Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
cve-2026-34839 Glances Vulnerable to Cross-Origin Information Disclos… nicolargo
glances
2026-04-20T23:09:02.551Z 2026-04-20T23:09:02.551Z
cve-2026-41331 6.9 (v4.0) 5.3 (v3.1) OpenClaw < 2026.3.31 - Resource Consumption via Unauth… OpenClaw
OpenClaw
2026-04-20T23:08:17.653Z 2026-04-20T23:08:17.653Z
cve-2026-41330 2 (v4.0) 4.4 (v3.1) OpenClaw < 2026.3.31 - Environment Variable Override v… OpenClaw
OpenClaw
2026-04-20T23:08:16.941Z 2026-04-20T23:08:16.941Z
cve-2026-41329 9 (v4.0) 9.9 (v3.1) OpenClaw < 2026.3.31 - Sandbox Bypass via Heartbeat Co… OpenClaw
OpenClaw
2026-04-20T23:08:16.222Z 2026-04-20T23:08:16.222Z
cve-2026-41303 8.7 (v4.0) 8.8 (v3.1) OpenClaw < 2026.3.28 - Authorization Bypass in Discord… OpenClaw
OpenClaw
2026-04-20T23:08:15.511Z 2026-04-20T23:08:15.511Z
cve-2026-41302 4.8 (v4.0) 7.6 (v3.1) OpenClaw < 2026.3.31 - Server-Side Request Forgery via… OpenClaw
OpenClaw
2026-04-20T23:08:14.782Z 2026-04-20T23:08:14.782Z
cve-2026-41301 6.9 (v4.0) 5.3 (v3.1) OpenClaw 2026.3.22 < 2026.3.31 - Forged Nostr DM Pairi… OpenClaw
OpenClaw
2026-04-20T23:08:14.023Z 2026-04-20T23:08:14.023Z
cve-2026-41300 6.9 (v4.0) 6.5 (v3.1) OpenClaw < 2026.3.31 - Attacker-Discovered Endpoint Pr… OpenClaw
OpenClaw
2026-04-20T23:08:13.304Z 2026-04-20T23:08:13.304Z
cve-2026-41299 7.1 (v4.0) 7.1 (v3.1) OpenClaw < 2026.3.28 - Client Identity Spoofing in cha… OpenClaw
OpenClaw
2026-04-20T23:08:12.586Z 2026-04-20T23:08:12.586Z
cve-2026-41298 5.3 (v4.0) 5.4 (v3.1) OpenClaw < 2026.4.2 - Authorization Bypass in Session … OpenClaw
OpenClaw
2026-04-20T23:08:11.787Z 2026-04-20T23:08:11.787Z
cve-2026-41297 4.8 (v4.0) 7.6 (v3.1) OpenClaw < 2026.3.31 - Server-Side Request Forgery via… OpenClaw
OpenClaw
2026-04-20T23:08:10.955Z 2026-04-20T23:08:10.955Z
cve-2026-41296 8.8 (v4.0) 8.2 (v3.1) OpenClaw < 2026.3.31 - Sandbox Escape via TOCTOU Race … OpenClaw
OpenClaw
2026-04-20T23:08:10.194Z 2026-04-20T23:08:10.194Z
cve-2026-41295 8.5 (v4.0) 7.8 (v3.1) OpenClaw < 2026.4.2 - Untrusted Workspace Channel Shad… OpenClaw
OpenClaw
2026-04-20T23:08:09.503Z 2026-04-20T23:08:09.503Z
cve-2026-41294 8.5 (v4.0) 8.6 (v3.1) OpenClaw < 2026.3.28 - Environment Variable Injection … OpenClaw
OpenClaw
2026-04-20T23:08:08.795Z 2026-04-20T23:08:08.795Z
cve-2026-40045 5.9 (v4.0) 5.7 (v3.1) OpenClaw < 2026.4.2 - Cleartext Credential Transmissio… OpenClaw
OpenClaw
2026-04-20T23:08:07.952Z 2026-04-20T23:08:07.952Z
cve-2026-34082 Dify has IDOR in deleting someone else's chat conversation langgenius
dify
2026-04-20T23:03:18.158Z 2026-04-20T23:03:18.158Z
cve-2026-5721 wpDataTables – WordPress Data Table, Dynamic Tables & … wpdatatables
wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin
2026-04-20T22:25:26.695Z 2026-04-20T22:25:26.695Z
cve-2026-6729 5.3 (v4.0) 6.3 (v3.1) HKUDS OpenHarness Session Key Collision Privilege Escalation HKUDS
OpenHarness
2026-04-20T22:01:38.766Z 2026-04-20T22:01:38.766Z
cve-2026-0930 2.3 (v4.0) Potential wolfSSHd Buffer out-of-bounds Read on Window… wolfSSL
wolfSSH
2026-04-20T21:28:33.227Z 2026-04-20T21:28:33.227Z
cve-2026-22051 2.3 (v4.0) StorageGRID (formerly StorageGRID Webscale) versi… NETAPP
StorageGRID (formerly StorageGRID Webscale)
2026-04-20T21:27:36.822Z 2026-04-20T21:28:04.859Z
cve-2026-5450 N/A scanf %mc off-by-one heap buffer overflow The GNU C Library
glibc
2026-04-20T20:55:41.170Z 2026-04-20T20:55:41.170Z
cve-2026-5928 N/A Static buffer overflow in deprecated nis_local_principal The GNU C Library
glibc
2026-04-20T20:37:31.743Z 2026-04-20T20:37:31.743Z
cve-2026-5358 N/A Static buffer overflow in deprecated nis_local_principal The GNU C Library
glibc
2026-04-20T20:37:23.178Z 2026-04-20T20:37:23.178Z
cve-2026-33626 LMDeploy Vulnerable to Server-Side Request Forgery (SS… InternLM
lmdeploy
2026-04-20T20:29:19.558Z 2026-04-20T20:29:19.558Z
cve-2026-4852 Image Source Control Lite – Show Image Credits and Cap… webzunft
Image Source Control Lite – Show Image Credits and Captions
2026-04-20T20:26:53.256Z 2026-04-20T20:26:53.256Z
cve-2026-33432 Roxy-WI has Pre-Authentication LDAP Injection that Lea… roxy-wi
roxy-wi
2026-04-20T20:26:52.217Z 2026-04-20T20:26:52.217Z
cve-2026-33431 Roxy-WI Vulnerable to Authenticated Arbitrary File Rea… roxy-wi
roxy-wi
2026-04-20T20:24:15.319Z 2026-04-20T20:24:15.319Z
cve-2026-34403 Nginx-UI vulnerable to Cross-Site WebSocket Hijacking … 0xJacky
nginx-ui
2026-04-20T20:16:47.597Z 2026-04-20T20:16:47.597Z
cve-2026-33031 Nginx-UI: Disabled users retain full API access throug… 0xJacky
nginx-ui
2026-04-20T20:12:07.905Z 2026-04-20T20:12:07.905Z
cve-2026-32613 Spinnaker vulnerable to RCE via expression parsing due… spinnaker
spinnaker
2026-04-20T20:07:24.697Z 2026-04-20T20:08:54.702Z
ID CVSS Description Vendor Product Published Updated
ID Description Package Published Updated
ID Description Type
ID Description Updated
ID Description Updated
ID Description Published Updated
jvndb-2026-000041 SANYO DENKI SANUPS SOFTWARE registers Windows services with unquoted file paths 2026-03-25T17:58+09:00 2026-03-25T17:58+09:00
jvndb-2026-007973 Multiple vulnerabilities in Xerox FreeFlow Core (XRX26-005) 2026-03-23T14:54+09:00 2026-04-09T13:55+09:00
jvndb-2026-007524 Vulnerability in Hitachi Command Suite 2026-03-17T16:42+09:00 2026-03-17T16:42+09:00
jvndb-2026-000038 Installer for IBM Trusteer Rapport may insecurely load Dynamic Link Libraries 2026-03-17T14:57+09:00 2026-03-17T14:57+09:00
jvndb-2026-000039 Missing authorization in the OpenAI thread/message API endpoints of GROWI 2026-03-16T17:18+09:00 2026-03-16T17:18+09:00
jvndb-2026-000037 OpenLiteSpeed and LSWS Enterprise vulnerable to OS command injection 2026-03-16T17:18+09:00 2026-03-16T17:18+09:00
jvndb-2026-006887 Multiple vulnerabilities in Micro Research MR-GM5L-S1 and MR-GM5A-L1 2026-03-12T17:22+09:00 2026-03-12T17:22+09:00
jvndb-2026-000036 Improper file access permission settings in multiple Digital Arts products 2026-03-09T14:57+09:00 2026-03-09T16:23+09:00
jvndb-2026-000035 Installer for Qsee Client may insecurely load Dynamic Link Libraries 2026-03-09T14:57+09:00 2026-03-09T14:57+09:00
jvndb-2026-006102 Security issues in ESC/POS 2026-03-06T10:31+09:00 2026-03-06T10:31+09:00
jvndb-2026-000034 django-allauth vulnerable to open redirect 2026-03-05T12:36+09:00 2026-03-05T12:36+09:00
jvndb-2026-000033 EC-CUBE vulnerable to multi-factor authentication bypass 2026-03-05T12:36+09:00 2026-03-05T12:36+09:00
jvndb-2026-000032 Multiple vulnerabilities in Dell UPS Multi-UPS Management Console (MUMC) 2026-03-04T12:20+09:00 2026-03-04T12:20+09:00
jvndb-2026-005746 Multiple vulnerabilities in Trend Micro Endpoint security products for enterprises (February 2026) 2026-03-04T10:40+09:00 2026-03-04T10:40+09:00
jvndb-2026-005744 Canon IJ Scan Utility registers Windows services with unquoted file paths 2026-03-04T10:40+09:00 2026-03-04T10:40+09:00
jvndb-2026-005259 Out-of-bounds write vulnerability in Fujitsu BIOS Driver (fbiosdrv.sys) 2026-03-02T11:46+09:00 2026-03-02T11:46+09:00
jvndb-2026-000031 Improper file access permission settings in the installers for multiple Soliton Systems products 2026-02-27T15:41+09:00 2026-02-27T15:41+09:00
jvndb-2026-000030 IM-LogicDesigner module of intra-mart Accel Platform vulnerable to untrusted data deserialization 2026-02-27T15:41+09:00 2026-03-03T10:06+09:00
jvndb-2026-000029 Multiple vulnerabilities in the installer of FinalCode Client 2026-02-26T14:24+09:00 2026-02-26T14:24+09:00
jvndb-2026-004811 Vulnerability in Hitachi Configuration Manager and Hitachi Ops Center API Configuration Manager 2026-02-26T11:02+09:00 2026-02-26T11:02+09:00
jvndb-2026-004810 Vulnerability in Hitachi Configuration Manager and Hitachi Ops Center API Configuration Manager 2026-02-26T11:02+09:00 2026-02-26T11:02+09:00
jvndb-2026-000026 Lanscope Endpoint Manager (On-Premises) vulnerable to path traversal 2026-02-25T15:14+09:00 2026-02-25T15:14+09:00
jvndb-2026-004359 Security information for Hitachi Disk Array Systems 2026-02-20T18:35+09:00 2026-02-20T18:35+09:00
jvndb-2026-000027 WordPress Plugin "Survey Maker" vulnerable to cross-site scripting 2026-02-20T12:32+09:00 2026-02-20T12:32+09:00
jvndb-2026-000028 Installer for Job log aggregation/analysis software RICOH Job Log Aggregation Tool may insecurely load Dynamic Link Libraries 2026-02-20T12:31+09:00 2026-02-20T12:31+09:00
jvndb-2026-003912 Vulnerability in Cosminexus HTTP Server and Hitachi Web Server 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003911 Vulnerability in Cosminexus HTTP Server 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003910 Multiple Vulnerabilities in Cosminexus HTTP Server 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003909 Multiple Vulnerabilities in Hitachi Command Suite products 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003908 Multiple Vulnerabilities in Hitachi Command Suite, Hitachi Automation Director, Hitachi Configuration Manager, Hitachi Infrastructure Analytics Advisor and Hitachi Ops Center 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
ID Description Updated
ID Description
ID Description Published Updated
certfr-2026-avi-0433 Multiples vulnérabilités dans les produits Schneider Electric 2026-04-14T00:00:00.000000 2026-04-14T00:00:00.000000
certfr-2026-avi-0432 Multiples vulnérabilités dans les produits Siemens 2026-04-14T00:00:00.000000 2026-04-14T00:00:00.000000
certfr-2026-avi-0431 Multiples vulnérabilités dans Synology SSL VPN Client 2026-04-14T00:00:00.000000 2026-04-14T00:00:00.000000
certfr-2026-avi-0430 Multiples vulnérabilités dans Python 2026-04-14T00:00:00.000000 2026-04-14T00:00:00.000000
certfr-2026-avi-0429 Vulnérabilité dans Adobe Acrobat 2026-04-13T00:00:00.000000 2026-04-13T00:00:00.000000
certfr-2026-avi-0428 Multiples vulnérabilités dans les produits Microsoft 2026-04-13T00:00:00.000000 2026-04-13T00:00:00.000000
certfr-2026-avi-0427 Multiples vulnérabilités dans Microsoft Edge 2026-04-13T00:00:00.000000 2026-04-13T00:00:00.000000
certfr-2026-avi-0426 Multiples vulnérabilités dans Python 2026-04-13T00:00:00.000000 2026-04-13T00:00:00.000000
certfr-2026-avi-0425 Vulnérabilité dans Foxit PDF Services API 2026-04-13T00:00:00.000000 2026-04-13T00:00:00.000000
certfr-2026-avi-0424 Multiples vulnérabilités dans les produits IBM 2026-04-10T00:00:00.000000 2026-04-10T00:00:00.000000
certfr-2026-avi-0423 Multiples vulnérabilités dans le noyau Linux de Red Hat 2026-04-10T00:00:00.000000 2026-04-10T00:00:00.000000
certfr-2026-avi-0422 Multiples vulnérabilités dans le noyau Linux de SUSE 2026-04-10T00:00:00.000000 2026-04-10T00:00:00.000000
certfr-2026-avi-0421 Multiples vulnérabilités dans le noyau Linux d'Ubuntu 2026-04-10T00:00:00.000000 2026-04-10T00:00:00.000000
certfr-2026-avi-0420 Multiples vulnérabilités dans les produits Microsoft 2026-04-10T00:00:00.000000 2026-04-10T00:00:00.000000
certfr-2026-avi-0419 Multiples vulnérabilités dans Mattermost Desktop App 2026-04-10T00:00:00.000000 2026-04-10T00:00:00.000000
certfr-2026-avi-0418 Multiples vulnérabilités dans Apache Tomcat 2026-04-10T00:00:00.000000 2026-04-10T00:00:00.000000
certfr-2026-avi-0417 Vulnérabilité dans Spring Cloud Gateway 2026-04-10T00:00:00.000000 2026-04-10T00:00:00.000000
certfr-2026-avi-0416 Vulnérabilité dans les produits Juniper Networks 2026-04-10T00:00:00.000000 2026-04-10T00:00:00.000000
certfr-2026-avi-0415 Multiples vulnérabilités dans Tenable Security Center 2026-04-10T00:00:00.000000 2026-04-10T00:00:00.000000
certfr-2026-avi-0414 Multiples vulnérabilités dans les produits Microsoft 2026-04-09T00:00:00.000000 2026-04-09T00:00:00.000000
certfr-2026-avi-0413 Multiples vulnérabilités dans les produits Elastic 2026-04-09T00:00:00.000000 2026-04-09T00:00:00.000000
certfr-2026-avi-0412 Multiples vulnérabilités dans les produits Palo Alto Networks 2026-04-09T00:00:00.000000 2026-04-09T00:00:00.000000
certfr-2026-avi-0411 Multiples vulnérabilités dans Mitel MiCollab 2026-04-09T00:00:00.000000 2026-04-09T00:00:00.000000
certfr-2026-avi-0410 Multiples vulnérabilités dans GitLab 2026-04-09T00:00:00.000000 2026-04-09T00:00:00.000000
certfr-2026-avi-0409 Multiples vulnérabilités dans Sonicwall Secure Mobile Access 2026-04-09T00:00:00.000000 2026-04-09T00:00:00.000000
certfr-2026-avi-0408 Multiples vulnérabilités dans les produits Juniper Networks 2026-04-09T00:00:00.000000 2026-04-09T00:00:00.000000
certfr-2026-avi-0407 Multiples vulnérabilités dans Google Chrome 2026-04-09T00:00:00.000000 2026-04-09T00:00:00.000000
certfr-2026-avi-0406 Multiples vulnérabilités dans les produits Microsoft 2026-04-08T00:00:00.000000 2026-04-08T00:00:00.000000
certfr-2026-avi-0405 Vulnérabilité dans les produits Moxa 2026-04-08T00:00:00.000000 2026-04-08T00:00:00.000000
certfr-2026-avi-0404 Multiples vulnérabilités dans les produits Mozilla 2026-04-08T00:00:00.000000 2026-04-08T00:00:00.000000
ID Description Published Updated
certfr-2024-ale-003 [MàJ] Incident affectant les solutions AnyDesk 2024-02-05T00:00:00.000000 2024-04-15T00:00:00.000000
certfr-2024-ale-002 [MàJ] Multiples Vulnérabilités dans GitLab 2024-01-12T00:00:00.000000 2024-02-22T00:00:00.000000
certfr-2024-ale-001 [MàJ] Multiples vulnérabilités dans Ivanti Connect Secure et Policy Secure Gateways 2024-01-11T00:00:00.000000 2024-04-15T00:00:00.000000
certfr-2023-ale-013 Vulnérabilité dans Apache Struts 2 2023-12-13T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-012 [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway 2023-10-23T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-011 [MàJ] Multiples vulnérabilités dans Cisco IOS XE 2023-10-17T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-010 Multiples vulnérabilités dans Exim 2023-10-02T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-009 [MàJ] Multiples vulnérabilités dans Ivanti Endpoint Manager Mobile 2023-07-26T00:00:00.000000 2023-09-15T00:00:00.000000
certfr-2023-ale-008 [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway 2023-07-19T00:00:00.000000 2024-01-02T00:00:00.000000
certfr-2023-ale-007 [MàJ] Vulnérabilité dans Zimbra Collaboration Suite 2023-07-17T00:00:00.000000 2024-01-02T00:00:00.000000
certfr-2023-ale-006 Vulnérabilité dans les produits Microsoft 2023-07-12T00:00:00.000000 2023-12-12T00:00:00.000000
certfr-2023-ale-005 Synthèse sur l'exploitation d'une vulnérabilité dans MOVEit Transfer 2023-07-05T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2023-ale-004 Vulnérabilité dans les produits Fortinet 2023-06-13T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2023-ale-003 [MàJ] Compromission de l'application 3CX Desktop App 2023-03-31T00:00:00.000000 2023-04-12T00:00:00.000000
certfr-2023-ale-002 [MàJ] Vulnérabilité dans Microsoft Outlook 2023-03-15T00:00:00.000000 2023-05-11T00:00:00.000000
certfr-2023-ale-001 Vulnérabilité dans Fortinet FortiOS 2023-03-14T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2023-ale-015 [MàJ] Campagne d'exploitation d'une vulnérabilité affectant VMware ESXi 2023-02-03T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-014 Multiples vulnérabilités dans AMI MegaRAC 2022-12-16T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2022-ale-013 [MàJ] Vulnérabilité dans Citrix ADC et Gateway 2022-12-13T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-012 [MàJ] Vulnérabilité dans FortiOS SSL-VPN 2022-12-13T00:00:00.000000 2022-12-20T00:00:00.000000
certfr-2022-ale-011 Vulnérabilité dans les produits Fortinet 2022-10-14T00:00:00.000000 2022-10-14T00:00:00.000000
certfr-2022-ale-010 Multiples vulnérabilités dans GLPI 2022-10-07T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-009 [MaJ] Vulnérabilité dans Zimbra Collaboration 2022-10-07T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-008 [MaJ] Multiples vulnérabilités dans Microsoft Exchange 2022-09-30T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-007 Multiples vulnérabilités dans Microsoft Windows 2022-09-16T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-006 [MàJ] Vulnérabilité dans Atlassian Confluence 2022-06-03T00:00:00.000000 2022-10-07T00:00:00.000000
certfr-2022-ale-005 [MàJ] Vulnérabilité dans Microsoft Windows 2022-05-31T00:00:00.000000 2022-09-16T00:00:00.000000
certfr-2022-ale-004 Vulnérabilité dans F5 BIG-IP 2022-05-11T00:00:00.000000 2022-09-16T00:00:00.000000
certfr-2022-ale-003 [MàJ] Vulnérabilité dans l'implémentation du protocole RPC par Microsoft 2022-04-13T00:00:00.000000 2022-05-04T00:00:00.000000
certfr-2022-ale-002 Vulnérabilité dans VMware Spring Cloud Gateway 2022-03-03T00:00:00.000000 2022-10-07T00:00:00.000000