Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
cve-2026-77652 7.8 (v3.1) Dia: dia: heap buffer overflow in wpg colormap parser … GNOME
Dia
2026-08-26T19:21:39.936Z 2026-08-27T14:43:23.737Z
cve-2026-74770 8.8 (v3.1) Dell PowerProtect One, versions 20.1.0.0 and belo… Dell
PowerProtect One
2026-08-26T19:17:41.915Z 2026-08-27T14:33:15.683Z
cve-2026-54245 Fleet: SQL injection in Okta conditional access endpoi… fleetdm
fleet
2026-08-26T19:13:22.415Z 2026-08-27T13:49:51.927Z
cve-2026-74771 6.5 (v3.1) Dell PowerProtect One, versions 20.1.0.0 and belo… Dell
PowerProtect One
2026-08-26T19:11:48.631Z 2026-08-27T15:25:00.027Z
cve-2026-46371 Fleet: Observer-level enrollment secret extraction via… fleetdm
fleet
2026-08-26T19:06:12.147Z 2026-08-27T14:33:22.566Z
cve-2026-74774 5.9 (v3.1) Dell PowerProtect One, versions 20.1.0.0 and belo… Dell
PowerProtect One
2026-08-26T19:05:43.845Z 2026-08-27T14:42:11.386Z
cve-2026-67275 5.3 (v3.1) Dell PowerProtect One, versions 20.1.0.0 and belo… Dell
PowerProtect One
2026-08-26T19:01:27.487Z 2026-08-27T14:33:32.218Z
cve-2026-56547 3.5 (v3.1) An input reflection vulnerability affects HCL Traveler HCLSoftware
Traveler
2026-08-26T18:54:50.814Z 2026-08-26T19:45:56.615Z
cve-2026-46370 Fleet has observer-level enrollment secret extraction … fleetdm
fleet
2026-08-26T18:54:31.761Z 2026-08-29T02:47:37.283Z
cve-2026-68861 8.8 (v3.1) Dell PowerProtect One, versions 20.1.0.0 and belo… Dell
PowerProtect One
2026-08-26T18:54:30.310Z 2026-08-27T15:27:18.434Z
cve-2026-68863 7.5 (v3.1) Dell PowerProtect One, versions 20.1.0.0 and belo… Dell
PowerProtect One
2026-08-26T18:50:10.312Z 2026-08-27T14:41:45.811Z
cve-2026-71172 4.3 (v3.1) Dell Cloud Disaster Recovery, versions 20.2 and p… Dell
Cloud Disaster Recovery
2026-08-26T18:44:09.039Z 2026-08-26T19:46:12.189Z
cve-2026-41262 Fleet: Cross-Team Policy Data Exposure via Global Poli… fleetdm
fleet
2026-08-26T18:32:30.669Z 2026-08-26T18:57:43.948Z
cve-2026-71171 7.2 (v3.1) Dell Cloud Disaster Recovery, versions 20.2 and p… Dell
Cloud Disaster Recovery
2026-08-26T18:30:52.487Z 2026-08-26T18:48:27.558Z
cve-2026-48786 Fleet: Observer-class users can view team enroll secre… fleetdm
fleet
2026-08-26T18:25:09.971Z 2026-08-26T18:49:37.564Z
cve-2026-70419 9.1 (v3.1) Dell Cloud Disaster Recovery, versions 20.2 and p… Dell
Cloud Disaster Recovery
2026-08-26T18:24:28.070Z 2026-08-26T18:52:08.264Z
cve-2026-79940 5.9 (v3.1) Dell iDRAC9, 14G versions prior to 7.00.00.182 an… Dell
iDRAC9
2026-08-26T18:16:42.618Z 2026-08-26T19:46:27.415Z
cve-2026-63179 Winter: Local File Inclusion through @import directive… wintercms
winter
2026-08-26T18:06:14.103Z 2026-08-26T18:51:15.095Z
cve-2026-19485 9.3 (v4.0) Bucket Squatting in Vertex AI Search for Commerce Google Cloud
Vertex AI Search for Commerce
2026-08-26T18:06:00.596Z 2026-08-26T19:04:26.776Z
cve-2026-54256 Winter: Authenticated IDOR in backend FileUpload widge… wintercms
winter
2026-08-26T17:53:36.237Z 2026-08-27T14:33:39.110Z
cve-2026-32639 Winter: Broken access control in `Cms\Controllers\Inde… wintercms
winter
2026-08-26T17:50:32.102Z 2026-08-29T02:46:44.275Z
cve-2026-58474 8.6 (v4.0) 8.8 (v3.1) whichllm < 0.5.16 Code Injection via run and snippet c… Andyyyy64
whichllm
2026-08-26T17:49:04.041Z 2026-08-29T11:47:31.365Z
cve-2026-76784 8.7 (v4.0) Insufficient Cryptographic Protections in Local Device… TP-Link Systems Inc.
HS103P3 / HS103P4 v5
2026-08-26T17:47:54.278Z 2026-08-26T18:50:19.860Z
cve-2026-32593 Winter: SQL Injection in Backend Filter Widget numberr… wintercms
winter
2026-08-26T17:27:07.836Z 2026-08-26T18:29:20.480Z
cve-2026-47841 7.4 (v3.1) WebAuthn User Verification Bypass via Session Serialization Spring
Spring Security
2026-08-26T17:08:52.788Z 2026-08-27T03:58:22.127Z
cve-2026-47837 6.8 (v3.1) Spring Cloud Config Server Monitor Endpoint Does Not V… Spring
Spring Cloud Config
2026-08-26T17:08:51.832Z 2026-08-26T18:50:49.428Z
cve-2026-47836 7.2 (v3.1) Spring Cloud Config Server Susceptible To TOCTOU Attac… Spring
Spring Cloud Config
2026-08-26T17:05:21.979Z 2026-08-27T03:58:24.390Z
cve-2026-32258 Winter: Stored XSS through Editor Settings custom styles wintercms
winter
2026-08-26T16:49:06.852Z 2026-08-26T17:35:11.529Z
cve-2026-32257 Winter: Stored XSS through Brand Settings custom styles wintercms
winter
2026-08-26T16:45:12.100Z 2026-08-27T14:33:49.017Z
cve-2026-35445 Winter: Authenticated backend users can bypass Users c… wintercms
winter
2026-08-26T16:40:51.500Z 2026-08-26T19:08:44.974Z
ID CVSS Description Vendor Product Published Updated
ID Description Package Published Updated
ID Description Type
ID Description Updated
ID Description Updated
ID Description Published Updated
jvndb-2017-000059 WN-G300R3 vulnerable to OS command injection 2017-04-10T13:36+09:00 2017-06-01T15:24+09:00
jvndb-2017-000058 Tablacus Explorer vulnerable to script injection 2017-04-07T14:47+09:00 2017-06-01T15:24+09:00
jvndb-2016-006450 Vulnerability in JP1/Cm2/Network Node Manager i 2017-03-30T15:01+09:00 2017-03-30T15:01+09:00
jvndb-2017-000044 CentreCOM AR260S V2 vulnerable to privilege escalation 2017-03-30T14:37+09:00 2017-06-05T10:51+09:00
jvndb-2017-000050 WordPress plugin "YOP Poll" vulnerable to cross-site scripting 2017-03-23T12:23+09:00 2017-06-01T15:08+09:00
jvndb-2017-000049 Installer of PhishWall Client Internet Explorer version may insecurely load Dynamic Link Libraries 2017-03-22T14:43+09:00 2017-06-01T17:16+09:00
jvndb-2017-000047 Security guide for website operators vulnerable to OS command injection 2017-03-16T13:32+09:00 2017-06-01T15:08+09:00
jvndb-2017-000045 Cybozu KUNAI for Android information management vulnerability 2017-03-13T13:42+09:00 2017-06-02T18:04+09:00
jvndb-2017-000043 OneThird CMS vulnerable to cross-site scripting 2017-03-08T09:57+09:00 2017-06-01T15:08+09:00
jvndb-2017-000042 OneThird CMS vulnerable to cross-site scripting 2017-03-08T09:57+09:00 2017-06-01T12:28+09:00
jvndb-2017-000041 Multiple I-O DATA network camera products vulnerable to buffer overflow 2017-03-02T14:36+09:00 2017-06-05T11:10+09:00
jvndb-2017-000040 Multiple I-O DATA network camera products vulnerable to OS command injection 2017-03-02T14:36+09:00 2017-06-06T15:52+09:00
jvndb-2017-000039 Multiple I-O DATA network camera products vulnerable to HTTP header injection 2017-03-02T14:36+09:00 2017-06-06T15:52+09:00
jvndb-2017-000034 Access CX App fails to verify SSL server certificates 2017-03-01T16:31+09:00 2017-06-05T11:26+09:00
jvndb-2017-000033 PrimeDrive Desktop Application Installer may insecurely load Dynamic Link Libraries 2017-03-01T15:53+09:00 2017-05-15T11:27+09:00
jvndb-2017-000037 WBCE CMS vulnerable to SQL injection 2017-02-28T14:22+09:00 2017-06-01T12:28+09:00
jvndb-2017-000036 WBCE CMS vulnerable to directory traversal 2017-02-28T14:21+09:00 2017-06-01T12:28+09:00
jvndb-2017-000035 WBCE CMS vulnerable to cross-site scripting 2017-02-28T14:21+09:00 2017-06-01T12:28+09:00
jvndb-2017-000038 CubeCart vulnerable to directory traversal 2017-02-28T14:13+09:00 2017-06-01T12:18+09:00
jvndb-2017-000032 Cybozu Garoon fails to restrict access permission in the mail function 2017-02-20T15:40+09:00 2017-06-01T15:05+09:00
jvndb-2017-000031 Cybozu Garoon fails to restrict access permission in Workflow and the function "MultiReport" 2017-02-20T15:40+09:00 2017-06-01T15:05+09:00
jvndb-2017-000030 Cybozu Garoon vulnerable to information disclosure 2017-02-20T15:40+09:00 2017-06-01T15:05+09:00
jvndb-2017-000029 Cybozu Garoon vulnerable to cross-site scripting 2017-02-20T15:38+09:00 2017-06-01T15:05+09:00
jvndb-2017-000028 Cybozu Garoon fails to restrict access permission in the Phone Messages function 2017-02-20T15:38+09:00 2017-06-01T15:05+09:00
jvndb-2017-000027 Cybozu Garoon vulnerable to SQL injection 2017-02-20T15:38+09:00 2017-06-01T15:05+09:00
jvndb-2017-000024 Self-Extracting Archives created by 7-ZIP32.DLL may insecurely load Dynamic Link Libraries 2017-02-17T15:13+09:00 2017-06-05T11:55+09:00
jvndb-2017-000026 Apache Brooklyn vulnerable to cross-site request forgery 2017-02-15T16:20+09:00 2018-03-07T14:35+09:00
jvndb-2017-000025 Apache Brooklyn vulnerable to cross-site scripting 2017-02-15T16:20+09:00 2017-02-15T16:20+09:00
jvndb-2017-000023 TVer App for Android fails to verify SSL server certificates 2017-02-10T15:14+09:00 2017-06-06T11:52+09:00
jvndb-2017-000015 Norton Download Manager may insecurely load Dynamic Link Libraries 2017-02-10T14:58+09:00 2017-02-10T14:58+09:00
ID Description Updated
ID Description
ID Description Published Updated
certfr-2025-avi-0559 Multiples vulnérabilités dans le noyau Linux d'Ubuntu 2025-07-04T00:00:00.000000 2025-07-04T00:00:00.000000
certfr-2025-avi-0558 Multiples vulnérabilités dans PHP 2025-07-04T00:00:00.000000 2025-07-04T00:00:00.000000
certfr-2025-avi-0557 Vulnérabilité dans Microsoft Edge 2025-07-03T00:00:00.000000 2025-07-03T00:00:00.000000
certfr-2025-avi-0556 Vulnérabilité dans Citrix XenServer 2025-07-03T00:00:00.000000 2025-07-03T00:00:00.000000
certfr-2025-avi-0555 Multiples vulnérabilités dans Mozilla Thunderbird 2025-07-03T00:00:00.000000 2025-07-03T00:00:00.000000
certfr-2025-avi-0554 Multiples vulnérabilités dans Grafana 2025-07-03T00:00:00.000000 2025-07-03T00:00:00.000000
certfr-2025-avi-0553 Vulnérabilité dans les produits Cisco 2025-07-03T00:00:00.000000 2025-07-03T00:00:00.000000
certfr-2025-avi-0552 Multiples vulnérabilités dans Microsoft Edge 2025-07-02T00:00:00.000000 2025-07-02T00:00:00.000000
certfr-2025-avi-0551 Vulnérabilité dans Xen 2025-07-02T00:00:00.000000 2025-07-02T00:00:00.000000
certfr-2025-avi-0550 Multiples vulnérabilités dans les produits Tenable 2025-07-01T00:00:00.000000 2025-07-01T00:00:00.000000
certfr-2025-avi-0549 Vulnérabilité dans Google Chrome 2025-07-01T00:00:00.000000 2025-07-01T00:00:00.000000
certfr-2025-avi-0548 Multiples vulnérabilités dans MongoDB Server 2025-06-30T00:00:00.000000 2025-06-30T00:00:00.000000
certfr-2025-avi-0547 Multiples vulnérabilités dans le noyau Linux de SUSE 2025-06-27T00:00:00.000000 2025-06-27T00:00:00.000000
certfr-2025-avi-0546 Multiples vulnérabilités dans les produits IBM 2025-06-27T00:00:00.000000 2025-06-27T00:00:00.000000
certfr-2025-avi-0545 Multiples vulnérabilités dans le noyau Linux de Red Hat 2025-06-27T00:00:00.000000 2025-06-27T00:00:00.000000
certfr-2025-avi-0544 Multiples vulnérabilités dans les produits Trend Micro 2025-06-27T00:00:00.000000 2025-06-27T00:00:00.000000
certfr-2025-avi-0543 Vulnérabilité dans VMware Tanzu 2025-06-27T00:00:00.000000 2025-06-27T00:00:00.000000
certfr-2025-avi-0542 Multiples vulnérabilités dans Microsoft Edge 2025-06-27T00:00:00.000000 2025-06-27T00:00:00.000000
certfr-2025-avi-0541 Vulnérabilité dans Centreon Map 2025-06-26T00:00:00.000000 2025-06-26T00:00:00.000000
certfr-2025-avi-0540 Multiples vulnérabilités dans les produits Citrix 2025-06-26T00:00:00.000000 2025-06-26T00:00:00.000000
certfr-2025-avi-0539 Multiples vulnérabilités dans Cisco Identity Services Engine 2025-06-26T00:00:00.000000 2025-08-01T00:00:00.000000
certfr-2025-avi-0538 Multiples vulnérabilités dans VMware Tanzu 2025-06-26T00:00:00.000000 2025-06-26T00:00:00.000000
certfr-2025-avi-0537 Multiples vulnérabilités dans GitLab 2025-06-25T00:00:00.000000 2025-06-25T00:00:00.000000
certfr-2025-avi-0536 Multiples vulnérabilités dans les produits Mozilla 2025-06-25T00:00:00.000000 2025-06-25T00:00:00.000000
certfr-2025-avi-0535 Vulnérabilité dans VMware Tanzu 2025-06-25T00:00:00.000000 2025-06-25T00:00:00.000000
certfr-2025-avi-0534 Multiples vulnérabilités dans Google Chrome 2025-06-25T00:00:00.000000 2025-06-25T00:00:00.000000
certfr-2025-avi-0533 Multiples vulnérabilités dans Elastic Kibana 2025-06-25T00:00:00.000000 2025-06-25T00:00:00.000000
certfr-2025-avi-0532 Multiples vulnérabilités dans les produits Splunk 2025-06-24T00:00:00.000000 2025-06-24T00:00:00.000000
certfr-2025-avi-0531 Vulnérabilité dans Bitdefender SecurePass 2025-06-23T00:00:00.000000 2025-06-23T00:00:00.000000
certfr-2025-avi-0530 Multiples vulnérabilités dans les produits IBM 2025-06-20T00:00:00.000000 2025-06-20T00:00:00.000000