Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-14494 | Sigma Forms Pro <= 1.4.5 - Unauthenticated Unauthentic… |
bdthemes |
SigmaForms Pro – AI Generated Forms |
2026-08-29T11:30:17.164Z | 2026-08-29T11:30:17.164Z | |
| cve-2026-82364 | macrozheng mall Order Submission submit race condition |
macrozheng |
mall |
2026-08-29T11:00:08.359Z | 2026-08-29T11:00:08.359Z | |
| cve-2026-80725 | N/A | net: gro: properly validate BIG TCP aggregation criteria |
Linux |
Linux |
2026-08-29T06:39:35.212Z | 2026-08-29T06:40:30.300Z |
| cve-2026-80723 | of: reserved_mem: prevent OOB when too many dynamic re… |
Linux |
Linux |
2026-08-28T06:53:18.485Z | 2026-08-29T06:22:40.126Z | |
| cve-2026-80722 | wifi: mac80211: validate individual TWT params before … |
Linux |
Linux |
2026-08-28T06:53:17.886Z | 2026-08-29T06:22:38.281Z | |
| cve-2026-80720 | iomap: add a separate bio_set for iomap_split_ioend |
Linux |
Linux |
2026-08-28T06:53:16.683Z | 2026-08-29T06:22:35.780Z | |
| cve-2026-80718 | mm/percpu-km: fix bitmap overflow and accounting in pc… |
Linux |
Linux |
2026-08-28T06:53:15.490Z | 2026-08-29T06:22:34.556Z | |
| cve-2026-80717 | sctp: validate Adaptation Indication parameter length |
Linux |
Linux |
2026-08-28T06:53:14.886Z | 2026-08-29T06:22:33.315Z | |
| cve-2026-80716 | ALSA: pcm: wake linked drain waiters on unlink |
Linux |
Linux |
2026-08-28T06:53:14.286Z | 2026-08-29T06:22:32.041Z | |
| cve-2026-80714 | ipvs: do not propagate one-packet flag to synced conns |
Linux |
Linux |
2026-08-28T06:53:13.069Z | 2026-08-29T06:22:30.808Z | |
| cve-2026-80713 | io_uring: preserve task restrictions across exec |
Linux |
Linux |
2026-08-28T06:53:12.438Z | 2026-08-29T06:22:29.500Z | |
| cve-2026-80712 | spi: spi-qpic-snand: write the feature value before ex… |
Linux |
Linux |
2026-08-28T06:53:11.243Z | 2026-08-29T06:22:28.248Z | |
| cve-2026-80710 | s390/dasd: Fix undersized format-check buffer |
Linux |
Linux |
2026-08-28T06:53:10.028Z | 2026-08-29T06:22:26.950Z | |
| cve-2026-80709 | s390/zcrypt: Fix wrong domain value verification with … |
Linux |
Linux |
2026-08-28T06:53:09.439Z | 2026-08-29T06:22:25.717Z | |
| cve-2026-80707 | can: j1939: transport: j1939_session_fresh_new(): init… |
Linux |
Linux |
2026-08-28T06:53:08.244Z | 2026-08-29T06:22:24.493Z | |
| cve-2026-80706 | can: softing: fw_parse(): validate firmware record spans |
Linux |
Linux |
2026-08-28T06:53:07.640Z | 2026-08-29T06:22:23.266Z | |
| cve-2026-80702 | drm/vmwgfx: fix guest_memory_dirty bitfield clobbered … |
Linux |
Linux |
2026-08-28T06:53:05.253Z | 2026-08-29T06:22:22.050Z | |
| cve-2026-80700 | drm/vmwgfx: validate external BO copy bounds for both … |
Linux |
Linux |
2026-08-28T06:53:04.050Z | 2026-08-29T06:22:20.794Z | |
| cve-2026-80696 | hwmon: (ltc4282) Fix reading the minimum alarm voltage |
Linux |
Linux |
2026-08-28T06:53:01.632Z | 2026-08-29T06:22:19.564Z | |
| cve-2026-80694 | net: ethernet: mtk_eth_soc: pass eth to mtk_handle_irq… |
Linux |
Linux |
2026-08-28T06:53:00.442Z | 2026-08-29T06:22:18.328Z | |
| cve-2026-80693 | idpf: bound interrupt-vector register fill to the allo… |
Linux |
Linux |
2026-08-28T06:52:56.131Z | 2026-08-29T06:22:17.090Z | |
| cve-2026-80692 | Bluetooth: hci_sync: hold conn in hci_connect_acl/le_s… |
Linux |
Linux |
2026-08-28T06:52:55.529Z | 2026-08-29T06:22:15.862Z | |
| cve-2026-80691 | scsi: target: iblock: Fix wrong PR ops NULL check for … |
Linux |
Linux |
2026-08-28T06:52:54.933Z | 2026-08-29T06:22:14.617Z | |
| cve-2026-80685 | mm/util: don't read __page_2 for order-1 folios in sna… |
Linux |
Linux |
2026-08-28T06:52:51.305Z | 2026-08-29T06:22:12.733Z | |
| cve-2026-80684 | KVM: s390: pci: Fix NULL dereference on AIBV allocatio… |
Linux |
Linux |
2026-08-28T06:52:50.703Z | 2026-08-29T06:22:11.509Z | |
| cve-2026-80683 | Bluetooth: SCO: give the socket its own sco_conn reference |
Linux |
Linux |
2026-08-28T06:52:50.099Z | 2026-08-29T06:22:10.283Z | |
| cve-2026-80682 | riscv/mm: use physical alignment for vmemmap_start_pfn |
Linux |
Linux |
2026-08-28T06:52:49.498Z | 2026-08-29T06:22:09.064Z | |
| cve-2026-80681 | vxlan: re-fetch eth header after route_shortcircuit() |
Linux |
Linux |
2026-08-28T06:52:48.896Z | 2026-08-29T06:22:07.840Z | |
| cve-2026-80680 | i2c: amd-mp2: Unregister callback on adapter add failure |
Linux |
Linux |
2026-08-28T06:52:48.300Z | 2026-08-29T06:22:06.613Z | |
| cve-2026-80678 | i2c: imx: Fix slave registration race and error handling |
Linux |
Linux |
2026-08-28T06:52:47.077Z | 2026-08-29T06:22:05.188Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2021-000103 | WordPress Plugin "Push Notifications for WordPress (Lite)" vulnerable to cross-site request forgery | 2021-11-16T13:42+09:00 | 2021-11-16T13:42+09:00 |
| jvndb-2021-000102 | rwtxt vulnerable to cross-site scripting | 2021-11-16T13:38+09:00 | 2021-11-16T13:38+09:00 |
| jvndb-2021-000101 | Unlimited Sitemap Generator vulnerable to cross-site request forgery | 2021-11-12T15:07+09:00 | 2021-11-12T15:07+09:00 |
| jvndb-2021-003840 | Cross-site Scripting Vulnerability in Hitachi Infrastructure Analytics Advisor and Hitachi Ops Center Analyzer | 2021-11-12T11:41+09:00 | 2021-11-12T11:41+09:00 |
| jvndb-2021-000100 | Multiple vulnerabilities in EC-CUBE 2 series | 2021-11-11T15:09+09:00 | 2021-11-11T15:09+09:00 |
| jvndb-2021-000094 | WordPress Plugin "Booking Package - Appointment Booking Calendar System" vulnerable to cross-site scripting | 2021-11-10T14:26+09:00 | 2021-11-10T14:26+09:00 |
| jvndb-2021-003811 | File Permission Vulnerability in Hitachi Automation Director, Hitachi Infrastructure Analytics Advisor and Hitachi Ops Center | 2021-11-05T15:04+09:00 | 2021-11-05T15:04+09:00 |
| jvndb-2021-003660 | Authentication Bypass Vulnerability in Hitachi Device Manager | 2021-11-01T15:56+09:00 | 2021-11-01T15:56+09:00 |
| jvndb-2021-003080 | OMRON CX-Supervisor vulnerable to out-of-bounds read | 2021-10-18T15:26+09:00 | 2021-11-01T15:37+09:00 |
| jvndb-2021-000096 | Android App "Mercari (Merpay) - Marketplace and Mobile Payments App" (Japan version) vulnerable to improper handling of Intent | 2021-10-29T15:11+09:00 | 2021-10-29T15:11+09:00 |
| jvndb-2021-000098 | ESET Cyber Security and ESET Endpoint series vulnerable to denial-of-service (DoS) | 2021-10-29T14:58+09:00 | 2021-10-29T14:58+09:00 |
| jvndb-2021-000095 | Multiple improper restriction of XML external entity reference (XXE) vulnerabilities in Office Server Document Converter | 2021-10-28T15:03+09:00 | 2021-10-28T15:03+09:00 |
| jvndb-2021-003385 | Trend Micro Endpoint security products for enterprises vulnerable to privilege escalation | 2021-10-26T12:35+09:00 | 2021-10-26T12:35+09:00 |
| jvndb-2021-000091 | 128 Technology Session Smart Router vulnerable to authentication bypass | 2021-10-18T14:58+09:00 | 2021-10-18T14:58+09:00 |
| jvndb-2021-000090 | Apache HTTP Server vulnerable to directory traversal | 2021-10-11T18:07+09:00 | 2021-10-11T18:07+09:00 |
| jvndb-2021-000089 | Nike App fails to restrict custom URL schemes properly | 2021-10-08T14:32+09:00 | 2021-10-08T14:32+09:00 |
| jvndb-2021-002810 | Information Disclosure Vulnerability in Hitachi Tuning Manager, Hitachi Infrastructure Analytics Advisor and Hitachi Ops Center Analyzer | 2021-10-05T15:37+09:00 | 2021-10-05T15:37+09:00 |
| jvndb-2021-002774 | Trend Micro ServerProtect family vulnerable to authentication bypass | 2021-10-01T14:42+09:00 | 2021-10-01T14:42+09:00 |
| jvndb-2021-002752 | Trend Micro HouseCall for Home Networks vulnerable to privilege escalation | 2021-09-30T13:56+09:00 | 2021-09-30T13:56+09:00 |
| jvndb-2021-000085 | SNKRDUNK Market Place App for iOS vulnerable to improper server certificate verification | 2021-09-28T15:18+09:00 | 2021-09-28T15:18+09:00 |
| jvndb-2021-000086 | WordPress Plugin "OG Tags" vulnerable to cross-site request forgery | 2021-09-28T15:11+09:00 | 2021-09-28T15:11+09:00 |
| jvndb-2021-000084 | InBody App vulnerable to information disclosure | 2021-09-28T14:27+09:00 | 2021-09-28T14:27+09:00 |
| jvndb-2021-001123 | Multiple vulnerabilities in GROWI | 2021-03-09T14:17+09:00 | 2021-09-24T13:34+09:00 |
| jvndb-2021-000083 | EC-CUBE plugin "Order Status Batch Change Plug-in" vulnerable to cross-site scripting | 2021-09-16T14:33+09:00 | 2021-09-16T14:33+09:00 |
| jvndb-2021-000082 | EC-CUBE plugin "List (order management) item change plug-in" vulnerable to cross-site scripting | 2021-09-13T14:24+09:00 | 2021-09-13T14:24+09:00 |
| jvndb-2021-000074 | Multiple vulnerabilities in RevoWorks Browser | 2021-09-10T15:44+09:00 | 2021-09-10T15:44+09:00 |
| jvndb-2021-002342 | Trend Micro Security family vulnerable to improper handling of Directory Junction | 2021-09-03T16:10+09:00 | 2021-09-03T16:10+09:00 |
| jvndb-2020-000085 | Multiple vulnerabilities in GROWI | 2020-12-15T15:41+09:00 | 2021-08-30T16:29+09:00 |
| jvndb-2021-000080 | baserCMS vulnerable to cross-site scripting | 2021-08-27T13:29+09:00 | 2021-08-27T13:29+09:00 |
| jvndb-2021-000079 | Multiple cross-site scripting vulnerabilities in Movable Type | 2021-08-25T14:54+09:00 | 2021-08-25T14:54+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2026-avi-0108 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2026-01-30T00:00:00.000000 | 2026-01-30T00:00:00.000000 |
| certfr-2026-avi-0107 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2026-01-30T00:00:00.000000 | 2026-01-30T00:00:00.000000 |
| certfr-2026-avi-0106 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2026-01-30T00:00:00.000000 | 2026-01-30T00:00:00.000000 |
| certfr-2026-avi-0105 | Vulnérabilité dans Microsoft Edge | 2026-01-30T00:00:00.000000 | 2026-01-30T00:00:00.000000 |
| certfr-2026-avi-0104 | Vulnérabilité dans Qnap QTS | 2026-01-30T00:00:00.000000 | 2026-01-30T00:00:00.000000 |
| certfr-2026-avi-0103 | Multiples vulnérabilités dans Node.js | 2026-01-30T00:00:00.000000 | 2026-01-30T00:00:00.000000 |
| certfr-2026-avi-0102 | Vulnérabilité dans Splunk Enterprise | 2026-01-30T00:00:00.000000 | 2026-01-30T00:00:00.000000 |
| certfr-2026-avi-0101 | Multiples vulnérabilités dans les produits Siemens | 2026-01-29T00:00:00.000000 | 2026-01-29T00:00:00.000000 |
| certfr-2026-avi-0100 | Multiples vulnérabilités dans les produits WithSecure | 2026-01-29T00:00:00.000000 | 2026-01-29T00:00:00.000000 |
| certfr-2026-avi-0099 | Multiples vulnérabilités dans SolarWinds Web Help Desk | 2026-01-28T00:00:00.000000 | 2026-01-29T00:00:00.000000 |
| certfr-2026-avi-0098 | Vulnérabilité dans les produits Symfony | 2026-01-28T00:00:00.000000 | 2026-01-28T00:00:00.000000 |
| certfr-2026-avi-0097 | Vulnérabilité dans les produits Fortinet | 2026-01-28T00:00:00.000000 | 2026-01-28T00:00:00.000000 |
| certfr-2026-avi-0096 | Multiples vulnérabilités dans OpenSSL | 2026-01-28T00:00:00.000000 | 2026-01-28T00:00:00.000000 |
| certfr-2026-avi-0095 | Multiples vulnérabilités dans les produits Mozilla | 2026-01-28T00:00:00.000000 | 2026-01-28T00:00:00.000000 |
| certfr-2026-avi-0094 | Multiples vulnérabilités dans HPE Aruba Networking Fabric Composer | 2026-01-28T00:00:00.000000 | 2026-01-28T00:00:00.000000 |
| certfr-2026-avi-0093 | Multiples vulnérabilités dans Tenable Network Monitor | 2026-01-28T00:00:00.000000 | 2026-01-28T00:00:00.000000 |
| certfr-2026-avi-0092 | Vulnérabilité dans Google Chrome | 2026-01-28T00:00:00.000000 | 2026-01-28T00:00:00.000000 |
| certfr-2025-avi-0618 | Multiples vulnérabilités dans les produits Mitel | 2025-07-24T00:00:00.000000 | 2026-01-28T00:00:00.000000 |
| certfr-2026-avi-0091 | Multiples vulnérabilités dans Xen | 2026-01-27T00:00:00.000000 | 2026-01-27T00:00:00.000000 |
| certfr-2026-avi-0090 | Multiples vulnérabilités dans Citrix XenServer | 2026-01-27T00:00:00.000000 | 2026-01-27T00:00:00.000000 |
| certfr-2026-avi-0089 | Vulnérabilité dans Microsoft Office | 2026-01-27T00:00:00.000000 | 2026-01-27T00:00:00.000000 |
| certfr-2026-avi-0088 | Vulnérabilité dans MariaDB | 2026-01-27T00:00:00.000000 | 2026-01-27T00:00:00.000000 |
| certfr-2026-avi-0087 | Vulnérabilité dans les produits Belden | 2026-01-26T00:00:00.000000 | 2026-01-26T00:00:00.000000 |
| certfr-2026-avi-0086 | Vulnérabilité dans CPython | 2026-01-26T00:00:00.000000 | 2026-01-26T00:00:00.000000 |
| certfr-2026-avi-0085 | Multiples vulnérabilités dans NetApp Brocade SAN Navigator | 2026-01-26T00:00:00.000000 | 2026-01-26T00:00:00.000000 |
| certfr-2026-avi-0084 | Vulnérabilité dans Microsoft Edge | 2026-01-26T00:00:00.000000 | 2026-01-26T00:00:00.000000 |
| certfr-2026-avi-0083 | Multiples vulnérabilités dans les produits IBM | 2026-01-23T00:00:00.000000 | 2026-01-23T00:00:00.000000 |
| certfr-2026-avi-0082 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2026-01-23T00:00:00.000000 | 2026-01-23T00:00:00.000000 |
| certfr-2026-avi-0081 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2026-01-23T00:00:00.000000 | 2026-01-23T00:00:00.000000 |
| certfr-2026-avi-0080 | Vulnérabilité dans Broadcom Web Security Services Agent | 2026-01-23T00:00:00.000000 | 2026-01-23T00:00:00.000000 |