Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-6182 | code-projects Simple Content Management System login.p… |
code-projects |
Simple Content Management System |
2026-04-13T14:30:14.768Z | 2026-04-14T16:29:36.999Z | |
| cve-2025-66236 | Apache Airflow: Secrets from Airflow config file logge… |
Apache Software Foundation |
Apache Airflow |
2026-04-13T14:20:37.180Z | 2026-04-15T20:03:37.134Z | |
| cve-2026-31428 | N/A | netfilter: nfnetlink_log: fix uninitialized padding le… |
Linux |
Linux |
2026-04-13T13:40:30.987Z | 2026-04-18T08:59:45.785Z |
| cve-2026-31427 | N/A | netfilter: nf_conntrack_sip: fix use of uninitialized … |
Linux |
Linux |
2026-04-13T13:40:30.280Z | 2026-04-18T08:59:42.607Z |
| cve-2026-31426 | N/A | ACPI: EC: clean up handlers on probe failure in acpi_e… |
Linux |
Linux |
2026-04-13T13:40:29.635Z | 2026-04-13T13:40:29.635Z |
| cve-2026-31425 | N/A | rds: ib: reject FRMR registration before IB connection… |
Linux |
Linux |
2026-04-13T13:40:28.911Z | 2026-04-18T08:59:40.222Z |
| cve-2026-31424 | N/A | netfilter: x_tables: restrict xt_check_match/xt_check_… |
Linux |
Linux |
2026-04-13T13:40:27.957Z | 2026-04-18T08:59:37.647Z |
| cve-2026-31423 | N/A | net/sched: sch_hfsc: fix divide-by-zero in rtsc_min() |
Linux |
Linux |
2026-04-13T13:40:26.567Z | 2026-04-18T08:59:36.227Z |
| cve-2026-31422 | N/A | net/sched: cls_flow: fix NULL pointer dereference on s… |
Linux |
Linux |
2026-04-13T13:40:25.911Z | 2026-04-18T08:59:34.892Z |
| cve-2026-31421 | N/A | net/sched: cls_fw: fix NULL pointer dereference on sha… |
Linux |
Linux |
2026-04-13T13:40:25.278Z | 2026-04-18T08:59:33.538Z |
| cve-2026-31420 | N/A | bridge: mrp: reject zero test interval to avoid OOM panic |
Linux |
Linux |
2026-04-13T13:40:24.594Z | 2026-04-13T13:40:24.594Z |
| cve-2026-31419 | N/A | net: bonding: fix use-after-free in bond_xmit_broadcast() |
Linux |
Linux |
2026-04-13T13:40:23.279Z | 2026-04-13T13:40:23.279Z |
| cve-2026-31418 | N/A | netfilter: ipset: drop logically empty buckets in mtype_del |
Linux |
Linux |
2026-04-13T13:21:05.316Z | 2026-04-18T08:59:32.191Z |
| cve-2026-31417 | N/A | net/x25: Fix overflow when accumulating packets |
Linux |
Linux |
2026-04-13T13:21:04.638Z | 2026-04-18T08:59:30.825Z |
| cve-2026-31416 | N/A | netfilter: nfnetlink_log: account for netlink header size |
Linux |
Linux |
2026-04-13T13:21:03.974Z | 2026-04-18T08:59:29.494Z |
| cve-2026-31415 | N/A | ipv6: avoid overflows in ip6_datagram_send_ctl() |
Linux |
Linux |
2026-04-13T13:21:03.284Z | 2026-04-18T08:59:28.135Z |
| cve-2026-31414 | N/A | netfilter: nf_conntrack_expect: use expect->helper |
Linux |
Linux |
2026-04-13T13:21:02.592Z | 2026-04-18T08:59:26.811Z |
| cve-2026-34476 | Apache SkyWalking MCP: Server-Side Request Forgery via… |
Apache Software Foundation |
Apache SkyWalking MCP |
2026-04-13T13:01:31.156Z | 2026-04-13T15:29:57.926Z | |
| cve-2026-6204 | 8.5 (v4.0) | LibreNMS versions before 26.3.0 are affected by a… |
librenms |
librenms |
2026-04-13T10:56:16.850Z | 2026-04-13T12:43:19.241Z |
| cve-2026-2728 | 4.6 (v4.0) | LibreNMS versions before 26.3.0 are affected by a… |
librenms |
librenms |
2026-04-13T10:39:54.757Z | 2026-04-13T12:59:06.750Z |
| cve-2025-15632 | 1Panel-dev MaxKB MdPreview chat.ts cross site scripting |
1Panel-dev |
MaxKB |
2026-04-13T09:30:21.266Z | 2026-04-13T13:01:08.819Z | |
| cve-2026-35337 | Apache Storm Client: RCE through Unsafe Deserializatio… |
Apache Software Foundation |
Apache Storm Client |
2026-04-13T09:11:06.193Z | 2026-04-14T03:55:31.489Z | |
| cve-2026-35565 | Apache Storm UI: Stored Cross-Site Scripting (XSS) via… |
Apache Software Foundation |
Apache Storm UI |
2026-04-13T09:10:17.367Z | 2026-04-13T14:10:07.069Z | |
| cve-2026-4810 | 9.3 (v4.0) | Remote Code Execution in Google Agent Development Kit (ADK) |
Google Cloud |
Agent Development Kit (ADK) |
2026-04-13T08:35:56.529Z | 2026-04-13T13:07:12.959Z |
| cve-2026-0232 | 4 (v4.0) | Cortex XDR Agent: Local Administrator can disable the … |
Palo Alto Networks |
Cortex XDR Agent |
2026-04-13T07:22:48.325Z | 2026-04-13T13:27:43.511Z |
| cve-2026-0233 | 2 (v4.0) | Autonomous Digital Experience Manager: Improper valida… |
Palo Alto Networks |
Autonomous Digital Experience Manager |
2026-04-13T07:17:34.585Z | 2026-04-14T13:49:34.873Z |
| cve-2026-0234 | 7.2 (v4.0) | Cortex XSOAR: Improper Verification of Cryptographic S… |
Palo Alto Networks |
Cortex XSOAR Microsoft Teams Marketplace |
2026-04-13T07:15:03.667Z | 2026-04-14T03:55:44.286Z |
| cve-2026-5936 | 8.5 (v3.1) | Server-Side Request Forgery (SSRF) via URL Parameter i… |
Foxit Software Inc. |
Foxit PDF Services API |
2026-04-13T06:57:40.220Z | 2026-04-13T13:50:29.768Z |
| cve-2026-5085 | N/A | Solstice::Session versions through 1440 for Perl gener… |
MCRAWFOR |
Solstice::Session |
2026-04-13T06:56:14.964Z | 2026-04-13T15:30:06.627Z |
| cve-2026-40436 | 7.1 (v3.1) | ZTE ZXEDM iEMS product has a password reset vulnerability |
ZTE |
ZXEDM iEMS |
2026-04-13T06:31:49.372Z | 2026-04-13T13:01:38.521Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2016-001472 | Remote File Inclusion Vulnerability in Hitachi Command Suite | 2016-02-25T16:09+09:00 | 2016-09-14T18:18+09:00 |
| jvndb-2016-000031 | Log-Chat vulnerable to cross-site scripting | 2016-02-22T14:56+09:00 | 2016-02-25T15:10+09:00 |
| jvndb-2016-000029 | LINE for Windows and LINE for Mac OS vulnerable to denial-of-service (DoS) | 2016-02-19T14:43+09:00 | 2016-03-10T17:39+09:00 |
| jvndb-2016-000027 | EC-CUBE plugin "Help plug-in" vulnerable to SQL injection | 2016-02-19T14:42+09:00 | 2016-03-03T17:51+09:00 |
| jvndb-2016-000030 | baserCMS vulnerable to OS command injection | 2016-02-19T14:39+09:00 | 2016-03-07T15:51+09:00 |
| jvndb-2016-000028 | Internet Explorer cross-domain policy bypass | 2016-02-19T14:39+09:00 | 2016-02-23T11:23+09:00 |
| jvndb-2016-000026 | Cybozu Office vulnerable to cross-site scripting | 2016-02-15T16:21+09:00 | 2016-06-06T15:00+09:00 |
| jvndb-2016-000025 | Cybozu Office vulnerable to open redirect | 2016-02-15T16:20+09:00 | 2016-02-23T16:32+09:00 |
| jvndb-2016-000024 | Cybozu Office vulnerable to cross-site request forgery | 2016-02-15T16:20+09:00 | 2016-02-23T16:32+09:00 |
| jvndb-2016-000023 | Cybozu Office access restriction bypass vulnerability | 2016-02-15T15:45+09:00 | 2016-02-23T16:32+09:00 |
| jvndb-2016-000022 | Cybozu Office vulnerable to information disclosure | 2016-02-15T15:44+09:00 | 2016-02-23T16:32+09:00 |
| jvndb-2016-000021 | Cybozu Office vulnerable to information disclosure | 2016-02-15T15:44+09:00 | 2016-02-23T16:32+09:00 |
| jvndb-2016-000020 | Cybozu Office vulnerable to denial-of-service (DoS) | 2016-02-15T15:43+09:00 | 2016-02-23T16:32+09:00 |
| jvndb-2016-000018 | Microsoft Producer for Microsoft Office PowerPoint vulnerable to cross-site scripting | 2016-02-15T09:56+09:00 | 2016-02-15T09:56+09:00 |
| jvndb-2016-000019 | Akerun - Smart Lock Robot App for iOS fails to verify SSL server certificates | 2016-02-12T15:59+09:00 | 2017-05-23T12:25+09:00 |
| jvndb-2016-000017 | JOB-CUBE vulnerable to cross-site scripting | 2016-01-29T14:06+09:00 | 2016-03-04T17:47+09:00 |
| jvndb-2016-000016 | Vine MV vulnerable to cross-site scripting | 2016-01-29T13:50+09:00 | 2016-02-10T10:19+09:00 |
| jvndb-2016-000015 | EXPRESSCLUSTER X vulnerable to directory traversal | 2016-01-29T13:45+09:00 | 2016-03-16T14:24+09:00 |
| jvndb-2016-000012 | HOME SPOT CUBE vulnerable to OS command injection | 2016-01-27T14:40+09:00 | 2016-02-16T17:26+09:00 |
| jvndb-2016-000011 | HOME SPOT CUBE vulnerable to clickjacking | 2016-01-27T14:40+09:00 | 2016-02-16T17:26+09:00 |
| jvndb-2016-000010 | HOME SPOT CUBE vulnerable to cross-site request forgery | 2016-01-27T14:40+09:00 | 2016-02-16T17:26+09:00 |
| jvndb-2016-000009 | HOME SPOT CUBE vulnerable to HTTP header injection | 2016-01-27T14:40+09:00 | 2016-02-16T17:26+09:00 |
| jvndb-2016-000008 | HOME SPOT CUBE vulnerable to open redirect | 2016-01-27T14:40+09:00 | 2016-02-16T17:26+09:00 |
| jvndb-2016-000007 | HOME SPOT CUBE vulnerable to cross-site scripting | 2016-01-27T14:40+09:00 | 2016-02-16T17:26+09:00 |
| jvndb-2016-000006 | Multiple Buffalo network devices vulnerable to cross-site scripting | 2016-01-22T14:36+09:00 | 2016-03-10T17:53+09:00 |
| jvndb-2016-000005 | Multiple Buffalo network devices vulnerable to cross-site request forgery | 2016-01-22T14:36+09:00 | 2016-03-10T17:53+09:00 |
| jvndb-2016-000004 | Shoplat App for iOS issue in the verification of SSL certificates | 2016-01-18T14:24+09:00 | 2017-05-23T13:57+09:00 |
| jvndb-2016-000003 | H2O vulnerable to HTTP header injection | 2016-01-15T13:57+09:00 | 2016-01-27T17:33+09:00 |
| jvndb-2016-000002 | acmailer vulnerable to OS command injection | 2016-01-15T13:57+09:00 | 2016-01-27T17:20+09:00 |
| jvndb-2016-000001 | DX Library vulnerable to buffer overflow | 2016-01-05T14:26+09:00 | 2016-06-08T18:06+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2024-avi-0889 | Multiples vulnérabilités dans Ruby on Rails | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0888 | Multiples vulnérabilités dans Oracle Weblogic | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0887 | Multiples vulnérabilités dans Oracle Virtualization | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0886 | Multiples vulnérabilités dans Oracle Systems | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0885 | Multiples vulnérabilités dans Oracle PeopleSoft | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0884 | Multiples vulnérabilités dans Oracle MySQL | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0883 | Multiples vulnérabilités dans Oracle Java SE | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0882 | Multiples vulnérabilités dans Oracle Database Server | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0881 | Multiples vulnérabilités dans Google Chrome | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0880 | Multiples vulnérabilités dans les produits Trend Micro | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0879 | Vulnérabilité dans Juniper Networks Junos OS | 2024-10-16T00:00:00.000000 | 2024-10-16T00:00:00.000000 |
| certfr-2024-avi-0878 | Multiples vulnérabilités dans les produits Splunk | 2024-10-15T00:00:00.000000 | 2024-10-15T00:00:00.000000 |
| certfr-2024-avi-0877 | Multiples Vulnérabilités dans Mozilla Firefox | 2024-10-15T00:00:00.000000 | 2024-10-17T00:00:00.000000 |
| certfr-2024-avi-0876 | Multiples vulnérabilités dans Moodle | 2024-10-14T00:00:00.000000 | 2024-10-14T00:00:00.000000 |
| certfr-2024-avi-0875 | Multiples vulnérabilités dans les produits Moxa | 2024-10-14T00:00:00.000000 | 2024-10-14T00:00:00.000000 |
| certfr-2024-avi-0874 | Multiples vulnérabilités dans Google Android | 2024-10-11T00:00:00.000000 | 2024-10-11T00:00:00.000000 |
| certfr-2024-avi-0873 | Multiples vulnérabilités dans les produits IBM | 2024-10-11T00:00:00.000000 | 2024-10-11T00:00:00.000000 |
| certfr-2024-avi-0872 | Multiples vulnérabilités dans le noyau Linux de Debian LTS | 2024-10-11T00:00:00.000000 | 2024-10-11T00:00:00.000000 |
| certfr-2024-avi-0871 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2024-10-11T00:00:00.000000 | 2024-10-11T00:00:00.000000 |
| certfr-2024-avi-0870 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2024-10-11T00:00:00.000000 | 2024-10-11T00:00:00.000000 |
| certfr-2024-avi-0869 | Vulnérabilité dans Mozilla Thunderbird | 2024-10-11T00:00:00.000000 | 2024-10-11T00:00:00.000000 |
| certfr-2024-avi-0868 | Multiples vulnérabilités dans Microsoft Edge | 2024-10-11T00:00:00.000000 | 2024-10-11T00:00:00.000000 |
| certfr-2024-avi-0867 | Multiples vulnérabilités dans les produits SonicWall | 2024-10-11T00:00:00.000000 | 2024-10-11T00:00:00.000000 |
| certfr-2024-avi-0866 | Multiples vulnérabilités dans les produits Juniper Networks | 2024-10-10T00:00:00.000000 | 2024-10-10T00:00:00.000000 |
| certfr-2024-avi-0865 | Vulnérabilité dans Mozilla Firefox | 2024-10-10T00:00:00.000000 | 2024-10-10T00:00:00.000000 |
| certfr-2024-avi-0864 | Vulnérabilité dans les produits Microsoft | 2024-10-10T00:00:00.000000 | 2024-10-10T00:00:00.000000 |
| certfr-2024-avi-0863 | Vulnérabilité dans Synology DSM | 2024-10-10T00:00:00.000000 | 2024-10-10T00:00:00.000000 |
| certfr-2024-avi-0862 | Multiples vulnérabilités dans GitLab | 2024-10-10T00:00:00.000000 | 2024-10-10T00:00:00.000000 |
| certfr-2024-avi-0861 | Multiples vulnérabilités dans Wireshark | 2024-10-10T00:00:00.000000 | 2024-10-10T00:00:00.000000 |
| certfr-2024-avi-0860 | Multiples vulnérabilités dans les produits VMware | 2024-10-10T00:00:00.000000 | 2024-10-10T00:00:00.000000 |