Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-62380 | 6.3 (v4.0) | Netty before 4.2.16.Final SOCKS Proxy Null Byte Injection |
netty |
netty |
2026-08-22T12:26:43.777Z | 2026-08-26T16:16:44.043Z |
| cve-2026-62383 | 6.8 (v4.0) 5.5 (v3.1) | nltk IPIPANCorpusReader Symlink Arbitrary File Read |
nltk |
nltk |
2026-08-22T14:12:36.606Z | 2026-08-26T16:16:35.172Z |
| cve-2026-63311 | 6.9 (v4.0) 5.3 (v3.1) | NLTK before 3.10.0 SSRF via DNS Resolution Failure |
nltk |
nltk |
2026-08-22T14:12:40.063Z | 2026-08-26T16:16:26.704Z |
| cve-2026-68767 | 6.9 (v4.0) 6.1 (v3.1) | hashcat through 7.1.2 Off-by-One Out-of-Bounds Heap Wr… |
hashcat |
hashcat |
2026-08-22T14:12:43.477Z | 2026-08-26T16:16:18.796Z |
| cve-2026-5388 | 9.3 (v4.0) 9.8 (v3.1) | justhtml before 1.15.0 Multiple Security Issues |
EmilStenstrom |
justhtml |
2026-08-23T13:34:09.169Z | 2026-08-26T16:16:10.959Z |
| cve-2026-78203 | 7.1 (v4.0) 7.1 (v3.1) | Ghostwriter before 7.1.2 Cross-Client Report Template … |
GhostManager |
Ghostwriter |
2026-08-24T00:30:44.452Z | 2026-08-26T16:15:50.817Z |
| cve-2026-76847 | 8.7 (v4.0) 8.8 (v3.1) | act 0.2.81 through 0.2.89 Missing Authorization in the… |
nektos |
act |
2026-08-24T13:12:02.474Z | 2026-08-26T16:15:24.489Z |
| cve-2026-71908 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorAP Multiple Models OS Command Injection v… |
DrayTek Corporation |
VigorAP 918R |
2026-08-24T17:07:42.271Z | 2026-08-26T16:14:57.367Z |
| cve-2026-71913 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorAP Multiple Models OS Command Injection v… |
DrayTek Corporation |
VigorAP 918R |
2026-08-24T17:07:45.584Z | 2026-08-26T16:14:49.783Z |
| cve-2026-71918 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorSwitch Multiple Models OS Command Injecti… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:07:48.959Z | 2026-08-26T16:14:41.340Z |
| cve-2026-71923 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorSwitch Multiple Models OS Command Injecti… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:07:52.293Z | 2026-08-26T16:14:33.579Z |
| cve-2026-71928 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorSwitch Multiple Models OS Command Injecti… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:07:55.618Z | 2026-08-26T16:14:22.015Z |
| cve-2026-71933 | 8.8 (v4.0) 9.1 (v3.1) | DrayTek VigorSwitch Multiple Models Missing Authorizat… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:07:59.089Z | 2026-08-26T16:14:12.954Z |
| cve-2026-71938 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorSwitch Multiple Models Buffer Overflow vi… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:08:02.518Z | 2026-08-26T16:13:59.861Z |
| cve-2026-71943 | 8.6 (v4.0) 7.2 (v3.1) | DrayTek VigorSwitch Multiple Models OS Command Injecti… |
DrayTek Corporation |
VigorSwitch G2540xs |
2026-08-24T17:08:06.077Z | 2026-08-26T16:13:51.710Z |
| cve-2026-76073 | 8.7 (v4.0) 8.8 (v3.1) | Label Studio through 1.23.0 Cross-Organization Annotat… |
HumanSignal |
label-studio |
2026-08-24T17:55:39.204Z | 2026-08-26T16:13:40.083Z |
| cve-2026-34964 | 6.9 (v4.0) 5.8 (v3.1) | Adminer before 5.5.0 SSRF via PDO DSN Injection |
vrana |
adminer |
2026-08-25T01:29:58.396Z | 2026-08-26T16:13:06.384Z |
| cve-2026-56704 | 5.3 (v4.0) 6.1 (v3.1) | Adminer before 5.4.3 Cross-Site Scripting via MySQL Ve… |
vrana |
adminer |
2026-08-25T01:30:02.831Z | 2026-08-26T16:12:57.028Z |
| cve-2026-56709 | 8.7 (v4.0) 7.5 (v3.1) | Grav before 3.9.2 Host Header Injection via sendInvita… |
getgrav |
grav |
2026-08-25T01:30:10.057Z | 2026-08-26T16:12:46.333Z |
| cve-2026-72698 | 7.1 (v4.0) 6.5 (v3.1) | Grav CMS before 2.0.16 Information Disclosure via Twig… |
getgrav |
grav |
2026-08-25T01:30:21.127Z | 2026-08-26T16:12:36.558Z |
| cve-2026-78676 | 9.3 (v4.0) 9.8 (v3.1) | GitPython before 3.1.59 Remote Code Execution via Conf… |
gitpython-developers |
GitPython |
2026-08-25T01:30:33.754Z | 2026-08-26T16:12:27.979Z |
| cve-2026-78681 | 8.7 (v4.0) 7.5 (v3.1) | NLTK before 3.10.3 Entity Expansion DoS via ElementTree |
nltk |
nltk |
2026-08-25T01:30:37.749Z | 2026-08-26T16:12:19.369Z |
| cve-2026-79663 | 4.8 (v4.0) 4.8 (v3.1) | Ech0 before 4.7.3 Stored XSS via RSS feed tag names |
lin-snow |
Ech0 |
2026-08-25T11:33:26.721Z | 2026-08-26T16:11:59.399Z |
| cve-2026-79668 | 6.9 (v4.0) 5.3 (v3.1) | Ech0 before 4.7.3 Unauthenticated Like Endpoint Metric… |
lin-snow |
Ech0 |
2026-08-25T11:33:30.130Z | 2026-08-26T16:11:48.745Z |
| cve-2026-79673 | 8.5 (v4.0) 6.5 (v3.1) | Ech0 before 4.4.3 Scope Bypass via profile:read Token |
lin-snow |
Ech0 |
2026-08-25T11:33:33.528Z | 2026-08-26T16:11:39.207Z |
| cve-2026-79769 | 8.7 (v4.0) 5.5 (v3.1) | Nokogiri before 1.19.4 Invalid Memory Read via initial… |
sparklemotion |
nokogiri |
2026-08-25T15:16:02.372Z | 2026-08-26T16:11:11.096Z |
| cve-2026-79774 | 9.3 (v4.0) 8.4 (v3.1) | Winter CMS before 1.2.13 Twig Sandbox Escape via Secur… |
wintercms |
winter |
2026-08-25T15:16:05.738Z | 2026-08-26T16:11:03.275Z |
| cve-2026-79784 | 8.6 (v4.0) 8.8 (v3.1) | Vocos through 0.1.0 Arbitrary Code Execution via Unres… |
gemelo-ai |
vocos |
2026-08-25T15:16:12.456Z | 2026-08-26T16:10:54.750Z |
| cve-2026-79788 | 7.1 (v4.0) 7.1 (v3.1) | Dradis Community Edition 5.1.0 through 5.2.0 Server-Si… |
dradis |
dradis-ce |
2026-08-25T18:23:15.839Z | 2026-08-26T16:10:46.614Z |
| cve-2026-80195 | 8.7 (v4.0) 5.4 (v3.1) | Kimai before 2.63.0 Team Membership Removal via API |
kimai |
kimai |
2026-08-25T23:19:02.395Z | 2026-08-26T16:10:29.520Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certa-2013-avi-535 | Vulnérabilité dans Apple iTunes | 2013-09-19T00:00:00.000000 | 2013-09-19T00:00:00.000000 |
| certa-2013-avi-534 | Multiples vulnérabilités dans Cisco Prime Data Center Network Manager | 2013-09-19T00:00:00.000000 | 2013-09-19T00:00:00.000000 |
| certa-2013-avi-533 | Vulnérabilité dans Cisco Prime Central | 2013-09-19T00:00:00.000000 | 2013-09-19T00:00:00.000000 |
| certa-2013-avi-532 | Multiples vulnérabilités dans Apple OS X Server | 2013-09-18T00:00:00.000000 | 2013-09-18T00:00:00.000000 |
| certa-2013-avi-531 | Multiples vulnérabilités dans les produits Mozilla | 2013-09-18T00:00:00.000000 | 2013-09-18T00:00:00.000000 |
| certa-2013-avi-530 | Multiples vulnérabilités dans Moodle | 2013-09-16T00:00:00.000000 | 2013-09-16T00:00:00.000000 |
| certa-2013-avi-529 | Multiples vulnérabilités dans Apple OS X Mountain Lion | 2013-09-13T00:00:00.000000 | 2013-09-13T00:00:00.000000 |
| certa-2013-avi-528 | Multiples vulnérabilités dans Apple Safari | 2013-09-13T00:00:00.000000 | 2013-09-13T00:00:00.000000 |
| certa-2013-avi-527 | Multiples vulnérabilités dans les produits Juniper | 2013-09-12T00:00:00.000000 | 2013-09-12T00:00:00.000000 |
| certa-2013-avi-526 | Multiples vulnérabilités dans WordPress | 2013-09-12T00:00:00.000000 | 2013-09-12T00:00:00.000000 |
| certa-2013-avi-525 | Multiples vulnérabilités dans Wireshark | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-524 | Vulnérabilité dans Microsoft Active Directory | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-523 | Vulnérabilité dans Microsoft FrontPage | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-522 | Vulnérabilité dans Microsoft Gestionnaire de contrôle des services | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-521 | Multiples vulnérabilités dans Microsoft Pilotes en mode noyau | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-520 | Vulnérabilité dans Microsoft Éditeur IME Microsoft Office (version en chinois) | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-519 | Multiples vulnérabilités dans Microsoft Access | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-518 | Multiples vulnérabilités dans Microsoft Excel | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-517 | Multiples vulnérabilités dans Microsoft Office | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-516 | Vulnérabilité dans Microsoft Theme File | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-515 | Vulnérabilité dans Microsoft OLE | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-514 | Multiples vulnérabilités dans Microsoft Internet Explorer | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-513 | Vulnérabilité dans Microsoft Outlook | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-512 | Multiples vulnérabilités dans Microsoft SharePoint Server | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-511 | Multiples vulnérabilités dans Adobe Shockwave Player | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-510 | Multiples vulnérabilités dans Adobe Reader et Acrobat | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-509 | Multiples vulnérabilités dans Adobe Flash Player | 2013-09-11T00:00:00.000000 | 2013-09-11T00:00:00.000000 |
| certa-2013-avi-508 | Multiples vulnérabilités dans les produits Juniper | 2013-09-10T00:00:00.000000 | 2013-09-10T00:00:00.000000 |
| certa-2013-avi-507 | Multiples vulnérabilités dans le noyau Linux de Ubuntu | 2013-09-09T00:00:00.000000 | 2013-09-09T00:00:00.000000 |
| certa-2013-avi-506 | Vulnérabilité dans DNS Response Rate Limiting | 2013-09-09T00:00:00.000000 | 2013-09-09T00:00:00.000000 |