Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-26163 | 7.8 (v3.1) | Windows Kernel Elevation of Privilege Vulnerability |
Microsoft |
Windows 10 Version 1607 |
2026-04-14T16:57:56.857Z | 2026-04-21T19:20:04.960Z |
| cve-2026-26159 | 7.8 (v3.1) | Remote Desktop Licensing Service Elevation of Privileg… |
Microsoft |
Windows 10 Version 1607 |
2026-04-14T16:57:56.121Z | 2026-04-21T19:20:04.249Z |
| cve-2026-26156 | 7.8 (v3.1) | Windows Hyper-V Remote Code Execution Vulnerability |
Microsoft |
Windows 10 Version 1607 |
2026-04-14T16:57:55.532Z | 2026-04-21T19:20:03.253Z |
| cve-2026-26153 | 7.8 (v3.1) | Windows Encrypted File System (EFS) Elevation of Privi… |
Microsoft |
Windows 10 Version 1809 |
2026-04-14T16:57:54.919Z | 2026-04-21T19:20:00.936Z |
| cve-2026-26152 | 7 (v3.1) | Microsoft Cryptographic Services Elevation of Privileg… |
Microsoft |
Windows 10 Version 1607 |
2026-04-14T16:57:54.238Z | 2026-04-21T19:20:00.319Z |
| cve-2026-26143 | 7.8 (v3.1) | Microsoft PowerShell Security Feature Bypass Vulnerability |
Microsoft |
PowerShell 7.4 |
2026-04-14T16:57:53.686Z | 2026-04-21T19:19:59.729Z |
| cve-2026-23666 | 7.5 (v3.1) | .NET Framework Denial of Service Vulnerability |
Microsoft |
Microsoft .NET Framework 3.5 |
2026-04-14T16:57:53.069Z | 2026-04-21T19:19:59.173Z |
| cve-2026-23657 | 7.8 (v3.1) | Microsoft Word Remote Code Execution Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2026-04-14T16:57:52.448Z | 2026-04-21T19:19:58.619Z |
| cve-2026-20806 | 5.5 (v3.1) | Windows COM Server Information Disclosure Vulnerability |
Microsoft |
Windows 10 Version 1809 |
2026-04-14T16:57:51.820Z | 2026-04-21T19:19:57.899Z |
| cve-2026-20928 | 4.6 (v3.1) | Windows Recovery Environment Security Feature Bypass V… |
Microsoft |
Windows 10 Version 1607 |
2026-04-14T16:57:51.238Z | 2026-04-21T19:19:57.431Z |
| cve-2026-32212 | 5.5 (v3.1) | Universal Plug and Play (upnp.dll) Information Disclos… |
Microsoft |
Windows 10 Version 1607 |
2026-04-14T16:57:50.632Z | 2026-04-21T19:19:56.799Z |
| cve-2026-33826 | 8 (v3.1) | Windows Active Directory Remote Code Execution Vulnerability |
Microsoft |
Windows Server 2012 R2 |
2026-04-14T16:57:50.050Z | 2026-04-21T19:19:56.171Z |
| cve-2026-33825 | 7.8 (v3.1) | Microsoft Defender Elevation of Privilege Vulnerability |
Microsoft |
Microsoft Defender Antimalware Platform |
2026-04-14T16:57:49.361Z | 2026-04-21T19:19:55.579Z |
| cve-2026-33822 | 6.1 (v3.1) | Microsoft Word Information Disclosure Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2026-04-14T16:57:48.786Z | 2026-04-21T19:19:55.021Z |
| cve-2026-33120 | 8.8 (v3.1) | Microsoft SQL Server Remote Code Execution Vulnerability |
Microsoft |
Microsoft SQL Server 2022 (GDR) |
2026-04-14T16:57:48.207Z | 2026-04-21T19:19:54.330Z |
| cve-2026-33116 | 7.5 (v3.1) | .NET, .NET Framework, and Visual Studio Denial of Serv… |
Microsoft |
.NET 10.0 |
2026-04-14T16:57:47.626Z | 2026-04-21T19:19:53.692Z |
| cve-2026-33098 | 7.8 (v3.1) | Windows Container Isolation FS Filter Driver Elevation… |
Microsoft |
Windows 10 Version 1607 |
2026-04-14T16:57:46.577Z | 2026-04-21T19:19:53.099Z |
| cve-2026-33096 | 7.5 (v3.1) | HTTP.sys Denial of Service Vulnerability |
Microsoft |
Windows 11 version 22H3 |
2026-04-14T16:57:45.953Z | 2026-04-21T19:19:52.553Z |
| cve-2026-33095 | 7.8 (v3.1) | Microsoft Word Remote Code Execution Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2026-04-14T16:57:45.386Z | 2026-04-21T19:19:51.895Z |
| cve-2026-32226 | 5.9 (v3.1) | .NET Framework Denial of Service Vulnerability |
Microsoft |
Microsoft .NET Framework 3.5 AND 4.7.2 |
2026-04-14T16:57:44.474Z | 2026-04-21T19:19:51.255Z |
| cve-2026-32224 | 7 (v3.1) | Windows Server Update Service (WSUS) Elevation of Priv… |
Microsoft |
Windows 11 version 26H1 |
2026-04-14T16:57:43.822Z | 2026-04-21T19:19:50.788Z |
| cve-2026-32223 | 6.8 (v3.1) | Windows USB Printing Stack (usbprint.sys) Elevation of… |
Microsoft |
Windows 11 Version 24H2 |
2026-04-14T16:57:43.073Z | 2026-04-21T19:19:50.215Z |
| cve-2026-32222 | 7.8 (v3.1) | Windows Win32k Elevation of Privilege Vulnerability |
Microsoft |
Windows 11 Version 24H2 |
2026-04-14T16:57:42.408Z | 2026-04-21T19:19:49.765Z |
| cve-2026-32221 | 8.4 (v3.1) | Windows Graphics Component Remote Code Execution Vulne… |
Microsoft |
Windows 11 Version 24H2 |
2026-04-14T16:57:41.793Z | 2026-04-21T19:19:49.221Z |
| cve-2026-32220 | 4.4 (v3.1) | UEFI Secure Boot Security Feature Bypass Vulnerability |
Microsoft |
Windows 11 Version 24H2 |
2026-04-14T16:57:40.959Z | 2026-04-21T19:19:48.740Z |
| cve-2026-32219 | 7 (v3.1) | Microsoft Brokering File System Elevation of Privilege… |
Microsoft |
Windows 11 Version 24H2 |
2026-04-14T16:57:40.275Z | 2026-04-21T19:19:48.158Z |
| cve-2026-32218 | 5.5 (v3.1) | Windows Kernel Information Disclosure Vulnerability |
Microsoft |
Windows 10 Version 21H2 |
2026-04-14T16:57:39.560Z | 2026-04-21T19:19:47.537Z |
| cve-2026-32217 | 5.5 (v3.1) | Windows Kernel Information Disclosure Vulnerability |
Microsoft |
Windows 10 Version 1607 |
2026-04-14T16:57:38.988Z | 2026-04-21T19:19:46.965Z |
| cve-2026-32216 | 5.5 (v3.1) | Windows Redirected Drive Buffering System Denial of Se… |
Microsoft |
Windows 11 version 26H1 |
2026-04-14T16:57:38.302Z | 2026-04-21T19:19:46.340Z |
| cve-2026-32215 | 5.5 (v3.1) | Windows Kernel Information Disclosure Vulnerability |
Microsoft |
Windows 10 Version 1809 |
2026-04-14T16:57:37.693Z | 2026-04-21T19:19:45.813Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2022-000092 | Typora fails to properly neutralize JavaScript code. | 2022-11-21T15:31+09:00 | 2024-06-03T15:13+09:00 |
| jvndb-2024-003254 | Seiko Solutions SkyBridge MB-A100/MB-A110 and SkyBridge BASIC MB-A130 vulnerable to OS command injection | 2024-06-03T14:53+09:00 | 2024-06-03T14:53+09:00 |
| jvndb-2024-003253 | Multiple vulnerabilities in Sharp and Toshiba Tec MFPs | 2024-06-03T14:36+09:00 | 2024-06-03T14:36+09:00 |
| jvndb-2022-000094 | Multiple cross-site scripting vulnerabilities in baserCMS | 2022-11-25T13:42+09:00 | 2024-05-31T18:17+09:00 |
| jvndb-2022-002761 | Multiple vulnerabilities in Trend Micro Apex One and Apex One as a Service | 2022-11-21T18:25+09:00 | 2024-05-31T17:43+09:00 |
| jvndb-2022-000078 | bingo!CMS vulnerable to authentication bypass | 2022-10-11T17:49+09:00 | 2024-05-30T17:57+09:00 |
| jvndb-2022-002836 | Multiple vulnerabilities in Trend Micro Apex One and Apex One as a Service | 2022-12-26T16:21+09:00 | 2024-05-30T17:47+09:00 |
| jvndb-2022-002451 | Multiple vulnerabilities in SVMPC1 and SVMPC2 | 2022-10-13T17:27+09:00 | 2024-05-30T16:38+09:00 |
| jvndb-2023-000037 | Joruri Gw vulnerable to cross-site scripting | 2023-04-17T14:19+09:00 | 2024-05-30T16:19+09:00 |
| jvndb-2023-001493 | Multiple mobile printing apps for Android vulnerable to improper intent handling | 2023-04-13T11:09+09:00 | 2024-05-30T15:48+09:00 |
| jvndb-2023-000038 | EC-CUBE plugin "NEXT ENGINE Integration Plugin (for EC-CUBE 2.0 series)" vulnerable to authentication bypass | 2023-04-19T14:06+09:00 | 2024-05-30T15:11+09:00 |
| jvndb-2024-000056 | awkblog vulnerable to OS command injection | 2024-05-30T14:39+09:00 | 2024-05-30T14:39+09:00 |
| jvndb-2023-001411 | Yokogawa Electric CENTUM series vulnerable to cleartext storage of sensitive information | 2023-04-06T14:59+09:00 | 2024-05-29T18:23+09:00 |
| jvndb-2022-000097 | Multiple vulnerabilities in DENSHI NYUSATSU CORE SYSTEM | 2022-12-15T15:18+09:00 | 2024-05-29T17:40+09:00 |
| jvndb-2023-000031 | Multiple vulnerabilities in JustSystems products | 2023-04-04T15:22+09:00 | 2024-05-29T17:32+09:00 |
| jvndb-2023-000035 | Improper restriction of XML external entity references (XXE) in Shinseiyo Sogo Soft | 2023-04-19T14:49+09:00 | 2024-05-29T16:58+09:00 |
| jvndb-2023-000034 | JB Inquiry form vulnerable to exposure of private personal information to an unauthorized actor | 2023-04-14T15:48+09:00 | 2024-05-29T16:44+09:00 |
| jvndb-2023-000050 | Multiple vulnerabilities in WordPress Plugin "MW WP Form" and "Snow Monkey Forms" | 2023-05-15T14:29+09:00 | 2024-05-29T16:27+09:00 |
| jvndb-2024-000055 | Redmine DMSF Plugin vulnerable to path traversal | 2024-05-29T14:13+09:00 | 2024-05-29T14:13+09:00 |
| jvndb-2024-000054 | EC-Orange vulnerable to authorization bypass | 2024-05-29T14:06+09:00 | 2024-05-29T14:06+09:00 |
| jvndb-2024-003249 | ELECOM wireless LAN routers vulnerable to OS command injection | 2024-05-29T12:33+09:00 | 2024-05-29T12:33+09:00 |
| jvndb-2023-000040 | WordPress Plugin "Appointment and Event Booking Calendar for WordPress - Amelia" vulnerable to cross-site scripting | 2023-04-24T13:41+09:00 | 2024-05-28T16:59+09:00 |
| jvndb-2023-000039 | WordPress plugin "LIQUID SPEECH BALLOON" vulnerable to cross-site request forgery | 2023-04-19T14:24+09:00 | 2024-05-28T16:56+09:00 |
| jvndb-2024-000053 | Multiple vulnerabilities in Unifier and Unifier Cast | 2024-05-28T14:47+09:00 | 2024-05-28T14:47+09:00 |
| jvndb-2024-000052 | Multiple vulnerabilities in UTAU | 2024-05-28T14:23+09:00 | 2024-05-28T14:23+09:00 |
| jvndb-2023-001639 | Heap-based buffer overflow vulnerability in OMRON CX-Drive | 2023-04-25T14:31+09:00 | 2024-05-27T18:11+09:00 |
| jvndb-2023-000029 | Multiple vulnerabilities in Seiko Solutions SkyBridge MB-A100/A110/A200/A130 SkySpider MB-R210 | 2023-03-31T15:54+09:00 | 2024-05-27T17:08+09:00 |
| jvndb-2023-000059 | Multiple vulnerabilities in Inaba Denki Sangyo Wi-Fi AP UNIT | 2023-06-09T15:18+09:00 | 2024-05-27T16:38+09:00 |
| jvndb-2023-000043 | Multiple vulnerabilities in MicroEngine Mailform | 2023-05-10T13:57+09:00 | 2024-05-24T17:07+09:00 |
| jvndb-2023-000045 | WordPress Plugin "VK Blocks" and "VK All in One Expansion Unit" vulnerable to cross-site scripting | 2023-05-09T15:14+09:00 | 2024-05-24T17:05+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2025-avi-1073 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2025-12-05T00:00:00.000000 | 2025-12-05T00:00:00.000000 |
| certfr-2025-avi-1072 | Multiples vulnérabilités dans les produits IBM | 2025-12-05T00:00:00.000000 | 2025-12-05T00:00:00.000000 |
| certfr-2025-avi-1071 | Multiples vulnérabilités dans Apache HTTP Server | 2025-12-05T00:00:00.000000 | 2025-12-05T00:00:00.000000 |
| certfr-2025-avi-1070 | Multiples vulnérabilités dans Microsoft CBL Mariner | 2025-12-05T00:00:00.000000 | 2025-12-05T00:00:00.000000 |
| certfr-2025-avi-1069 | Multiples vulnérabilités dans Microsoft Edge | 2025-12-05T00:00:00.000000 | 2025-12-05T00:00:00.000000 |
| certfr-2025-avi-1068 | Vulnérabilité dans Python | 2025-12-05T00:00:00.000000 | 2025-12-05T00:00:00.000000 |
| certfr-2025-avi-1067 | Vulnérabilité dans Apache Struts | 2025-12-05T00:00:00.000000 | 2025-12-05T00:00:00.000000 |
| certfr-2025-avi-1066 | Multiples vulnérabilités dans les produits Nextcloud | 2025-12-05T00:00:00.000000 | 2025-12-05T00:00:00.000000 |
| certfr-2025-avi-1065 | Multiples vulnérabilités dans NetApp ONTAP | 2025-12-05T00:00:00.000000 | 2025-12-05T00:00:00.000000 |
| certfr-2025-avi-1064 | Multiples vulnérabilités dans les produits Microsoft | 2025-12-04T00:00:00.000000 | 2025-12-04T00:00:00.000000 |
| certfr-2025-avi-1063 | Multiples vulnérabilités dans les produits Splunk | 2025-12-04T00:00:00.000000 | 2025-12-04T00:00:00.000000 |
| certfr-2025-avi-1062 | Multiples vulnérabilités dans Wireshark | 2025-12-04T00:00:00.000000 | 2025-12-04T00:00:00.000000 |
| certfr-2025-avi-1061 | Vulnérabilité dans PostgreSQL PgBouncer | 2025-12-04T00:00:00.000000 | 2025-12-04T00:00:00.000000 |
| certfr-2024-avi-1090 | Multiples vulnérabilités dans Synacor Zimbra Collaboration | 2024-12-18T00:00:00.000000 | 2025-12-04T00:00:00.000000 |
| certfr-2025-avi-1060 | Multiples vulnérabilités dans Python | 2025-12-03T00:00:00.000000 | 2025-12-03T00:00:00.000000 |
| certfr-2025-avi-1059 | Multiples vulnérabilités dans Google Pixel | 2025-12-03T00:00:00.000000 | 2025-12-03T00:00:00.000000 |
| certfr-2025-avi-1058 | Multiples vulnérabilités dans Google Chrome | 2025-12-03T00:00:00.000000 | 2025-12-03T00:00:00.000000 |
| certfr-2025-avi-1057 | Multiples vulnérabilités dans les produits VMware | 2025-12-02T00:00:00.000000 | 2025-12-02T00:00:00.000000 |
| certfr-2025-avi-1056 | Multiples vulnérabilités dans Google Android | 2025-12-02T00:00:00.000000 | 2025-12-02T00:00:00.000000 |
| certfr-2025-avi-1055 | Multiples vulnérabilités dans Zabbix | 2025-12-01T00:00:00.000000 | 2025-12-01T00:00:00.000000 |
| certfr-2025-avi-1054 | Multiples vulnérabilités dans les produits VMware | 2025-12-01T00:00:00.000000 | 2025-12-01T00:00:00.000000 |
| certfr-2025-avi-1053 | Vulnérabilité dans Stormshield Network VPN Client | 2025-12-01T00:00:00.000000 | 2025-12-01T00:00:00.000000 |
| certfr-2025-avi-1052 | Vulnérabilité dans Mattermost Server | 2025-12-01T00:00:00.000000 | 2025-12-01T00:00:00.000000 |
| certfr-2025-avi-0936 | Multiples vulnérabilités dans Mattermost Server | 2025-10-29T00:00:00.000000 | 2025-12-01T00:00:00.000000 |
| certfr-2025-avi-1051 | Multiples vulnérabilités dans les produits IBM | 2025-11-28T00:00:00.000000 | 2025-11-28T00:00:00.000000 |
| certfr-2025-avi-1050 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2025-11-28T00:00:00.000000 | 2025-11-28T00:00:00.000000 |
| certfr-2025-avi-1049 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2025-11-28T00:00:00.000000 | 2025-11-28T00:00:00.000000 |
| certfr-2025-avi-1048 | Multiples vulnérabilités dans le noyau Linux de Debian LTS | 2025-11-28T00:00:00.000000 | 2025-11-28T00:00:00.000000 |
| certfr-2025-avi-1047 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2025-11-28T00:00:00.000000 | 2025-11-28T00:00:00.000000 |
| certfr-2025-avi-1046 | Multiples vulnérabilités dans les produits Moxa | 2025-11-28T00:00:00.000000 | 2025-11-28T00:00:00.000000 |