Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2025-65135 | In manikandan580 School-management-system 1.0, a … |
n/a |
n/a |
2026-04-14T00:00:00.000Z | 2026-04-14T17:49:30.241Z | |
| cve-2025-65134 | N/A | In manikandan580 School-management-system 1.0, a … |
n/a |
n/a |
2026-04-14T00:00:00.000Z | 2026-04-14T18:03:39.903Z |
| cve-2025-65133 | N/A | A SQL injection vulnerability exists in the Schoo… |
n/a |
n/a |
2026-04-14T00:00:00.000Z | 2026-04-16T12:06:24.330Z |
| cve-2025-65132 | N/A | alandsilva26 hotel-management-php 1.0 is vulnerab… |
n/a |
n/a |
2026-04-14T00:00:00.000Z | 2026-04-14T18:02:48.116Z |
| cve-2025-63939 | Improper input handling in /Grocery/search_produc… |
n/a |
n/a |
2026-04-14T00:00:00.000Z | 2026-04-14T17:53:49.359Z | |
| cve-2025-61260 | N/A | A vulnerability was identified in OpenAI Codex CL… |
n/a |
n/a |
2026-04-14T00:00:00.000Z | 2026-04-16T12:06:45.207Z |
| cve-2026-34069 | nimiq-consensus panics via RequestMacroChain micro-blo… |
nimiq |
core-rs-albatross |
2026-04-13T23:55:52.994Z | 2026-04-14T16:28:14.091Z | |
| cve-2026-33948 | jq: Embedded-NUL Truncation in CLI JSON Input Path Cau… |
jqlang |
jq |
2026-04-13T23:51:04.144Z | 2026-04-14T15:53:38.340Z | |
| cve-2026-40164 | jq: Algorithmic complexity DoS via hardcoded MurmurHas… |
jqlang |
jq |
2026-04-13T23:40:12.693Z | 2026-04-14T19:27:38.916Z | |
| cve-2026-5086 | N/A | Crypt::SecretBuffer versions before 0.019 for Perl is … |
NERDVANA |
Crypt::SecretBuffer |
2026-04-13T22:54:53.724Z | 2026-04-15T20:03:28.442Z |
| cve-2026-6203 | User Registration & Membership <= 5.1.4 - Unauthentica… |
wpeverest |
User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder |
2026-04-13T22:25:54.316Z | 2026-04-14T14:04:53.123Z | |
| cve-2026-39979 | jq: Out-of-Bounds Read in jv_parse_sized() Error Forma… |
jqlang |
jq |
2026-04-13T22:18:56.252Z | 2026-04-14T13:43:15.227Z | |
| cve-2026-39956 | jq: Missing runtime type checks for _strindices lead t… |
jqlang |
jq |
2026-04-13T22:10:18.817Z | 2026-04-14T16:28:19.908Z | |
| cve-2026-4786 | 7 (v4.0) | Incomplete mitigation of CVE-2026-4519, %action expans… |
Python Software Foundation |
CPython |
2026-04-13T21:52:19.036Z | 2026-04-14T14:30:19.762Z |
| cve-2026-33947 | jq: Unbounded Recursion in jv_setpath(), jv_getpath() … |
jqlang |
jq |
2026-04-13T21:50:18.814Z | 2026-04-16T03:03:39.478Z | |
| cve-2026-40312 | ImageMagick: Off-by-One in MSL decoder could result in crash |
ImageMagick |
ImageMagick |
2026-04-13T21:43:28.416Z | 2026-04-14T19:27:39.053Z | |
| cve-2026-40311 | ImageMagick: Heap-use-after-free via XMP profile could… |
ImageMagick |
ImageMagick |
2026-04-13T21:36:44.262Z | 2026-04-14T15:48:36.521Z | |
| cve-2026-40310 | ImageMagick: Heap out-of-bounds write in JP2 encoder |
ImageMagick |
ImageMagick |
2026-04-13T21:32:53.361Z | 2026-04-14T16:28:25.315Z | |
| cve-2026-40183 | ImageMagick: Heap buffer overflow when encoding JXL im… |
ImageMagick |
ImageMagick |
2026-04-13T21:28:20.797Z | 2026-04-14T19:27:39.187Z | |
| cve-2026-22563 | A series of Improper Input Validation vulnerabili… |
Ubiquiti Inc |
UniFi Play PowerAmp |
2026-04-13T21:28:11.100Z | 2026-04-14T13:14:19.586Z | |
| cve-2026-22562 | A malicious actor with access to the UniFi Play n… |
Ubiquiti Inc |
UniFi Play PowerAmp |
2026-04-13T21:28:11.025Z | 2026-04-14T13:14:19.709Z | |
| cve-2026-22566 | An Improper Access Control vulnerability could al… |
Ubiquiti Inc |
UniFi Play PowerAmp |
2026-04-13T21:28:10.973Z | 2026-04-14T13:14:19.836Z | |
| cve-2026-22565 | N/A | An Improper Input Validation vulnerability could … |
Ubiquiti Inc |
UniFi Play PowerAmp |
2026-04-13T21:28:10.916Z | 2026-04-14T20:18:31.138Z |
| cve-2026-22564 | An Improper Access Control vulnerability could al… |
Ubiquiti Inc |
UniFi Play PowerAmp |
2026-04-13T21:28:10.865Z | 2026-04-14T13:14:19.961Z | |
| cve-2026-40169 | ImageMagick: Heap buffer overflow (WRITE) in the YAML … |
ImageMagick |
ImageMagick |
2026-04-13T21:25:56.317Z | 2026-04-14T15:52:31.799Z | |
| cve-2026-6224 | nocobase plugin-workflow-javascript Vm.js createSafeCo… |
nocobase |
plugin-workflow-javascript |
2026-04-13T21:15:11.914Z | 2026-04-14T16:28:30.809Z | |
| cve-2026-34238 | ImageMagick: Integer overflow in despeckle operation c… |
ImageMagick |
ImageMagick |
2026-04-13T21:14:07.180Z | 2026-04-14T13:46:39.542Z | |
| cve-2026-33908 | ImageMagick is vulnerable to Stack Overflow in Destroy… |
ImageMagick |
ImageMagick |
2026-04-13T21:06:42.682Z | 2026-04-14T16:28:36.167Z | |
| cve-2026-33905 | ImageMagick has an Out-of-Bounds read via -sample operation |
ImageMagick |
ImageMagick |
2026-04-13T21:02:58.121Z | 2026-04-16T13:26:40.363Z | |
| cve-2026-6220 | HummerRisk Video File Download URL ServerService.java … |
n/a |
HummerRisk |
2026-04-13T21:00:14.084Z | 2026-04-14T13:45:56.944Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2016-000120 | DMM Movie Player App fails to verify SSL server certificates | 2016-06-27T14:23+09:00 | 2017-05-23T14:28+09:00 |
| jvndb-2016-000106 | Multiple Hikari Denwa routers vulnerable to cross-site request forgery | 2016-06-27T14:19+09:00 | 2016-08-03T16:07+09:00 |
| jvndb-2016-000105 | Multiple Hikari Denwa routers vulnerable to OS command injection | 2016-06-27T14:10+09:00 | 2016-08-03T16:07+09:00 |
| jvndb-2016-000119 | QNAP QTS vulnerable to cross-site scripting | 2016-06-27T13:48+09:00 | 2016-08-03T14:55+09:00 |
| jvndb-2016-000118 | WordPress plugin "Welcart e-Commerce" vulnerable to session management | 2016-06-24T14:12+09:00 | 2016-06-28T17:01+09:00 |
| jvndb-2016-000117 | WordPress plugin "Welcart e-Commerce" vulnerable to cross-site scripting | 2016-06-24T14:12+09:00 | 2016-06-28T17:01+09:00 |
| jvndb-2016-000116 | WordPress plugin "Welcart e-Commerce" vulnerable to cross-site scripting | 2016-06-24T13:43+09:00 | 2016-06-29T16:05+09:00 |
| jvndb-2016-000115 | WordPress plugin "Welcart e-Commerce" vulnerable to PHP object injection | 2016-06-24T13:43+09:00 | 2016-06-29T16:04+09:00 |
| jvndb-2016-000109 | CG-WLR300GNV Series does not limit authentication attempts | 2016-06-22T14:57+09:00 | 2016-06-29T16:04+09:00 |
| jvndb-2016-000108 | CG-WLBARAGM vulnerable to denial-of-service (DoS) | 2016-06-22T14:57+09:00 | 2016-06-29T16:04+09:00 |
| jvndb-2016-000107 | CG-WLBARGL vulnerable to command injection | 2016-06-22T14:56+09:00 | 2016-06-29T16:03+09:00 |
| jvndb-2016-000113 | Apache Struts vulnerable to input validation bypass | 2016-06-20T17:20+09:00 | 2022-08-09T14:10+09:00 |
| jvndb-2016-000112 | Apache Struts vulnerable to validation bypass in Getter method | 2016-06-20T17:19+09:00 | 2022-08-09T14:08+09:00 |
| jvndb-2016-000111 | Apache Struts vulnerable to cross-site request forgery | 2016-06-20T17:18+09:00 | 2022-08-09T14:05+09:00 |
| jvndb-2016-000114 | Apache Struts vulnerable to denial-of-service (DoS) | 2016-06-20T16:36+09:00 | 2016-08-03T16:20+09:00 |
| jvndb-2016-000110 | Apache Struts vulnerable to remote code execution | 2016-06-20T16:36+09:00 | 2016-08-03T16:19+09:00 |
| jvndb-2016-000103 | Deep Discovery Inspector vulnerable to remote code execution | 2016-06-16T14:03+09:00 | 2016-07-12T15:03+09:00 |
| jvndb-2016-000101 | ETX-R vulnerable to denial-of-service (DoS) | 2016-06-14T14:00+09:00 | 2016-06-23T12:20+09:00 |
| jvndb-2016-000100 | ETX-R vulnerable to cross-site request forgery | 2016-06-14T13:55+09:00 | 2016-06-23T17:12+09:00 |
| jvndb-2016-000099 | DX Library vulnerable to remote code execution | 2016-06-08T14:30+09:00 | 2016-06-27T11:32+09:00 |
| jvndb-2016-000098 | TERASOLUNA Server Framework for Java(WEB) access restriction bypass vulnerability in the file extention filter | 2016-06-07T16:26+09:00 | 2016-06-27T11:32+09:00 |
| jvndb-2016-000097 | Apache Struts 1 vulnerable to input validation bypass | 2016-06-07T16:26+09:00 | 2016-12-05T16:59+09:00 |
| jvndb-2016-000096 | Apache Struts 1 vulnerability that allows unintended remote operations against components on memory | 2016-06-07T16:26+09:00 | 2017-02-20T15:42+09:00 |
| jvndb-2016-000089 | Trend Micro enterprise products HTTP header injection vulnerability | 2016-06-02T16:18+09:00 | 2016-06-22T17:58+09:00 |
| jvndb-2016-000088 | Trend Micro Internet Security vulnerable to arbitrary script execution | 2016-06-02T16:18+09:00 | 2016-06-22T18:08+09:00 |
| jvndb-2016-000074 | Trend Micro enterprise products directory traversal vulnerability | 2016-06-02T16:18+09:00 | 2016-06-22T17:56+09:00 |
| jvndb-2016-000073 | Trend Micro Internet Security access restriction flaw | 2016-06-02T16:18+09:00 | 2016-06-22T18:12+09:00 |
| jvndb-2016-000095 | Cybozu Garoon logging function vulnerable to directory traversal | 2016-05-30T16:18+09:00 | 2016-06-23T17:49+09:00 |
| jvndb-2016-000094 | Cybozu Garoon function "MultiReport" vulnerable to access restriction bypass | 2016-05-30T16:18+09:00 | 2016-06-28T17:01+09:00 |
| jvndb-2016-000093 | Cybozu Garoon function "Portlets" vulnerable to access restriction bypass | 2016-05-30T16:18+09:00 | 2016-06-28T17:01+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2024-avi-0969 | Multiples vulnérabilités dans Synacor Zimbra Collaboration | 2024-11-13T00:00:00.000000 | 2024-11-20T00:00:00.000000 |
| certfr-2024-avi-0968 | Multiples vulnérabilités dans les produits Siemens | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0967 | Multiples vulnérabilités dans les produits Ivanti | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0966 | Multiples vulnérabilités dans Nagios XI | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0965 | Multiples vulnérabilités dans les produits PrimX | 2024-11-13T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0964 | Multiples vulnérabilités dans les produits Citrix | 2024-11-12T00:00:00.000000 | 2024-11-13T00:00:00.000000 |
| certfr-2024-avi-0963 | Multiples vulnérabilités dans Xen | 2024-11-12T00:00:00.000000 | 2024-11-12T00:00:00.000000 |
| certfr-2024-avi-0962 | Multiples vulnérabilités dans les produits SAP | 2024-11-12T00:00:00.000000 | 2024-11-12T00:00:00.000000 |
| certfr-2024-avi-0961 | Multiples vulnérabilités dans les produits Schneider Electric | 2024-11-12T00:00:00.000000 | 2024-11-12T00:00:00.000000 |
| certfr-2024-avi-0960 | Multiples vulnérabilités dans les produits Synology | 2024-11-12T00:00:00.000000 | 2024-11-12T00:00:00.000000 |
| certfr-2024-avi-0959 | Multiples vulnérabilités dans les produits NetApp | 2024-11-12T00:00:00.000000 | 2024-11-12T00:00:00.000000 |
| certfr-2024-avi-0958 | Multiples vulnérabilités dans les produits IBM | 2024-11-08T00:00:00.000000 | 2024-11-08T00:00:00.000000 |
| certfr-2024-avi-0957 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2024-11-08T00:00:00.000000 | 2024-11-08T00:00:00.000000 |
| certfr-2024-avi-0956 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2024-11-08T00:00:00.000000 | 2024-11-08T00:00:00.000000 |
| certfr-2024-avi-0955 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2024-11-08T00:00:00.000000 | 2024-11-08T00:00:00.000000 |
| certfr-2024-avi-0954 | Multiples vulnérabilités dans Microsoft Edge | 2024-11-08T00:00:00.000000 | 2024-11-08T00:00:00.000000 |
| certfr-2024-avi-0953 | Multiples vulnérabilités dans Moxa EDS-P510 Series | 2024-11-08T00:00:00.000000 | 2024-11-08T00:00:00.000000 |
| certfr-2024-avi-0952 | Vulnérabilité dans les produits F5 | 2024-11-08T00:00:00.000000 | 2024-11-08T00:00:00.000000 |
| certfr-2024-avi-0951 | Multiples vulnérabilités dans Google Pixel | 2024-11-07T00:00:00.000000 | 2024-11-07T00:00:00.000000 |
| certfr-2024-avi-0950 | Multiples vulnérabilités dans les produits Cisco | 2024-11-07T00:00:00.000000 | 2024-11-07T00:00:00.000000 |
| certfr-2024-avi-0949 | Vulnérabilité dans Veeam Backup & Replication | 2024-11-07T00:00:00.000000 | 2024-11-07T00:00:00.000000 |
| certfr-2024-avi-0948 | Multiples vulnérabilités dans les produits Symfony | 2024-11-06T00:00:00.000000 | 2024-11-06T00:00:00.000000 |
| certfr-2024-avi-0947 | Vulnérabilité dans NetApp ONTAP Select Deploy administration utility | 2024-11-06T00:00:00.000000 | 2024-11-06T00:00:00.000000 |
| certfr-2024-avi-0946 | Multiples vulnérabilités dans Google Chrome | 2024-11-06T00:00:00.000000 | 2024-11-06T00:00:00.000000 |
| certfr-2024-avi-0945 | Multiples vulnérabilités dans les produits HPE Aruba Networking | 2024-11-06T00:00:00.000000 | 2024-11-06T00:00:00.000000 |
| certfr-2024-avi-0944 | Multiples vulnérabilités dans Google Android | 2024-11-05T00:00:00.000000 | 2024-11-05T00:00:00.000000 |
| certfr-2024-avi-0943 | Vulnérabilité dans Qnap QuRouter | 2024-11-05T00:00:00.000000 | 2024-11-05T00:00:00.000000 |
| certfr-2024-avi-0942 | Vulnérabilité dans les produits Broadcom | 2024-11-04T00:00:00.000000 | 2024-11-04T00:00:00.000000 |
| certfr-2024-avi-0941 | Multiples vulnérabilités dans Microsoft Edge | 2024-11-04T00:00:00.000000 | 2024-11-04T00:00:00.000000 |
| certfr-2024-avi-0940 | Multiples vulnérabilités dans les produits Moxa | 2024-11-04T00:00:00.000000 | 2024-11-04T00:00:00.000000 |