Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-78292 | 9.8 (v3.1) | WordPress Hash Form plugin <= 1.4.1 - PHP Object Injec… |
hashthemes |
Hash Form |
2026-08-27T09:00:04.876Z | 2026-08-27T15:01:46.688Z |
| cve-2026-47885 | N/A | Spring Framework maxPartSize Ignored in PartEventHttpM… |
Spring |
Spring Framework |
2026-08-27T05:21:33.775Z | 2026-08-27T15:01:09.141Z |
| cve-2026-16601 | CM Map Locations <= 2.1.8 - Authenticated (Subscriber+… |
creativemindssolutions |
CM Map Locations – Visualize and share your locations in a few clicks |
2026-08-25T07:39:49.527Z | 2026-08-27T15:01:02.198Z | |
| cve-2026-81273 | 8.1 (v3.1) | WordPress FluentBooking Pro plugin <= 2.2.4 - Cross Si… |
WP Manage Ninja |
FluentBooking Pro |
2026-08-27T09:00:08.436Z | 2026-08-27T15:00:53.378Z |
| cve-2026-47886 | N/A | Spring Framework Denial of Service via Unbounded Expon… |
Spring |
Spring Framework |
2026-08-27T05:21:34.631Z | 2026-08-27T15:00:12.222Z |
| cve-2026-78322 | 6.5 (v3.1) | File-roller: file-roller: stack buffer overflow in par… |
Red Hat |
Red Hat Enterprise Linux 6 |
2026-08-25T07:21:38.573Z | 2026-08-27T14:59:54.395Z |
| cve-2026-32566 | 9.8 (v3.1) | WordPress ACPT (Pro) - Custom Post Types Plugin for Wo… |
ACPT |
ACPT (Pro) - Custom Post Types Plugin for WordPress |
2026-08-27T08:59:53.588Z | 2026-08-27T14:59:23.882Z |
| cve-2026-47887 | N/A | Spring Framework Open Redirect in UrlFileNameViewController |
Spring |
Spring Framework |
2026-08-27T05:21:35.512Z | 2026-08-27T14:59:08.962Z |
| cve-2026-78273 | 6.5 (v3.1) | WordPress Fluent Boards Pro plugin <= 2.0.11 - Cross S… |
WP Manage Ninja |
Fluent Boards Pro |
2026-08-27T08:59:57.217Z | 2026-08-27T14:58:28.038Z |
| cve-2026-19892 | InfusedWoo Pro <= 5.1.18 - Authenticated (Subscriber+)… |
Infused Addons |
InfusedWoo Pro |
2026-08-25T03:27:05.993Z | 2026-08-27T14:58:11.711Z | |
| cve-2026-47888 | N/A | Spring Framework Memory Leak via SETUP Frame in RSocke… |
Spring |
Spring Framework |
2026-08-27T05:21:36.474Z | 2026-08-27T14:58:08.080Z |
| cve-2026-10627 | Events Manager <= 7.4.0 - Missing Authorization to Una… |
netweblogic |
Events Manager – Calendar, Bookings, Tickets, and more! |
2026-08-25T02:26:48.141Z | 2026-08-27T14:57:35.761Z | |
| cve-2026-47889 | N/A | Spring Framework sameSite Attribute Dropped in JettyCo… |
Spring |
Spring Framework |
2026-08-27T05:21:37.305Z | 2026-08-27T14:57:20.579Z |
| cve-2026-78283 | 7.1 (v3.1) | WordPress Music Player for WooCommerce plugin <= 1.8.9… |
codepeople |
Music Player for WooCommerce |
2026-08-27T09:00:01.262Z | 2026-08-27T14:57:20.125Z |
| cve-2026-78679 | 7.1 (v4.0) 6.5 (v3.1) | GitPython before 3.1.59 Arbitrary File Read via TagRef… |
gitpython-developers |
GitPython |
2026-08-25T01:30:36.339Z | 2026-08-27T14:56:36.199Z |
| cve-2026-66155 | A vulnerability has been identified in Element ma… |
Siemens |
Element maps-ng V47 |
2026-08-27T11:56:48.418Z | 2026-08-27T14:56:34.021Z | |
| cve-2026-76846 | 8.7 (v4.0) 7.5 (v3.1) | Grav before 2.0.16 Information Disclosure via Twig Sandbox |
getgrav |
grav |
2026-08-25T01:30:31.891Z | 2026-08-27T14:55:30.423Z |
| cve-2026-72701 | 6.3 (v4.0) 3.7 (v3.1) | Grav CMS before 2.0.16 Timing Attack via verifyNonce |
getgrav |
grav |
2026-08-25T01:30:23.965Z | 2026-08-27T14:54:28.112Z |
| cve-2026-47890 | N/A | Spring Framework Server Sent Event stream corruption w… |
Spring |
Spring Framework |
2026-08-27T05:21:38.260Z | 2026-08-27T14:53:37.162Z |
| cve-2026-47891 | N/A | Spring Framework maxInMemorySize Bypassed in Jaxb2Decoder |
Spring |
Spring Framework |
2026-08-27T05:21:39.288Z | 2026-08-27T14:52:30.491Z |
| cve-2026-72696 | 8.6 (v4.0) 8.4 (v3.1) | Grav CMS before 2.0.16 Symlink Following via createLockFile |
getgrav |
grav |
2026-08-25T01:30:14.848Z | 2026-08-27T14:52:18.096Z |
| cve-2026-61790 | Weblate: Team-enforced 2FA is bypassed for global perm… |
WeblateOrg |
weblate |
2026-08-26T20:23:53.644Z | 2026-08-27T14:51:14.305Z | |
| cve-2026-56707 | 8.3 (v4.0) 7.7 (v3.1) | Grav Flex Objects 1.4.0 through 1.4.7 Authorization By… |
getgrav |
grav |
2026-08-25T01:30:06.601Z | 2026-08-27T14:50:54.881Z |
| cve-2026-19654 | 7.5 (v3.1) | Rsyslog: a configuration-dependent issue in rsyslog's … |
Red Hat |
Red Hat Enterprise Linux 10 |
2026-08-12T20:46:31.853Z | 2026-08-27T14:50:47.138Z |
| cve-2026-19398 | 6.8 (v4.0) | “unsupported-when-assigned.” An out-of-bounds wri… |
ASUS |
FA507NV |
2026-08-27T02:00:16.449Z | 2026-08-27T14:50:36.251Z |
| cve-2026-74232 | 9.3 (v4.0) 9.8 (v3.1) | Zbtlink MQWrt yunmgrd Cloud C2 Implant |
Zbtlink |
L3_V2_8 |
2026-08-27T10:39:14.386Z | 2026-08-27T14:49:10.575Z |
| cve-2026-47859 | 5.4 (v3.1) | Unbounded memory allocation in RFC6587SyslogDeserializ… |
Spring |
Spring Integration |
2026-08-26T23:28:45.659Z | 2026-08-27T14:48:52.190Z |
| cve-2026-81562 | AlexGladkov claude-in-mobile client.ts execSync os com… |
AlexGladkov |
claude-in-mobile |
2026-08-27T11:30:13.109Z | 2026-08-27T14:48:35.634Z | |
| cve-2026-47860 | 6.5 (v3.1) | Unbounded decompression of attacker-supplied compresse… |
Spring |
Spring AMQP |
2026-08-26T23:28:46.607Z | 2026-08-27T14:48:04.818Z |
| cve-2026-81658 | 6.5 (v3.1) | Foreman: cross-tenant disclosure of template revisions… |
Red Hat |
Red Hat Satellite 6 |
2026-08-27T10:22:08.586Z | 2026-08-27T14:47:55.250Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2017-avi-300 | Vulnérabilité dans Cisco Meeting Server | 2017-09-14T00:00:00.000000 | 2017-09-14T00:00:00.000000 |
| certfr-2017-avi-293 | Vulnérabilité dans le noyau Linux de SUSE | 2017-09-13T00:00:00.000000 | 2017-09-14T00:00:00.000000 |
| certfr-2017-avi-291 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2017-09-13T00:00:00.000000 | 2017-09-14T00:00:00.000000 |
| certfr-2017-avi-299 | Multiples vulnérabilités dans Microsoft IE | 2017-09-13T00:00:00.000000 | 2017-09-13T00:00:00.000000 |
| certfr-2017-avi-298 | Multiples vulnérabilités dans Microsoft Edge | 2017-09-13T00:00:00.000000 | 2017-09-13T00:00:00.000000 |
| certfr-2017-avi-297 | Multiples vulnérabilités dans les produits Microsoft | 2017-09-13T00:00:00.000000 | 2017-09-13T00:00:00.000000 |
| certfr-2017-avi-296 | Vulnérabilité dans Microsoft .Net | 2017-09-13T00:00:00.000000 | 2017-09-13T00:00:00.000000 |
| certfr-2017-avi-295 | Multiples vulnérabilités dans Microsoft Windows | 2017-09-13T00:00:00.000000 | 2017-09-13T00:00:00.000000 |
| certfr-2017-avi-294 | Multiples vulnérabilités dans Microsoft Office | 2017-09-13T00:00:00.000000 | 2017-09-13T00:00:00.000000 |
| certfr-2017-avi-292 | Multiples vulnérabilités dans Xen | 2017-09-13T00:00:00.000000 | 2017-09-13T00:00:00.000000 |
| certfr-2017-avi-290 | Multiples vulnérabilités dans Adobe Cold Fusion | 2017-09-13T00:00:00.000000 | 2017-09-13T00:00:00.000000 |
| certfr-2017-avi-289 | Multiples vulnérabilités dans Adobe Flash Player | 2017-09-13T00:00:00.000000 | 2017-09-13T00:00:00.000000 |
| certfr-2017-avi-288 | Multiples vulnérabilités dans le noyau Linux de Suse | 2017-09-11T00:00:00.000000 | 2017-09-11T00:00:00.000000 |
| certfr-2017-avi-287 | Multiples vulnérabilités dans le noyau Linux de RedHat | 2017-09-07T00:00:00.000000 | 2017-09-07T00:00:00.000000 |
| certfr-2017-avi-286 | Multiples vulnérabilités dans les produits Cisco | 2017-09-07T00:00:00.000000 | 2017-09-07T00:00:00.000000 |
| certfr-2017-avi-285 | Vulnérabilité dans Apache Struts | 2017-09-06T00:00:00.000000 | 2017-09-06T00:00:00.000000 |
| certfr-2017-avi-284 | Multiples vulnérabilités dans Google Chrome | 2017-09-06T00:00:00.000000 | 2017-09-06T00:00:00.000000 |
| certfr-2017-avi-283 | Multiples vulnérabilités dans Google Android (Nexus) | 2017-09-06T00:00:00.000000 | 2017-09-06T00:00:00.000000 |
| certfr-2017-avi-282 | Multiples vulnérabilités dans le noyau Linux de Suse | 2017-09-05T00:00:00.000000 | 2017-09-05T00:00:00.000000 |
| certfr-2017-avi-281 | Multiples vulnérabilités dans Asterisk | 2017-09-01T00:00:00.000000 | 2017-09-01T00:00:00.000000 |
| certfr-2017-avi-280 | Multiples vulnérabilités dans PHP | 2017-09-01T00:00:00.000000 | 2017-09-01T00:00:00.000000 |
| certfr-2017-avi-279 | Multiples vulnérabilités dans les produits Siemens | 2017-08-31T00:00:00.000000 | 2017-08-31T00:00:00.000000 |
| certfr-2017-avi-278 | Multiples vulnérabilités dans Wireshark | 2017-08-30T00:00:00.000000 | 2017-08-30T00:00:00.000000 |
| certfr-2017-avi-277 | Multiples vulnérabilités dans le noyau Linux de Suse | 2017-08-30T00:00:00.000000 | 2017-08-30T00:00:00.000000 |
| certfr-2017-avi-276 | Vulnérabilité dans MongoDB | 2017-08-29T00:00:00.000000 | 2017-08-29T00:00:00.000000 |
| certfr-2017-avi-275 | Multiples vulnérabilités dans le noyau Linux d' Ubuntu | 2017-08-29T00:00:00.000000 | 2017-08-29T00:00:00.000000 |
| certfr-2017-avi-274 | Multiples vulnérabilités dans SCADA Schneider Electric PowerSCADA Expert | 2017-08-28T00:00:00.000000 | 2017-08-28T00:00:00.000000 |
| certfr-2017-avi-273 | Vulnérabilité dans Hewlett Packard Enterprise Integrated Lights-out | 2017-08-25T00:00:00.000000 | 2017-08-25T00:00:00.000000 |
| certfr-2017-avi-272 | Vulnérabilité dans Xen | 2017-08-25T00:00:00.000000 | 2017-08-25T00:00:00.000000 |
| certfr-2017-avi-271 | Multiples vulnérabilités dans Mozilla Thunderbird | 2017-08-21T00:00:00.000000 | 2017-08-21T00:00:00.000000 |