Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-31282 | N/A | Totara LMS v19.1.5 and before is vulnerable to In… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-14T16:32:43.823Z |
| cve-2026-31281 | N/A | Totara LMS v19.1.5 and before is vulnerable to HT… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-14T16:32:49.455Z |
| cve-2026-31280 | N/A | An issue in the Bluetooth RFCOMM service of Paran… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-14T15:23:22.851Z |
| cve-2026-31048 | N/A | An issue in the <code>pickle</code> protocol of P… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-15T15:31:38.180Z |
| cve-2026-30999 | N/A | A heap buffer overflow in the av_bprint_finalize(… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-13T19:11:38.554Z |
| cve-2026-30998 | N/A | An improper resource deallocation and closure vul… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-13T19:10:25.039Z |
| cve-2026-30997 | N/A | An out-of-bounds read in the read_global_param() … |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-13T19:06:31.700Z |
| cve-2026-29955 | N/A | The `/registercrd` endpoint in KubePlus 4.14 in t… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-15T17:44:09.045Z |
| cve-2026-29628 | N/A | A stack overflow in the experimental/tinyobj_load… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-13T19:04:06.916Z |
| cve-2026-26460 | N/A | A HTML Injection vulnerability exists in the Dash… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-15T15:36:23.365Z |
| cve-2025-70936 | N/A | Vtiger CRM 8.4.0 contains a reflected cross-site … |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-14T15:21:22.985Z |
| cve-2025-69627 | N/A | Nitro PDF Pro for Windows 14.41.1.4 contains a he… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-14T16:30:15.973Z |
| cve-2025-69624 | N/A | Nitro PDF Pro for Windows 14.41.1.4 contains a NU… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-13T19:01:40.478Z |
| cve-2025-66769 | N/A | A NULL pointer dereference in Nitro PDF Pro for W… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-13T19:00:25.873Z |
| cve-2025-63743 | N/A | Cross-Site Scripting vulnerability in the Snipe-I… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-14T14:41:41.195Z |
| cve-2025-51414 | N/A | In Phpgurukul Online Course Registration v3.1, an… |
n/a |
n/a |
2026-04-13T00:00:00.000Z | 2026-04-15T17:42:00.712Z |
| cve-2026-6137 | Tenda F451 AdvSetWan fromAdvSetWan stack-based overflow |
Tenda |
F451 |
2026-04-12T23:45:13.469Z | 2026-04-13T17:52:04.265Z | |
| cve-2026-6136 | Tenda F451 L7Im frmL7ImForm stack-based overflow |
Tenda |
F451 |
2026-04-12T23:30:20.978Z | 2026-04-14T16:32:54.668Z | |
| cve-2026-6135 | Tenda F451 SetIpBind fromSetIpBind stack-based overflow |
Tenda |
F451 |
2026-04-12T23:15:12.163Z | 2026-04-13T15:21:51.683Z | |
| cve-2026-6134 | Tenda F451 qossetting fromqossetting stack-based overflow |
Tenda |
F451 |
2026-04-12T23:00:38.601Z | 2026-04-15T15:26:53.883Z | |
| cve-2026-6133 | Tenda F451 SafeUrlFilter fromSafeUrlFilter stack-based… |
Tenda |
F451 |
2026-04-12T22:45:12.748Z | 2026-04-13T12:05:38.835Z | |
| cve-2026-6132 | Totolink A7100RU CGI cstecgi.cgi setLedCfg os command … |
Totolink |
A7100RU |
2026-04-12T22:30:20.539Z | 2026-04-13T17:55:22.477Z | |
| cve-2026-6131 | Totolink A7100RU CGI cstecgi.cgi setTracerouteCfg os c… |
Totolink |
A7100RU |
2026-04-12T22:15:14.611Z | 2026-04-14T16:33:00.472Z | |
| cve-2026-6130 | chatboxai chatbox Model Context Protocol Server Manage… |
chatboxai |
chatbox |
2026-04-12T22:00:22.045Z | 2026-04-13T15:34:55.885Z | |
| cve-2026-6129 | zhayujie chatgpt-on-wechat CowAgent Agent Mode Service… |
zhayujie |
chatgpt-on-wechat CowAgent |
2026-04-12T19:45:12.190Z | 2026-04-15T15:25:46.572Z | |
| cve-2026-40396 | 4 (v3.1) | Varnish Cache 9 before 9.0.1 allows a "workspace … |
varnish-software |
Varnish Cache |
2026-04-12T19:23:03.408Z | 2026-04-13T15:35:43.858Z |
| cve-2026-40395 | 4 (v3.1) | Varnish Enterprise before 6.0.16r12 allows a "wor… |
varnish-software |
Varnish Enterprise |
2026-04-12T19:21:09.265Z | 2026-04-13T15:45:30.791Z |
| cve-2026-40394 | 4 (v3.1) | Varnish Cache 9 before 9.0.1 and Varnish Enterpri… |
varnish-software |
Varnish Cache |
2026-04-12T19:17:34.334Z | 2026-04-13T15:45:55.804Z |
| cve-2026-40393 | 8.1 (v3.1) | In Mesa before 25.3.6 and 26 before 26.0.1, out-o… |
mesa3d |
Mesa |
2026-04-12T18:49:18.984Z | 2026-04-13T15:47:05.804Z |
| cve-2026-40386 | 4 (v3.1) | In libexif through 0.6.25, an integer underflow i… |
libexif project |
libexif |
2026-04-12T18:19:08.684Z | 2026-04-14T16:33:07.044Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2015-000111 | Yodobashi App for Android fails to verify SSL server certificates | 2015-08-07T13:50+09:00 | 2018-04-04T12:28+09:00 |
| jvndb-2015-000110 | Yodobashi App for Android vulnerable to arbitrary Java method execution | 2015-08-07T13:50+09:00 | 2015-08-11T12:22+09:00 |
| jvndb-2015-000109 | yoyaku_v41 vulnerable to OS command injection | 2015-07-29T14:58+09:00 | 2015-07-30T15:14+09:00 |
| jvndb-2015-000108 | yoyaku_v41 vulnerable to authentication bypass | 2015-07-29T14:58+09:00 | 2015-07-30T15:14+09:00 |
| jvndb-2015-000107 | yoyaku_v41 vulnerable to arbitrary file creation | 2015-07-29T14:58+09:00 | 2015-07-30T15:14+09:00 |
| jvndb-2015-000106 | Gazou BBS plus vulnerability in file upload processing | 2015-07-28T13:47+09:00 | 2015-07-30T15:14+09:00 |
| jvndb-2014-007612 | Welcart vulnerable to SQL injection | 2015-07-24T14:52+09:00 | 2015-07-24T14:52+09:00 |
| jvndb-2015-000105 | Research Artisan Lite does not properly perform authentication | 2015-07-24T14:46+09:00 | 2015-07-28T17:22+09:00 |
| jvndb-2015-000104 | Research Artisan Lite vulnerable to cross-site scripting | 2015-07-24T14:36+09:00 | 2015-07-28T17:29+09:00 |
| jvndb-2015-000103 | Welcart vulnerable to cross-site scripting | 2015-07-24T14:33+09:00 | 2015-07-28T17:51+09:00 |
| jvndb-2015-000101 | PHP for Windows vulnerable to OS command injection | 2015-07-17T14:44+09:00 | 2016-05-19T17:43+09:00 |
| jvndb-2015-000099 | Thetis vulnerable to SQL injection | 2015-07-15T15:54+09:00 | 2015-07-27T15:07+09:00 |
| jvndb-2015-000098 | acmailer vulnerable to directory traversal | 2015-07-15T15:53+09:00 | 2015-07-27T15:12+09:00 |
| jvndb-2015-000095 | LINE@ vulnerable to script injection | 2015-07-10T14:50+09:00 | 2024-05-09T18:05+09:00 |
| jvndb-2015-000097 | Simple Oekaki BBS vulnerability where arbitrary files may be deleted | 2015-07-10T13:57+09:00 | 2015-07-14T18:11+09:00 |
| jvndb-2015-000096 | Simple Oekaki BBS vulnerable to cross-site scripting | 2015-07-10T13:57+09:00 | 2015-07-14T18:09+09:00 |
| jvndb-2015-000094 | Cacti vulnerable to cross-site scripting | 2015-07-09T14:41+09:00 | 2015-07-14T18:03+09:00 |
| jvndb-2014-002239 | Cacti vulnerable to cross-site request forgery | 2015-07-09T14:41+09:00 | 2015-07-09T14:41+09:00 |
| jvndb-2009-003901 | Cacti vulnerable to cross-site scripting | 2015-07-09T14:41+09:00 | 2015-07-09T14:41+09:00 |
| jvndb-2015-000093 | Explorer+ File Manager vulnerable to directory traversal | 2015-06-30T13:56+09:00 | 2015-07-02T15:04+09:00 |
| jvndb-2015-000092 | OpenEMR vulnerable to authentication bypass | 2015-06-30T13:55+09:00 | 2015-07-14T17:16+09:00 |
| jvndb-2015-000091 | osCommerce Japanese version vulnerable to directory traversal | 2015-06-25T15:53+09:00 | 2015-06-30T11:53+09:00 |
| jvndb-2015-000090 | namshi/jose fails to verify token signatures | 2015-06-25T15:00+09:00 | 2015-07-14T17:18+09:00 |
| jvndb-2015-000089 | Symfony vulnerable to code injection | 2015-06-23T12:29+09:00 | 2015-06-25T17:34+09:00 |
| jvndb-2015-000088 | Ruby on Rails library Paperclip vulnerable to cross-site scripting | 2015-06-18T14:14+09:00 | 2015-07-14T18:15+09:00 |
| jvndb-2015-000077 | MilkyStep fails to restrict access permissions | 2015-06-12T14:13+09:00 | 2015-06-16T16:52+09:00 |
| jvndb-2015-000087 | BloBee vulnerable to arbitrary file creation | 2015-06-12T14:12+09:00 | 2015-06-16T16:51+09:00 |
| jvndb-2015-000086 | LoadLibrary function in Microsoft Windows fails to validate input properly | 2015-06-12T14:11+09:00 | 2015-06-12T14:11+09:00 |
| jvndb-2015-000083 | MilkyStep fails to restrict access permissions | 2015-06-09T14:16+09:00 | 2015-06-16T16:51+09:00 |
| jvndb-2015-000082 | MilkyStep vulnerable to cross-site scripting | 2015-06-09T14:15+09:00 | 2015-06-16T16:52+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2024-avi-0769 | Multiples vulnérabilités dans GitLab | 2024-09-12T00:00:00.000000 | 2024-09-12T00:00:00.000000 |
| certfr-2024-avi-0768 | Multiples vulnérabilités dans les produits Intel | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0767 | Multiples vulnérabilités dans Ivanti Endpoint Manager | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0766 | Multiples vulnérabilités dans Google Chrome | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0765 | Vulnérabilité dans MongoDB Server | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0764 | Multiples vulnérabilités dans les produits Adobe | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0763 | Multiples vulnérabilités dans les produits Fortinet | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0762 | Multiples vulnérabilités dans les produits Citrix | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0761 | Multiples vulnérabilités dans les produits Microsoft | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0760 | Multiples vulnérabilités dans Microsoft Azure | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0759 | Multiples vulnérabilités dans Microsoft Windows | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0758 | Multiples vulnérabilités dans Microsoft Office | 2024-09-11T00:00:00.000000 | 2024-09-11T00:00:00.000000 |
| certfr-2024-avi-0757 | Multiples vulnérabilités dans les produits Siemens | 2024-09-10T00:00:00.000000 | 2024-09-10T00:00:00.000000 |
| certfr-2024-avi-0756 | Multiples vulnérabilités dans Moodle | 2024-09-10T00:00:00.000000 | 2024-09-10T00:00:00.000000 |
| certfr-2024-avi-0755 | Vulnérabilité dans Synology SRM | 2024-09-10T00:00:00.000000 | 2024-09-10T00:00:00.000000 |
| certfr-2024-avi-0754 | Multiples vulnérabilités dans les produits SAP | 2024-09-10T00:00:00.000000 | 2024-09-10T00:00:00.000000 |
| certfr-2024-avi-0753 | Multiples vulnérabilités dans les produits OwnCloud | 2024-09-10T00:00:00.000000 | 2024-09-10T00:00:00.000000 |
| certfr-2024-avi-0752 | Multiples vulnérabilités dans les produits Qnap | 2024-09-09T00:00:00.000000 | 2025-01-21T00:00:00.000000 |
| certfr-2024-avi-0751 | Multiples vulnérabilités dans les produits Mozilla | 2024-09-09T00:00:00.000000 | 2024-09-09T00:00:00.000000 |
| certfr-2024-avi-0750 | Multiples vulnérabilités dans les produits IBM | 2024-09-06T00:00:00.000000 | 2024-09-06T00:00:00.000000 |
| certfr-2024-avi-0749 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2024-09-06T00:00:00.000000 | 2024-09-06T00:00:00.000000 |
| certfr-2024-avi-0748 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2024-09-06T00:00:00.000000 | 2024-09-06T00:00:00.000000 |
| certfr-2024-avi-0747 | Vulnérabilité dans le noyau Linux de SUSE | 2024-09-06T00:00:00.000000 | 2024-09-06T00:00:00.000000 |
| certfr-2024-avi-0746 | Multiples vulnérabilités dans Elastic Kibana | 2024-09-06T00:00:00.000000 | 2024-09-06T00:00:00.000000 |
| certfr-2024-avi-0745 | Vulnérabilité dans les produits Asterisk | 2024-09-06T00:00:00.000000 | 2024-09-06T00:00:00.000000 |
| certfr-2024-avi-0744 | Multiples vulnérabilités dans ClamAV | 2024-09-05T00:00:00.000000 | 2024-09-05T00:00:00.000000 |
| certfr-2024-avi-0743 | Multiples vulnérabilités dans Centreon Web | 2024-09-05T00:00:00.000000 | 2024-09-05T00:00:00.000000 |
| certfr-2024-avi-0742 | Multiples vulnérabilités dans Synacor Zimbra Collaboration | 2024-09-05T00:00:00.000000 | 2024-09-05T00:00:00.000000 |
| certfr-2024-avi-0741 | Multiples vulnérabilités dans Juniper Secure Analytics | 2024-09-05T00:00:00.000000 | 2024-10-15T00:00:00.000000 |
| certfr-2024-avi-0740 | Multiples vulnérabilités dans les produits Veeam | 2024-09-05T00:00:00.000000 | 2024-09-05T00:00:00.000000 |