Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-57969 | 8.8 (v3.1) | Azure CycleCloud Elevation of Privilege Vulnerability |
Microsoft |
Azure CycleCloud 8.9.1 |
2026-07-14T17:05:17.707Z | 2026-08-31T15:25:18.351Z |
| cve-2026-57107 | 7.8 (v3.1) | Windows Admin Center Elevation of Privilege Vulnerability |
Microsoft |
Windows Admin Center |
2026-07-14T17:05:17.033Z | 2026-08-31T15:25:17.750Z |
| cve-2026-57097 | 6.4 (v3.1) | Microsoft XML Security Feature Bypass Vulnerability |
Microsoft |
Windows 10 Version 1607 |
2026-07-14T17:05:16.417Z | 2026-08-31T15:25:17.098Z |
| cve-2026-56185 | 6.5 (v3.1) | Windows Admin Center Information Disclosure Vulnerability |
Microsoft |
Windows Admin Center |
2026-07-14T17:05:15.865Z | 2026-08-31T15:25:16.605Z |
| cve-2026-56193 | 7.1 (v3.1) | Microsoft Office Information Disclosure Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2026-07-14T17:05:15.283Z | 2026-08-31T15:25:16.072Z |
| cve-2026-54127 | 7.4 (v3.1) | Windows Hyper-V Elevation of Privilege Vulnerability |
Microsoft |
Windows 11 Version 24H2 |
2026-07-14T17:05:14.656Z | 2026-08-31T15:25:15.585Z |
| cve-2026-50694 | 8.1 (v3.1) | Windows Secure Socket Tunneling Protocol (SSTP) Remote… |
Microsoft |
Windows 10 Version 1607 |
2026-07-14T17:05:14.115Z | 2026-08-31T15:25:15.124Z |
| cve-2026-56170 | 7.5 (v3.1) | ASP.NET Core Denial of Service Vulnerability |
Microsoft |
.NET 10.0 |
2026-07-14T17:05:13.486Z | 2026-08-31T15:25:14.654Z |
| cve-2026-56169 | 8.1 (v3.1) | Windows Admin Center Elevation of Privilege Vulnerability |
Microsoft |
Windows Admin Center |
2026-07-14T17:05:12.870Z | 2026-08-31T15:25:14.134Z |
| cve-2026-56164 | 5.3 (v3.1) | Microsoft SharePoint Server Elevation of Privilege Vul… |
Microsoft |
Microsoft SharePoint Enterprise Server 2016 |
2026-07-14T17:05:12.313Z | 2026-08-31T15:25:13.687Z |
| cve-2026-56155 | 7.8 (v3.1) | Active Directory Federation Services Elevation of Priv… |
Microsoft |
Windows 10 Version 1607 |
2026-07-14T17:05:11.702Z | 2026-08-31T15:25:13.158Z |
| cve-2026-55948 | 7.8 (v3.1) | Microsoft Excel Remote Code Execution Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2026-07-14T17:05:11.111Z | 2026-08-31T15:25:12.531Z |
| cve-2026-55945 | 4.2 (v3.1) | Microsoft Edge (Chromium-based) Information Disclosure… |
Microsoft |
Microsoft Edge (Chromium-based) |
2026-07-03T20:35:07.264Z | 2026-08-31T15:25:11.934Z |
| cve-2026-55899 | 7.8 (v3.1) | Microsoft Excel Remote Code Execution Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2026-07-14T17:05:10.091Z | 2026-08-31T15:25:11.378Z |
| cve-2026-54988 | 6.1 (v3.1) | Microsoft Excel Information Disclosure Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2026-07-14T17:05:09.425Z | 2026-08-31T15:25:10.731Z |
| cve-2026-50678 | 6.6 (v3.1) | Microsoft Excel Information Disclosure Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2026-07-14T17:05:08.873Z | 2026-08-31T15:25:10.269Z |
| cve-2026-50675 | 7.8 (v3.1) | Microsoft Excel Remote Code Execution Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2026-07-14T17:05:08.316Z | 2026-08-31T15:25:09.716Z |
| cve-2026-54108 | 6.5 (v3.1) | Microsoft SharePoint Server Spoofing Vulnerability |
Microsoft |
Microsoft SharePoint Enterprise Server 2016 |
2026-07-14T17:05:07.770Z | 2026-08-31T15:25:09.099Z |
| cve-2026-50520 | 8.4 (v3.1) | Visual Studio Code Remote Code Execution Vulnerability |
Microsoft |
Visual Studio Code |
2026-07-14T17:05:07.225Z | 2026-08-31T15:25:08.540Z |
| cve-2026-55144 | 7.1 (v3.1) | Windows Cryptography API: Next Generation (CNG) Tamper… |
Microsoft |
Windows 11 Version 24H2 |
2026-07-14T17:05:06.598Z | 2026-08-31T15:25:07.994Z |
| cve-2026-55002 | 8.8 (v3.1) | Microsoft SQL Server Elevation of Privilege Vulnerability |
Microsoft |
Microsoft SQL Server 2016 Service Pack 3 (GDR) |
2026-07-14T17:05:06.049Z | 2026-08-31T15:25:07.373Z |
| cve-2026-54118 | 9.8 (v3.1) | Microsoft SQL Server Remote Code Execution Vulnerability |
Microsoft |
Microsoft SQL Server 2016 Service Pack 3 (GDR) |
2026-07-14T17:05:05.500Z | 2026-08-31T15:25:06.841Z |
| cve-2026-54117 | 9.8 (v3.1) | Microsoft SQL Server Remote Code Execution Vulnerability |
Microsoft |
Microsoft SQL Server 2025 (CU 6) |
2026-07-14T17:05:04.964Z | 2026-08-31T15:25:06.235Z |
| cve-2026-50524 | 7.5 (v3.1) | .NET Framework Denial of Service Vulnerability |
Microsoft |
.NET 10.0 |
2026-07-14T19:29:53.872Z | 2026-08-31T15:25:05.682Z |
| cve-2026-55012 | 7.8 (v3.1) | Microsoft Defender Remote Code Execution Vulnerability |
Microsoft |
Microsoft Malware Protection Engine |
2026-07-14T17:05:03.730Z | 2026-08-31T15:25:05.126Z |
| cve-2026-55011 | 7.8 (v3.1) | Microsoft Defender Remote Code Execution Vulnerability |
Microsoft |
Microsoft Malware Protection Engine |
2026-07-14T17:05:03.262Z | 2026-08-31T15:25:04.505Z |
| cve-2026-50338 | 8.2 (v3.1) | Azure Spring Apps Elevation of Privilege Vulnerability |
Microsoft |
Azure Spring Apps |
2026-07-14T17:05:02.743Z | 2026-08-31T15:25:04.043Z |
| cve-2026-55009 | 7.8 (v3.1) | Microsoft Exchange Server Elevation of Privilege Vulne… |
Microsoft |
Microsoft Exchange Server 2016 Cumulative Update 23 |
2026-07-14T17:05:02.147Z | 2026-08-31T15:25:03.533Z |
| cve-2026-55008 | 9.6 (v3.1) | Microsoft Exchange Server Spoofing Vulnerability |
Microsoft |
Microsoft Exchange Server 2016 Cumulative Update 23 |
2026-07-14T17:04:58.913Z | 2026-08-31T15:25:02.945Z |
| cve-2026-55006 | 7.8 (v3.1) | Microsoft Exchange Server Elevation of Privilege Vulne… |
Microsoft |
Microsoft Exchange Server 2016 Cumulative Update 23 |
2026-07-14T17:04:58.430Z | 2026-08-31T15:25:02.271Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2017-010043 | Cross-site Scripting Vulnerability in JP1/Operations Analytics | 2017-12-01T14:59+09:00 | 2017-12-20T11:09+09:00 |
| jvndb-2017-010280 | Fluentd vulenrable to escape sequence injection | 2017-12-11T14:13+09:00 | 2017-12-11T14:13+09:00 |
| jvndb-2016-000206 | Installer of Evernote for Windows may insecurely load Dynamic Link Libraries | 2016-10-19T15:32+09:00 | 2017-11-27T18:12+09:00 |
| jvndb-2017-000098 | The installer of Empirical Project Monitor - eXtended may insecurely load Dynamic Link Libraries | 2017-05-19T14:57+09:00 | 2017-11-27T18:01+09:00 |
| jvndb-2017-000097 | Empirical Project Monitor - eXtended vulnerable to cross-site scripting | 2017-05-19T14:55+09:00 | 2017-11-27T18:01+09:00 |
| jvndb-2017-000096 | Empirical Project Monitor - eXtended vulnerable to cross-site scripting | 2017-05-19T14:53+09:00 | 2017-11-27T18:01+09:00 |
| jvndb-2016-000161 | Money Forward Apps for Android vulnerability that allows unintended operations | 2016-09-20T15:19+09:00 | 2017-11-27T18:01+09:00 |
| jvndb-2016-000160 | Money Forward Apps for Android vulnerable in the WebView class | 2016-09-20T15:19+09:00 | 2017-11-27T18:01+09:00 |
| jvndb-2017-000083 | The installer of The Public Certification Service for Individuals "The JPKI user's software" may insecurely load Dynamic Link Libraries | 2017-05-09T13:52+09:00 | 2017-11-27T17:23+09:00 |
| jvndb-2017-000079 | The installer of SOY CMS vulnerable to cross-site scripting | 2017-05-11T13:37+09:00 | 2017-11-27T17:23+09:00 |
| jvndb-2017-000078 | SOY CMS vulnerable to directory traversal | 2017-05-11T13:36+09:00 | 2017-11-27T17:23+09:00 |
| jvndb-2016-000159 | H2O use of externally-controlled format string | 2016-09-15T14:26+09:00 | 2017-11-27T17:23+09:00 |
| jvndb-2017-000114 | Hands-on Vulnerability Learning Tool "AppGoat" vulnerable to remote code execution | 2017-06-06T14:19+09:00 | 2017-11-27T17:22+09:00 |
| jvndb-2017-000113 | Hands-on Vulnerability Learning Tool "AppGoat" vulnerable to remote code execution | 2017-06-06T14:21+09:00 | 2017-11-27T17:22+09:00 |
| jvndb-2017-000112 | Hands-on Vulnerability Learning Tool "AppGoat" vulnerable to information disclosure | 2017-06-06T14:20+09:00 | 2017-11-27T17:22+09:00 |
| jvndb-2017-000111 | Hands-on Vulnerability Learning Tool "AppGoat" vulnerable to remote code execution | 2017-06-06T14:19+09:00 | 2017-11-27T17:22+09:00 |
| jvndb-2016-000244 | Access restriction bypass to delete DBM files in Cybozu Dezie | 2016-12-12T14:49+09:00 | 2017-11-27T17:12+09:00 |
| jvndb-2016-000243 | Access restriction bypass to download DBM files in Cybozu Dezie | 2016-12-12T14:49+09:00 | 2017-11-27T17:12+09:00 |
| jvndb-2016-000241 | WNC01WH vulnerable to directory traversal due to an issue in processing POST request | 2016-12-02T14:46+09:00 | 2017-11-27T17:11+09:00 |
| jvndb-2016-000229 | Cybozu Garoon vulnerable to SQL injection | 2016-12-19T14:19+09:00 | 2017-11-27T17:11+09:00 |
| jvndb-2016-000228 | Cybozu Garoon vulnerable to directory traversal | 2016-12-19T13:44+09:00 | 2017-11-27T17:11+09:00 |
| jvndb-2017-000094 | Multiple BestWebSoft WordPress plugins vulnerable to cross-site scripting | 2017-05-16T14:00+09:00 | 2017-11-27T17:04+09:00 |
| jvndb-2016-000168 | Toshiba FlashAir does not require authentication in "Internet pass-thru Mode" | 2016-10-12T10:03+09:00 | 2017-11-27T17:04+09:00 |
| jvndb-2016-000227 | Cybozu Garoon vulnerable to cross-site request forgery | 2016-12-19T13:36+09:00 | 2017-11-27T16:58+09:00 |
| jvndb-2016-000226 | Cybozu Garoon fails to restrict access permission in To-Dos of Space function | 2016-12-19T14:38+09:00 | 2017-11-27T16:58+09:00 |
| jvndb-2016-000225 | Cybozu Garoon fails to restrict access permission in MultiReport filters | 2016-12-19T14:32+09:00 | 2017-11-27T16:58+09:00 |
| jvndb-2016-000224 | Cybozu Garoon fails to restrict access permission in the RSS settings | 2016-12-19T14:29+09:00 | 2017-11-27T16:58+09:00 |
| jvndb-2016-000223 | Cybozu Garoon vulnerable to information disclosure | 2016-12-19T12:29+09:00 | 2017-11-27T16:58+09:00 |
| jvndb-2016-000222 | Cybozu Garoon vulnerable to cross-site scripting | 2016-12-19T12:22+09:00 | 2017-11-27T16:58+09:00 |
| jvndb-2017-000082 | Nessus vulnerable to cross-site scripting | 2017-05-09T13:52+09:00 | 2017-11-27T16:55+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2025-avi-0568 | Multiples vulnérabilités dans les produits Citrix | 2025-07-09T00:00:00.000000 | 2025-07-09T00:00:00.000000 |
| certfr-2025-avi-0567 | Multiples vulnérabilités dans HPE Aruba Networking Instant On | 2025-07-09T00:00:00.000000 | 2025-07-09T00:00:00.000000 |
| certfr-2025-avi-0566 | Multiples vulnérabilités dans les produits Siemens | 2025-07-08T00:00:00.000000 | 2025-07-08T00:00:00.000000 |
| certfr-2025-avi-0565 | Multiples vulnérabilités dans les produits Schneider Electric | 2025-07-08T00:00:00.000000 | 2025-07-08T00:00:00.000000 |
| certfr-2025-avi-0564 | Multiples vulnérabilités dans les produits SAP | 2025-07-08T00:00:00.000000 | 2025-07-08T00:00:00.000000 |
| certfr-2025-avi-0563 | Multiples vulnérabilités dans les produits Splunk | 2025-07-08T00:00:00.000000 | 2025-07-08T00:00:00.000000 |
| certfr-2025-avi-0562 | Multiples vulnérabilités dans les produits IBM | 2025-07-04T00:00:00.000000 | 2025-07-04T00:00:00.000000 |
| certfr-2025-avi-0561 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2025-07-04T00:00:00.000000 | 2025-07-04T00:00:00.000000 |
| certfr-2025-avi-0560 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2025-07-04T00:00:00.000000 | 2025-07-04T00:00:00.000000 |
| certfr-2025-avi-0559 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2025-07-04T00:00:00.000000 | 2025-07-04T00:00:00.000000 |
| certfr-2025-avi-0558 | Multiples vulnérabilités dans PHP | 2025-07-04T00:00:00.000000 | 2025-07-04T00:00:00.000000 |
| certfr-2025-avi-0557 | Vulnérabilité dans Microsoft Edge | 2025-07-03T00:00:00.000000 | 2025-07-03T00:00:00.000000 |
| certfr-2025-avi-0556 | Vulnérabilité dans Citrix XenServer | 2025-07-03T00:00:00.000000 | 2025-07-03T00:00:00.000000 |
| certfr-2025-avi-0555 | Multiples vulnérabilités dans Mozilla Thunderbird | 2025-07-03T00:00:00.000000 | 2025-07-03T00:00:00.000000 |
| certfr-2025-avi-0554 | Multiples vulnérabilités dans Grafana | 2025-07-03T00:00:00.000000 | 2025-07-03T00:00:00.000000 |
| certfr-2025-avi-0553 | Vulnérabilité dans les produits Cisco | 2025-07-03T00:00:00.000000 | 2025-07-03T00:00:00.000000 |
| certfr-2025-avi-0552 | Multiples vulnérabilités dans Microsoft Edge | 2025-07-02T00:00:00.000000 | 2025-07-02T00:00:00.000000 |
| certfr-2025-avi-0551 | Vulnérabilité dans Xen | 2025-07-02T00:00:00.000000 | 2025-07-02T00:00:00.000000 |
| certfr-2025-avi-0550 | Multiples vulnérabilités dans les produits Tenable | 2025-07-01T00:00:00.000000 | 2025-07-01T00:00:00.000000 |
| certfr-2025-avi-0549 | Vulnérabilité dans Google Chrome | 2025-07-01T00:00:00.000000 | 2025-07-01T00:00:00.000000 |
| certfr-2025-avi-0548 | Multiples vulnérabilités dans MongoDB Server | 2025-06-30T00:00:00.000000 | 2025-06-30T00:00:00.000000 |
| certfr-2025-avi-0547 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2025-06-27T00:00:00.000000 | 2025-06-27T00:00:00.000000 |
| certfr-2025-avi-0546 | Multiples vulnérabilités dans les produits IBM | 2025-06-27T00:00:00.000000 | 2025-06-27T00:00:00.000000 |
| certfr-2025-avi-0545 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2025-06-27T00:00:00.000000 | 2025-06-27T00:00:00.000000 |
| certfr-2025-avi-0544 | Multiples vulnérabilités dans les produits Trend Micro | 2025-06-27T00:00:00.000000 | 2025-06-27T00:00:00.000000 |
| certfr-2025-avi-0543 | Vulnérabilité dans VMware Tanzu | 2025-06-27T00:00:00.000000 | 2025-06-27T00:00:00.000000 |
| certfr-2025-avi-0542 | Multiples vulnérabilités dans Microsoft Edge | 2025-06-27T00:00:00.000000 | 2025-06-27T00:00:00.000000 |
| certfr-2025-avi-0541 | Vulnérabilité dans Centreon Map | 2025-06-26T00:00:00.000000 | 2025-06-26T00:00:00.000000 |
| certfr-2025-avi-0540 | Multiples vulnérabilités dans les produits Citrix | 2025-06-26T00:00:00.000000 | 2025-06-26T00:00:00.000000 |
| certfr-2025-avi-0538 | Multiples vulnérabilités dans VMware Tanzu | 2025-06-26T00:00:00.000000 | 2025-06-26T00:00:00.000000 |