Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-71941 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorSwitch Multiple Models Buffer Overflow vi… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:08:04.706Z | 2026-08-27T13:53:21.910Z |
| cve-2026-62326 | Weblate Has Uncontrolled Resource Consumption via |
WeblateOrg |
weblate |
2026-08-26T20:36:25.043Z | 2026-08-27T13:52:30.709Z | |
| cve-2026-71936 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorSwitch Multiple Models Buffer Overflow vi… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:08:01.136Z | 2026-08-27T13:52:16.469Z |
| cve-2026-55227 | Observable object existence disclosure in private Webl… |
WeblateOrg |
weblate |
2026-08-26T20:10:39.333Z | 2026-08-27T13:51:40.681Z | |
| cve-2026-71931 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorSwitch Multiple Models OS Command Injecti… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:07:57.684Z | 2026-08-27T13:51:25.835Z |
| cve-2026-71926 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorSwitch Multiple Models OS Command Injecti… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:07:54.287Z | 2026-08-27T13:50:32.141Z |
| cve-2026-54245 | Fleet: SQL injection in Okta conditional access endpoi… |
fleetdm |
fleet |
2026-08-26T19:13:22.415Z | 2026-08-27T13:49:51.927Z | |
| cve-2026-71921 | 9.3 (v4.0) 9.8 (v3.1) | DrayTek VigorSwitch Multiple Models Pre-Authentication… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:07:50.939Z | 2026-08-27T13:49:51.843Z |
| cve-2026-71916 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorSwitch Multiple Models OS Command Injecti… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:07:47.614Z | 2026-08-27T13:49:12.955Z |
| cve-2026-77611 | SeaweedFS: Authenticated S3 object-scope bypass in Put… |
seaweedfs |
seaweedfs |
2026-08-26T21:31:27.046Z | 2026-08-27T13:48:29.258Z | |
| cve-2026-55182 | LibreNMS: Remote Code Execution by Signal Alert Transp… |
librenms |
librenms |
2026-08-26T21:50:04.014Z | 2026-08-27T13:47:10.632Z | |
| cve-2026-74233 | 9.3 (v4.0) 9.8 (v3.1) | Zbtlink MQWrt infosrvd Command Injection |
Zbtlink |
WE1326 |
2026-08-27T10:40:11.313Z | 2026-08-27T13:41:32.924Z |
| cve-2026-79040 | N/A | Uninitialized resource in GPU in Google Chrome on… |
Google |
Chrome |
2026-08-25T20:10:51.182Z | 2026-08-27T13:38:31.458Z |
| cve-2026-59355 | 6.1 (v3.1) | Spring Authorization Server: Open Redirect via request… |
VMware |
Spring Authorization Server |
2026-08-27T06:35:09.607Z | 2026-08-27T13:37:30.618Z |
| cve-2026-19441 | 5.3 (v3.1) | Unauthenticated API Allows Analytics Data Manipulation… |
IKAS Technology Inc. |
Rush |
2026-08-21T07:55:42.402Z | 2026-08-27T13:37:13.859Z |
| cve-2026-79028 | N/A | Observable discrepancy in Network in Google Chrom… |
Google |
Chrome |
2026-08-25T20:10:16.864Z | 2026-08-27T13:35:22.092Z |
| cve-2026-81573 | 8.6 (v3.1) | Improper Access Control in Local-Only Configuration Commands |
wibu-systems-ag |
codemeter-runtime |
2026-08-27T07:09:09.122Z | 2026-08-27T13:33:47.763Z |
| cve-2026-81574 | 8.2 (v3.1) | Format String Vulnerability in Logger |
wibu-systems-ag |
codemeter-runtime |
2026-08-27T07:11:56.916Z | 2026-08-27T13:32:50.315Z |
| cve-2026-81575 | 7.5 (v3.1) | Missing Sanity Checks for Buffer Lengths |
wibu-systems-ag |
codemeter-runtime |
2026-08-27T07:13:19.937Z | 2026-08-27T13:28:47.967Z |
| cve-2026-10573 | 6.3 (v4.0) | 1734 POINT I/OTM - Denial of Service via Malformed Inp… |
Rockwell Automation |
1734 POINT I/O |
2026-07-14T14:54:39.924Z | 2026-08-27T13:26:59.261Z |
| cve-2026-47861 | 6.3 (v3.1) | UDP adapter sends ack to attacker-supplied host:port p… |
Spring |
Spring Integration |
2026-08-26T23:49:25.980Z | 2026-08-27T13:14:00.079Z |
| cve-2026-81576 | 7.7 (v3.1) | Improper Authentication of Session Handles |
wibu-systems-ag |
codemeter-runtime |
2026-08-27T07:14:11.299Z | 2026-08-27T13:13:33.594Z |
| cve-2026-47874 | 5.3 (v3.1) | Reactor Netty HTTP Server Denial of Service With Pipel… |
Spring |
Reactor Netty |
2026-08-26T23:49:26.907Z | 2026-08-27T13:12:29.108Z |
| cve-2026-16895 | 5.1 (v4.0) | Authentication Bypass in Metasploit JSON-RPC Service W… |
Rapid7 |
Metasploit-framework |
2026-08-27T03:14:21.055Z | 2026-08-27T13:09:40.173Z |
| cve-2026-47849 | 7.1 (v3.1) | Spring Data REST allows mutation of identifier and ver… |
Spring |
Spring Data REST |
2026-08-27T05:06:23.970Z | 2026-08-27T13:04:25.615Z |
| cve-2026-81279 | 5.4 (v3.1) | WordPress Push Notification for Post and BuddyPress pl… |
Murali |
Push Notification for Post and BuddyPress |
2026-08-27T08:59:49.996Z | 2026-08-27T13:02:36.447Z |
| cve-2025-57847 | 6.4 (v3.1) | Ansible-automation-platform: privilege escalation via … |
Red Hat |
Red Hat Ansible Automation Platform 2.5 |
2026-04-08T13:55:00.729Z | 2026-08-27T12:48:34.710Z |
| cve-2026-80587 | mptcp: avoid combining some incoming suboptions |
Linux |
Linux |
2026-08-26T14:37:42.093Z | 2026-08-27T12:40:23.299Z | |
| cve-2026-80583 | ASoC: codecs: lpass-tx-macro: Fix enum kcontrol accesses |
Linux |
Linux |
2026-08-26T14:37:39.704Z | 2026-08-27T12:40:21.902Z | |
| cve-2026-80581 | N/A | ASoC: SOF: ipc4-pcm: Continue the pipeline trigger in … |
Linux |
Linux |
2026-08-26T14:37:38.510Z | 2026-08-27T12:40:20.576Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2015-avi-264 | Vulnérabilité dans GnuTLS | 2015-06-24T00:00:00.000000 | 2015-06-24T00:00:00.000000 |
| certfr-2015-avi-263 | Multiples vulnérabilités dans le noyau Linux Red Hat | 2015-06-24T00:00:00.000000 | 2015-06-24T00:00:00.000000 |
| certfr-2015-avi-262 | Vulnérabilité dans Adobe Flash Player | 2015-06-23T00:00:00.000000 | 2015-06-23T00:00:00.000000 |
| certfr-2015-avi-261 | Multiples vulnérabilités dans le noyau Linux Debian | 2015-06-22T00:00:00.000000 | 2015-06-22T00:00:00.000000 |
| certfr-2015-avi-260 | Multiples vulnérabilités dans Drupal | 2015-06-18T00:00:00.000000 | 2015-06-18T00:00:00.000000 |
| certfr-2015-avi-259 | Multiples vulnérabilités dans les produits BlueCoat | 2015-06-17T00:00:00.000000 | 2015-06-17T00:00:00.000000 |
| certfr-2015-avi-258 | Vulnérabilité dans Huawei E5756s | 2015-06-16T00:00:00.000000 | 2015-06-16T00:00:00.000000 |
| certfr-2015-avi-257 | Multiples vulnérabilités dans OpenSSL | 2015-06-12T00:00:00.000000 | 2015-06-12T00:00:00.000000 |
| certfr-2015-avi-256 | Vulnérabilité dans Cisco IOS XR | 2015-06-12T00:00:00.000000 | 2015-06-12T00:00:00.000000 |
| certfr-2015-avi-255 | Multiples vulnérabilités dans Citrix XenServer | 2015-06-12T00:00:00.000000 | 2015-06-12T00:00:00.000000 |
| certfr-2015-avi-254 | Multiples vulnérabilités dans le noyau Linux Ubuntu | 2015-06-11T00:00:00.000000 | 2015-06-11T00:00:00.000000 |
| certfr-2015-avi-253 | Multiples vulnérabilités dans Adobe Flash Player | 2015-06-11T00:00:00.000000 | 2015-06-11T00:00:00.000000 |
| certfr-2015-avi-252 | Vulnérabilité dans QEMU | 2015-06-10T00:00:00.000000 | 2015-06-10T00:00:00.000000 |
| certfr-2015-avi-251 | Multiples vulnérabilités dans Microsoft Exchange Server | 2015-06-10T00:00:00.000000 | 2015-06-10T00:00:00.000000 |
| certfr-2015-avi-250 | Vulnérabilité dans le noyau de Microsoft Windows | 2015-06-10T00:00:00.000000 | 2015-06-10T00:00:00.000000 |
| certfr-2015-avi-249 | Vulnérabilité dans Microsoft Active Directory Federation Services | 2015-06-10T00:00:00.000000 | 2015-06-10T00:00:00.000000 |
| certfr-2015-avi-248 | Multiples vulnérabilités dans le noyau de Microsoft Windows | 2015-06-10T00:00:00.000000 | 2015-06-10T00:00:00.000000 |
| certfr-2015-avi-247 | Vulnérabilité dans Microsoft Common Controls | 2015-06-10T00:00:00.000000 | 2015-06-10T00:00:00.000000 |
| certfr-2015-avi-246 | Multiples vulnérabilités dans Microsoft Office | 2015-06-10T00:00:00.000000 | 2015-06-10T00:00:00.000000 |
| certfr-2015-avi-245 | Vulnérabilité dans Microsoft Windows Media Player | 2015-06-10T00:00:00.000000 | 2015-06-10T00:00:00.000000 |
| certfr-2015-avi-244 | Multiples vulnérabilités dans Microsoft Internet Explorer | 2015-06-10T00:00:00.000000 | 2015-06-10T00:00:00.000000 |
| certfr-2015-avi-243 | Multiples vulnérabilités dans le noyau Linux Red Hat | 2015-06-09T00:00:00.000000 | 2015-06-09T00:00:00.000000 |
| certfr-2015-avi-242 | Multiples vulnérabilités dans Xen | 2015-06-03T00:00:00.000000 | 2015-06-03T00:00:00.000000 |
| certfr-2015-avi-241 | Multiples vulnérabilités dans Blue Coat SSL Visibility | 2015-06-02T00:00:00.000000 | 2015-06-02T00:00:00.000000 |
| certfr-2015-avi-240 | Vulnérabilité dans le produit SCADA Schneider OPC Factory Server | 2015-06-01T00:00:00.000000 | 2015-06-01T00:00:00.000000 |
| certfr-2015-avi-239 | Multiples vulnérabilités dans PostgreSQL | 2015-05-29T00:00:00.000000 | 2015-05-29T00:00:00.000000 |
| certfr-2015-avi-238 | Vulnérabilité dans le noyau Linux Red Hat | 2015-05-28T00:00:00.000000 | 2015-05-28T00:00:00.000000 |
| certfr-2015-avi-237 | Vulnérabilité dans le noyau Linux Ubuntu | 2015-05-26T00:00:00.000000 | 2015-05-26T00:00:00.000000 |
| certfr-2015-avi-236 | Multiples vulnérabilités dans le noyau Linux Ubuntu | 2015-05-20T00:00:00.000000 | 2015-05-20T00:00:00.000000 |
| certfr-2015-avi-235 | Vulnérabilité dans ProFTPd | 2015-05-20T00:00:00.000000 | 2015-05-20T00:00:00.000000 |