Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2025-62224 | 5.5 (v3.1) | Microsoft Edge (Chromium-based) for Android Spoofing V… |
Microsoft |
Microsoft Edge for Android |
2026-01-07T22:54:54.800Z | 2026-04-16T14:18:41.943Z |
| cve-2025-64673 | 7.8 (v3.1) | Windows Storage VSP Driver Elevation of Privilege Vuln… |
Microsoft |
Windows 10 Version 1809 |
2025-12-09T17:55:46.443Z | 2026-04-16T14:18:41.109Z |
| cve-2025-64670 | 6.5 (v3.1) | Windows DirectX Information Disclosure Vulnerability |
Microsoft |
Windows 10 Version 21H2 |
2025-12-09T17:55:45.933Z | 2026-04-16T14:18:40.473Z |
| cve-2025-64666 | 7.5 (v3.1) | Microsoft Exchange Server Elevation of Privilege Vulne… |
Microsoft |
Microsoft Exchange Server 2016 Cumulative Update 23 |
2025-12-09T17:55:45.263Z | 2026-04-16T14:18:39.837Z |
| cve-2025-64667 | 5.3 (v3.1) | Microsoft Exchange Server Spoofing Vulnerability |
Microsoft |
Microsoft Exchange Server 2016 Cumulative Update 23 |
2025-12-09T17:55:44.488Z | 2026-04-16T14:18:39.361Z |
| cve-2025-64658 | 7.5 (v3.1) | Windows File Explorer Elevation of Privilege Vulnerability |
Microsoft |
Windows 10 Version 1809 |
2025-12-09T17:55:43.864Z | 2026-04-16T14:18:38.802Z |
| cve-2025-62573 | 7 (v3.1) | DirectX Graphics Kernel Elevation of Privilege Vulnerability |
Microsoft |
Windows 10 Version 1607 |
2025-12-09T17:55:43.163Z | 2026-04-16T14:18:38.246Z |
| cve-2025-62572 | 7.8 (v3.1) | Application Information Service Elevation of Privilege… |
Microsoft |
Windows 11 Version 24H2 |
2025-12-09T17:55:42.528Z | 2026-04-16T14:18:37.712Z |
| cve-2025-62571 | 7.8 (v3.1) | Windows Installer Elevation of Privilege Vulnerability |
Microsoft |
Windows 10 Version 1607 |
2025-12-09T17:55:41.832Z | 2026-04-16T14:18:37.112Z |
| cve-2025-62564 | 7.8 (v3.1) | Microsoft Excel Remote Code Execution Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2025-12-09T17:55:41.228Z | 2026-04-16T14:18:36.486Z |
| cve-2025-62563 | 7.8 (v3.1) | Microsoft Excel Remote Code Execution Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2025-12-09T17:55:40.704Z | 2026-04-16T14:18:35.957Z |
| cve-2025-62562 | 7.8 (v3.1) | Microsoft Outlook Remote Code Execution Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2025-12-09T17:55:40.028Z | 2026-04-16T14:18:35.343Z |
| cve-2025-62561 | 7.8 (v3.1) | Microsoft Excel Remote Code Execution Vulnerability |
Microsoft |
Microsoft 365 Apps for Enterprise |
2025-12-09T17:55:39.367Z | 2026-04-16T14:18:34.760Z |
| cve-2025-62549 | 8.8 (v3.1) | Windows Routing and Remote Access Service (RRAS) Remot… |
Microsoft |
Windows 10 Version 1607 |
2025-12-09T17:55:38.801Z | 2026-04-16T14:18:34.154Z |
| cve-2025-62473 | 6.5 (v3.1) | Windows Routing and Remote Access Service (RRAS) Infor… |
Microsoft |
Windows 10 Version 1607 |
2025-12-09T17:55:38.210Z | 2026-04-16T14:18:33.591Z |
| cve-2025-62472 | 7.8 (v3.1) | Windows Remote Access Connection Manager Elevation of … |
Microsoft |
Windows 10 Version 1607 |
2025-12-09T17:55:37.606Z | 2026-04-16T14:18:32.768Z |
| cve-2025-62470 | 7.8 (v3.1) | Windows Common Log File System Driver Elevation of Pri… |
Microsoft |
Windows 10 Version 1607 |
2025-12-09T17:55:36.983Z | 2026-04-16T14:18:32.198Z |
| cve-2025-62469 | 7 (v3.1) | Microsoft Brokering File System Elevation of Privilege… |
Microsoft |
Windows 11 Version 24H2 |
2025-12-09T17:55:36.456Z | 2026-04-16T14:18:31.537Z |
| cve-2025-62466 | 7.8 (v3.1) | Windows Client-Side Caching Elevation of Privilege Vul… |
Microsoft |
Windows 10 Version 1607 |
2025-12-09T17:55:35.762Z | 2026-04-16T14:18:30.910Z |
| cve-2025-62458 | 7.8 (v3.1) | Win32k Elevation of Privilege Vulnerability |
Microsoft |
Windows 10 Version 1607 |
2025-12-09T17:55:34.989Z | 2026-04-16T14:18:30.205Z |
| cve-2025-62457 | 7.8 (v3.1) | Windows Cloud Files Mini Filter Driver Elevation of Pr… |
Microsoft |
Windows 10 Version 1809 |
2025-12-09T17:55:34.137Z | 2026-04-16T14:18:20.988Z |
| cve-2025-62456 | 8.8 (v3.1) | Windows Resilient File System (ReFS) Remote Code Execu… |
Microsoft |
Windows 11 version 22H3 |
2025-12-09T17:55:33.275Z | 2026-04-16T14:18:20.423Z |
| cve-2025-62454 | 7.8 (v3.1) | Windows Cloud Files Mini Filter Driver Elevation of Pr… |
Microsoft |
Windows 10 Version 1809 |
2025-12-09T17:55:32.317Z | 2026-04-16T14:18:19.763Z |
| cve-2025-62223 | 4.3 (v3.1) | Microsoft Edge (Chromium-based) for Mac Spoofing Vulne… |
Microsoft |
Microsoft Edge (Chromium-based) |
2025-12-05T00:21:41.975Z | 2026-04-16T14:18:19.263Z |
| cve-2026-40316 | OWASP BLT has RCE in Github Actions via untrusted Djan… |
OWASP-BLT |
BLT |
2026-04-15T22:49:18.636Z | 2026-04-16T14:18:12.374Z | |
| cve-2026-1711 | 4.8 (v4.0) | Pega Platform versions 8.1.0 through 25.1.1 are affect… |
Pegasystems |
Pega Infinity |
2026-04-15T21:32:51.821Z | 2026-04-16T14:17:53.761Z |
| cve-2026-1564 | 5.1 (v4.0) | Pega Platform versions 8.1.0 through 25.1.1 are affect… |
Pegasystems |
Pega Infinity |
2026-04-15T21:31:19.982Z | 2026-04-16T14:16:54.925Z |
| cve-2026-40176 | Composer is vulnerable to Command Injection via Malici… |
composer |
composer |
2026-04-15T20:47:39.839Z | 2026-04-16T14:16:39.968Z | |
| cve-2026-5070 | Vantage <= 1.20.32 - Authenticated (Contributor+) Stor… |
siteorigin |
Vantage |
2026-04-16T03:36:36.878Z | 2026-04-16T14:16:34.761Z | |
| cve-2026-40186 | ApostropheCMS: sanitize-html allowedTags Bypass via En… |
apostrophecms |
apostrophe |
2026-04-15T20:15:12.333Z | 2026-04-16T14:15:41.275Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2016-000153 | LINE for Windows fails to properly verify downloaded files | 2016-08-25T14:26+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000150 | Geeklog IVYWE edition contains a cross-site scripting vulnerability | 2016-08-19T14:13+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000141 | OSSEC Web UI vulnerable to cross-site scripting | 2016-08-18T14:24+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000139 | Installer of PhishWall Client Internet Explorer version may insecurely load Dynamic Link Libraries | 2016-08-17T16:12+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000133 | Coordinate Plus App fails to verify SSL server certificates | 2016-08-04T13:41+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000122 | Sushiro App fails to verify SSL server certificates | 2016-06-29T14:27+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000120 | DMM Movie Player App fails to verify SSL server certificates | 2016-06-27T14:23+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000092 | DMM.com Securities FX Apps for Android fail to verify SSL server certificates | 2016-05-30T14:21+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000056 | kintone mobile for Android fails to verify SSL server certificates | 2016-04-25T15:36+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000050 | Photopt App fails to verify SSL server certificates | 2016-04-19T13:44+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000049 | Tokyo Star bank App fails to verify SSL server certificates | 2016-04-13T14:30+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000004 | Shoplat App for iOS issue in the verification of SSL certificates | 2016-01-18T14:24+09:00 | 2017-05-23T13:57+09:00 |
| jvndb-2016-000047 | a-blog cms vulnerable to session management | 2016-05-16T14:48+09:00 | 2017-05-23T13:44+09:00 |
| jvndb-2016-000046 | a-blog cms vulnerable to cross-site scripting | 2016-05-16T14:48+09:00 | 2017-05-23T13:44+09:00 |
| jvndb-2016-000019 | Akerun - Smart Lock Robot App for iOS fails to verify SSL server certificates | 2016-02-12T15:59+09:00 | 2017-05-23T12:25+09:00 |
| jvndb-2016-000137 | Cybozu Mailwise vulnerable to information disclosure | 2016-08-16T14:14+09:00 | 2017-05-23T12:02+09:00 |
| jvndb-2016-000136 | Cybozu Mailwise vulnerable to information disclosure | 2016-08-16T14:14+09:00 | 2017-05-23T12:02+09:00 |
| jvndb-2016-000149 | Cybozu Garoon fails to restrict access permissions | 2016-08-22T15:16+09:00 | 2017-05-23T12:01+09:00 |
| jvndb-2016-000148 | Cybozu Garoon vulnerable to authentication bypass | 2016-08-22T15:16+09:00 | 2017-05-23T12:01+09:00 |
| jvndb-2016-000147 | Cybozu Garoon vulnerable to SQL injection | 2016-08-22T15:16+09:00 | 2017-05-23T12:01+09:00 |
| jvndb-2016-000146 | "Check available times" function in Cybozu Garoon vulnerable to cross-site scripting | 2016-08-22T15:16+09:00 | 2017-05-23T12:01+09:00 |
| jvndb-2016-000145 | "New appointment" function in Cybozu Garoon vulnerable to cross-site scripting | 2016-08-22T15:16+09:00 | 2017-05-23T12:01+09:00 |
| jvndb-2016-000144 | "User details" function in Cybozu Garoon vulnerable to cross-site scripting | 2016-08-22T15:16+09:00 | 2017-05-23T12:01+09:00 |
| jvndb-2016-000143 | "Response request" function in Cybozu Garoon vulnerable to cross-site scripting | 2016-08-22T15:16+09:00 | 2017-05-23T12:01+09:00 |
| jvndb-2016-000142 | Cybozu Garoon vulnerable to open redirect | 2016-08-22T15:16+09:00 | 2017-05-23T12:01+09:00 |
| jvndb-2016-000138 | Cybozu Mailwise contains issue in preventing clickjacking attacks | 2016-08-16T14:14+09:00 | 2017-05-23T12:01+09:00 |
| jvndb-2014-000069 | RockDisk vulnerable to cross-site scripting | 2014-07-02T14:40+09:00 | 2017-05-17T17:07+09:00 |
| jvndb-2016-000201 | SetucoCMS vulnerable to session management | 2016-10-07T15:04+09:00 | 2017-05-17T14:44+09:00 |
| jvndb-2016-000200 | SetucoCMS vulnerable to code injection | 2016-10-07T15:04+09:00 | 2017-05-17T14:44+09:00 |
| jvndb-2016-000199 | SetucoCMS vulnerable to denial-of-service (DoS) | 2016-10-07T15:04+09:00 | 2017-05-17T14:44+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2024-avi-1003 | Vulnérabilité dans Google Chrome | 2024-11-20T00:00:00.000000 | 2024-11-20T00:00:00.000000 |
| certfr-2024-avi-0969 | Multiples vulnérabilités dans Synacor Zimbra Collaboration | 2024-11-13T00:00:00.000000 | 2024-11-20T00:00:00.000000 |
| certfr-2024-avi-1002 | Vulnérabilité dans les produits Trend Micro | 2024-11-19T00:00:00.000000 | 2024-11-19T00:00:00.000000 |
| certfr-2024-avi-1001 | Vulnérabilité dans les produits Palo Alto Networks | 2024-11-19T00:00:00.000000 | 2024-11-19T00:00:00.000000 |
| certfr-2024-avi-1000 | Multiples vulnérabilités dans Apache Tomcat | 2024-11-18T00:00:00.000000 | 2024-11-18T00:00:00.000000 |
| certfr-2024-avi-0999 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2024-11-18T00:00:00.000000 | 2024-11-18T00:00:00.000000 |
| certfr-2024-avi-0998 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2024-11-18T00:00:00.000000 | 2024-11-18T00:00:00.000000 |
| certfr-2024-avi-0997 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2024-11-18T00:00:00.000000 | 2024-11-18T00:00:00.000000 |
| certfr-2024-avi-0996 | Multiples vulnérabilités dans GLPI | 2024-11-18T00:00:00.000000 | 2024-11-18T00:00:00.000000 |
| certfr-2024-avi-0995 | Multiples vulnérabilités dans les produits Nextcloud | 2024-11-18T00:00:00.000000 | 2024-11-18T00:00:00.000000 |
| certfr-2024-avi-0994 | Vulnérabilité dans Microsoft Azure | 2024-11-18T00:00:00.000000 | 2024-11-18T00:00:00.000000 |
| certfr-2024-avi-0993 | Vulnérabilité dans les caméras Synology | 2024-11-18T00:00:00.000000 | 2024-11-18T00:00:00.000000 |
| certfr-2024-avi-0990 | Vulnérabilité dans les produits Palo Alto Networks | 2024-11-15T00:00:00.000000 | 2024-11-18T00:00:00.000000 |
| certfr-2024-avi-0992 | Multiples vulnérabilités dans les produits IBM | 2024-11-15T00:00:00.000000 | 2024-11-15T00:00:00.000000 |
| certfr-2024-avi-0991 | Vulnérabilité dans Spring | 2024-11-15T00:00:00.000000 | 2024-11-15T00:00:00.000000 |
| certfr-2024-avi-0989 | Vulnérabilité dans MongoDB | 2024-11-15T00:00:00.000000 | 2024-11-15T00:00:00.000000 |
| certfr-2024-avi-0988 | Multiples vulnérabilités dans Microsoft Edge | 2024-11-15T00:00:00.000000 | 2024-11-15T00:00:00.000000 |
| certfr-2024-avi-0987 | Multiples vulnérabilités dans PostgreSQL | 2024-11-15T00:00:00.000000 | 2024-11-15T00:00:00.000000 |
| certfr-2024-avi-0986 | Multiples vulnérabilités dans les produits Palo Alto Networks | 2024-11-14T00:00:00.000000 | 2024-11-14T00:00:00.000000 |
| certfr-2024-avi-0985 | Multiples vulnérabilités dans Stormshield Network Security | 2024-11-14T00:00:00.000000 | 2024-11-14T00:00:00.000000 |
| certfr-2024-avi-0984 | Vulnérabilité dans les produits Symfony | 2024-11-14T00:00:00.000000 | 2024-11-14T00:00:00.000000 |
| certfr-2024-avi-0983 | Vulnérabilité dans les produits Mozilla | 2024-11-14T00:00:00.000000 | 2024-11-14T00:00:00.000000 |
| certfr-2024-avi-0982 | Vulnérabilité dans CPython | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0981 | Multiples vulnérabilités dans GitLab | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0980 | Multiples vulnérabilités dans les produits Intel | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0979 | Multiples vulnérabilités dans les produits Fortinet | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0978 | Multiples vulnérabilités dans les produits Microsoft | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0977 | Multiples vulnérabilités dans Microsoft Azure | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0976 | Multiples vulnérabilités dans Microsoft .Net | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0975 | Multiples vulnérabilités dans Microsoft Windows | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |