Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-81674 | 9.3 (v4.0) | Multiple Vulnerabilities in TOOOLS' iSquad |
TOOOLS |
iSquad |
2026-08-27T12:06:35.814Z | 2026-08-27T15:41:31.366Z |
| cve-2026-81753 | 5.1 (v4.0) | Flowintel Stored XSS in Case Notes via Malicious Merma… |
flowintel |
flowintel |
2026-08-27T12:06:18.177Z | 2026-08-27T15:54:32.566Z |
| cve-2026-81673 | 9.3 (v4.0) | Multiple Vulnerabilities in TOOOLS' iSquad |
TOOOLS |
iSquad |
2026-08-27T12:05:44.611Z | 2026-08-27T15:42:20.927Z |
| cve-2026-81743 | 7.5 (v4.0) | Flowintel Arbitrary Log File Path Allows Remote Code E… |
flowintel |
flowintel |
2026-08-27T11:59:50.189Z | 2026-08-27T15:52:21.756Z |
| cve-2026-66155 | A vulnerability has been identified in Element ma… |
Siemens |
Element maps-ng V47 |
2026-08-27T11:56:48.418Z | 2026-08-27T14:56:34.021Z | |
| cve-2026-81672 | 9.3 (v4.0) | Multiple Vulnerabilities in TOOOLS' iSquad |
TOOOLS |
iSquad |
2026-08-27T11:53:35.259Z | 2026-08-27T15:04:10.313Z |
| cve-2026-81562 | AlexGladkov claude-in-mobile client.ts execSync os com… |
AlexGladkov |
claude-in-mobile |
2026-08-27T11:30:13.109Z | 2026-08-27T14:48:35.634Z | |
| cve-2026-81668 | 5.4 (v3.1) | Rubygem-katello: cross-tenant content view filter rule… |
Red Hat |
Red Hat Satellite 6 |
2026-08-27T11:15:42.330Z | 2026-08-27T14:30:55.692Z |
| cve-2026-5218 | 4.3 (v3.1) | HTML Injection in Softtr's E-Commerce Pack |
Softtr Informatics Technology Trading Limited Company |
E-Commerce Pack |
2026-08-27T11:12:03.773Z | 2026-08-27T15:04:10.478Z |
| cve-2026-17562 | 6.5 (v3.1) | IDOR in Zirve Security's AdisyonPro |
Summit Security Systems |
AdisyonPro |
2026-08-27T10:47:24.278Z | 2026-08-27T15:04:10.649Z |
| cve-2026-74233 | 9.3 (v4.0) 9.8 (v3.1) | Zbtlink MQWrt infosrvd Command Injection |
Zbtlink |
WE1326 |
2026-08-27T10:40:11.313Z | 2026-08-27T13:41:32.924Z |
| cve-2026-74232 | 9.3 (v4.0) 9.8 (v3.1) | Zbtlink MQWrt yunmgrd Cloud C2 Implant |
Zbtlink |
L3_V2_8 |
2026-08-27T10:39:14.386Z | 2026-08-27T14:49:10.575Z |
| cve-2026-81560 | blackms aistack Static File server.ts path traversal |
blackms |
aistack |
2026-08-27T10:30:11.125Z | 2026-08-29T02:56:31.506Z | |
| cve-2026-81662 | 8.6 (v4.0) | Flowintel Alert Settings Configuration Allows Remote C… |
flowintel |
flowintel |
2026-08-27T10:23:01.833Z | 2026-08-27T15:53:21.261Z |
| cve-2026-81658 | 6.5 (v3.1) | Foreman: cross-tenant disclosure of template revisions… |
Red Hat |
Red Hat Satellite 6 |
2026-08-27T10:22:08.586Z | 2026-08-27T14:47:55.250Z |
| cve-2026-81659 | 7.1 (v4.0) | Flowintel Note PDF Export Allows Arbitrary Local File … |
flowintel |
flowintel |
2026-08-27T10:07:30.269Z | 2026-08-27T15:56:07.807Z |
| cve-2026-74848 | 7 (v4.0) | Apache APISIX: Cross-user response poisoning in server… |
Apache Software Foundation |
Apache APISIX |
2026-08-27T09:16:06.985Z | 2026-08-27T12:05:30.790Z |
| cve-2026-75005 | 8.7 (v4.0) | Apache APISIX: Unauthenticated CPU-exhaustion DoS |
Apache Software Foundation |
Apache APISIX |
2026-08-27T09:15:32.196Z | 2026-08-27T12:06:27.060Z |
| cve-2026-75020 | 7 (v4.0) | Apache APISIX: ldap-auth plugin cross-subtree identity… |
Apache Software Foundation |
Apache APISIX |
2026-08-27T09:14:33.099Z | 2026-08-27T12:09:54.558Z |
| cve-2026-81625 | 8.7 (v4.0) 8.8 (v3.1) | Stack buffer overflow in Greenbone OS and openvas-scanner |
Greenbone |
Greenbone OS |
2026-08-27T09:06:44.122Z | 2026-08-27T12:12:02.884Z |
| cve-2026-81277 | 8.5 (v3.1) | WordPress Suggestion Engine for WooCommerce plugin <= … |
VillaTheme |
Suggestion Engine for WooCommerce |
2026-08-27T09:00:10.584Z | 2026-08-27T14:31:08.991Z |
| cve-2026-81276 | 5.3 (v3.1) | WordPress Kali Forms plugin <= 2.4.23 - Broken Access … |
WP Chill |
Kali Forms |
2026-08-27T09:00:09.884Z | 2026-08-28T18:35:56.466Z |
| cve-2026-81274 | 5.3 (v3.1) | WordPress Ditty plugin <= 3.1.67 - Broken Access Contr… |
metaphorcreations |
Ditty |
2026-08-27T09:00:09.177Z | 2026-08-27T12:31:07.802Z |
| cve-2026-81273 | 8.1 (v3.1) | WordPress FluentBooking Pro plugin <= 2.2.4 - Cross Si… |
WP Manage Ninja |
FluentBooking Pro |
2026-08-27T09:00:08.436Z | 2026-08-27T15:00:53.378Z |
| cve-2026-81272 | 4.9 (v3.1) | WordPress FluentPlayer Pro plugin <= 1.3.2 - Broken Ac… |
WP Manage Ninja |
FluentPlayer Pro |
2026-08-27T09:00:07.759Z | 2026-08-27T12:16:35.326Z |
| cve-2026-81271 | 8.8 (v3.1) | WordPress GeoDirectory plugin <= 2.8.176 - Cross Site … |
Paolo |
GeoDirectory |
2026-08-27T09:00:07.037Z | 2026-08-27T14:31:22.769Z |
| cve-2026-80433 | 7.5 (v3.1) | WordPress SureFeedback Client Site plugin <= 1.2.12 - … |
Brainstorm Force |
SureFeedback Client Site |
2026-08-27T09:00:06.310Z | 2026-08-28T18:35:56.613Z |
| cve-2026-78293 | 7.1 (v3.1) | WordPress WP w3all phpBB plugin <= 3.0.6 - Cross Site … |
axew3 |
WP w3all phpBB |
2026-08-27T09:00:05.589Z | 2026-08-27T12:34:46.504Z |
| cve-2026-78292 | 9.8 (v3.1) | WordPress Hash Form plugin <= 1.4.1 - PHP Object Injec… |
hashthemes |
Hash Form |
2026-08-27T09:00:04.876Z | 2026-08-27T15:01:46.688Z |
| cve-2026-78289 | 7.1 (v3.1) | WordPress CozyStay theme <= 1.10.0 - Cross Site Script… |
LoftOcean |
CozyStay |
2026-08-27T09:00:04.174Z | 2026-08-27T12:17:17.638Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2019-000026 | Electronic reception and examination of application for radio licenses Offline may insecurely load Dynamic Link Libraries | 2019-05-10T14:55+09:00 | 2019-10-01T10:08+09:00 |
| jvndb-2019-000025 | Installer of Electronic reception and examination of application for radio licenses Online may insecurely load Dynamic Link Libraries | 2019-05-10T14:49+09:00 | 2019-10-01T10:11+09:00 |
| jvndb-2019-000024 | CREATE SD official App for Android fails to restrict access permissions | 2019-05-10T13:55+09:00 | 2019-12-27T18:07+09:00 |
| jvndb-2019-000023 | Multiple vulnerabilities in Cybozu Garoon | 2019-04-25T17:13+09:00 | 2023-11-08T16:39+09:00 |
| jvndb-2019-002892 | Multiple Vulnerabilities in Cosminexus | 2019-04-25T15:13+09:00 | 2019-04-25T15:13+09:00 |
| jvndb-2019-000022 | GNU Wget vulnerable to buffer overflow | 2019-04-03T14:58+09:00 | 2019-09-30T18:08+09:00 |
| jvndb-2019-000014 | The installer of Microsoft Teams may insecurely load Dynamic Link Libraries | 2019-04-02T14:18+09:00 | 2020-04-01T16:55+09:00 |
| jvndb-2019-000021 | API server used by JR East Japan train operation information push notification App for Android fails to restrict access permissions | 2019-04-01T15:42+09:00 | 2019-04-01T15:42+09:00 |
| jvndb-2019-000020 | PowerAct Pro Master Agent for Windows fails to restrict acess permissions | 2019-03-27T14:41+09:00 | 2019-09-27T10:38+09:00 |
| jvndb-2019-000018 | "an" App for iOS vulnerable to directory traversal | 2019-03-19T15:51+09:00 | 2019-09-26T17:56+09:00 |
| jvndb-2019-000019 | KinagaCMS vulnerable to cross-site scripting | 2019-03-15T17:03+09:00 | 2019-09-26T17:10+09:00 |
| jvndb-2019-000015 | iChain Insurance Wallet App for iOS vulnerable to directory traversal | 2019-03-12T14:28+09:00 | 2019-09-27T10:04+09:00 |
| jvndb-2019-000017 | Dradis Community Edition and Dradis Professional Edition vulnerable to cross-site scripting | 2019-03-05T14:18+09:00 | 2019-09-27T09:54+09:00 |
| jvndb-2019-000016 | WordPress plugin "Smart Forms" vulnerable to cross-site request forgery | 2019-02-28T15:57+09:00 | 2019-09-27T09:59+09:00 |
| jvndb-2019-000013 | Windows 7 may insecurely load Dynamic Link Libraries | 2019-02-28T15:52+09:00 | 2019-09-27T10:09+09:00 |
| jvndb-2019-000012 | Multiple vulnerabilities in Nablarch | 2019-02-27T17:14+09:00 | 2019-09-27T10:15+09:00 |
| jvndb-2019-000011 | WordPress plugin "FormCraft" vulnerable to cross-site request forgery | 2019-02-26T14:46+09:00 | 2019-09-27T10:12+09:00 |
| jvndb-2019-001285 | DoS Vulnerability in JP1/Base | 2019-02-25T17:13+09:00 | 2019-02-25T17:13+09:00 |
| jvndb-2019-000010 | azure-umqtt-c vulnerable to denial-of-service (DoS) | 2019-02-20T16:59+09:00 | 2019-02-20T16:59+09:00 |
| jvndb-2019-000009 | Installer of Adobe Creative Cloud Desktop Application may insecurely load Dynamic Link Libraries | 2019-02-18T15:16+09:00 | 2019-10-01T10:15+09:00 |
| jvndb-2019-000008 | A vulnerability in V20 PRO L-01J that may cause a crash | 2019-02-12T17:23+09:00 | 2019-02-12T17:23+09:00 |
| jvndb-2019-000007 | OpenAM (Open Source Edition) vulnerable to open redirect | 2019-02-06T15:45+09:00 | 2019-08-28T11:00+09:00 |
| jvndb-2019-000006 | POWER EGG vulnerability where EL expression may be executed | 2019-02-05T14:09+09:00 | 2019-09-26T18:05+09:00 |
| jvndb-2019-000004 | UNLHA32.DLL, UNARJ32.DLL, LHMelting and LMLzh32.DLL may insecurely load Dynamic Link Libraries | 2019-01-31T15:46+09:00 | 2019-09-26T18:08+09:00 |
| jvndb-2019-000005 | The installers of UNLHA32.DLL, UNARJ32.DLL and LHMelting may insecurely load Dynamic Link Libraries | 2019-01-31T15:35+09:00 | 2019-08-28T12:08+09:00 |
| jvndb-2019-000003 | HOUSE GATE App for iOS vulnerable to directory traversal | 2019-01-24T15:37+09:00 | 2019-01-24T15:37+09:00 |
| jvndb-2019-001095 | Cross-site Scripting Vulnerability in Hitachi Device Manager | 2019-01-22T11:47+09:00 | 2019-01-24T18:38+09:00 |
| jvndb-2019-001094 | Information Disclosure Vulnerability in Hitachi Command Suite and Hitachi Infrastructure Analytics Advisor | 2019-01-22T11:47+09:00 | 2019-01-24T18:39+09:00 |
| jvndb-2019-000001 | WordPress plugin "spam-byebye" vulnerable to cross-site scripting | 2019-01-10T15:45+09:00 | 2019-08-28T09:54+09:00 |
| jvndb-2018-000137 | GROWI vulnerable to cross-site scripting | 2018-12-26T16:36+09:00 | 2019-08-27T15:07+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2025-avi-0949 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2025-10-31T00:00:00.000000 | 2025-10-31T00:00:00.000000 |
| certfr-2025-avi-0948 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2025-10-31T00:00:00.000000 | 2025-10-31T00:00:00.000000 |
| certfr-2025-avi-0947 | Multiples vulnérabilités dans les produits IBM | 2025-10-31T00:00:00.000000 | 2025-10-31T00:00:00.000000 |
| certfr-2025-avi-0946 | Vulnérabilité dans Sonicwall Secure Mobile Access | 2025-10-31T00:00:00.000000 | 2025-10-31T00:00:00.000000 |
| certfr-2025-avi-0945 | Vulnérabilité dans Qnap NetBak PC Agent | 2025-10-31T00:00:00.000000 | 2025-10-31T00:00:00.000000 |
| certfr-2025-avi-0944 | Vulnérabilité dans Liferay | 2025-10-31T00:00:00.000000 | 2025-10-31T00:00:00.000000 |
| certfr-2025-avi-0943 | Multiples vulnérabilités dans les produits Centreon | 2025-10-31T00:00:00.000000 | 2025-10-31T00:00:00.000000 |
| certfr-2025-avi-0942 | Vulnérabilité dans Dovecot | 2025-10-31T00:00:00.000000 | 2025-10-31T00:00:00.000000 |
| certfr-2025-avi-0941 | Multiples vulnérabilités dans les produits Microsoft | 2025-10-30T00:00:00.000000 | 2025-10-30T00:00:00.000000 |
| certfr-2025-avi-0940 | Vulnérabilité dans Liferay | 2025-10-30T00:00:00.000000 | 2025-10-30T00:00:00.000000 |
| certfr-2025-avi-0939 | Multiples vulnérabilités dans les produits Splunk | 2025-10-30T00:00:00.000000 | 2025-10-30T00:00:00.000000 |
| certfr-2025-avi-0938 | Multiples vulnérabilités dans les produits VMware | 2025-10-30T00:00:00.000000 | 2025-10-30T00:00:00.000000 |
| certfr-2025-avi-0937 | Multiples vulnérabilités dans Google Chrome | 2025-10-30T00:00:00.000000 | 2025-10-30T00:00:00.000000 |
| certfr-2025-avi-0936 | Multiples vulnérabilités dans Mattermost Server | 2025-10-29T00:00:00.000000 | 2025-12-01T00:00:00.000000 |
| certfr-2025-avi-0935 | Multiples vulnérabilités dans les produits VMware | 2025-10-29T00:00:00.000000 | 2025-10-29T00:00:00.000000 |
| certfr-2025-avi-0934 | Vulnérabilité dans les produits Mozilla | 2025-10-29T00:00:00.000000 | 2025-10-29T00:00:00.000000 |
| certfr-2025-avi-0933 | Multiples vulnérabilités dans Apache Tomcat | 2025-10-28T00:00:00.000000 | 2025-10-28T00:00:00.000000 |
| certfr-2025-avi-0932 | Multiples vulnérabilités dans Liferay | 2025-10-28T00:00:00.000000 | 2025-10-28T00:00:00.000000 |
| certfr-2025-avi-0931 | Vulnérabilité dans StrongSwan | 2025-10-28T00:00:00.000000 | 2025-10-28T00:00:00.000000 |
| certfr-2025-avi-0930 | Vulnérabilité dans Microsoft Windows Server Update Service | 2025-10-27T00:00:00.000000 | 2025-10-27T00:00:00.000000 |
| certfr-2025-avi-0929 | Vulnérabilité dans le client VPN de TheGreenBow | 2025-10-27T00:00:00.000000 | 2025-10-27T00:00:00.000000 |
| certfr-2025-avi-0928 | Vulnérabilité dans Microsoft Configuration Manager | 2025-10-27T00:00:00.000000 | 2025-10-27T00:00:00.000000 |
| certfr-2025-avi-0927 | Vulnérabilité dans Xen | 2025-10-27T00:00:00.000000 | 2025-10-27T00:00:00.000000 |
| certfr-2025-avi-0926 | Vulnérabilité dans le pilote ODBC de MongoDB | 2025-10-27T00:00:00.000000 | 2025-10-27T00:00:00.000000 |
| certfr-2025-avi-0925 | Vulnérabilité dans les produits Belden | 2025-10-27T00:00:00.000000 | 2025-10-27T00:00:00.000000 |
| certfr-2025-avi-0924 | Multiples vulnérabilités dans les produits IBM | 2025-10-24T00:00:00.000000 | 2025-10-24T00:00:00.000000 |
| certfr-2025-avi-0923 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2025-10-24T00:00:00.000000 | 2025-10-24T00:00:00.000000 |
| certfr-2025-avi-0922 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2025-10-24T00:00:00.000000 | 2025-10-24T00:00:00.000000 |
| certfr-2025-avi-0921 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2025-10-24T00:00:00.000000 | 2025-10-24T00:00:00.000000 |
| certfr-2025-avi-0920 | Multiples vulnérabilités dans les produits Microsoft | 2025-10-24T00:00:00.000000 | 2025-10-24T00:00:00.000000 |