Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-38093 | N/A | file_picker (aka flutter_file_picker) for Flutter… |
n/a |
n/a |
2026-08-28T00:00:00.000Z | 2026-08-28T19:27:21.385Z |
| cve-2026-37751 | N/A | An OS command injection vulnerability in the kill… |
n/a |
n/a |
2026-08-28T00:00:00.000Z | 2026-08-28T20:02:53.696Z |
| cve-2026-37736 | N/A | An issue in the JsonSanitizer.sanitize() componen… |
n/a |
n/a |
2026-08-28T00:00:00.000Z | 2026-08-28T19:29:38.863Z |
| cve-2026-37710 | N/A | Cross Site Scripting vulnerability in Omeka S v.4… |
n/a |
n/a |
2026-08-28T00:00:00.000Z | 2026-08-28T19:31:14.621Z |
| cve-2026-37237 | N/A | vLLM up to and including 0.17.0 allows remote att… |
n/a |
n/a |
2026-08-28T00:00:00.000Z | 2026-08-28T19:30:40.068Z |
| cve-2026-37236 | N/A | grpc-gateway v2.28.0 is vulnerable to Incorrect A… |
n/a |
n/a |
2026-08-28T00:00:00.000Z | 2026-08-28T14:06:18.076Z |
| cve-2026-61802 | Wazuh discloses cleartext cluster key to low-privilege… |
wazuh |
wazuh |
2026-08-27T23:31:30.766Z | 2026-08-28T15:05:05.253Z | |
| cve-2026-78616 | Dimension Stored XSS via Trusted CA Certificate Config… |
WatchGuard |
Dimension |
2026-08-27T23:26:31.756Z | 2026-08-28T16:22:37.752Z | |
| cve-2026-78498 | Dimension Server-Side Request Forgery via Email Server… |
WatchGuard |
Dimension |
2026-08-27T23:26:31.719Z | 2026-08-28T16:24:22.933Z | |
| cve-2026-78195 | N/A | {'rejectedReasons': [{'lang': 'en', 'value': 'Rejecting as a duplicate of CVE-2026-78047'}], 'replacedBy': ['CVE-2026-78047'], 'providerMetadata': {'orgId': '5d1c2695-1a31-4499-88ae-e847036fd7e3', 'shortName': 'WatchGuard', 'dateUpdated': '2026-08-28T14:33:35.260Z'}} | N/A | N/A | 2026-08-27T23:26:31.597Z | 2026-08-28T14:33:35.260Z |
| cve-2026-78612 | Dimension SQL Injection in Scheduled Report |
WatchGuard |
Dimension |
2026-08-27T23:26:31.557Z | 2026-08-28T16:26:55.125Z | |
| cve-2026-78103 | Dimension Log Server Configuration Lock Bypass Vulnerability |
WatchGuard |
Dimension |
2026-08-27T23:26:31.432Z | 2026-08-28T16:28:30.798Z | |
| cve-2026-78615 | WatchGuard Dimension Reflected DOM-Based XSS in Report… |
WatchGuard |
Dimension |
2026-08-27T23:26:31.430Z | 2026-08-28T16:30:36.607Z | |
| cve-2026-78613 | Dimension SQL Injection in Log Viewer |
WatchGuard |
Dimension |
2026-08-27T23:26:31.266Z | 2026-08-28T17:13:26.282Z | |
| cve-2026-78495 | Dimension Server-Side Request Forgery via Remote Backu… |
WatchGuard |
Dimension |
2026-08-27T23:26:31.170Z | 2026-08-28T16:32:33.663Z | |
| cve-2026-78617 | WatchGuard Dimension Web UI Authentication Brute-Force… |
WatchGuard |
Dimension |
2026-08-27T23:26:31.148Z | 2026-08-28T15:56:20.069Z | |
| cve-2026-78047 | Dimension Stored XSS in Scheduled Report Task |
WatchGuard |
Dimension |
2026-08-27T23:26:31.142Z | 2026-08-28T15:56:28.158Z | |
| cve-2026-78610 | Dimension CSRF Vulnerability in Administrator Passphra… |
WatchGuard |
Dimension |
2026-08-27T23:26:31.006Z | 2026-08-28T15:56:36.349Z | |
| cve-2026-78499 | Dimension SSRF via FTP Server Test Connection |
WatchGuard |
Dimension |
2026-08-27T23:26:30.962Z | 2026-08-28T15:56:45.148Z | |
| cve-2026-78174 | WatchGuard Dimension Session Hijack via Exposed Sessio… |
WatchGuard |
Dimension |
2026-08-27T23:26:30.875Z | 2026-08-28T15:56:52.024Z | |
| cve-2026-78618 | Dimension Business Logic Flaw Allows Chained Backend O… |
WatchGuard |
Dimension |
2026-08-27T23:26:30.669Z | 2026-08-28T16:36:04.822Z | |
| cve-2026-78500 | Dimension Blind SSRF via Database Test Connection Feature |
WatchGuard |
Dimension |
2026-08-27T23:26:30.655Z | 2026-08-28T16:37:30.969Z | |
| cve-2026-13108 | Dimension Denial-of-Service |
WatchGuard |
Dimension |
2026-08-27T23:26:30.552Z | 2026-08-28T16:39:19.734Z | |
| cve-2026-78614 | Dimension SQL Injection in Audit Report |
WatchGuard |
Dimension |
2026-08-27T23:26:30.524Z | 2026-08-28T16:40:22.817Z | |
| cve-2026-61800 | Wazuh cluster worker file sync allows arbitrary file w… |
wazuh |
wazuh |
2026-08-27T23:26:28.110Z | 2026-08-28T15:56:58.461Z | |
| cve-2026-19315 | Fireware OS Pre-Authentication Type Confusion in iked … |
WatchGuard |
Fireware OS |
2026-08-27T23:24:33.721Z | 2026-08-29T03:55:56.097Z | |
| cve-2026-19314 | Fireware OS Integer Underflow in iked Allows Unauthent… |
WatchGuard |
Fireware OS |
2026-08-27T23:24:33.254Z | 2026-08-28T16:47:36.682Z | |
| cve-2026-19317 | Fireware OS Pre-Authentication Out-of-Bounds Read in i… |
WatchGuard |
Fireware OS |
2026-08-27T23:24:33.131Z | 2026-08-28T16:51:00.079Z | |
| cve-2026-78011 | Fireware OS Integer Underflow in Iked Allows Unauthent… |
WatchGuard |
Fireware OS |
2026-08-27T23:24:33.126Z | 2026-08-28T16:51:49.717Z | |
| cve-2026-78010 | Fireware OS Stack-Based Buffer Overflow in iked Allows… |
WatchGuard |
Fireware OS |
2026-08-27T23:24:32.821Z | 2026-08-28T16:53:48.247Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2023-000025 | TP-Link T2600G-28SQ uses vulnerable SSH host keys | 2023-03-17T12:27+09:00 | 2024-06-04T16:58+09:00 |
| jvndb-2023-000024 | Android App "Wolt Delivery: Food and more" uses a hard-coded API key for an external service | 2023-03-13T12:28+09:00 | 2024-06-03T17:15+09:00 |
| jvndb-2023-001308 | Multiple vulnerabilities in Buffalo network devices | 2023-03-08T15:12+09:00 | 2024-06-04T16:42+09:00 |
| jvndb-2023-000022 | Multiple vulnerabilities in SEIKO EPSON printers/network interface Web Config | 2023-03-08T15:09+09:00 | 2024-06-03T17:36+09:00 |
| jvndb-2023-001304 | Multiple vulnerabilities in JTEKT ELECTRONICS Kostac PLC Programming Software | 2023-03-06T15:31+09:00 | 2024-06-07T16:39+09:00 |
| jvndb-2023-000023 | Multiple vulnerabilities in PostgreSQL extension module pg_ivm | 2023-03-06T15:22+09:00 | 2024-06-10T16:41+09:00 |
| jvndb-2023-001291 | Multiple vulnerabilities in Trend Micro Maximum Security | 2023-03-03T11:10+09:00 | 2024-06-13T17:06+09:00 |
| jvndb-2023-001292 | Multiple vulnerabilities in Trend Micro Apex One and Apex One as a Service | 2023-03-02T17:33+09:00 | 2024-06-07T16:59+09:00 |
| jvndb-2023-001269 | File and Directory Permissions Vulnerability in Hitachi Automation Director, Hitachi Infrastructure Analytics Advisor, Hitachi Ops Center | 2023-03-01T16:59+09:00 | 2024-06-11T16:42+09:00 |
| jvndb-2023-000021 | Multiple vulnerabilities in SS1 and Rakuraku PC Cloud | 2023-03-01T15:57+09:00 | 2024-06-06T18:02+09:00 |
| jvndb-2023-000019 | Multiple cross-site scripting vulnerabilities in EC-CUBE | 2023-02-28T16:38+09:00 | 2024-06-10T17:28+09:00 |
| jvndb-2023-000020 | web2py development tool vulnerable to open redirect | 2023-02-28T15:00+09:00 | 2024-06-07T16:31+09:00 |
| jvndb-2023-000018 | Multiple cross-site scripting vulnerabilities in SHIRASAGI | 2023-02-22T15:16+09:00 | 2024-06-10T17:18+09:00 |
| jvndb-2023-000017 | Improper restriction of XML external entity reference (XXE) vulnerability in tsClinical Define.xml Generator and tsClinical Metadata Desktop Tools | 2023-02-14T17:00+09:00 | 2024-06-12T11:15+09:00 |
| jvndb-2023-000016 | The installers of ELECOM Camera Assistant and QuickFileDealer may insecurely load Dynamic Link Libraries | 2023-02-14T17:00+09:00 | 2023-02-14T17:00+09:00 |
| jvndb-2023-000015 | Multiple vulnerabilities in PLANEX COMMUNICATIONS Network Camera CS-WMV02G | 2023-02-13T14:48+09:00 | 2024-06-12T17:03+09:00 |
| jvndb-2023-001215 | Zuken Elmic KASAGO uses insufficient random values for TCP Initial Sequence Numbers | 2023-02-13T14:18+09:00 | 2024-06-14T15:45+09:00 |
| jvndb-2023-000014 | NEC PC Settings Tool vulnerable to missing authentication for critical function | 2023-02-10T14:43+09:00 | 2024-06-10T18:13+09:00 |
| jvndb-2023-001212 | Multiple vulnerabilities in JTEKT ELECTRONICS Screen Creator Advance 2 | 2023-02-08T12:46+09:00 | 2024-06-10T17:25+09:00 |
| jvndb-2023-000013 | Ichiran App vulnerable to improper server certificate verification | 2023-02-06T14:31+09:00 | 2024-06-12T14:25+09:00 |
| jvndb-2023-000012 | Vulnerability in Driver Distributor where passwords are stored in a recoverable format | 2023-01-31T14:14+09:00 | 2024-06-12T11:07+09:00 |
| jvndb-2023-000011 | SUSHIRO App for Android outputs sensitive information to the log file | 2023-01-31T14:10+09:00 | 2024-06-11T17:35+09:00 |
| jvndb-2023-001110 | Improper restriction of XML external entity reference (XXE) vulnerability in OMRON CX-Motion Pro | 2023-01-25T14:28+09:00 | 2023-01-25T14:28+09:00 |
| jvndb-2023-000010 | pgAdmin 4 vulnerable to directory traversal | 2023-01-24T16:00+09:00 | 2024-06-05T16:22+09:00 |
| jvndb-2023-000009 | EasyMail vulnerable to cross-site scripting | 2023-01-24T16:00+09:00 | 2023-01-24T16:00+09:00 |
| jvndb-2023-001108 | Contec CONPROSYS HMI System (CHS) vulnerable to multiple SQL injections | 2023-01-24T13:38+09:00 | 2023-01-24T13:38+09:00 |
| jvndb-2023-000008 | Pgpool-II vulnerable to information disclosure | 2023-01-23T16:35+09:00 | 2024-06-20T17:54+09:00 |
| jvndb-2023-001008 | File and Directory Permissions Vulnerability in Hitachi Tuning Manager | 2023-01-18T13:51+09:00 | 2023-01-18T13:51+09:00 |
| jvndb-2023-000007 | WordPress plugin "Welcart e-Commerce" vulnerable to directory traversal | 2023-01-17T14:17+09:00 | 2023-01-17T14:17+09:00 |
| jvndb-2023-001005 | Active debug code vulnerability in OMRON CP1L-EL20DR-D | 2023-01-12T15:53+09:00 | 2023-01-12T15:53+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2026-avi-0345 | Vulnérabilité dans LibreNMS | 2026-03-24T00:00:00.000000 | 2026-03-24T00:00:00.000000 |
| certfr-2026-avi-0344 | Vulnérabilité dans strongSwan | 2026-03-24T00:00:00.000000 | 2026-03-24T00:00:00.000000 |
| certfr-2026-avi-0343 | Vulnérabilité dans Spring Cloud Config | 2026-03-24T00:00:00.000000 | 2026-03-24T00:00:00.000000 |
| certfr-2026-avi-0342 | Multiples vulnérabilités dans Google Chrome | 2026-03-24T00:00:00.000000 | 2026-03-24T00:00:00.000000 |
| certfr-2026-avi-0341 | Multiples vulnérabilités dans les produits Microsoft | 2026-03-23T00:00:00.000000 | 2026-03-23T00:00:00.000000 |
| certfr-2026-avi-0340 | Multiples vulnérabilités dans Microsoft Edge | 2026-03-23T00:00:00.000000 | 2026-03-23T00:00:00.000000 |
| certfr-2026-avi-0339 | Multiples vulnérabilités dans les produits VMware | 2026-03-23T00:00:00.000000 | 2026-03-23T00:00:00.000000 |
| certfr-2026-avi-0338 | Vulnérabilité dans les produits Synology | 2026-03-23T00:00:00.000000 | 2026-03-23T00:00:00.000000 |
| certfr-2026-avi-0337 | Multiples vulnérabilités dans les produits Citrix | 2026-03-23T00:00:00.000000 | 2026-03-23T00:00:00.000000 |
| certfr-2026-avi-0336 | Multiples vulnérabilités dans les produits Qnap | 2026-03-23T00:00:00.000000 | 2026-03-23T00:00:00.000000 |
| certfr-2026-avi-0335 | Vulnérabilité dans CPython | 2026-03-23T00:00:00.000000 | 2026-03-23T00:00:00.000000 |
| certfr-2026-avi-0334 | Vulnérabilité dans les produits Microsoft | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0333 | Multiples vulnérabilités dans Traefik | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0332 | Vulnérabilité dans Oracle Identity Manager et Web Services Manager | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0331 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0330 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0329 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0328 | Multiples vulnérabilités dans le noyau Linux de Debian LTS | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0327 | Multiples vulnérabilités dans les produits IBM | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0326 | Multiples vulnérabilités dans les produits VMware | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0325 | Multiples vulnérabilités dans les produits Elastic | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0324 | Multiples vulnérabilités dans Google Chrome | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0323 | Multiples vulnérabilités dans les produits Spring | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0322 | Multiples vulnérabilités dans les produits VMware | 2026-03-20T00:00:00.000000 | 2026-03-20T00:00:00.000000 |
| certfr-2026-avi-0321 | Multiples vulnérabilités dans les produits Microsoft | 2026-03-19T00:00:00.000000 | 2026-03-19T00:00:00.000000 |
| certfr-2026-avi-0320 | Multiples vulnérabilités dans Roundcube | 2026-03-19T00:00:00.000000 | 2026-07-27T00:00:00.000000 |
| certfr-2026-avi-0319 | Vulnérabilité dans les produits Mitel | 2026-03-19T00:00:00.000000 | 2026-03-19T00:00:00.000000 |
| certfr-2026-avi-0318 | Multiples vulnérabilités dans Splunk Universal Forwarder | 2026-03-19T00:00:00.000000 | 2026-03-19T00:00:00.000000 |
| certfr-2026-avi-0317 | Vulnérabilité dans Python | 2026-03-19T00:00:00.000000 | 2026-03-19T00:00:00.000000 |
| certfr-2026-avi-0316 | Multiples vulnérabilités dans les produits VMware | 2026-03-19T00:00:00.000000 | 2026-03-19T00:00:00.000000 |