Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-34235 | PJSIP: Heap OOB read in VPX unpacketizer |
pjsip |
pjproject |
2026-03-31T15:36:47.466Z | 2026-04-02T15:20:55.954Z | |
| cve-2026-34231 | Slippers: Cross-Site Scripting (XSS) in `attrs` Template Tag |
mixxorz |
slippers |
2026-03-31T15:33:17.644Z | 2026-03-31T17:21:50.192Z | |
| cve-2026-22561 | Uncontrolled search path elements in Anthropic Cl… |
Anthropic |
Claude Desktop - Windows |
2026-03-31T15:30:38.876Z | 2026-03-31T18:13:52.328Z | |
| cve-2026-34227 | Sliver One-Click Remote Access: Insecure CORS & Unauth… |
BishopFox |
sliver |
2026-03-31T15:25:32.224Z | 2026-04-01T14:04:12.835Z | |
| cve-2026-34220 | MikroORM is vulnerable to SQL Injection via specially … |
mikro-orm |
mikro-orm |
2026-03-31T15:19:08.520Z | 2026-04-02T15:19:12.949Z | |
| cve-2026-34221 | MikroORM has Prototype Pollution in Utils.merge |
mikro-orm |
mikro-orm |
2026-03-31T15:17:45.286Z | 2026-03-31T18:52:43.939Z | |
| cve-2026-34218 | ClearanceKit: Managed and user-defined policy rules no… |
craigjbass |
clearancekit |
2026-03-31T15:13:03.641Z | 2026-04-02T15:18:12.722Z | |
| cve-2026-34595 | Parse Server: LiveQuery protected-field guard bypass v… |
parse-community |
parse-server |
2026-03-31T15:10:06.872Z | 2026-03-31T17:22:36.470Z | |
| cve-2026-34574 | Parse Server: Session field immutability bypass via fa… |
parse-community |
parse-server |
2026-03-31T15:08:31.013Z | 2026-04-01T17:57:27.398Z | |
| cve-2026-34573 | Parse Server: GraphQL complexity validator exponential… |
parse-community |
parse-server |
2026-03-31T15:06:33.372Z | 2026-03-31T18:52:50.211Z | |
| cve-2026-4819 | 4.9 (v3.1) | Search Guard audit logs can contain under certain cond… |
floragunn |
Search Guard FLX |
2026-03-31T14:57:56.792Z | 2026-03-31T17:23:46.025Z |
| cve-2026-22569 | 5.4 (v3.1) | Incorrect startup configuration in ZCC |
Zscaler |
Zscaler Client Connector |
2026-03-31T14:54:57.241Z | 2026-03-31T17:24:13.723Z |
| cve-2026-4818 | 6.8 (v3.1) | Some management operations on data streams are not pro… |
floragunn |
Search Guard FLX |
2026-03-31T14:53:19.875Z | 2026-03-31T17:23:23.853Z |
| cve-2026-34532 | Parse Server: Cloud function validator bypass via prot… |
parse-community |
parse-server |
2026-03-31T14:42:10.481Z | 2026-03-31T17:21:09.681Z | |
| cve-2026-4799 | 4.3 (v3.1) | Open redirect vulnerability in Search Guard Kibana Plu… |
floragunn |
Search Guard FLX |
2026-03-31T14:41:05.646Z | 2026-03-31T17:20:02.797Z |
| cve-2026-34373 | Parse Server: GraphQL API endpoint ignores CORS origin… |
parse-community |
parse-server |
2026-03-31T14:38:16.746Z | 2026-03-31T17:23:43.697Z | |
| cve-2026-34363 | Parse Server: LiveQuery protected field leak via share… |
parse-community |
parse-server |
2026-03-31T14:35:42.084Z | 2026-03-31T18:52:55.822Z | |
| cve-2026-0596 | Command Injection in mlflow/mlflow |
mlflow |
mlflow/mlflow |
2026-03-31T14:25:27.716Z | 2026-04-01T03:55:35.518Z | |
| cve-2026-34224 | Parse Server: MFA single-use token bypass via concurre… |
parse-community |
parse-server |
2026-03-31T14:25:22.782Z | 2026-04-02T15:16:27.489Z | |
| cve-2026-34214 | Trino: Iceberg REST catalog static and vended credenti… |
trinodb |
trino |
2026-03-31T14:14:47.982Z | 2026-03-31T14:28:53.287Z | |
| cve-2026-34209 | mppx: Tempo has a session close voucher bypass vulnera… |
wevm |
mppx |
2026-03-31T14:10:46.416Z | 2026-04-02T15:13:32.047Z | |
| cve-2026-34504 | 6.9 (v4.0) 8.3 (v3.1) | OpenClaw < 2026.3.28 - Server-Side Request Forgery via… |
OpenClaw |
OpenClaw |
2026-03-31T14:10:35.607Z | 2026-03-31T17:44:09.731Z |
| cve-2026-34503 | 8.6 (v4.0) 8.1 (v3.1) | OpenClaw < 2026.3.28 - Incomplete WebSocket Session Te… |
OpenClaw |
OpenClaw |
2026-03-31T14:10:34.746Z | 2026-04-02T15:12:38.442Z |
| cve-2026-33581 | 7.1 (v4.0) 6.5 (v3.1) | OpenClaw < 2026.3.24 - Arbitrary File Read via mediaUr… |
OpenClaw |
OpenClaw |
2026-03-31T14:10:33.685Z | 2026-03-31T17:43:39.374Z |
| cve-2026-33580 | 6.3 (v4.0) 6.5 (v3.1) | OpenClaw < 2026.3.28 - Brute Force Attack via Missing … |
OpenClaw |
OpenClaw |
2026-03-31T14:10:33.057Z | 2026-03-31T17:43:23.480Z |
| cve-2026-33579 | 9.4 (v4.0) 9.9 (v3.1) | OpenClaw < 2026.3.28 - Privilege Escalation via Missin… |
OpenClaw |
OpenClaw |
2026-03-31T14:10:32.407Z | 2026-04-06T22:59:00.737Z |
| cve-2026-33578 | 5.3 (v4.0) 4.3 (v3.1) | OpenClaw < 2026.3.28 - Sender Policy Allowlist Bypass … |
OpenClaw |
OpenClaw |
2026-03-31T14:10:31.778Z | 2026-04-02T13:08:51.290Z |
| cve-2026-33577 | 8.6 (v4.0) 8.1 (v3.1) | OpenClaw < 2026.3.28 - Insufficient Scope Validation i… |
OpenClaw |
OpenClaw |
2026-03-31T14:10:31.118Z | 2026-04-02T12:57:46.227Z |
| cve-2026-33576 | 6.9 (v4.0) 6.5 (v3.1) | OpenClaw < 2026.3.28 - Unauthorized Media Download via… |
OpenClaw |
OpenClaw |
2026-03-31T14:10:30.529Z | 2026-04-02T15:11:36.392Z |
| cve-2026-34210 | mppx has Stripe charge credential replay via missing i… |
wevm |
mppx |
2026-03-31T14:10:10.463Z | 2026-03-31T18:53:01.611Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2020-avi-078 | Multiples vulnérabilités dans Microsoft IE | 2020-02-11T00:00:00.000000 | 2020-02-11T00:00:00.000000 |
| certfr-2020-avi-077 | Multiples vulnérabilités dans les produits Siemens de variante SIPLUS | 2020-02-11T00:00:00.000000 | 2020-02-12T00:00:00.000000 |
| certfr-2020-avi-076 | Multiples vulnérabilités dans Adobe Acrobat et Reader | 2020-02-11T00:00:00.000000 | 2020-02-11T00:00:00.000000 |
| certfr-2020-avi-075 | Vulnérabilité dans Adobe Flash Player | 2020-02-11T00:00:00.000000 | 2020-02-11T00:00:00.000000 |
| certfr-2020-avi-074 | Multiples vulnérabilités dans Fortinet FortiAP | 2020-02-11T00:00:00.000000 | 2020-02-11T00:00:00.000000 |
| certfr-2020-avi-073 | Multiples vulnérabilités dans les produits Cisco | 2020-02-06T00:00:00.000000 | 2020-02-06T00:00:00.000000 |
| certfr-2020-avi-072 | Multiples vulnérabilités dans Google Chrome | 2020-02-05T00:00:00.000000 | 2020-02-05T00:00:00.000000 |
| certfr-2020-avi-071 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2020-02-05T00:00:00.000000 | 2020-02-05T00:00:00.000000 |
| certfr-2020-avi-070 | Multiples vulnérabilités dans Squid | 2020-02-04T00:00:00.000000 | 2020-02-04T00:00:00.000000 |
| certfr-2020-avi-069 | Multiples vulnérabilités dans Google Android | 2020-02-04T00:00:00.000000 | 2020-02-04T00:00:00.000000 |
| certfr-2020-avi-068 | Multiples vulnérabilités dans les produits Fortinet | 2020-02-04T00:00:00.000000 | 2020-02-04T00:00:00.000000 |
| certfr-2020-avi-067 | Multiples vulnérabilités dans GitLab | 2020-01-31T00:00:00.000000 | 2020-01-31T00:00:00.000000 |
| certfr-2020-avi-066 | Vulnérabilité dans IBM WebSphere | 2020-01-31T00:00:00.000000 | 2020-01-31T00:00:00.000000 |
| certfr-2020-avi-065 | Multiples vulnérabilités dans les commutateurs Cisco | 2020-01-30T00:00:00.000000 | 2020-01-30T00:00:00.000000 |
| certfr-2020-avi-064 | Multiples vulnérabilités dans IBM Control Center | 2020-01-29T00:00:00.000000 | 2020-01-29T00:00:00.000000 |
| certfr-2020-avi-063 | Multiples vulnérabilités dans les produits Apple | 2020-01-29T00:00:00.000000 | 2020-01-30T00:00:00.000000 |
| certfr-2020-avi-062 | Multiples vulnérabilités dans Magento | 2020-01-29T00:00:00.000000 | 2020-01-29T00:00:00.000000 |
| certfr-2020-avi-061 | Multiples vulnérabilités dans Joomla! | 2020-01-29T00:00:00.000000 | 2020-01-29T00:00:00.000000 |
| certfr-2020-avi-060 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2020-01-28T00:00:00.000000 | 2020-01-29T00:00:00.000000 |
| certfr-2020-avi-059 | Multiples vulnérabilités dans les processeurs Intel | 2020-01-28T00:00:00.000000 | 2020-01-28T00:00:00.000000 |
| certfr-2020-avi-058 | Multiples vulnérabilités dans les produits Fortinet | 2020-01-28T00:00:00.000000 | 2020-01-28T00:00:00.000000 |
| certfr-2020-avi-057 | Vulnérabilité dans Cisco Webex | 2020-01-27T00:00:00.000000 | 2020-01-27T00:00:00.000000 |
| certfr-2020-avi-056 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2020-01-24T00:00:00.000000 | 2020-01-24T00:00:00.000000 |
| certfr-2020-avi-055 | Multiples vulnérabilités dans les produits Cisco | 2020-01-23T00:00:00.000000 | 2020-01-23T00:00:00.000000 |
| certfr-2020-avi-054 | Multiples vulnérabilités dans PHP | 2020-01-23T00:00:00.000000 | 2020-01-23T00:00:00.000000 |
| certfr-2020-avi-053 | Multiples vulnérabilités dans Google Chrome OS | 2020-01-23T00:00:00.000000 | 2020-01-23T00:00:00.000000 |
| certfr-2020-avi-052 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2020-01-23T00:00:00.000000 | 2020-01-23T00:00:00.000000 |
| certfr-2020-avi-051 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2020-01-22T00:00:00.000000 | 2020-01-22T00:00:00.000000 |
| certfr-2020-avi-050 | Multiples vulnérabilités dans Google Chrome OS | 2020-01-22T00:00:00.000000 | 2020-01-22T00:00:00.000000 |
| certfr-2020-avi-049 | Vulnérabilité dans IBM WebSphere | 2020-01-22T00:00:00.000000 | 2020-01-22T00:00:00.000000 |