Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
cve-2026-72705 6.8 (v4.0) 6.3 (v3.1) Rocq Prover before 9.2.0 Guard Checker Accepts Fixpoin… rocq-prover
rocq
2026-08-24T20:08:32.535Z 2026-08-29T11:47:44.348Z
cve-2026-72704 6.8 (v4.0) 6.3 (v3.1) Rocq Prover through 9.2.0 Guard Checker Trusts Corrupt… rocq-prover
rocq
2026-08-24T20:08:31.787Z 2026-08-29T11:47:43.676Z
cve-2026-72703 6.8 (v4.0) 6.3 (v3.1) Rocq Prover 8.20 before 9.2.0 Guard Checker Accepts No… rocq-prover
rocq
2026-08-24T20:08:30.607Z 2026-08-29T11:47:43.005Z
cve-2026-72699 9.3 (v4.0) 5.3 (v3.1) Grav Login Plugin before 3.9.1 Email Enumeration via R… getgrav
grav-plugin-login
2026-08-25T01:30:21.863Z 2026-08-29T11:47:42.332Z
cve-2026-71511 7.1 (v4.0) 6.5 (v3.1) Dolibarr < 24.0.0 Members REST API Sensitive Data Expo… Dolibarr
dolibarr
2026-08-24T19:06:35.183Z 2026-08-29T11:47:41.626Z
cve-2026-71510 7.1 (v4.0) 6.5 (v3.1) Dolibarr < 24.0.0 Users REST API SQL Injection via fil… Dolibarr
dolibarr
2026-08-24T19:05:39.848Z 2026-08-29T11:47:40.942Z
cve-2026-71509 7.1 (v4.0) 6.5 (v3.1) Dolibarr < 24.0.0 Expense Report REST API Improper Aut… Dolibarr
dolibarr
2026-08-24T19:04:52.122Z 2026-08-29T11:47:40.171Z
cve-2026-71508 7.1 (v4.0) 6.5 (v3.1) Dolibarr < 24.0.0 REST API Improper Authorization via … Dolibarr
dolibarr
2026-08-24T19:03:59.694Z 2026-08-29T11:47:38.779Z
cve-2026-71507 7.1 (v4.0) 6.5 (v3.1) Dolibarr < 24.0.0 REST API Broken Object-Level Authori… Dolibarr
dolibarr
2026-08-24T19:03:01.493Z 2026-08-29T11:47:38.074Z
cve-2026-71506 7.2 (v4.0) 8.1 (v3.1) Dolibarr < 24.0.0 Payments REST API Improper Authoriza… Dolibarr
dolibarr
2026-08-24T19:01:47.408Z 2026-08-29T11:47:37.389Z
cve-2026-71505 7.1 (v4.0) 7.1 (v3.1) Dolibarr < 24.0.0 REST API Broken Object-Level Authori… Dolibarr
dolibarr
2026-08-24T19:00:47.470Z 2026-08-29T11:47:36.700Z
cve-2026-71504 8.6 (v4.0) 8.1 (v3.1) Dolibarr < 24.0.0 Members REST API Improper Authorizat… Dolibarr
dolibarr
2026-08-24T18:57:47.028Z 2026-08-29T11:47:36.048Z
cve-2026-71503 5.1 (v4.0) 6.1 (v3.1) Dolibarr < 24.0.0 Reflected XSS via Extra Fields Admin… Dolibarr
dolibarr
2026-08-24T18:57:05.485Z 2026-08-29T11:47:35.368Z
cve-2026-6827 5.1 (v4.0) 6.1 (v3.1) justhtml before 1.17.0 Multiple Cross-Site Scripting V… EmilStenstrom
justhtml
2026-08-23T13:34:11.236Z 2026-08-29T11:47:34.707Z
cve-2026-67602 9.3 (v4.0) 9.1 (v3.1) phpIPAM < 1.8.2 Authentication Bypass via REST API Obj… phpipam
phpipam
2026-08-24T13:57:42.191Z 2026-08-29T11:47:34.046Z
cve-2026-67204 5.3 (v4.0) 5.4 (v3.1) BookStack < 26.05.4 Broken Access Control via Image Ga… BookStackApp
BookStack
2026-08-24T15:33:13.649Z 2026-08-29T11:47:33.393Z
cve-2026-65053 5.1 (v4.0) 6.1 (v3.1) Horde IMP before 7.2.0 Stored Cross-Site Scripting via… horde
imp
2026-08-24T14:53:43.219Z 2026-08-29T11:47:32.704Z
cve-2026-62388 8.7 (v4.0) 7.5 (v3.1) NLTK before 3.10.0 Insecure Default Configuration in p… nltk
nltk
2026-08-22T14:12:38.647Z 2026-08-29T11:47:32.048Z
cve-2026-58474 8.6 (v4.0) 8.8 (v3.1) whichllm < 0.5.16 Code Injection via run and snippet c… Andyyyy64
whichllm
2026-08-26T17:49:04.041Z 2026-08-29T11:47:31.365Z
cve-2026-57998 8.5 (v4.0) 7.8 (v3.1) better-npm-audit OS Command Injection via registry flag jeemok
better-npm-audit
2026-08-22T12:26:30.536Z 2026-08-29T11:47:30.693Z
cve-2026-56100 8.6 (v4.0) 8.1 (v3.1) SpringBlade 2.7.3 < 5.0.0 Privilege Escalation via Exp… SpringBlade
SpringBlade
2026-08-28T18:00:36.953Z 2026-08-29T11:47:29.998Z
cve-2026-10036 8.7 (v4.0) 8.8 (v3.1) SpeechBrain < 1.1.1 Arbitrary Code Execution via CKPT.… speechbrain
speechbrain
2026-08-27T19:36:57.357Z 2026-08-29T11:47:29.345Z
cve-2026-14494 Sigma Forms Pro <= 1.4.5 - Unauthenticated Unauthentic… bdthemes
SigmaForms Pro – AI Generated Forms
2026-08-29T11:30:17.164Z 2026-08-29T11:30:17.164Z
cve-2026-82364 macrozheng mall Order Submission submit race condition macrozheng
mall
2026-08-29T11:00:08.359Z 2026-08-29T11:00:08.359Z
cve-2026-80725 N/A net: gro: properly validate BIG TCP aggregation criteria Linux
Linux
2026-08-29T06:39:35.212Z 2026-08-29T06:40:30.300Z
cve-2026-80723 of: reserved_mem: prevent OOB when too many dynamic re… Linux
Linux
2026-08-28T06:53:18.485Z 2026-08-29T06:22:40.126Z
cve-2026-80722 wifi: mac80211: validate individual TWT params before … Linux
Linux
2026-08-28T06:53:17.886Z 2026-08-29T06:22:38.281Z
cve-2026-80720 iomap: add a separate bio_set for iomap_split_ioend Linux
Linux
2026-08-28T06:53:16.683Z 2026-08-29T06:22:35.780Z
cve-2026-80718 mm/percpu-km: fix bitmap overflow and accounting in pc… Linux
Linux
2026-08-28T06:53:15.490Z 2026-08-29T06:22:34.556Z
cve-2026-80717 sctp: validate Adaptation Indication parameter length Linux
Linux
2026-08-28T06:53:14.886Z 2026-08-29T06:22:33.315Z
ID CVSS Description Vendor Product Published Updated
ID Description Package Published Updated
ID Description Type
ID Description Updated
ID Description Updated
ID Description Published Updated
jvndb-2022-000011 HPE Agentless Management registers unquoted service paths 2022-02-09T15:49+09:00 2022-02-09T15:49+09:00
jvndb-2022-001299 Cross-site Scripting Vulnerability in JP1/IT Desktop Management 2 2022-02-08T17:15+09:00 2022-02-08T17:15+09:00
jvndb-2022-000009 CSV+ vulnerable to cross-site scripting 2022-02-08T16:33+09:00 2022-02-08T16:33+09:00
jvndb-2022-000010 Multiple vulnerabilities in multiple ELECOM LAN routers 2022-02-08T16:13+09:00 2022-02-08T16:13+09:00
jvndb-2016-008013 Multiple ESET products for macOS vulnerable to improper server certificate verification 2022-02-07T14:18+09:00 2022-02-07T14:18+09:00
jvndb-2022-000007 Multiple vulnerabilities in TransmitMail 2022-01-25T15:31+09:00 2022-01-25T15:31+09:00
jvndb-2022-001097 Multiple vulnerabilities in Trend Micro Deep Security and Cloud One - Workload Security Agent for Linux 2022-01-25T13:35+09:00 2022-01-25T13:35+09:00
jvndb-2022-001087 GROWI vulnerable to authorization bypass through user-controlled key 2022-01-24T14:07+09:00 2022-01-24T14:07+09:00
jvndb-2022-000006 Multiple cross-site scripting vulnerabilities in php_mailform 2022-01-20T15:42+09:00 2022-01-20T15:42+09:00
jvndb-2022-000001 Canon laser printers and small office multifunctional printers vulnerable to cross-site scripting 2022-01-19T14:00+09:00 2022-01-19T14:00+09:00
jvndb-2022-000005 PASSWORD MANAGER "MIRUPASS" PW10 / PW20 missing encryption 2022-01-13T15:26+09:00 2022-01-13T15:26+09:00
jvndb-2022-000004 Label printers "TEPRA" PRO SR5900P / SR-R7900P vulnerable to insufficiently protected credentials 2022-01-13T15:21+09:00 2022-01-13T15:21+09:00
jvndb-2022-000003 Jimoty App for Android uses a hard-coded API key for an external service 2022-01-12T15:37+09:00 2022-01-12T15:37+09:00
jvndb-2022-000002 Multiple vulnerabilities in WordPress Plugin "Quiz And Survey Master" 2022-01-12T15:33+09:00 2022-01-12T15:33+09:00
jvndb-2021-006117 Multiple vulnerabilities in IDEC PLCs 2021-12-27T16:54+09:00 2022-01-11T16:36+09:00
jvndb-2021-006146 Multiple vulnerabilities in KONICA MINOLTA MFPs and printing systems 2021-12-28T11:51+09:00 2021-12-28T11:51+09:00
jvndb-2021-006026 TP-Link TL-WR802N V4(JP) vulnerable to OS command injection 2021-12-24T15:31+09:00 2021-12-24T15:31+09:00
jvndb-2021-005998 Multiple vulnerabilities in QNAP VioStar NVR 2021-12-24T10:58+09:00 2021-12-24T10:58+09:00
jvndb-2021-003929 Multiple vulnerabilities in multiple Yamaha routers 2021-12-24T10:51+09:00 2021-12-24T10:51+09:00
jvndb-2021-000112 Android Apps developed using Yappli fails to restrict custom URL schemes properly 2021-12-22T15:07+09:00 2021-12-22T15:07+09:00
jvndb-2021-000111 Multiple vulnerabilities in GroupSession 2021-12-20T14:53+09:00 2021-12-21T14:20+09:00
jvndb-2021-000022 Multiple vulnerabilities in Cybozu Office 2021-03-15T15:56+09:00 2021-12-17T17:51+09:00
jvndb-2021-000093 Movable Type XMLRPC API vulnerable to OS command injection 2021-10-20T17:38+09:00 2021-12-17T17:36+09:00
jvndb-2021-000110 UNIVERGE DT Series vulnerable to missing encryption of sensitive data 2021-12-17T16:57+09:00 2021-12-17T16:57+09:00
jvndb-2021-005174 Multiple vulnerabilities in Trend Micro Security 2021 family (Consumer) 2021-12-09T13:43+09:00 2021-12-09T13:43+09:00
jvndb-2021-000107 Wi-Fi STATION SH-52A vulnerable to cross-site scripting 2021-11-30T14:49+09:00 2021-11-30T14:49+09:00
jvndb-2021-004716 Trend Micro Antivirus for MAC vulnerable to improper access controls 2021-11-29T13:52+09:00 2021-11-29T13:52+09:00
jvndb-2021-000106 Multiple vulnerabilities in baserCMS 2021-11-26T14:59+09:00 2021-11-26T14:59+09:00
jvndb-2021-000104 WordPress Plugin "Browser and Operating System Finder" vulnerable to cross-site request forgery 2021-11-25T14:31+09:00 2021-11-25T14:31+09:00
jvndb-2021-004432 Multiple Vulnerabilities in JP1/Automatic Operation 2021-11-22T16:10+09:00 2021-11-22T16:10+09:00
ID Description Updated
ID Description
ID Description Published Updated
certfr-2026-avi-0139 Multiples vulnérabilités dans les produits Siemens 2026-02-10T00:00:00.000000 2026-02-10T00:00:00.000000
certfr-2026-avi-0138 Multiples vulnérabilités dans les produits Schneider Electric 2026-02-10T00:00:00.000000 2026-02-10T00:00:00.000000
certfr-2026-avi-0137 Multiples vulnérabilités dans GnuTLS 2026-02-10T00:00:00.000000 2026-02-10T00:00:00.000000
certfr-2026-avi-0136 Vulnérabilité dans Fortinet FortiClientEMS 2026-02-09T00:00:00.000000 2026-02-09T00:00:00.000000
certfr-2026-avi-0135 Vulnérabilité dans GitLab AI Gateway 2026-02-09T00:00:00.000000 2026-02-09T00:00:00.000000
certfr-2026-avi-0134 Vulnérabilité dans Microsoft Edge 2026-02-09T00:00:00.000000 2026-02-09T00:00:00.000000
certfr-2026-avi-0132 Multiples vulnérabilités dans VMware Tanzu Greenplum 2026-02-09T00:00:00.000000 2026-02-09T00:00:00.000000
certfr-2026-avi-0131 Multiples vulnérabilités dans les produits IBM 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0130 Multiples vulnérabilités dans le noyau Linux de Red Hat 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0129 Multiples vulnérabilités dans le noyau Linux d'Ubuntu 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0128 Multiples vulnérabilités dans le noyau Linux de SUSE 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0127 Vulnérabilité dans NetApp ONTAP 9 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0126 Vulnérabilité dans ESET Management Agent 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0125 Multiples vulnérabilités dans les produits Moxa 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0124 Multiples vulnérabilités dans Microsoft Edge 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0123 Multiples vulnérabilités dans Asterisk 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0122 Multiples vulnérabilités dans Tenable Nessus 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0121 Vulnérabilité dans les produits Juniper Networks 2026-02-06T00:00:00.000000 2026-02-06T00:00:00.000000
certfr-2026-avi-0120 Multiples vulnérabilités dans les produits F5 2026-02-05T00:00:00.000000 2026-02-05T00:00:00.000000
certfr-2026-avi-0119 Multiples vulnérabilités dans les produits Cisco 2026-02-05T00:00:00.000000 2026-02-05T00:00:00.000000
certfr-2026-avi-0118 Multiples vulnérabilités dans les produits Splunk 2026-02-05T00:00:00.000000 2026-02-05T00:00:00.000000
certfr-2026-avi-0117 Multiples vulnérabilités dans GLPI 2026-02-04T00:00:00.000000 2026-02-04T00:00:00.000000
certfr-2026-avi-0116 Vulnérabilité dans les produits Moxa 2026-02-04T00:00:00.000000 2026-02-04T00:00:00.000000
certfr-2026-avi-0115 Multiples vulnérabilités dans Tenable Identity Exposure 2026-02-04T00:00:00.000000 2026-02-04T00:00:00.000000
certfr-2026-avi-0114 Multiples vulnérabilités dans Google Chrome 2026-02-04T00:00:00.000000 2026-02-04T00:00:00.000000
certfr-2026-avi-0113 Vulnérabilité dans Google Pixel 2026-02-04T00:00:00.000000 2026-02-04T00:00:00.000000
certfr-2026-avi-0112 Multiples vulnérabilités dans les produits VMware 2026-02-02T00:00:00.000000 2026-02-02T00:00:00.000000
certfr-2026-avi-0111 Vulnérabilité dans ESET Inspect Connector 2026-02-02T00:00:00.000000 2026-02-02T00:00:00.000000
certfr-2026-avi-0110 Multiples vulnérabilités Ivanti Endpoint Manager Mobile (EPMM) 2026-01-30T00:00:00.000000 2026-01-30T00:00:00.000000
certfr-2026-avi-0109 Multiples vulnérabilités dans les produits IBM 2026-01-30T00:00:00.000000 2026-01-30T00:00:00.000000