Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-78281 | 7.1 (v3.1) | WordPress CP Media Player plugin <= 1.3.0 - Cross Site… |
codepeople |
CP Media Player |
2026-08-27T09:00:00.322Z | 2026-08-27T12:17:56.974Z |
| cve-2026-78289 | 7.1 (v3.1) | WordPress CozyStay theme <= 1.10.0 - Cross Site Script… |
LoftOcean |
CozyStay |
2026-08-27T09:00:04.174Z | 2026-08-27T12:17:17.638Z |
| cve-2026-81272 | 4.9 (v3.1) | WordPress FluentPlayer Pro plugin <= 1.3.2 - Broken Ac… |
WP Manage Ninja |
FluentPlayer Pro |
2026-08-27T09:00:07.759Z | 2026-08-27T12:16:35.326Z |
| cve-2026-81625 | 8.7 (v4.0) 8.8 (v3.1) | Stack buffer overflow in Greenbone OS and openvas-scanner |
Greenbone |
Greenbone OS |
2026-08-27T09:06:44.122Z | 2026-08-27T12:12:02.884Z |
| cve-2026-75020 | 7 (v4.0) | Apache APISIX: ldap-auth plugin cross-subtree identity… |
Apache Software Foundation |
Apache APISIX |
2026-08-27T09:14:33.099Z | 2026-08-27T12:09:54.558Z |
| cve-2026-75005 | 8.7 (v4.0) | Apache APISIX: Unauthenticated CPU-exhaustion DoS |
Apache Software Foundation |
Apache APISIX |
2026-08-27T09:15:32.196Z | 2026-08-27T12:06:27.060Z |
| cve-2026-74848 | 7 (v4.0) | Apache APISIX: Cross-user response poisoning in server… |
Apache Software Foundation |
Apache APISIX |
2026-08-27T09:16:06.985Z | 2026-08-27T12:05:30.790Z |
| cve-2026-44393 | N/A | An issue was discovered in OpenStack oslo.messagi… |
n/a |
n/a |
2026-06-04T00:00:00.000Z | 2026-08-27T12:04:50.939Z |
| cve-2026-27606 | Rollup 4 has Arbitrary File Write via Path Traversal |
rollup |
rollup |
2026-02-25T02:08:06.682Z | 2026-08-27T12:04:50.218Z | |
| cve-2026-6266 | 8.3 (v3.1) | Aap-controller: aap-gateway: account hijacking and una… |
|
|
2026-05-04T13:47:07.260Z | 2026-08-27T12:04:40.119Z |
| cve-2026-7307 | 7.5 (v3.1) | Keycloak: keycloak: denial of service via specially cr… |
|
|
2026-05-19T10:52:24.684Z | 2026-08-27T12:04:37.323Z |
| cve-2026-17613 | N/A | CVE-2026-17613 |
Penpot |
Penpot |
2026-08-05T14:12:03.942Z | 2026-08-27T11:41:04.192Z |
| cve-2026-41992 | 6.9 (v4.0) | Global Buffer Overflow in GNU gzip |
GNU |
gzip |
2026-06-29T10:15:57.278Z | 2026-08-27T11:39:40.630Z |
| cve-2026-19693 | 8.1 (v3.1) | extract-zip arbitrary file write outside the destinati… |
max-mapper |
extract-zip |
2026-08-17T13:30:22.288Z | 2026-08-27T11:29:02.653Z |
| cve-2024-7341 | 7.1 (v3.1) | Wildfly-elytron: org.keycloak/keycloak-services: sessi… |
|
|
2024-09-09T18:51:13.537Z | 2026-08-27T09:54:13.737Z |
| cve-2026-16743 | 5.5 (v3.1) | Accountsservice: accountsservice: arbitrary file read … |
Red Hat |
Red Hat Enterprise Linux 10 |
2026-07-24T12:56:34.520Z | 2026-08-27T07:31:52.138Z |
| cve-2025-2399 | 5.9 (v3.1) | Denial of Service (DoS) Vulnerability in Mitsubishi El… |
Mitsubishi Electric Corporation |
Mitsubishi Electric CNC M800V Series M800VW |
2026-03-10T04:40:00.599Z | 2026-08-27T06:35:04.566Z |
| cve-2026-31153 | N/A | A stored cross-site scripting (XSS) vulnerability… |
n/a |
n/a |
2026-04-06T00:00:00.000Z | 2026-08-27T05:44:57.841Z |
| cve-2025-3511 | 7.5 (v3.1) | Improper Validation of Specified Quantity in Inpu… |
Mitsubishi Electric Corporation |
CC-Link IE TSN Remote I/O module NZ2GN2S1-32D |
2025-04-25T05:14:43.758Z | 2026-08-27T05:32:29.296Z |
| cve-2026-80589 | block: stop the timeout timer when releasing a never a… |
Linux |
Linux |
2026-08-26T14:37:43.293Z | 2026-08-27T05:02:10.391Z | |
| cve-2026-80588 | mptcp: reclaim forward-allocated memory on RX path errors |
Linux |
Linux |
2026-08-26T14:37:42.685Z | 2026-08-27T05:02:09.335Z | |
| cve-2026-80586 | mptcp: options: reset DSS fields in case of unexpected size |
Linux |
Linux |
2026-08-26T14:37:41.493Z | 2026-08-27T05:02:07.204Z | |
| cve-2026-80585 | mptcp: fastopen: only mark MPTFO subflows with SYN data |
Linux |
Linux |
2026-08-26T14:37:40.901Z | 2026-08-27T05:02:06.112Z | |
| cve-2026-80584 | s390/qeth: validate user buffer length in SNMP and ARP… |
Linux |
Linux |
2026-08-26T14:37:40.302Z | 2026-08-27T05:02:04.879Z | |
| cve-2026-80582 | drm/shmem_helper: Check VMA boundaries for PMD mappings |
Linux |
Linux |
2026-08-26T14:37:39.113Z | 2026-08-27T05:02:02.758Z | |
| cve-2026-80580 | fbdev: bound mode sysfs output to the sysfs buffer |
Linux |
Linux |
2026-08-26T14:37:37.917Z | 2026-08-27T05:02:01.683Z | |
| cve-2026-80579 | fbdev: clear fb_info->mode before deleting a videomode |
Linux |
Linux |
2026-08-26T14:37:37.320Z | 2026-08-27T05:02:00.629Z | |
| cve-2026-80578 | fbdev: core: Fix pointer desynchronization in fb_io_read() |
Linux |
Linux |
2026-08-26T14:37:36.722Z | 2026-08-27T05:01:59.582Z | |
| cve-2026-80576 | drm/amdgpu: reject oversized IBs with per-ring packet limits |
Linux |
Linux |
2026-08-26T14:37:35.538Z | 2026-08-27T05:01:58.528Z | |
| cve-2026-80575 | Input: cs40l50-vibra - validate custom data from user space |
Linux |
Linux |
2026-08-26T14:37:34.942Z | 2026-08-27T05:01:57.416Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2017-avi-090 | Multiples vulnérabilités dans NTP | 2017-03-23T00:00:00.000000 | 2017-03-23T00:00:00.000000 |
| certfr-2017-avi-089 | Multiples vulnérabilités dans les produits Cisco | 2017-03-23T00:00:00.000000 | 2017-03-23T00:00:00.000000 |
| certfr-2017-avi-088 | Vulnérabilité dans Mozilla Firefox | 2017-03-20T00:00:00.000000 | 2017-03-20T00:00:00.000000 |
| certfr-2017-avi-087 | Multiples vulnérabilités dans Moodle | 2017-03-20T00:00:00.000000 | 2017-03-20T00:00:00.000000 |
| certfr-2017-avi-086 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2017-03-16T00:00:00.000000 | 2017-03-16T00:00:00.000000 |
| certfr-2017-avi-085 | Multiples vulnérabilités dans Drupal | 2017-03-16T00:00:00.000000 | 2017-03-16T00:00:00.000000 |
| certfr-2017-avi-084 | Multiples vulnérabilités dans les produits Cisco | 2017-03-15T00:00:00.000000 | 2017-03-15T00:00:00.000000 |
| certfr-2017-avi-083 | Vulnérabilité dans Xen | 2017-03-15T00:00:00.000000 | 2017-03-15T00:00:00.000000 |
| certfr-2017-avi-082 | Multiples vulnérabilités dans Microsoft Windows | 2017-03-15T00:00:00.000000 | 2017-03-15T00:00:00.000000 |
| certfr-2017-avi-081 | Multiples vulnérabilités dans Microsoft Office | 2017-03-15T00:00:00.000000 | 2017-03-15T00:00:00.000000 |
| certfr-2017-avi-080 | Multiples vulnérabilités dans Microsoft Edge | 2017-03-15T00:00:00.000000 | 2017-03-15T00:00:00.000000 |
| certfr-2017-avi-079 | Multiples vulnérabilités dans Microsoft Internet Explorer | 2017-03-15T00:00:00.000000 | 2017-03-15T00:00:00.000000 |
| certfr-2017-avi-078 | Vulnérabilité dans Adobe Shockwave Player | 2017-03-15T00:00:00.000000 | 2017-03-15T00:00:00.000000 |
| certfr-2017-avi-077 | Multiples vulnérabilités dans Adobe Flash Player | 2017-03-15T00:00:00.000000 | 2017-03-15T00:00:00.000000 |
| certfr-2017-avi-076 | Vulnérabilité dans VMware Workstation et Fusion | 2017-03-14T00:00:00.000000 | 2017-03-14T00:00:00.000000 |
| certfr-2017-avi-075 | Vulnérabilité dans SCADA Wonderware by Schneider Electric Tableau Server | 2017-03-13T00:00:00.000000 | 2017-03-13T00:00:00.000000 |
| certfr-2017-avi-074 | Multiples vulnérabilités dans VMware Workstation | 2017-03-10T00:00:00.000000 | 2017-03-10T00:00:00.000000 |
| certfr-2017-avi-073 | Multiples vulnérabilités dans Google Chrome | 2017-03-10T00:00:00.000000 | 2017-03-10T00:00:00.000000 |
| certfr-2017-avi-072 | Vulnérabilité dans SPIP | 2017-03-09T00:00:00.000000 | 2017-03-09T00:00:00.000000 |
| certfr-2017-avi-071 | Vulnérabilité dans Apache Struts | 2017-03-09T00:00:00.000000 | 2017-03-09T00:00:00.000000 |
| certfr-2017-avi-070 | Vulnérabilité dans le noyau Linux d'Ubuntu | 2017-03-08T00:00:00.000000 | 2017-03-09T00:00:00.000000 |
| certfr-2017-avi-069 | Multiples vulnérabilités dans Mozilla Firefox | 2017-03-08T00:00:00.000000 | 2017-03-08T00:00:00.000000 |
| certfr-2017-avi-068 | Multiples vulnérabilités dans Mozilla Thunderbird | 2017-03-08T00:00:00.000000 | 2017-03-08T00:00:00.000000 |
| certfr-2017-avi-067 | Multiples vulnérabilités dans WordPress | 2017-03-07T00:00:00.000000 | 2017-03-07T00:00:00.000000 |
| certfr-2017-avi-066 | Multiples vulnérabilités dans Google Android (Nexus) | 2017-03-07T00:00:00.000000 | 2017-03-07T00:00:00.000000 |
| certfr-2017-avi-065 | Multiples vulnérabilités dans Wireshark | 2017-03-06T00:00:00.000000 | 2017-03-06T00:00:00.000000 |
| certfr-2017-avi-064 | Vulnérabilité dans VMware Horizon DaaS | 2017-03-03T00:00:00.000000 | 2017-03-03T00:00:00.000000 |
| certfr-2017-avi-063 | Multiples vulnérabilités dans SCADA les produits Schneider | 2017-03-03T00:00:00.000000 | 2017-03-03T00:00:00.000000 |
| certfr-2017-avi-062 | Vulnérabilité dans SCADA Siemens SINUMERIK Integrate | 2017-03-01T00:00:00.000000 | 2017-03-01T00:00:00.000000 |
| certfr-2017-avi-061 | Vulnérabilité dans Cisco NetFlow Generation Appliance | 2017-03-01T00:00:00.000000 | 2017-03-01T00:00:00.000000 |