Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-6675 | Responsive Blocks <= 2.2.0 - Unauthenticated Open Emai… |
cyberchimps |
Responsive Blocks – Page Builder for Blocks & Patterns |
2026-04-21T02:25:39.847Z | 2026-04-21T13:22:00.182Z | |
| cve-2026-5965 | 9.3 (v4.0) 9.8 (v3.1) | NewSoft|NewSoftOA - OS Command Injection |
NewSoft |
NewSoftOA |
2026-04-21T03:32:55.138Z | 2026-04-21T13:20:58.795Z |
| cve-2026-6553 | 7.3 (v4.0) | TYPO3 CMS Stores Cleartext Password in User Settings Module |
TYPO3 |
TYPO3 CMS |
2026-04-21T10:04:02.525Z | 2026-04-21T13:20:23.515Z |
| cve-2026-41037 | 8.7 (v4.0) | Missing Rate Limiting Vulnerability in Quantum Network… |
Quantum Networks |
Router QN-I-470 |
2026-04-21T10:04:56.462Z | 2026-04-21T13:19:09.396Z |
| cve-2026-31369 | 3.2 (v3.1) | Privilege Bypass in PcManager |
Honor |
PcManager |
2026-04-21T06:26:52.403Z | 2026-04-21T13:18:27.938Z |
| cve-2026-41036 | 8.7 (v4.0) | Command Injection Vulnerability in Quantum Networks Ro… |
Quantum Networks |
Router QN-I-470 |
2026-04-21T10:07:47.488Z | 2026-04-21T13:17:54.592Z |
| cve-2026-41038 | 7.6 (v4.0) | Weak Password Policy Vulnerability in Quantum Networks… |
Quantum Networks |
Router QN-I-470 |
2026-04-21T10:22:09.254Z | 2026-04-21T13:14:55.975Z |
| cve-2026-41039 | 8.7 (v4.0) | Information Disclosure Vulnerability in Quantum Networ… |
Quantum Networks |
Router QN-I-470 |
2026-04-21T10:28:24.521Z | 2026-04-21T13:13:59.843Z |
| cve-2026-41294 | 8.5 (v4.0) 8.6 (v3.1) | OpenClaw < 2026.3.28 - Environment Variable Injection … |
OpenClaw |
OpenClaw |
2026-04-20T23:08:08.795Z | 2026-04-21T13:04:36.188Z |
| cve-2026-41300 | 6.9 (v4.0) 6.5 (v3.1) | OpenClaw < 2026.3.31 - Attacker-Discovered Endpoint Pr… |
OpenClaw |
OpenClaw |
2026-04-20T23:08:13.304Z | 2026-04-21T13:03:24.309Z |
| cve-2026-6674 | Plugin: CMS für Motorrad Werkstätten <= 1.0.0 - Authen… |
tholstkabelbwde |
Plugin: CMS für Motorrad Werkstätten |
2026-04-21T02:25:40.676Z | 2026-04-21T12:58:21.763Z | |
| cve-2026-2781 | N/A | Integer overflow in the Libraries component in NSS |
Mozilla |
Firefox |
2026-02-24T13:33:15.551Z | 2026-04-21T12:40:43.312Z |
| cve-2026-34080 | xdg-dbus-proxy has an eavesdrop filter bypass allowing… |
flatpak |
xdg-dbus-proxy |
2026-04-07T20:57:57.931Z | 2026-04-21T12:21:20.635Z | |
| cve-2026-39659 | N/A | {'providerMetadata': {'orgId': '21595511-bba5-4825-b968-b78d1f9984a3', 'shortName': 'Patchstack', 'dateUpdated': '2026-04-21T10:53:33.975Z'}, 'rejectedReasons': [{'lang': 'en', 'value': 'This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.', 'supportingMedia': [{'type': 'text/html', 'base64': False, 'value': 'This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.'}]}], 'x_generator': {'engine': 'Vulnogram 1.0.1'}} | N/A | N/A | 2026-04-08T08:30:36.852Z | 2026-04-21T10:53:33.975Z |
| cve-2026-39467 | 7.2 (v3.1) | WordPress Responsive Slider by MetaSlider plugin <= 3.… |
MetaSlider |
Responsive Slider by MetaSlider |
2026-04-21T09:35:29.246Z | 2026-04-21T09:35:29.246Z |
| cve-2026-41082 | 7.3 (v3.1) | In OCaml opam before 2.5.1, a .install field cont… |
OCaml |
opam |
2026-04-16T17:32:40.068Z | 2026-04-21T09:32:52.152Z |
| cve-2026-3308 | N/A | CVE-2026-3308 |
Artifex Software Inc. *PyMuPDF* |
MuPDF |
2026-03-31T13:13:12.088Z | 2026-04-21T09:32:51.075Z |
| cve-2026-35616 | 9.1 (v3.1) | A improper access control vulnerability in Fortin… |
Fortinet |
FortiClientEMS |
2026-04-04T00:38:35.828Z | 2026-04-21T08:35:09.619Z |
| cve-2026-21622 | 9.5 (v4.0) | Password Reset Tokens Do Not Expire |
hexpm |
hexpm |
2026-03-05T21:18:03.883Z | 2026-04-21T04:15:20.750Z |
| cve-2024-0402 | 9.9 (v3.1) | Improper Limitation of a Pathname to a Restricted Dire… |
GitLab |
GitLab |
2024-01-26T01:02:39.052Z | 2026-04-21T04:05:55.646Z |
| cve-2023-4647 | 5.3 (v3.1) | Allocation of Resources Without Limits or Throttling i… |
GitLab |
GitLab |
2023-09-01T10:30:27.108Z | 2026-04-21T04:05:26.092Z |
| cve-2023-4630 | 5 (v3.1) | Missing Authorization in GitLab |
GitLab |
GitLab |
2023-09-11T13:01:02.519Z | 2026-04-21T04:05:21.104Z |
| cve-2023-4379 | 8.1 (v3.1) | Incorrect Authorization in GitLab |
GitLab |
GitLab |
2023-11-09T21:01:10.733Z | 2026-04-21T04:05:16.267Z |
| cve-2023-4008 | 5.3 (v3.1) | Incorrect Ownership Assignment in GitLab |
GitLab |
GitLab |
2023-08-03T06:31:21.677Z | 2026-04-21T04:05:11.137Z |
| cve-2023-4002 | 5.3 (v3.1) | Insertion of Sensitive Information Into Sent Data in GitLab |
GitLab |
GitLab |
2023-08-04T00:30:28.797Z | 2026-04-21T04:05:06.226Z |
| cve-2025-32975 | N/A | Quest KACE Systems Management Appliance (SMA) 13.… |
n/a |
n/a |
2025-06-24T00:00:00.000Z | 2026-04-21T03:55:39.782Z |
| cve-2025-48700 | N/A | An issue was discovered in Zimbra Collaboration (… |
n/a |
n/a |
2025-06-23T00:00:00.000Z | 2026-04-21T03:55:38.511Z |
| cve-2023-27351 | This vulnerability allows remote attackers to byp… |
PaperCut |
NG |
2023-04-20T00:00:00.000Z | 2026-04-21T03:55:37.286Z | |
| cve-2025-2749 | 7.2 (v3.1) | Kentico Xperience <= 13.0.178 Staging Media File Uploa… |
Kentico |
Xperience |
2025-03-24T18:18:07.228Z | 2026-04-21T03:55:36.051Z |
| cve-2026-20122 | Cisco Catalyst SD-WAN Manager Arbitrary File Overwrite… |
Cisco |
Cisco Catalyst SD-WAN Manager |
2026-02-25T16:14:21.256Z | 2026-04-21T03:55:33.255Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2019-000052 | ApeosWare Management Suite and ApeosWare Management Suite 2 contain open redirect vulnerability | 2019-08-15T14:29+09:00 | 2021-04-12T13:30+09:00 |
| jvndb-2017-000219 | Multiple Fuji Xerox products may insecurely load Dynamic Link Libraries | 2017-08-31T16:35+09:00 | 2021-04-12T13:30+09:00 |
| jvndb-2021-000028 | Multiple vulnerabilities in multiple Aterm products | 2021-04-09T17:16+09:00 | 2021-04-09T17:16+09:00 |
| jvndb-2021-000030 | Multiple vulnerabilities in Aterm WF1200CR, Aterm WG1200CR, Aterm WG2600HS, and Aterm WX3000HP | 2021-04-09T16:42+09:00 | 2021-04-09T16:42+09:00 |
| jvndb-2021-000029 | Archive collectively operation utility vulnerable to directory traversal | 2021-04-01T14:44+09:00 | 2021-04-01T14:44+09:00 |
| jvndb-2021-000027 | Multiple vulnerabilities in baserCMS | 2021-03-26T14:25+09:00 | 2021-03-26T14:25+09:00 |
| jvndb-2021-000908 | rNote vulnerable to cross-site scripting | 2021-03-25T18:14+09:00 | 2021-03-25T18:14+09:00 |
| jvndb-2021-000907 | Yomi-Search vulnerable to cross-site scripting | 2021-03-25T18:12+09:00 | 2021-03-25T18:12+09:00 |
| jvndb-2021-000906 | Yomi-Search vulnerable to cross-site scripting | 2021-03-25T18:06+09:00 | 2021-03-25T18:06+09:00 |
| jvndb-2021-000905 | Yomi-Search vulnerable to cross-site scripting | 2021-03-25T18:01+09:00 | 2021-03-25T18:01+09:00 |
| jvndb-2021-000904 | Click Ranker vulnerable to cross-site scripting | 2021-03-25T17:52+09:00 | 2021-03-25T17:52+09:00 |
| jvndb-2021-000903 | Kagemai vulnerable to cross-site request forgery | 2021-03-25T17:50+09:00 | 2021-03-25T17:50+09:00 |
| jvndb-2021-000902 | Kagemai vulnerable to cross-site scripting | 2021-03-25T17:46+09:00 | 2021-03-25T17:46+09:00 |
| jvndb-2021-000901 | Kagemai vulnerable to cross-site scripting | 2021-03-25T17:43+09:00 | 2021-03-25T17:43+09:00 |
| jvndb-2021-000900 | MagazinegerZ vulnerable to cross-site scripting | 2021-03-25T17:32+09:00 | 2021-03-25T17:32+09:00 |
| jvndb-2021-000023 | UNIVERGE Aspire series PBX vulnerable to denial-of-service (DoS) | 2021-03-22T14:57+09:00 | 2021-03-22T14:57+09:00 |
| jvndb-2021-000025 | WordPress plugin "Paid Memberships Pro" vulnerable to SQL injection | 2021-03-17T16:24+09:00 | 2021-03-17T16:24+09:00 |
| jvndb-2021-000021 | M-System DL8 contains multiple vulnerabilities | 2021-03-12T15:59+09:00 | 2021-03-12T15:59+09:00 |
| jvndb-2021-000020 | Installer of MagicConnect Client program may insecurely load Dynamic Link Libraries | 2021-03-11T14:53+09:00 | 2021-03-11T14:53+09:00 |
| jvndb-2021-000019 | Multiple cross-site scripting vulnerabilities in GROWI | 2021-03-10T16:11+09:00 | 2021-03-10T16:11+09:00 |
| jvndb-2021-001122 | Trend Micro Security (Consumer) vulnerable to code injection | 2021-03-08T17:26+09:00 | 2021-03-08T17:26+09:00 |
| jvndb-2021-000015 | FileZen vulnerable to OS command injection | 2021-02-16T15:07+09:00 | 2021-03-05T17:31+09:00 |
| jvndb-2021-000016 | Multiple vulnerabilities in SolarView Compact | 2021-02-19T16:44+09:00 | 2021-02-25T15:31+09:00 |
| jvndb-2021-000017 | Multiple cross-site scripting vulnerabilities in Movable Type | 2021-02-24T15:20+09:00 | 2021-02-24T15:20+09:00 |
| jvndb-2021-001026 | Multiple Vulnerabilities in JP1/Automatic Operation | 2021-02-16T17:23+09:00 | 2021-02-16T17:23+09:00 |
| jvndb-2021-000014 | Calsos CSDJ fails to restrict access permissions | 2021-02-15T15:52+09:00 | 2021-02-15T15:52+09:00 |
| jvndb-2021-000013 | Wekan vulnerable to cross-site scripting | 2021-02-10T14:01+09:00 | 2021-02-10T14:01+09:00 |
| jvndb-2021-001022 | Cross-site Scripting Vulnerability in Hitachi Application Server Help | 2021-02-09T15:08+09:00 | 2021-02-09T15:08+09:00 |
| jvndb-2021-001021 | Improper access control vulnerability in JP1/IT Desktop Management 2 - Manager and JP1/NETM/Asset Information Manager | 2021-02-09T15:08+09:00 | 2021-02-09T15:08+09:00 |
| jvndb-2021-000012 | WordPress Plugin "Name Directory" vulnerable to cross-site request forgery | 2021-02-05T16:24+09:00 | 2021-02-05T16:24+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2025-avi-0539 | Multiples vulnérabilités dans Cisco Identity Services Engine | 2025-06-26T00:00:00.000000 | 2025-08-01T00:00:00.000000 |
| certfr-2025-avi-0642 | Multiples vulnérabilités dans Apple Safari | 2025-07-31T00:00:00.000000 | 2025-07-31T00:00:00.000000 |
| certfr-2025-avi-0641 | Multiples vulnérabilités dans les produits Splunk | 2025-07-31T00:00:00.000000 | 2025-07-31T00:00:00.000000 |
| certfr-2025-avi-0640 | Multiples vulnérabilités dans les produits Apple | 2025-07-30T00:00:00.000000 | 2025-07-31T00:00:00.000000 |
| certfr-2025-avi-0639 | Multiples vulnérabilités dans Google Chrome | 2025-07-30T00:00:00.000000 | 2025-07-30T00:00:00.000000 |
| certfr-2025-avi-0638 | Vulnérabilité dans les produits Sonicwall | 2025-07-30T00:00:00.000000 | 2025-07-30T00:00:00.000000 |
| certfr-2025-avi-0637 | Vulnérabilité dans SolarWinds Web Help Desk | 2025-07-30T00:00:00.000000 | 2025-07-30T00:00:00.000000 |
| certfr-2025-avi-0636 | Multiples vulnérabilités dans les produits Elastic | 2025-07-30T00:00:00.000000 | 2025-07-30T00:00:00.000000 |
| certfr-2025-avi-0635 | Vulnérabilité dans VMware vCenter | 2025-07-30T00:00:00.000000 | 2025-07-30T00:00:00.000000 |
| certfr-2025-avi-0634 | Vulnérabilité dans Python | 2025-07-30T00:00:00.000000 | 2025-07-30T00:00:00.000000 |
| certfr-2025-avi-0633 | Vulnérabilité dans Tenable Patch Management | 2025-07-30T00:00:00.000000 | 2025-07-30T00:00:00.000000 |
| certfr-2025-avi-0632 | Multiples vulnérabilités dans GLPI | 2025-07-30T00:00:00.000000 | 2025-07-30T00:00:00.000000 |
| certfr-2025-avi-0631 | Vulnérabilité dans SolarWinds SWOSH | 2025-07-29T00:00:00.000000 | 2025-07-29T00:00:00.000000 |
| certfr-2025-avi-0630 | Vulnérabilité dans Palo Alto Networks GlobalProtect App | 2025-07-29T00:00:00.000000 | 2025-07-29T00:00:00.000000 |
| certfr-2025-avi-0629 | Multiples vulnérabilités dans Microsoft Edge | 2025-07-28T00:00:00.000000 | 2025-07-28T00:00:00.000000 |
| certfr-2025-avi-0628 | Multiples vulnérabilités dans Synology BeeDrive | 2025-07-28T00:00:00.000000 | 2025-07-28T00:00:00.000000 |
| certfr-2025-avi-0627 | Multiples vulnérabilités dans les produits IBM | 2025-07-25T00:00:00.000000 | 2025-07-25T00:00:00.000000 |
| certfr-2025-avi-0626 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2025-07-25T00:00:00.000000 | 2025-07-25T00:00:00.000000 |
| certfr-2025-avi-0625 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2025-07-25T00:00:00.000000 | 2025-07-25T00:00:00.000000 |
| certfr-2025-avi-0624 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2025-07-25T00:00:00.000000 | 2025-07-25T00:00:00.000000 |
| certfr-2025-avi-0623 | Multiples vulnérabilités dans les produits ESET | 2025-07-25T00:00:00.000000 | 2025-07-25T00:00:00.000000 |
| certfr-2025-avi-0622 | Multiples vulnérabilités dans les produits VMware | 2025-07-25T00:00:00.000000 | 2025-07-25T00:00:00.000000 |
| certfr-2025-avi-0621 | Multiples vulnérabilités dans les produits Tenable | 2025-07-24T00:00:00.000000 | 2025-07-24T00:00:00.000000 |
| certfr-2025-avi-0620 | Vulnérabilité dans Apache HTTP Server | 2025-07-24T00:00:00.000000 | 2025-07-24T00:00:00.000000 |
| certfr-2025-avi-0619 | Multiples vulnérabilités dans GitLab | 2025-07-24T00:00:00.000000 | 2025-07-24T00:00:00.000000 |
| certfr-2025-avi-0617 | Vulnérabilité dans Sonicwall Secure Mobile Access | 2025-07-24T00:00:00.000000 | 2025-07-24T00:00:00.000000 |
| certfr-2025-avi-0616 | Multiples vulnérabilités dans Sonicwall Secure Mobile Access | 2025-07-23T00:00:00.000000 | 2025-07-23T00:00:00.000000 |
| certfr-2025-avi-0615 | Multiples vulnérabilités dans les produits Mozilla | 2025-07-23T00:00:00.000000 | 2025-07-23T00:00:00.000000 |
| certfr-2025-avi-0613 | Multiples vulnérabilités dans Google Chrome | 2025-07-23T00:00:00.000000 | 2025-07-23T00:00:00.000000 |
| certfr-2025-avi-0609 | Multiples vulnérabilités dans Synacor Zimbra Collaboration | 2025-07-21T00:00:00.000000 | 2025-07-23T00:00:00.000000 |