA |
cFS |
2026-04-03T17:15:10.831Z | 2026-04-03T17:26:49.188Z | |
| cve-2026-0545 | Missing Authentication for Critical Function in mlflow… |
mlflow |
mlflow/mlflow |
2026-04-03T17:03:12.833Z | 2026-04-03T17:49:22.749Z | |
| cve-2026-5474 | NASA cFS CCSDS Packet Header to_lab_passthru_encode.c … |
NASA |
cFS |
2026-04-03T17:00:15.566Z | 2026-04-03T20:02:13.494Z | |
| cve-2026-5473 | NASA cFS Pickle pickle.load deserialization |
NASA |
cFS |
2026-04-03T16:30:13.683Z | 2026-04-06T14:51:38.808Z | |
| cve-2026-5472 | ProjectsAndPrograms School Management System Profile P… |
ProjectsAndPrograms |
School Management System |
2026-04-03T16:00:17.480Z | 2026-04-03T17:27:56.665Z | |
| cve-2026-25118 | immich-server: Insecure Transmission of Authentication… |
immich-app |
immich |
2026-04-03T15:51:07.171Z | 2026-04-04T03:19:19.166Z | |
| cve-2026-35218 | Budibase: Stored XSS via unsanitized entity names rend… |
Budibase |
budibase |
2026-04-03T15:47:45.469Z | 2026-04-03T20:05:06.999Z | |
| cve-2026-35216 | Budibase: Unauthenticated Remote Code Execution via We… |
Budibase |
budibase |
2026-04-03T15:45:40.091Z | 2026-04-03T16:46:23.789Z | |
| cve-2026-5471 | Investory Toy Planet Trouble App app.investory.toyfact… |
Investory |
Toy Planet Trouble App |
2026-04-03T15:45:10.403Z | 2026-04-04T03:17:50.783Z | |
| cve-2026-35214 | Budibase: Path traversal in plugin file upload enables… |
Budibase |
budibase |
2026-04-03T15:43:12.426Z | 2026-04-03T16:04:36.168Z | |
| cve-2026-31818 | Budibase: Server-Side Request Forgery via REST Connect… |
Budibase |
budibase |
2026-04-03T15:41:13.955Z | 2026-04-03T20:04:33.012Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2021-avi-362 | Vulnérabilité dans Pulse Secure Virtual Traffic Manager | 2021-05-12T00:00:00.000000 | 2021-05-12T00:00:00.000000 |
| certfr-2021-avi-361 | Vulnérabilité dans Citrix Worspace App | 2021-05-12T00:00:00.000000 | 2021-05-12T00:00:00.000000 |
| certfr-2021-avi-360 | Multiples vulnérabilités dans Adobe Acrobat et Acrobat Reader | 2021-05-12T00:00:00.000000 | 2021-05-12T00:00:00.000000 |
| certfr-2021-avi-359 | Multiples vulnérabilités dans F5 BIG-IQ | 2021-05-12T00:00:00.000000 | 2021-05-12T00:00:00.000000 |
| certfr-2021-avi-358 | Vulnérabilité dans VMware ONE UEM console | 2021-05-11T00:00:00.000000 | 2021-05-11T00:00:00.000000 |
| certfr-2021-avi-357 | Multiples vulnérabilités dans les produits Siemens | 2021-05-11T00:00:00.000000 | 2021-05-11T00:00:00.000000 |
| certfr-2021-avi-356 | Multiples vulnérabilités dans les produits SAP | 2021-05-11T00:00:00.000000 | 2021-05-11T00:00:00.000000 |
| certfr-2021-avi-355 | Multiples vulnérabilités dans Google Chrome | 2021-05-11T00:00:00.000000 | 2021-05-11T00:00:00.000000 |
| certfr-2021-avi-354 | Vulnérabilité dans Trend Micro IM Security | 2021-05-07T00:00:00.000000 | 2021-05-07T00:00:00.000000 |
| certfr-2021-avi-353 | Multiples vulnérabilités dans les produits Foxit | 2021-05-07T00:00:00.000000 | 2021-05-07T00:00:00.000000 |
| certfr-2021-avi-352 | Multiples vulnérabilités dans Ruby on Rails | 2021-05-06T00:00:00.000000 | 2021-05-06T00:00:00.000000 |
| certfr-2021-avi-351 | Vulnérabilité dans VMware vRealize Business for Cloud | 2021-05-06T00:00:00.000000 | 2021-05-06T00:00:00.000000 |
| certfr-2021-avi-350 | Multiples vulnérabilités dans les produits Cisco | 2021-05-06T00:00:00.000000 | 2021-06-15T00:00:00.000000 |
| certfr-2021-avi-349 | Multiples vulnérabilités dans Mozilla Firefox | 2021-05-06T00:00:00.000000 | 2021-05-06T00:00:00.000000 |
| certfr-2021-avi-348 | Multiples vulnérabilités dans SolarWinds Serv-U | 2021-05-06T00:00:00.000000 | 2021-05-06T00:00:00.000000 |
| certfr-2021-avi-347 | Vulnérabilité dans SolarWinds Serv-U | 2021-05-05T00:00:00.000000 | 2021-05-05T00:00:00.000000 |
| certfr-2021-avi-346 | Vulnérabilité dans Xen | 2021-05-05T00:00:00.000000 | 2021-05-05T00:00:00.000000 |
| certfr-2021-avi-345 | Multiples vulnérabilités dans Apple Safari | 2021-05-05T00:00:00.000000 | 2021-05-05T00:00:00.000000 |
| certfr-2021-avi-344 | Multiples vulnérabilités dans IBM QRadar | 2021-05-05T00:00:00.000000 | 2021-05-05T00:00:00.000000 |
| certfr-2021-avi-343 | Multiples vulnérabilités dans les produits Fortinet | 2021-05-05T00:00:00.000000 | 2023-12-20T00:00:00.000000 |
| certfr-2021-avi-342 | Multiples vulnérabilités dans Exim | 2021-05-05T00:00:00.000000 | 2021-05-05T00:00:00.000000 |
| certfr-2021-avi-341 | Multiples vulnérabilités les produits Stormshield | 2021-05-05T00:00:00.000000 | 2021-06-11T00:00:00.000000 |
| certfr-2021-avi-340 | Vulnérabilité dans Mozilla Firefox ESR et Thunderbird | 2021-05-05T00:00:00.000000 | 2021-05-05T00:00:00.000000 |
| certfr-2021-avi-339 | Multiples vulnérabilités dans Google Chrome OS | 2021-05-05T00:00:00.000000 | 2021-05-05T00:00:00.000000 |
| certfr-2021-avi-338 | Vulnérabilité dans Apache OpenOffice | 2021-05-04T00:00:00.000000 | 2021-05-04T00:00:00.000000 |
| certfr-2021-avi-337 | Multiples vulnérabilités dans Google Android | 2021-05-04T00:00:00.000000 | 2021-05-04T00:00:00.000000 |
| certfr-2021-avi-336 | Multiples vulnérabilités dans les produits Apple | 2021-05-04T00:00:00.000000 | 2021-05-04T00:00:00.000000 |
| certfr-2021-avi-335 | Multiples vulnérabilités dans Pulse Connect Secure | 2021-05-03T00:00:00.000000 | 2021-05-03T00:00:00.000000 |
| certfr-2021-avi-334 | Vulnérabilité dans Qnap QTS | 2021-05-03T00:00:00.000000 | 2021-05-03T00:00:00.000000 |
| certfr-2021-avi-333 | Vulnérabilité dans MongoDB Server | 2021-05-03T00:00:00.000000 | 2021-05-03T00:00:00.000000 |