Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-32094 | Shescape escape() leaves bracket glob expansion active… |
ericcornelissen |
shescape |
2026-03-11T19:50:10.617Z | 2026-03-12T19:54:17.725Z | |
| cve-2026-31979 | himmelblaud-tasks: local privilege escalation via /tmp… |
himmelblau-idm |
himmelblau |
2026-03-11T19:47:05.935Z | 2026-03-11T20:07:29.194Z | |
| cve-2026-31976 | xygeni-action v5 tag poisoned with C2 backdoor |
xygeni |
xygeni-action |
2026-03-11T19:44:38.643Z | 2026-03-12T19:54:54.608Z | |
| cve-2026-31974 | Blind SSRF on OpenProject instance via webhooks |
opf |
openproject |
2026-03-11T19:39:25.675Z | 2026-03-12T19:55:19.387Z | |
| cve-2026-27703 | RIOT has an Out-of-Bounds Write in nanoCoAP Handler |
RIOT-OS |
RIOT |
2026-03-11T19:38:02.866Z | 2026-03-12T19:53:21.857Z | |
| cve-2026-27478 | Unity Catalog has a JWT Issuer Validation Bypass Allow… |
unitycatalog |
unitycatalog |
2026-03-11T19:36:03.271Z | 2026-03-12T19:57:39.336Z | |
| cve-2026-31961 | Unbounded memory allocation in Quill via unvalidated s… |
anchore |
quill |
2026-03-11T19:32:28.920Z | 2026-03-11T19:58:31.965Z | |
| cve-2026-3951 | LockerProject Locker Error Response registry.js authIs… |
LockerProject |
Locker |
2026-03-11T19:32:08.560Z | 2026-03-12T19:58:03.250Z | |
| cve-2026-31960 | DoS in Quill via unbounded read of HTTP response body … |
anchore |
quill |
2026-03-11T19:31:34.867Z | 2026-03-12T19:58:33.103Z | |
| cve-2026-31959 | SSRF in Quill via unvalidated URL from Apple notarizat… |
anchore |
quill |
2026-03-11T19:30:46.584Z | 2026-03-12T19:58:59.998Z | |
| cve-2026-31958 | Tornado has a DoS due to too many multipart parts |
tornadoweb |
tornado |
2026-03-11T19:27:23.380Z | 2026-04-01T14:32:33.146Z | |
| cve-2026-31957 | Himmelblau unset domain configuration can allow any-te… |
himmelblau-idm |
himmelblau |
2026-03-11T19:25:21.230Z | 2026-03-12T20:00:41.000Z | |
| cve-2026-31954 | Emlog asynchronous media file deletion missing CSRF pr… |
emlog |
emlog |
2026-03-11T19:21:52.781Z | 2026-03-12T20:01:11.679Z | |
| cve-2026-31901 | Parse Server has user enumeration via email verificati… |
parse-community |
parse-server |
2026-03-11T19:18:06.578Z | 2026-03-12T20:01:40.698Z | |
| cve-2026-31900 | Black's vulnerable version parsing leads to RCE in Git… |
psf |
black |
2026-03-11T19:15:20.822Z | 2026-03-13T03:55:48.806Z | |
| cve-2026-31896 | WeGIA has a Time-Based Blind SQL Injection in remover… |
LabRedesCefetRJ |
WeGIA |
2026-03-11T19:10:32.383Z | 2026-03-12T20:03:11.859Z | |
| cve-2026-31895 | WeGIA has a SQL Injection via Direct Query Interpolati… |
LabRedesCefetRJ |
WeGIA |
2026-03-11T19:08:18.763Z | 2026-03-11T20:27:50.897Z | |
| cve-2026-31894 | WeGIA affected by arbitrary file read via symlink in b… |
LabRedesCefetRJ |
WeGIA |
2026-03-11T19:05:51.687Z | 2026-03-12T20:03:42.724Z | |
| cve-2026-3950 | strukturag libheif stsz/stts track.cc load out-of-bounds |
strukturag |
libheif |
2026-03-11T19:02:08.446Z | 2026-03-11T20:24:59.822Z | |
| cve-2026-24510 | 6.7 (v3.1) | Dell Alienware Command Center (AWCC), versions pr… |
Dell |
Alienware Command Center (AWCC) |
2026-03-11T18:59:51.894Z | 2026-03-12T03:55:43.482Z |
| cve-2026-31889 | Shopware has a potential take over of app credentials |
shopware |
core |
2026-03-11T18:56:23.171Z | 2026-03-12T20:04:11.623Z | |
| cve-2026-24508 | 2.5 (v3.1) | Dell Alienware Command Center (AWCC), versions pr… |
Dell |
Alienware Command Center (AWCC) |
2026-03-11T18:56:10.153Z | 2026-03-11T20:07:12.147Z |
| cve-2026-31888 | Shopware has user enumeration via distinct error codes… |
shopware |
core |
2026-03-11T18:53:03.018Z | 2026-03-12T20:02:47.581Z | |
| cve-2026-24509 | 3.6 (v3.1) | Dell Alienware Command Center (AWCC), versions pr… |
Dell |
Alienware Command Center (AWCC) |
2026-03-11T18:51:04.154Z | 2026-03-11T19:12:15.988Z |
| cve-2026-31887 | Shopware unauthenticated data extraction possible thro… |
shopware |
core |
2026-03-11T18:49:46.294Z | 2026-03-12T20:02:14.866Z | |
| cve-2026-31881 | Runtipi unauthenticated /api/auth/reset-password allow… |
runtipi |
runtipi |
2026-03-11T18:37:11.360Z | 2026-03-12T20:06:56.196Z | |
| cve-2026-31879 | Frappe Workspace modification and stored XSS due to im… |
frappe |
frappe |
2026-03-11T18:34:18.375Z | 2026-03-11T19:30:30.761Z | |
| cve-2026-3949 | strukturag libheif HEIF File decoder_vvdec.cc vvdec_pu… |
strukturag |
libheif |
2026-03-11T18:32:09.358Z | 2026-03-11T19:38:00.870Z | |
| cve-2026-31878 | Frappe: Possible SSRF by any authenticated user |
frappe |
frappe |
2026-03-11T18:32:04.397Z | 2026-03-11T19:54:06.626Z | |
| cve-2026-31877 | Frappe SQL Injection due to improper field sanitization |
frappe |
frappe |
2026-03-11T18:28:35.596Z | 2026-03-12T20:07:46.367Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certa-2011-avi-359 | Vulnérabilité dans les services de certificats Active Directory de Microsoft Windows | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-358 | Vulnérabilités dans Microsoft Internet Explorer | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-357 | Vulnérabilité de l'éditeur XML de Microsoft | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-356 | Vulnérabilité dans le serveur SMB de Microsoft Windows | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-355 | Vulnérabilité dans Hyper-V | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-354 | Vulnérabilité dans le composant AFD de Microsoft | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-353 | Multiples vulnérabilités dans Microsoft Excel | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-352 | Vulnérabilité dans Microsoft .NET Framework | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-351 | Vulnérabilité dans le client SMB de Microsoft | 2011-06-15T00:00:00.000000 | 2011-06-24T00:00:00.000000 |
| certa-2011-avi-350 | Vulnérabilités dans le système de fichiers distribués (DFS) de Microsoft | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-349 | Vulnérabilité dans les pilotes en mode noyau du système Microsoft Windows | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-348 | Vulnérabilité dans Threat Management Gateway | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-347 | Vulnérabilité dans .NET Framework et Microsoft Silverlight | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-346 | Vulnérabilité dans Microsoft OLE Automation | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-345 | Vulnérabilité dans Microsoft Windows MHTML | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-344 | Vulnérabilité dans Adobe Flash Player | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-343 | Multiples vulnérabilités dans Adobe Shockwave Player | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-342 | Multiples vulnérabilités dans Adobe Reader et Acrobat | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-341 | Multiples vulnérabilités dans Adobe LifeCycle Data Services, LifeCycle ES et BlazeDS | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-340 | Multiples vulnérabilités dans Adobe ColdFusion | 2011-06-15T00:00:00.000000 | 2011-06-15T00:00:00.000000 |
| certa-2011-avi-339 | Vulnérabilité dans Ruby on Rails | 2011-06-14T00:00:00.000000 | 2011-06-14T00:00:00.000000 |
| certa-2011-avi-338 | Vulnérabilité dans Horde | 2011-06-10T00:00:00.000000 | 2011-06-10T00:00:00.000000 |
| certa-2011-avi-337 | Vulnérabilité dans HP OpenView Data Storage Protector | 2011-06-10T00:00:00.000000 | 2011-06-10T00:00:00.000000 |
| certa-2011-avi-336 | Multiples vulnérabilités dans Java | 2011-06-09T00:00:00.000000 | 2011-07-18T00:00:00.000000 |
| certa-2011-avi-335 | Vulnérabilité dans VLC | 2011-06-08T00:00:00.000000 | 2011-06-08T00:00:00.000000 |
| certa-2011-avi-334 | Multiples vulnérabilités dans Google Chrome | 2011-06-08T00:00:00.000000 | 2011-06-08T00:00:00.000000 |
| certa-2011-avi-333 | Vulnérabilités dans Novell iPrint | 2011-06-07T00:00:00.000000 | 2011-06-07T00:00:00.000000 |
| certa-2011-avi-332 | Vulnérabilité dans Adobe Flash Player | 2011-06-06T00:00:00.000000 | 2011-06-06T00:00:00.000000 |
| certa-2011-avi-331 | Vulnérabilité dans Asterisk | 2011-06-06T00:00:00.000000 | 2011-06-06T00:00:00.000000 |
| certa-2011-avi-330 | Multiples vulnérabilités dans les produits VMWare | 2011-06-06T00:00:00.000000 | 2011-06-06T00:00:00.000000 |