Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
cve-2026-32094 Shescape escape() leaves bracket glob expansion active… ericcornelissen
shescape
2026-03-11T19:50:10.617Z 2026-03-12T19:54:17.725Z
cve-2026-31979 himmelblaud-tasks: local privilege escalation via /tmp… himmelblau-idm
himmelblau
2026-03-11T19:47:05.935Z 2026-03-11T20:07:29.194Z
cve-2026-31976 xygeni-action v5 tag poisoned with C2 backdoor xygeni
xygeni-action
2026-03-11T19:44:38.643Z 2026-03-12T19:54:54.608Z
cve-2026-31974 Blind SSRF on OpenProject instance via webhooks opf
openproject
2026-03-11T19:39:25.675Z 2026-03-12T19:55:19.387Z
cve-2026-27703 RIOT has an Out-of-Bounds Write in nanoCoAP Handler RIOT-OS
RIOT
2026-03-11T19:38:02.866Z 2026-03-12T19:53:21.857Z
cve-2026-27478 Unity Catalog has a JWT Issuer Validation Bypass Allow… unitycatalog
unitycatalog
2026-03-11T19:36:03.271Z 2026-03-12T19:57:39.336Z
cve-2026-31961 Unbounded memory allocation in Quill via unvalidated s… anchore
quill
2026-03-11T19:32:28.920Z 2026-03-11T19:58:31.965Z
cve-2026-3951 LockerProject Locker Error Response registry.js authIs… LockerProject
Locker
2026-03-11T19:32:08.560Z 2026-03-12T19:58:03.250Z
cve-2026-31960 DoS in Quill via unbounded read of HTTP response body … anchore
quill
2026-03-11T19:31:34.867Z 2026-03-12T19:58:33.103Z
cve-2026-31959 SSRF in Quill via unvalidated URL from Apple notarizat… anchore
quill
2026-03-11T19:30:46.584Z 2026-03-12T19:58:59.998Z
cve-2026-31958 Tornado has a DoS due to too many multipart parts tornadoweb
tornado
2026-03-11T19:27:23.380Z 2026-04-01T14:32:33.146Z
cve-2026-31957 Himmelblau unset domain configuration can allow any-te… himmelblau-idm
himmelblau
2026-03-11T19:25:21.230Z 2026-03-12T20:00:41.000Z
cve-2026-31954 Emlog asynchronous media file deletion missing CSRF pr… emlog
emlog
2026-03-11T19:21:52.781Z 2026-03-12T20:01:11.679Z
cve-2026-31901 Parse Server has user enumeration via email verificati… parse-community
parse-server
2026-03-11T19:18:06.578Z 2026-03-12T20:01:40.698Z
cve-2026-31900 Black's vulnerable version parsing leads to RCE in Git… psf
black
2026-03-11T19:15:20.822Z 2026-03-13T03:55:48.806Z
cve-2026-31896 WeGIA has a Time-Based Blind SQL Injection in remover… LabRedesCefetRJ
WeGIA
2026-03-11T19:10:32.383Z 2026-03-12T20:03:11.859Z
cve-2026-31895 WeGIA has a SQL Injection via Direct Query Interpolati… LabRedesCefetRJ
WeGIA
2026-03-11T19:08:18.763Z 2026-03-11T20:27:50.897Z
cve-2026-31894 WeGIA affected by arbitrary file read via symlink in b… LabRedesCefetRJ
WeGIA
2026-03-11T19:05:51.687Z 2026-03-12T20:03:42.724Z
cve-2026-3950 strukturag libheif stsz/stts track.cc load out-of-bounds strukturag
libheif
2026-03-11T19:02:08.446Z 2026-03-11T20:24:59.822Z
cve-2026-24510 6.7 (v3.1) Dell Alienware Command Center (AWCC), versions pr… Dell
Alienware Command Center (AWCC)
2026-03-11T18:59:51.894Z 2026-03-12T03:55:43.482Z
cve-2026-31889 Shopware has a potential take over of app credentials shopware
core
2026-03-11T18:56:23.171Z 2026-03-12T20:04:11.623Z
cve-2026-24508 2.5 (v3.1) Dell Alienware Command Center (AWCC), versions pr… Dell
Alienware Command Center (AWCC)
2026-03-11T18:56:10.153Z 2026-03-11T20:07:12.147Z
cve-2026-31888 Shopware has user enumeration via distinct error codes… shopware
core
2026-03-11T18:53:03.018Z 2026-03-12T20:02:47.581Z
cve-2026-24509 3.6 (v3.1) Dell Alienware Command Center (AWCC), versions pr… Dell
Alienware Command Center (AWCC)
2026-03-11T18:51:04.154Z 2026-03-11T19:12:15.988Z
cve-2026-31887 Shopware unauthenticated data extraction possible thro… shopware
core
2026-03-11T18:49:46.294Z 2026-03-12T20:02:14.866Z
cve-2026-31881 Runtipi unauthenticated /api/auth/reset-password allow… runtipi
runtipi
2026-03-11T18:37:11.360Z 2026-03-12T20:06:56.196Z
cve-2026-31879 Frappe Workspace modification and stored XSS due to im… frappe
frappe
2026-03-11T18:34:18.375Z 2026-03-11T19:30:30.761Z
cve-2026-3949 strukturag libheif HEIF File decoder_vvdec.cc vvdec_pu… strukturag
libheif
2026-03-11T18:32:09.358Z 2026-03-11T19:38:00.870Z
cve-2026-31878 Frappe: Possible SSRF by any authenticated user frappe
frappe
2026-03-11T18:32:04.397Z 2026-03-11T19:54:06.626Z
cve-2026-31877 Frappe SQL Injection due to improper field sanitization frappe
frappe
2026-03-11T18:28:35.596Z 2026-03-12T20:07:46.367Z
ID CVSS Description Vendor Product Published Updated
ID Description Package Published Updated
ID Description Type
ID Description Updated
ID Description Updated
ID Description Updated
ID Description
ID Description Published Updated
certa-2011-avi-359 Vulnérabilité dans les services de certificats Active Directory de Microsoft Windows 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-358 Vulnérabilités dans Microsoft Internet Explorer 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-357 Vulnérabilité de l'éditeur XML de Microsoft 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-356 Vulnérabilité dans le serveur SMB de Microsoft Windows 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-355 Vulnérabilité dans Hyper-V 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-354 Vulnérabilité dans le composant AFD de Microsoft 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-353 Multiples vulnérabilités dans Microsoft Excel 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-352 Vulnérabilité dans Microsoft .NET Framework 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-351 Vulnérabilité dans le client SMB de Microsoft 2011-06-15T00:00:00.000000 2011-06-24T00:00:00.000000
certa-2011-avi-350 Vulnérabilités dans le système de fichiers distribués (DFS) de Microsoft 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-349 Vulnérabilité dans les pilotes en mode noyau du système Microsoft Windows 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-348 Vulnérabilité dans Threat Management Gateway 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-347 Vulnérabilité dans .NET Framework et Microsoft Silverlight 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-346 Vulnérabilité dans Microsoft OLE Automation 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-345 Vulnérabilité dans Microsoft Windows MHTML 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-344 Vulnérabilité dans Adobe Flash Player 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-343 Multiples vulnérabilités dans Adobe Shockwave Player 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-342 Multiples vulnérabilités dans Adobe Reader et Acrobat 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-341 Multiples vulnérabilités dans Adobe LifeCycle Data Services, LifeCycle ES et BlazeDS 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-340 Multiples vulnérabilités dans Adobe ColdFusion 2011-06-15T00:00:00.000000 2011-06-15T00:00:00.000000
certa-2011-avi-339 Vulnérabilité dans Ruby on Rails 2011-06-14T00:00:00.000000 2011-06-14T00:00:00.000000
certa-2011-avi-338 Vulnérabilité dans Horde 2011-06-10T00:00:00.000000 2011-06-10T00:00:00.000000
certa-2011-avi-337 Vulnérabilité dans HP OpenView Data Storage Protector 2011-06-10T00:00:00.000000 2011-06-10T00:00:00.000000
certa-2011-avi-336 Multiples vulnérabilités dans Java 2011-06-09T00:00:00.000000 2011-07-18T00:00:00.000000
certa-2011-avi-335 Vulnérabilité dans VLC 2011-06-08T00:00:00.000000 2011-06-08T00:00:00.000000
certa-2011-avi-334 Multiples vulnérabilités dans Google Chrome 2011-06-08T00:00:00.000000 2011-06-08T00:00:00.000000
certa-2011-avi-333 Vulnérabilités dans Novell iPrint 2011-06-07T00:00:00.000000 2011-06-07T00:00:00.000000
certa-2011-avi-332 Vulnérabilité dans Adobe Flash Player 2011-06-06T00:00:00.000000 2011-06-06T00:00:00.000000
certa-2011-avi-331 Vulnérabilité dans Asterisk 2011-06-06T00:00:00.000000 2011-06-06T00:00:00.000000
certa-2011-avi-330 Multiples vulnérabilités dans les produits VMWare 2011-06-06T00:00:00.000000 2011-06-06T00:00:00.000000