Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-6619 | langgenius dify ImagePreview image-preview.tsx openInN… |
langgenius |
dify |
2026-04-20T08:00:17.267Z | 2026-04-20T13:29:29.634Z | |
| cve-2026-39454 | 7.8 (v3.0) 8.5 (v4.0) | SKYSEA Client View and SKYMEC IT Manager provided… |
Sky Co.,LTD. |
SKYSEA Client View |
2026-04-20T08:04:56.595Z | 2026-04-20T13:28:56.536Z |
| cve-2025-13480 | 5.1 (v4.0) | Incorrect authorization in Fudo Enterprise |
Fudo Security |
Fudo Enterprise |
2026-04-20T09:00:16.259Z | 2026-04-20T13:28:18.280Z |
| cve-2026-6624 | BichitroGan ISP Billing Software Pool List add cross s… |
BichitroGan |
ISP Billing Software |
2026-04-20T09:15:17.533Z | 2026-04-20T13:27:39.595Z | |
| cve-2026-6630 | Tenda F451 httpd GstDhcpSetSer fromGstDhcpSetSer buffe… |
Tenda |
F451 |
2026-04-20T10:30:15.493Z | 2026-04-20T13:27:03.711Z | |
| cve-2026-6635 | rowboatlabs rowboat tools_webhook app.py tool_call imp… |
rowboatlabs |
rowboat |
2026-04-20T11:45:12.769Z | 2026-04-20T13:26:31.802Z | |
| cve-2026-5958 | 2.1 (v4.0) | Race Condition in GNU Sed |
GNU |
Sed |
2026-04-20T11:59:32.214Z | 2026-04-20T13:25:59.530Z |
| cve-2026-32958 | 6.5 (v3.1) 6.9 (v4.0) | SD-330AC and AMC Manager provided by silex techno… |
silex technology, Inc. |
SD-330AC |
2026-04-20T03:19:16.492Z | 2026-04-20T13:19:40.008Z |
| cve-2024-7083 | N/A | Email Encoder < 2.3.4 - Admin+ Stored XSS |
Unknown |
Email Encoder |
2026-04-20T06:00:07.030Z | 2026-04-20T13:16:26.285Z |
| cve-2026-6654 | N/A | Use-After-Free and Double-Free in IntoIter::drop when … |
Mozilla |
thin-vec |
2026-04-20T10:05:52.339Z | 2026-04-20T13:14:37.846Z |
| cve-2026-6633 | Yifang CMS Extended Management L_rbac_admin.php store … |
Yifang |
CMS |
2026-04-20T11:15:11.127Z | 2026-04-20T13:01:44.244Z | |
| cve-2025-13947 | 7.4 (v3.1) | Webkit: webkitgtk: remote user-assisted information di… |
The WebKitGTK Team |
webkitgtk |
2025-12-03T09:45:59.939Z | 2026-04-20T12:58:10.411Z |
| cve-2026-6587 | vibrantlabsai RAGAS Collections util.py _try_process_u… |
vibrantlabsai |
RAGAS |
2026-04-20T00:00:19.515Z | 2026-04-20T12:35:42.222Z | |
| cve-2026-6592 | ComfyUI userdata Endpoint user_manager.py getuserdata … |
n/a |
ComfyUI |
2026-04-20T01:15:14.548Z | 2026-04-20T11:59:44.227Z | |
| cve-2026-6597 | langflow-ai langflow Flow Using API core.py has_api_te… |
langflow-ai |
langflow |
2026-04-20T02:30:14.803Z | 2026-04-20T11:42:32.582Z | |
| cve-2026-6602 | rickxy Hospital Management System his_admin_account.ph… |
rickxy |
Hospital Management System |
2026-04-20T03:45:12.100Z | 2026-04-20T11:38:41.514Z | |
| cve-2026-6607 | lm-sys fastchat Worker API Endpoint api_generate resou… |
lm-sys |
fastchat |
2026-04-20T05:00:23.135Z | 2026-04-20T11:37:05.103Z | |
| cve-2026-6612 | TransformerOptimus SuperAGI Agent Execution Endpoint a… |
TransformerOptimus |
SuperAGI |
2026-04-20T06:15:10.393Z | 2026-04-20T11:24:09.255Z | |
| cve-2026-6617 | langgenius dify ApiToolManageService api_tools_manage_… |
langgenius |
dify |
2026-04-20T07:30:12.357Z | 2026-04-20T11:12:15.089Z | |
| cve-2026-6622 | BichitroGan ISP Billing Software Customer edit cross s… |
BichitroGan |
ISP Billing Software |
2026-04-20T08:45:20.512Z | 2026-04-20T11:10:22.776Z | |
| cve-2026-6628 | phili67 Ecclesia CRM Query Viewer view ValidateInput s… |
phili67 |
Ecclesia CRM |
2026-04-20T10:00:16.739Z | 2026-04-20T10:54:35.730Z | |
| cve-2026-31430 | N/A | X.509: Fix out-of-bounds access when parsing extensions |
Linux |
Linux |
2026-04-20T09:43:03.919Z | 2026-04-20T09:43:03.919Z |
| cve-2026-31429 | N/A | net: skb: fix cross-cache free of KFENCE-allocated skb head |
Linux |
Linux |
2026-04-20T09:43:03.194Z | 2026-04-20T09:43:03.194Z |
| cve-2025-59089 | 5.9 (v3.1) | Python-kdcproxy: remote dos via unbounded tcp upstream… |
latchset |
kdcproxy |
2025-11-12T16:40:50.725Z | 2026-04-20T08:28:22.249Z |
| cve-2023-5965 | 4.7 (v3.1) | Unrestricted Upload of File with Dangerous Type in EspoCRM |
EspoCRM |
EspoCRM |
2023-11-30T13:26:15.451Z | 2026-04-20T08:00:54.382Z |
| cve-2023-5966 | 4.7 (v3.1) | Unrestricted Upload of File with Dangerous Type in EspoCRM |
EspoCRM |
EspoCRM |
2023-11-30T13:26:48.245Z | 2026-04-20T07:57:21.961Z |
| cve-2024-26009 | 7.9 (v3.1) | An authentication bypass using an alternate path … |
Fortinet |
FortiProxy |
2025-08-12T18:59:47.462Z | 2026-04-20T07:54:41.800Z |
| cve-2024-1525 | 5.3 (v3.1) | Authentication Bypass Using an Alternate Path or Chann… |
GitLab |
GitLab |
2024-02-21T23:30:44.816Z | 2026-04-20T04:08:56.852Z |
| cve-2024-1250 | 6.5 (v3.1) | Privilege Chaining in GitLab |
GitLab |
GitLab |
2024-02-12T20:47:44.401Z | 2026-04-20T04:08:51.837Z |
| cve-2024-1066 | 6.5 (v3.1) | Allocation of Resources Without Limits or Throttling i… |
GitLab |
GitLab |
2024-02-07T22:02:11.043Z | 2026-04-20T04:08:46.840Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2018-000068 | Multiple vulnerabilities in Calsos CSDX and CSDJ series products | 2018-07-02T15:22+09:00 | 2019-07-24T14:31+09:00 |
| jvndb-2018-000106 | User-friendly SVN vulnerable to cross-site scripting | 2018-10-09T16:27+09:00 | 2019-07-11T18:00+09:00 |
| jvndb-2018-000102 | Multiple vulnerabilities in Denbun | 2018-10-04T16:11+09:00 | 2019-07-11T16:02+09:00 |
| jvndb-2019-000046 | Intel Dual Band Wireless-AC 8260 vulnerable to denial-of-service (DoS) | 2019-07-10T14:07+09:00 | 2019-07-10T14:07+09:00 |
| jvndb-2018-000066 | MemoCGI vulnerable to directory traversal | 2018-06-27T14:44+09:00 | 2019-07-05T17:58+09:00 |
| jvndb-2018-000069 | Cybozu Garoon vulnerable to SQL injection | 2018-07-02T15:22+09:00 | 2019-07-05T17:55+09:00 |
| jvndb-2018-000070 | Installer of Glary Utilities may insecurely load Dynamic Link Libraries | 2018-07-03T13:42+09:00 | 2019-07-05T17:52+09:00 |
| jvndb-2018-000072 | The installers of multiple Logicool software programs may insecurely load Dynamic Link Libraries | 2018-07-06T14:36+09:00 | 2019-07-05T17:38+09:00 |
| jvndb-2018-000071 | DHC Online Shop App for Android fails to verify SSL server certificates | 2018-07-06T14:36+09:00 | 2019-07-05T17:35+09:00 |
| jvndb-2018-000085 | Multiple cross-site scripting vulnerabilities in GROWI | 2018-08-03T15:04+09:00 | 2019-07-05T17:13+09:00 |
| jvndb-2018-000051 | The installer of Visual C++ Redistributable may insecurely load Dynamic Link Libraries | 2018-05-17T14:57+09:00 | 2019-07-05T16:41+09:00 |
| jvndb-2018-000049 | Multiple Microsoft Windows applications and installers may insecurely load Dynamic Link Libraries | 2018-05-17T15:18+09:00 | 2019-07-05T16:40+09:00 |
| jvndb-2019-000045 | Multiple vulnerabilities in Access analysis CGI An-Analyzer | 2019-07-05T15:28+09:00 | 2019-07-05T15:28+09:00 |
| jvndb-2018-000056 | Susie plug-in "axpdfium" may insecurely load Dynamic Link Libraries | 2018-05-24T15:15+09:00 | 2019-07-02T14:53+09:00 |
| jvndb-2018-000058 | WordPress plugin "Email Subscribers & Newsletters" vulnerable to cross-site scripting | 2018-05-28T14:11+09:00 | 2019-07-02T14:50+09:00 |
| jvndb-2018-000046 | The installer of PlayMemories Home for Windows may insecurely load Dynamic Link Libraries | 2018-05-24T15:25+09:00 | 2019-07-02T14:31+09:00 |
| jvndb-2018-000059 | WordPress plugin "Site Reviews" vulnerable to cross-site scripting | 2018-05-28T14:11+09:00 | 2019-07-02T14:25+09:00 |
| jvndb-2019-004441 | Vulnerability in Cosminexus HTTP Server and Hitachi Web Server | 2019-06-03T13:55+09:00 | 2019-06-03T13:55+09:00 |
| jvndb-2019-003539 | DoS Vulnerability in Hitachi IT Operations Director, JP1/IT Desktop Management - Manager and JP1/IT Desktop Management 2 - Manager | 2019-05-20T15:38+09:00 | 2019-05-20T15:38+09:00 |
| jvndb-2019-003194 | Multiple Vulnerabilities in Hitachi Command Suite and Hitachi Infrastructure Analytics Advisor | 2019-05-13T15:25+09:00 | 2019-05-13T15:25+09:00 |
| jvndb-2019-002892 | Multiple Vulnerabilities in Cosminexus | 2019-04-25T15:13+09:00 | 2019-04-25T15:13+09:00 |
| jvndb-2019-000021 | API server used by JR East Japan train operation information push notification App for Android fails to restrict access permissions | 2019-04-01T15:42+09:00 | 2019-04-01T15:42+09:00 |
| jvndb-2019-001285 | DoS Vulnerability in JP1/Base | 2019-02-25T17:13+09:00 | 2019-02-25T17:13+09:00 |
| jvndb-2019-000010 | azure-umqtt-c vulnerable to denial-of-service (DoS) | 2019-02-20T16:59+09:00 | 2019-02-20T16:59+09:00 |
| jvndb-2019-000008 | A vulnerability in V20 PRO L-01J that may cause a crash | 2019-02-12T17:23+09:00 | 2019-02-12T17:23+09:00 |
| jvndb-2019-001094 | Information Disclosure Vulnerability in Hitachi Command Suite and Hitachi Infrastructure Analytics Advisor | 2019-01-22T11:47+09:00 | 2019-01-24T18:39+09:00 |
| jvndb-2019-001095 | Cross-site Scripting Vulnerability in Hitachi Device Manager | 2019-01-22T11:47+09:00 | 2019-01-24T18:38+09:00 |
| jvndb-2018-010851 | Clickjacking Vulnerability in Hitachi Automation Director | 2018-12-26T12:09+09:00 | 2019-01-24T18:37+09:00 |
| jvndb-2018-010027 | Problem with directory permissions in JP1/Operations Analytics | 2018-12-04T16:53+09:00 | 2019-01-24T18:36+09:00 |
| jvndb-2018-010028 | Multiple Vulnerabilities in Hitachi Infrastructure Analytics Advisor | 2018-12-04T16:53+09:00 | 2019-01-24T18:35+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2025-avi-0346 | Multiples vulnérabilités dans GitLab | 2025-04-24T00:00:00.000000 | 2025-04-24T00:00:00.000000 |
| certfr-2025-avi-0345 | Vulnérabilité dans Sonicwall SonicOS | 2025-04-24T00:00:00.000000 | 2025-04-24T00:00:00.000000 |
| certfr-2025-avi-0344 | Multiples vulnérabilités dans Grafana | 2025-04-23T00:00:00.000000 | 2025-04-23T00:00:00.000000 |
| certfr-2025-avi-0343 | Vulnérabilité dans Spring Security | 2025-04-23T00:00:00.000000 | 2025-04-23T00:00:00.000000 |
| certfr-2025-avi-0342 | Multiples vulnérabilités dans Google Chrome | 2025-04-23T00:00:00.000000 | 2025-04-23T00:00:00.000000 |
| certfr-2025-avi-0341 | Multiples vulnérabilités dans Traefik | 2025-04-22T00:00:00.000000 | 2025-04-22T00:00:00.000000 |
| certfr-2025-avi-0340 | Multiples vulnérabilités dans Moodle | 2025-04-22T00:00:00.000000 | 2025-04-22T00:00:00.000000 |
| certfr-2025-avi-0339 | Vulnérabilité dans PostgreSQL PgBouncer | 2025-04-22T00:00:00.000000 | 2025-04-22T00:00:00.000000 |
| certfr-2025-avi-0338 | Vulnérabilité dans Tenable Security Center | 2025-04-22T00:00:00.000000 | 2025-04-22T00:00:00.000000 |
| certfr-2025-avi-0337 | Multiples vulnérabilités dans les produits IBM | 2025-04-18T00:00:00.000000 | 2025-04-18T00:00:00.000000 |
| certfr-2025-avi-0336 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2025-04-18T00:00:00.000000 | 2025-04-18T00:00:00.000000 |
| certfr-2025-avi-0335 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2025-04-18T00:00:00.000000 | 2025-04-18T00:00:00.000000 |
| certfr-2025-avi-0334 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2025-04-18T00:00:00.000000 | 2025-04-18T00:00:00.000000 |
| certfr-2025-avi-0333 | Multiples vulnérabilités dans le noyau Linux de Debian | 2025-04-18T00:00:00.000000 | 2025-04-18T00:00:00.000000 |
| certfr-2025-avi-0332 | Vulnérabilité dans Liferay | 2025-04-18T00:00:00.000000 | 2025-04-18T00:00:00.000000 |
| certfr-2025-avi-0331 | Multiples vulnérabilités dans Microsoft Edge | 2025-04-18T00:00:00.000000 | 2025-04-18T00:00:00.000000 |
| certfr-2025-avi-0330 | Vulnérabilité dans les produits Moxa | 2025-04-18T00:00:00.000000 | 2025-04-18T00:00:00.000000 |
| certfr-2025-avi-0329 | Multiples vulnérabilités dans Tenable Nessus | 2025-04-18T00:00:00.000000 | 2025-04-18T00:00:00.000000 |
| certfr-2025-avi-0328 | Multiples vulnérabilités dans Tenable Security Center | 2025-04-17T00:00:00.000000 | 2025-04-17T00:00:00.000000 |
| certfr-2025-avi-0327 | Vulnérabilité dans SonicWall Connect Tunnel | 2025-04-17T00:00:00.000000 | 2025-04-17T00:00:00.000000 |
| certfr-2025-avi-0326 | Vulnérabilité dans Cisco Webex App | 2025-04-17T00:00:00.000000 | 2025-04-17T00:00:00.000000 |
| certfr-2025-avi-0325 | Multiples vulnérabilités dans les produits Apple | 2025-04-17T00:00:00.000000 | 2025-04-17T00:00:00.000000 |
| certfr-2025-avi-0220 | Vulnérabilité dans Mattermost Server | 2025-03-19T00:00:00.000000 | 2025-04-17T00:00:00.000000 |
| certfr-2025-avi-0217 | Multiples vulnérabilités dans Mattermost Server | 2025-03-18T00:00:00.000000 | 2025-04-17T00:00:00.000000 |
| certfr-2025-avi-0324 | Vulnérabilité dans Oracle Weblogic | 2025-04-16T00:00:00.000000 | 2025-04-16T00:00:00.000000 |
| certfr-2025-avi-0323 | Multiples vulnérabilités dans Oracle Virtualization | 2025-04-16T00:00:00.000000 | 2025-04-16T00:00:00.000000 |
| certfr-2025-avi-0322 | Multiples vulnérabilités dans Oracle Systems | 2025-04-16T00:00:00.000000 | 2025-04-16T00:00:00.000000 |
| certfr-2025-avi-0321 | Multiples vulnérabilités dans Oracle PeopleSoft | 2025-04-16T00:00:00.000000 | 2025-04-16T00:00:00.000000 |
| certfr-2025-avi-0320 | Multiples vulnérabilités dans Oracle MySQL | 2025-04-16T00:00:00.000000 | 2025-04-16T00:00:00.000000 |
| certfr-2025-avi-0319 | Multiples vulnérabilités dans Oracle Java SE | 2025-04-16T00:00:00.000000 | 2025-04-16T00:00:00.000000 |