Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
cve-2026-40737 N/A WordPress COMPE plugin <= 1.1.4 - Insecure Direct Obje… VillaTheme
COMPE
2026-04-15T10:21:34.150Z 2026-04-15T10:21:34.150Z
cve-2026-40734 N/A WordPress Categories Images plugin <= 3.3.1 - Cross Si… Zahlan
Categories Images
2026-04-15T10:21:33.995Z 2026-04-15T10:21:33.995Z
cve-2026-40730 N/A WordPress ThemeGrill Demo Importer plugin <= 2.0.0.6 -… ThemeGrill
ThemeGrill Demo Importer
2026-04-15T10:21:33.831Z 2026-04-15T10:21:33.831Z
cve-2026-40729 N/A WordPress 3D viewer – Embed 3D Models plugin <= 1.8.5 … bPlugins
3D viewer – Embed 3D Models
2026-04-15T10:21:33.661Z 2026-04-15T10:21:33.661Z
cve-2026-40728 N/A WordPress Magazine Blocks plugin <= 1.8.3 - Broken Acc… BlockArt
Magazine Blocks
2026-04-15T10:21:33.433Z 2026-04-15T10:21:33.433Z
cve-2026-28741 6.8 (v3.1) CSRF Protection Bypass Allows Updating a User's Authen… Mattermost
Mattermost
2026-04-15T10:13:33.950Z 2026-04-15T10:13:33.950Z
cve-2026-33805 9 (v4.0) @fastify/reply-from vulnerable to connection header ab… @fastify/reply-from
@fastify/reply-from
2026-04-15T10:13:25.147Z 2026-04-15T10:13:25.147Z
cve-2026-27769 2.7 (v3.1) Connected Workspaces: Malicious remote server can mani… Mattermost
Mattermost
2026-04-15T10:11:07.676Z 2026-04-15T10:11:07.676Z
cve-2025-14813 9.3 (v4.0) GOSTCTR implementation unable to process more than 255… Legion of the Bouncy Castle Inc.
BC-JAVA
2026-04-15T08:56:34.057Z 2026-04-15T10:08:52.068Z
cve-2026-33807 9.1 (v3.1) @fastify/express vulnerable to middleware path doublin… fastify
@fastify/express
2026-04-15T09:52:26.838Z 2026-04-15T09:55:50.627Z
cve-2024-33618 Uncontrolled Resource Consumption in Bosch VMS Ce… Bosch
BVMS
2026-04-15T09:51:52.722Z 2026-04-15T09:51:52.722Z
cve-2026-0636 5.5 (v4.0) LDAP Injection Vulnerability in LDAPStoreHelper.java Legion of the Bouncy Castle Inc.
BC-JAVA
2026-04-15T08:59:12.677Z 2026-04-15T09:46:44.996Z
cve-2026-32201 6.5 (v3.1) Microsoft SharePoint Server Spoofing Vulnerability Microsoft
Microsoft SharePoint Enterprise Server 2016
2026-04-14T16:58:36.981Z 2026-04-15T09:37:46.599Z
cve-2026-27226 5.4 (v3.1) Adobe Experience Manager | Cross-site Scripting (Store… Adobe
Adobe Experience Manager
2026-03-11T00:23:08.254Z 2026-04-15T09:36:35.591Z
cve-2026-34615 9.3 (v3.1) Adobe Connect | Deserialization of Untrusted Data (CWE-502) Adobe
Adobe Connect
2026-04-14T17:33:44.131Z 2026-04-15T09:35:52.515Z
cve-2026-33808 9.1 (v4.0) @fastify/express vulnerable to middleware authenticati… fastify
@fastify/express
2026-04-15T09:29:46.091Z 2026-04-15T09:29:46.091Z
cve-2026-5121 7.5 (v3.1) Libarchive: libarchive: arbitrary code execution via i… Red Hat
Red Hat Enterprise Linux 10
2026-03-30T07:47:28.562Z 2026-04-15T09:25:22.100Z
cve-2026-27917 7 (v3.1) Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sy… Microsoft
Windows 10 Version 1607
2026-04-14T16:57:12.195Z 2026-04-15T09:13:18.817Z
cve-2026-27929 7 (v3.1) Windows LUA File Virtualization Filter Driver Elevatio… Microsoft
Windows 10 Version 1607
2026-04-14T16:57:16.624Z 2026-04-15T09:13:18.504Z
cve-2026-32089 7.8 (v3.1) Windows Speech Brokered Api Elevation of Privilege Vul… Microsoft
Windows 10 Version 1607
2026-04-14T16:57:23.056Z 2026-04-15T09:13:18.083Z
cve-2026-32195 7 (v3.1) Windows Kernel Elevation of Privilege Vulnerability Microsoft
Windows 11 version 26H1
2026-04-14T16:57:36.253Z 2026-04-15T09:13:17.498Z
cve-2026-32216 5.5 (v3.1) Windows Redirected Drive Buffering System Denial of Se… Microsoft
Windows 11 version 26H1
2026-04-14T16:57:38.302Z 2026-04-15T09:13:17.342Z
cve-2026-32221 8.4 (v3.1) Windows Graphics Component Remote Code Execution Vulne… Microsoft
Windows 11 Version 24H2
2026-04-14T16:57:41.793Z 2026-04-15T09:13:17.216Z
cve-2026-32224 7 (v3.1) Windows Server Update Service (WSUS) Elevation of Priv… Microsoft
Windows 11 version 26H1
2026-04-14T16:57:43.822Z 2026-04-15T09:13:17.095Z
cve-2026-33098 7.8 (v3.1) Windows Container Isolation FS Filter Driver Elevation… Microsoft
Windows 10 Version 1607
2026-04-14T16:57:46.577Z 2026-04-15T09:13:16.951Z
cve-2026-33825 7.8 (v3.1) Microsoft Defender Elevation of Privilege Vulnerability Microsoft
Microsoft Defender Antimalware Platform
2026-04-14T16:57:49.361Z 2026-04-15T09:13:16.762Z
cve-2026-23657 7.8 (v3.1) Microsoft Word Remote Code Execution Vulnerability Microsoft
Microsoft 365 Apps for Enterprise
2026-04-14T16:57:52.448Z 2026-04-15T09:13:16.619Z
cve-2026-26153 7.8 (v3.1) Windows Encrypted File System (EFS) Elevation of Privi… Microsoft
Windows 10 Version 1809
2026-04-14T16:57:54.919Z 2026-04-15T09:13:16.486Z
cve-2026-26159 7.8 (v3.1) Remote Desktop Licensing Service Elevation of Privileg… Microsoft
Windows 10 Version 1607
2026-04-14T16:57:56.121Z 2026-04-15T09:13:16.336Z
cve-2026-26163 7.8 (v3.1) Windows Kernel Elevation of Privilege Vulnerability Microsoft
Windows 10 Version 1607
2026-04-14T16:57:56.857Z 2026-04-15T09:13:16.210Z
ID CVSS Description Vendor Product Published Updated
ID Description Package Published Updated
ID Description Type
ID Description Updated
ID Description Updated
ID Description Published Updated
jvndb-2026-006887 Multiple vulnerabilities in Micro Research MR-GM5L-S1 and MR-GM5A-L1 2026-03-12T17:22+09:00 2026-03-12T17:22+09:00
jvndb-2026-000036 Improper file access permission settings in multiple Digital Arts products 2026-03-09T14:57+09:00 2026-03-09T16:23+09:00
jvndb-2026-000035 Installer for Qsee Client may insecurely load Dynamic Link Libraries 2026-03-09T14:57+09:00 2026-03-09T14:57+09:00
jvndb-2026-006102 Security issues in ESC/POS 2026-03-06T10:31+09:00 2026-03-06T10:31+09:00
jvndb-2026-000034 django-allauth vulnerable to open redirect 2026-03-05T12:36+09:00 2026-03-05T12:36+09:00
jvndb-2026-000033 EC-CUBE vulnerable to multi-factor authentication bypass 2026-03-05T12:36+09:00 2026-03-05T12:36+09:00
jvndb-2026-000032 Multiple vulnerabilities in Dell UPS Multi-UPS Management Console (MUMC) 2026-03-04T12:20+09:00 2026-03-04T12:20+09:00
jvndb-2026-005746 Multiple vulnerabilities in Trend Micro Endpoint security products for enterprises (February 2026) 2026-03-04T10:40+09:00 2026-03-04T10:40+09:00
jvndb-2026-005744 Canon IJ Scan Utility registers Windows services with unquoted file paths 2026-03-04T10:40+09:00 2026-03-04T10:40+09:00
jvndb-2026-000030 IM-LogicDesigner module of intra-mart Accel Platform vulnerable to untrusted data deserialization 2026-02-27T15:41+09:00 2026-03-03T10:06+09:00
jvndb-2026-005259 Out-of-bounds write vulnerability in Fujitsu BIOS Driver (fbiosdrv.sys) 2026-03-02T11:46+09:00 2026-03-02T11:46+09:00
jvndb-2026-000031 Improper file access permission settings in the installers for multiple Soliton Systems products 2026-02-27T15:41+09:00 2026-02-27T15:41+09:00
jvndb-2026-000029 Multiple vulnerabilities in the installer of FinalCode Client 2026-02-26T14:24+09:00 2026-02-26T14:24+09:00
jvndb-2026-004811 Vulnerability in Hitachi Configuration Manager and Hitachi Ops Center API Configuration Manager 2026-02-26T11:02+09:00 2026-02-26T11:02+09:00
jvndb-2026-004810 Vulnerability in Hitachi Configuration Manager and Hitachi Ops Center API Configuration Manager 2026-02-26T11:02+09:00 2026-02-26T11:02+09:00
jvndb-2026-000026 Lanscope Endpoint Manager (On-Premises) vulnerable to path traversal 2026-02-25T15:14+09:00 2026-02-25T15:14+09:00
jvndb-2026-004359 Security information for Hitachi Disk Array Systems 2026-02-20T18:35+09:00 2026-02-20T18:35+09:00
jvndb-2026-000027 WordPress Plugin "Survey Maker" vulnerable to cross-site scripting 2026-02-20T12:32+09:00 2026-02-20T12:32+09:00
jvndb-2026-000028 Installer for Job log aggregation/analysis software RICOH Job Log Aggregation Tool may insecurely load Dynamic Link Libraries 2026-02-20T12:31+09:00 2026-02-20T12:31+09:00
jvndb-2026-003912 Vulnerability in Cosminexus HTTP Server and Hitachi Web Server 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003911 Vulnerability in Cosminexus HTTP Server 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003910 Multiple Vulnerabilities in Cosminexus HTTP Server 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003909 Multiple Vulnerabilities in Hitachi Command Suite products 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003908 Multiple Vulnerabilities in Hitachi Command Suite, Hitachi Automation Director, Hitachi Configuration Manager, Hitachi Infrastructure Analytics Advisor and Hitachi Ops Center 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003907 Multiple Vulnerabilities in JP1 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003906 Multiple Vulnerabilities in Cosminexus 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-003905 Multiple Vulnerabilities in Cosminexus HTTP Server and Hitachi Web Server 2026-02-17T20:46+09:00 2026-02-17T20:46+09:00
jvndb-2026-000025 Joomla! CMS vulnerable to cross-site scripting 2026-02-17T12:46+09:00 2026-02-17T12:46+09:00
jvndb-2026-000023 FileZen vulnerable to OS command injection 2026-02-13T16:51+09:00 2026-02-13T17:08+09:00
jvndb-2026-000024 Installer of M-Audio M-Track Duo HD may insecurely load Dynamic Link Libraries 2026-02-12T13:32+09:00 2026-02-12T13:32+09:00
ID Description Updated
ts-2023-001 TS-2023-001 2023-01-17T00:00
ts-2022-005 TS-2022-005 2022-11-21T00:00
ts-2022-004 TS-2022-004 2022-11-21T00:00
ts-2022-003 TS-2022-003 2022-06-14T00:00
ts-2022-002 TS-2022-002 2022-05-11T00:00
ts-2022-001 TS-2022-001 2022-02-07T00:00
ID Description
ID Description Published Updated
certfr-2026-avi-0406 Multiples vulnérabilités dans les produits Microsoft 2026-04-08T00:00:00.000000 2026-04-08T00:00:00.000000
certfr-2026-avi-0405 Vulnérabilité dans les produits Moxa 2026-04-08T00:00:00.000000 2026-04-08T00:00:00.000000
certfr-2026-avi-0404 Multiples vulnérabilités dans les produits Mozilla 2026-04-08T00:00:00.000000 2026-04-08T00:00:00.000000
certfr-2026-avi-0403 Multiples vulnérabilités dans OpenSSL 2026-04-08T00:00:00.000000 2026-04-08T00:00:00.000000
certfr-2026-avi-0402 Vulnérabilité dans HPE Aruba Networking Private 5G Core 2026-04-08T00:00:00.000000 2026-04-08T00:00:00.000000
certfr-2026-avi-0373 Vulnérabilité dans Roundcube 2026-03-30T00:00:00.000000 2026-04-08T00:00:00.000000
certfr-2026-avi-0401 Multiples vulnérabilités dans GLPI 2026-04-07T00:00:00.000000 2026-04-07T00:00:00.000000
certfr-2026-avi-0400 Vulnérabilité dans Fortinet FortiClientEMS 2026-04-07T00:00:00.000000 2026-04-07T00:00:00.000000
certfr-2026-avi-0399 Multiples vulnérabilités dans Google Android 2026-04-07T00:00:00.000000 2026-04-07T00:00:00.000000
certfr-2026-avi-0398 Multiples vulnérabilités dans le noyau Linux de SUSE 2026-04-03T00:00:00.000000 2026-04-03T00:00:00.000000
certfr-2026-avi-0397 Multiples vulnérabilités dans le noyau Linux d'Ubuntu 2026-04-03T00:00:00.000000 2026-04-03T00:00:00.000000
certfr-2026-avi-0396 Multiples vulnérabilités dans le noyau Linux de Red Hat 2026-04-03T00:00:00.000000 2026-04-03T00:00:00.000000
certfr-2026-avi-0395 Multiples vulnérabilités dans les produits IBM 2026-04-03T00:00:00.000000 2026-04-03T00:00:00.000000
certfr-2026-avi-0394 Multiples vulnérabilités dans VMware Tanzu 2026-04-03T00:00:00.000000 2026-04-03T00:00:00.000000
certfr-2026-avi-0393 Vulnérabilité dans Synology Mail Station 2026-04-03T00:00:00.000000 2026-04-03T00:00:00.000000
certfr-2026-avi-0392 Multiples vulnérabilités dans Microsoft Edge 2026-04-03T00:00:00.000000 2026-04-03T00:00:00.000000
certfr-2026-avi-0391 Multiples vulnérabilités dans OpenSSH 2026-04-02T00:00:00.000000 2026-04-02T00:00:00.000000
certfr-2026-avi-0390 Multiples vulnérabilités dans Belden NetModule Router Software 2026-04-02T00:00:00.000000 2026-04-02T00:00:00.000000
certfr-2026-avi-0389 Vulnérabilité dans Microsoft Azure Linux 2026-04-02T00:00:00.000000 2026-04-02T00:00:00.000000
certfr-2026-avi-0388 Multiples vulnérabilités dans les produits Cisco 2026-04-02T00:00:00.000000 2026-04-02T00:00:00.000000
certfr-2026-avi-0387 Multiples vulnérabilités dans les produits Netgate 2026-04-02T00:00:00.000000 2026-04-02T00:00:00.000000
certfr-2026-avi-0386 Multiples vulnérabilités dans les produits Microsoft 2026-04-01T00:00:00.000000 2026-04-01T00:00:00.000000
certfr-2026-avi-0385 Multiples vulnérabilités dans Google Chrome 2026-04-01T00:00:00.000000 2026-04-01T00:00:00.000000
certfr-2026-avi-0384 Multiples vulnérabilités dans Joomla! 2026-04-01T00:00:00.000000 2026-04-01T00:00:00.000000
certfr-2026-avi-0383 Multiples vulnérabilités dans Sonicwall Email Security 2026-04-01T00:00:00.000000 2026-04-01T00:00:00.000000
certfr-2026-avi-0382 Multiples vulnérabilités dans les produits FoxIT 2026-03-31T00:00:00.000000 2026-03-31T00:00:00.000000
certfr-2026-avi-0381 Multiples vulnérabilités dans les produits Microsoft 2026-03-31T00:00:00.000000 2026-03-31T00:00:00.000000
certfr-2026-avi-0380 Multiples vulnérabilités dans Microsoft Edge 2026-03-31T00:00:00.000000 2026-03-31T00:00:00.000000
certfr-2026-avi-0379 Vulnérabilité dans Elastic OpenTelemetry Java 2026-03-31T00:00:00.000000 2026-03-31T00:00:00.000000
certfr-2026-avi-0378 Vulnérabilité dans Symantec Data Loss Prevention (DLP) 2026-03-31T00:00:00.000000 2026-03-31T00:00:00.000000
ID Description Published Updated
certfr-2024-ale-003 [MàJ] Incident affectant les solutions AnyDesk 2024-02-05T00:00:00.000000 2024-04-15T00:00:00.000000
certfr-2024-ale-001 [MàJ] Multiples vulnérabilités dans Ivanti Connect Secure et Policy Secure Gateways 2024-01-11T00:00:00.000000 2024-04-15T00:00:00.000000
certfr-2024-ale-002 [MàJ] Multiples Vulnérabilités dans GitLab 2024-01-12T00:00:00.000000 2024-02-22T00:00:00.000000
certfr-2023-ale-013 Vulnérabilité dans Apache Struts 2 2023-12-13T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-012 [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway 2023-10-23T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-011 [MàJ] Multiples vulnérabilités dans Cisco IOS XE 2023-10-17T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-010 Multiples vulnérabilités dans Exim 2023-10-02T00:00:00.000000 2024-02-16T00:00:00.000000
certfr-2023-ale-008 [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway 2023-07-19T00:00:00.000000 2024-01-02T00:00:00.000000
certfr-2023-ale-007 [MàJ] Vulnérabilité dans Zimbra Collaboration Suite 2023-07-17T00:00:00.000000 2024-01-02T00:00:00.000000
certfr-2023-ale-006 Vulnérabilité dans les produits Microsoft 2023-07-12T00:00:00.000000 2023-12-12T00:00:00.000000
certfr-2023-ale-009 [MàJ] Multiples vulnérabilités dans Ivanti Endpoint Manager Mobile 2023-07-26T00:00:00.000000 2023-09-15T00:00:00.000000
certfr-2023-ale-005 Synthèse sur l'exploitation d'une vulnérabilité dans MOVEit Transfer 2023-07-05T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2023-ale-004 Vulnérabilité dans les produits Fortinet 2023-06-13T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2022-ale-014 Multiples vulnérabilités dans AMI MegaRAC 2022-12-16T00:00:00.000000 2023-09-11T00:00:00.000000
certfr-2023-ale-002 [MàJ] Vulnérabilité dans Microsoft Outlook 2023-03-15T00:00:00.000000 2023-05-11T00:00:00.000000
certfr-2023-ale-003 [MàJ] Compromission de l'application 3CX Desktop App 2023-03-31T00:00:00.000000 2023-04-12T00:00:00.000000
certfr-2023-ale-015 [MàJ] Campagne d'exploitation d'une vulnérabilité affectant VMware ESXi 2023-02-03T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2023-ale-001 Vulnérabilité dans Fortinet FortiOS 2023-03-14T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-013 [MàJ] Vulnérabilité dans Citrix ADC et Gateway 2022-12-13T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-010 Multiples vulnérabilités dans GLPI 2022-10-07T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-009 [MaJ] Vulnérabilité dans Zimbra Collaboration 2022-10-07T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-008 [MaJ] Multiples vulnérabilités dans Microsoft Exchange 2022-09-30T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-007 Multiples vulnérabilités dans Microsoft Windows 2022-09-16T00:00:00.000000 2023-03-14T00:00:00.000000
certfr-2022-ale-012 [MàJ] Vulnérabilité dans FortiOS SSL-VPN 2022-12-13T00:00:00.000000 2022-12-20T00:00:00.000000
certfr-2022-ale-011 Vulnérabilité dans les produits Fortinet 2022-10-14T00:00:00.000000 2022-10-14T00:00:00.000000
certfr-2022-ale-006 [MàJ] Vulnérabilité dans Atlassian Confluence 2022-06-03T00:00:00.000000 2022-10-07T00:00:00.000000
certfr-2022-ale-002 Vulnérabilité dans VMware Spring Cloud Gateway 2022-03-03T00:00:00.000000 2022-10-07T00:00:00.000000
certfr-2022-ale-005 [MàJ] Vulnérabilité dans Microsoft Windows 2022-05-31T00:00:00.000000 2022-09-16T00:00:00.000000
certfr-2022-ale-004 Vulnérabilité dans F5 BIG-IP 2022-05-11T00:00:00.000000 2022-09-16T00:00:00.000000
certfr-2022-ale-003 [MàJ] Vulnérabilité dans l'implémentation du protocole RPC par Microsoft 2022-04-13T00:00:00.000000 2022-05-04T00:00:00.000000