Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-66155 | A vulnerability has been identified in Element ma… |
Siemens |
Element maps-ng V47 |
2026-08-27T11:56:48.418Z | 2026-08-27T14:56:34.021Z | |
| cve-2026-76846 | 8.7 (v4.0) 7.5 (v3.1) | Grav before 2.0.16 Information Disclosure via Twig Sandbox |
getgrav |
grav |
2026-08-25T01:30:31.891Z | 2026-08-27T14:55:30.423Z |
| cve-2026-72701 | 6.3 (v4.0) 3.7 (v3.1) | Grav CMS before 2.0.16 Timing Attack via verifyNonce |
getgrav |
grav |
2026-08-25T01:30:23.965Z | 2026-08-27T14:54:28.112Z |
| cve-2026-47890 | N/A | Spring Framework Server Sent Event stream corruption w… |
Spring |
Spring Framework |
2026-08-27T05:21:38.260Z | 2026-08-27T14:53:37.162Z |
| cve-2026-47891 | N/A | Spring Framework maxInMemorySize Bypassed in Jaxb2Decoder |
Spring |
Spring Framework |
2026-08-27T05:21:39.288Z | 2026-08-27T14:52:30.491Z |
| cve-2026-72696 | 8.6 (v4.0) 8.4 (v3.1) | Grav CMS before 2.0.16 Symlink Following via createLockFile |
getgrav |
grav |
2026-08-25T01:30:14.848Z | 2026-08-27T14:52:18.096Z |
| cve-2026-61790 | Weblate: Team-enforced 2FA is bypassed for global perm… |
WeblateOrg |
weblate |
2026-08-26T20:23:53.644Z | 2026-08-27T14:51:14.305Z | |
| cve-2026-56707 | 8.3 (v4.0) 7.7 (v3.1) | Grav Flex Objects 1.4.0 through 1.4.7 Authorization By… |
getgrav |
grav |
2026-08-25T01:30:06.601Z | 2026-08-27T14:50:54.881Z |
| cve-2026-19654 | 7.5 (v3.1) | Rsyslog: a configuration-dependent issue in rsyslog's … |
Red Hat |
Red Hat Enterprise Linux 10 |
2026-08-12T20:46:31.853Z | 2026-08-27T14:50:47.138Z |
| cve-2026-74232 | 9.3 (v4.0) 9.8 (v3.1) | Zbtlink MQWrt yunmgrd Cloud C2 Implant |
Zbtlink |
L3_V2_8 |
2026-08-27T10:39:14.386Z | 2026-08-27T14:49:10.575Z |
| cve-2026-47859 | 5.4 (v3.1) | Unbounded memory allocation in RFC6587SyslogDeserializ… |
Spring |
Spring Integration |
2026-08-26T23:28:45.659Z | 2026-08-27T14:48:52.190Z |
| cve-2026-81562 | AlexGladkov claude-in-mobile client.ts execSync os com… |
AlexGladkov |
claude-in-mobile |
2026-08-27T11:30:13.109Z | 2026-08-27T14:48:35.634Z | |
| cve-2026-47860 | 6.5 (v3.1) | Unbounded decompression of attacker-supplied compresse… |
Spring |
Spring AMQP |
2026-08-26T23:28:46.607Z | 2026-08-27T14:48:04.818Z |
| cve-2026-81658 | 6.5 (v3.1) | Foreman: cross-tenant disclosure of template revisions… |
Red Hat |
Red Hat Satellite 6 |
2026-08-27T10:22:08.586Z | 2026-08-27T14:47:55.250Z |
| cve-2026-47862 | 5.4 (v3.1) | ZipTransformer uses file_name header to build workDire… |
Spring |
Spring Integration |
2026-08-26T23:28:47.655Z | 2026-08-27T14:47:11.989Z |
| cve-2026-47863 | 5.9 (v3.1) | Reactor Core bufferTimeout fair-backpressure pipeline … |
Spring |
Reactor Core |
2026-08-26T23:28:48.599Z | 2026-08-27T14:45:41.473Z |
| cve-2026-81491 | boxpositron with-context-mcp index.ts project_folder p… |
boxpositron |
with-context-mcp |
2026-08-27T02:15:09.570Z | 2026-08-27T14:44:51.974Z | |
| cve-2026-66003 | Frappe: Access control bypass via REST API dot-notatio… |
frappe |
frappe |
2026-08-26T19:30:28.968Z | 2026-08-27T14:44:42.733Z | |
| cve-2026-77652 | 7.8 (v3.1) | Dia: dia: heap buffer overflow in wpg colormap parser … |
GNOME |
Dia |
2026-08-26T19:21:39.936Z | 2026-08-27T14:43:23.737Z |
| cve-2026-47877 | 8.2 (v3.1) | Spring Security Authorization Server Default Consent P… |
Spring |
Spring Security |
2026-08-27T05:20:22.523Z | 2026-08-27T14:43:11.105Z |
| cve-2026-81486 | bsmi021 mcp-file-context-server Path Resolution index.… |
bsmi021 |
mcp-file-context-server |
2026-08-27T01:30:12.358Z | 2026-08-27T14:42:26.358Z | |
| cve-2026-74774 | 5.9 (v3.1) | Dell PowerProtect One, versions 20.1.0.0 and belo… |
Dell |
PowerProtect One |
2026-08-26T19:05:43.845Z | 2026-08-27T14:42:11.386Z |
| cve-2026-68863 | 7.5 (v3.1) | Dell PowerProtect One, versions 20.1.0.0 and belo… |
Dell |
PowerProtect One |
2026-08-26T18:50:10.312Z | 2026-08-27T14:41:45.811Z |
| cve-2023-22431 | N/A | {'providerMetadata': {'orgId': '6dda929c-bb53-4a77-a76d-48e79601a1ce', 'shortName': 'intel', 'dateUpdated': '2026-08-27T14:39:27.227Z'}, 'rejectedReasons': [{'lang': 'en', 'value': 'This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused'}]} | N/A | N/A | 2026-08-27T14:39:27.227Z | |
| cve-2026-78049 | Systerel S2OPC AddNodes Service sopc_node_mgt_helper_i… |
Systerel |
S2OPC |
2026-08-22T22:30:12.857Z | 2026-08-27T14:38:27.851Z | |
| cve-2026-78056 | sambitraj Student-Management-System Dashboard sql injection |
sambitraj |
Student-Management-System |
2026-08-23T02:30:09.648Z | 2026-08-27T14:38:18.777Z | |
| cve-2026-78062 | vas3k TaxHacker JWT Secret config.ts envSchema.parse h… |
vas3k |
TaxHacker |
2026-08-23T04:15:10.545Z | 2026-08-27T14:38:10.867Z | |
| cve-2026-78141 | Tenda CH22 exeCommand formexeCommand command injection |
Tenda |
CH22 |
2026-08-23T21:45:09.069Z | 2026-08-27T14:38:00.837Z | |
| cve-2026-78147 | ggml-org llama.cpp ggml-RPC Server ggml-rpc.cpp deseri… |
ggml-org |
llama.cpp |
2026-08-23T23:00:13.111Z | 2026-08-27T14:37:49.255Z | |
| cve-2026-78158 | Open5GS AMF UEContextReleaseRequest Path improper auth… |
n/a |
Open5GS |
2026-08-24T00:15:08.598Z | 2026-08-27T14:37:40.371Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2015-avi-414 | Multiples vulnérabilités dans Apple Safari | 2015-10-01T00:00:00.000000 | 2015-10-01T00:00:00.000000 |
| certfr-2015-avi-413 | Multiples vulnérabilités dans les produits VMWare | 2015-10-01T00:00:00.000000 | 2015-10-01T00:00:00.000000 |
| certfr-2015-avi-412 | Multiples vulnérabilités dans les produits Huawei | 2015-10-01T00:00:00.000000 | 2015-10-01T00:00:00.000000 |
| certfr-2015-avi-411 | Multiples vulnérabilités dans le noyau Linux Ubuntu | 2015-09-29T00:00:00.000000 | 2015-09-29T00:00:00.000000 |
| certfr-2015-avi-410 | Vulnérabilité dans le pilote graphique NVIDIA | 2015-09-28T00:00:00.000000 | 2015-09-28T00:00:00.000000 |
| certfr-2015-avi-409 | Multiples vulnérabilités dans Google Chrome | 2015-09-25T00:00:00.000000 | 2015-09-25T00:00:00.000000 |
| certfr-2015-avi-408 | Multiples vulnérabilités dans les produits Huawei | 2015-09-24T00:00:00.000000 | 2015-09-24T00:00:00.000000 |
| certfr-2015-avi-407 | Multiples vulnérabilités dans les produits Cisco | 2015-09-24T00:00:00.000000 | 2015-09-24T00:00:00.000000 |
| certfr-2015-avi-406 | Vulnérabilité dans Xen | 2015-09-23T00:00:00.000000 | 2015-09-23T00:00:00.000000 |
| certfr-2015-avi-405 | Multiples vulnérabilités dans Mozilla Firefox | 2015-09-23T00:00:00.000000 | 2015-09-23T00:00:00.000000 |
| certfr-2015-avi-404 | Multiples vulnérabilités dans Adobe Flash Player | 2015-09-22T00:00:00.000000 | 2015-09-22T00:00:00.000000 |
| certfr-2015-avi-403 | Multiples vulnérabilités dans Moodle | 2015-09-21T00:00:00.000000 | 2015-09-21T00:00:00.000000 |
| certfr-2015-avi-402 | Multiples vulnérabilités dans les produits Huawei | 2015-09-21T00:00:00.000000 | 2015-09-21T00:00:00.000000 |
| certfr-2015-avi-401 | Vulnérabilité dans VMware vCenter Server | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-400 | Vulnérabilité dans SCADA Schneider Electric Struxureware Building Expert | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-399 | Multiples vulnérabilités dans Apple Xcode | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-398 | Multiples vulnérabilités dans Apple iTunes | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-397 | Vulnérabilité dans Cisco TelePresence Server | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-396 | Vulnérabilité dans Cisco Cisco Prime Collaboration Provisioning | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-395 | Multiples vulnérabilités dans Cisco Prime Collaboration Assurance | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-394 | Multiples vulnérabilités dans Apple OS X Server | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-393 | Multiples vulnérabilités dans Apple iOS | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-392 | Multiples vulnérabilités dans WordPress | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-391 | Multiples vulnérabilités dans les noyaux Linux Red Hat | 2015-09-18T00:00:00.000000 | 2015-09-18T00:00:00.000000 |
| certfr-2015-avi-390 | Vulnérabilité dans phpMyAdmin | 2015-09-16T00:00:00.000000 | 2015-09-16T00:00:00.000000 |
| certfr-2015-avi-389 | Multiples vulnérabilités dans ISC Bind | 2015-09-16T00:00:00.000000 | 2015-09-16T00:00:00.000000 |
| certfr-2015-avi-388 | Vulnérabilité dans OpenLDAP | 2015-09-15T00:00:00.000000 | 2015-09-15T00:00:00.000000 |
| certfr-2015-avi-387 | Multiples vulnérabilités dans PHP | 2015-09-10T00:00:00.000000 | 2015-09-10T00:00:00.000000 |
| certfr-2015-avi-386 | Vulnérabilité dans les produits Huawei WLAN AC | 2015-09-10T00:00:00.000000 | 2015-09-10T00:00:00.000000 |
| certfr-2015-avi-385 | Multiples vulnérabilités dans les produits Huawei U1900 | 2015-09-10T00:00:00.000000 | 2015-09-10T00:00:00.000000 |