Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-3691 | 5.3 (v3.0) | OpenClaw Client PKCE Verifier Information Disclosure V… |
OpenClaw |
OpenClaw |
2026-04-11T00:17:40.509Z | 2026-04-13T17:42:24.369Z |
| cve-2026-3690 | 7.4 (v3.0) | OpenClaw Canvas Authentication Bypass Vulnerability |
OpenClaw |
OpenClaw |
2026-04-11T00:17:32.474Z | 2026-04-14T13:28:03.464Z |
| cve-2026-3689 | 6.5 (v3.0) | OpenClaw Canvas Path Traversal Information Disclosure … |
OpenClaw |
OpenClaw |
2026-04-11T00:17:24.472Z | 2026-04-13T17:40:53.608Z |
| cve-2026-4158 | 7.3 (v3.0) | KeePassXC OpenSSL Configuration Uncontrolled Search Pa… |
KeePassXC |
KeePassXC |
2026-04-11T00:17:00.676Z | 2026-04-13T17:40:04.189Z |
| cve-2026-4157 | 7.5 (v3.0) | ChargePoint Home Flex revssh Service Command Injection… |
ChargePoint |
Home Flex |
2026-04-11T00:16:38.871Z | 2026-04-13T17:39:00.899Z |
| cve-2026-4156 | 7.5 (v3.0) | ChargePoint Home Flex OCPP getpreq Stack-based Buffer … |
ChargePoint |
Home Flex |
2026-04-11T00:16:32.094Z | 2026-04-13T17:38:27.403Z |
| cve-2026-4155 | 7.5 (v3.0) | ChargePoint Home Flex Inclusion of Sensitive Informati… |
ChargePoint |
Home Flex |
2026-04-11T00:16:25.621Z | 2026-04-13T17:23:38.780Z |
| cve-2026-4154 | 7.8 (v3.0) | GIMP XPM File Parsing Integer Overflow Remote Code Exe… |
GIMP |
GIMP |
2026-04-11T00:16:10.657Z | 2026-04-14T03:55:54.921Z |
| cve-2026-4153 | 7.8 (v3.0) | GIMP PSP File Parsing Heap-based Buffer Overflow Remot… |
GIMP |
GIMP |
2026-04-11T00:16:01.848Z | 2026-04-14T03:55:53.814Z |
| cve-2026-4152 | 7.8 (v3.0) | GIMP JP2 File Parsing Heap-based Buffer Overflow Remot… |
GIMP |
GIMP |
2026-04-11T00:15:54.200Z | 2026-04-14T03:55:52.703Z |
| cve-2026-4151 | 7.8 (v3.0) | GIMP ANI File Parsing Integer Overflow Remote Code Exe… |
GIMP |
GIMP |
2026-04-11T00:15:45.368Z | 2026-04-14T03:55:50.232Z |
| cve-2026-4150 | 7.8 (v3.0) | GIMP PSD File Parsing Integer Overflow Remote Code Exe… |
GIMP |
GIMP |
2026-04-11T00:15:36.377Z | 2026-04-14T03:55:49.145Z |
| cve-2026-5059 | 9.8 (v3.0) | aws-mcp-server AWS CLI Command Injection Remote Code E… |
aws-mcp-server |
aws-mcp-server |
2026-04-11T00:15:02.920Z | 2026-04-13T17:30:38.053Z |
| cve-2026-5058 | 9.8 (v3.0) | aws-mcp-server Command Injection Remote Code Execution… |
aws-mcp-server |
aws-mcp-server |
2026-04-11T00:14:52.192Z | 2026-04-13T17:32:02.375Z |
| cve-2026-5055 | 7.8 (v3.0) | NoMachine Uncontrolled Search Path Element Local Privi… |
NoMachine |
NoMachine |
2026-04-11T00:14:25.877Z | 2026-04-14T03:55:48.016Z |
| cve-2026-5054 | 7.8 (v3.0) | NoMachine External Control of File Path Local Privileg… |
NoMachine |
NoMachine |
2026-04-11T00:14:16.658Z | 2026-04-14T03:55:46.803Z |
| cve-2026-5053 | 7.1 (v3.0) | NoMachine External Control of File Path Arbitrary File… |
NoMachine |
NoMachine |
2026-04-11T00:14:07.656Z | 2026-04-13T16:18:43.447Z |
| cve-2026-5495 | 7.8 (v3.0) | Labcenter Electronics Proteus PDSPRJ File Parsing Out-… |
Labcenter Electronics |
Proteus |
2026-04-11T00:13:26.901Z | 2026-04-13T16:17:32.512Z |
| cve-2026-5494 | 7.8 (v3.0) | Labcenter Electronics Proteus PDSPRJ File Parsing Out-… |
Labcenter Electronics |
Proteus |
2026-04-11T00:13:22.854Z | 2026-04-13T16:16:49.016Z |
| cve-2026-5493 | 7.8 (v3.0) | Labcenter Electronics Proteus PDSPRJ File Parsing Out-… |
Labcenter Electronics |
Proteus |
2026-04-11T00:13:18.336Z | 2026-04-13T18:24:57.963Z |
| cve-2026-5496 | 7.8 (v3.0) | Labcenter Electronics Proteus PDSPRJ File Parsing Type… |
Labcenter Electronics |
Proteus |
2026-04-11T00:13:14.901Z | 2026-04-13T18:25:22.216Z |
| cve-2026-4149 | 10 (v3.0) | Sonos Era 300 SMB Response Out-Of-Bounds Access Remote… |
Sonos |
Era 300 |
2026-04-11T00:12:33.497Z | 2026-04-13T16:16:22.089Z |
| cve-2026-40199 | N/A | Net::CIDR::Lite versions before 0.23 for Perl mishandl… |
STIGTSP |
Net::CIDR::Lite |
2026-04-10T21:49:48.353Z | 2026-04-13T14:37:18.227Z |
| cve-2026-40198 | N/A | Net::CIDR::Lite versions before 0.23 for Perl does not… |
STIGTSP |
Net::CIDR::Lite |
2026-04-10T21:42:06.835Z | 2026-04-13T14:41:59.967Z |
| cve-2026-33118 | 4.3 (v3.1) | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
Microsoft |
Microsoft Edge (Chromium-based) |
2026-04-10T21:20:44.423Z | 2026-04-21T19:20:48.552Z |
| cve-2026-33119 | 5.4 (v3.1) | Microsoft Edge (Chromium-based) for Android Spoofing V… |
Microsoft |
Microsoft Edge for Android |
2026-04-10T21:20:37.767Z | 2026-04-21T19:20:49.104Z |
| cve-2026-5724 | 6.3 (v4.0) | Missing Authentication on Streaming gRPC Replication E… |
Temporal Technologies, Inc. |
temporal |
2026-04-10T21:06:31.788Z | 2026-04-13T16:10:49.014Z |
| cve-2026-40252 | Broken Access Control (IDOR) Leading to Cross-Tenant A… |
labring |
FastGPT |
2026-04-10T20:52:15.218Z | 2026-04-13T16:14:30.862Z | |
| cve-2026-40242 | Arcane Unauthenticated SSRF with Conditional Response … |
getarcaneapp |
arcane |
2026-04-10T20:34:12.777Z | 2026-04-13T20:54:36.822Z | |
| cve-2026-40194 | phpseclib has a variable-time HMAC comparison in SSH2:… |
phpseclib |
phpseclib |
2026-04-10T20:24:06.696Z | 2026-04-13T15:35:24.775Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2015-000019 | Squid input validation vulnerability | 2015-02-20T14:55+09:00 | 2015-03-06T14:57+09:00 |
| jvndb-2015-000021 | AL-Mail32 vulnerable to denial-of-service (DoS) | 2015-02-20T14:54+09:00 | 2015-02-24T16:37+09:00 |
| jvndb-2015-000020 | AL-Mail32 vulnerable to directory traversal | 2015-02-20T14:37+09:00 | 2015-02-24T16:38+09:00 |
| jvndb-2015-000018 | C-BOARD Moyuku vulnerable to arbitrary file creation | 2015-02-17T14:21+09:00 | 2015-04-07T17:57+09:00 |
| jvndb-2015-000017 | Saurus CMS Community Edition vulnerable to cross-site scripting | 2015-02-17T14:20+09:00 | 2015-04-08T15:20+09:00 |
| jvndb-2015-001269 | Cross-site Scripting Vulnerability in Hitachi Application Server Help | 2015-02-16T11:21+09:00 | 2015-03-03T16:59+09:00 |
| jvndb-2015-001268 | Cross-site Scripting Vulnerability in Hitachi Command Suite Products | 2015-02-16T11:12+09:00 | 2015-03-03T16:59+09:00 |
| jvndb-2015-000016 | Smartphone Passbook for Android information management vulnerability | 2015-02-13T14:33+09:00 | 2015-05-21T10:05+09:00 |
| jvndb-2015-000015 | Smartphone Passbook fails to verify SSL server certificates | 2015-02-13T14:32+09:00 | 2018-03-07T13:50+09:00 |
| jvndb-2015-000014 | PerlTreeBBS vulnerable to cross-site scripting | 2015-02-13T13:58+09:00 | 2015-02-13T13:58+09:00 |
| jvndb-2015-000013 | shiromuku(u1)GUESTBOOK vulnerable to cross-site scripting | 2015-02-13T13:58+09:00 | 2015-02-13T13:58+09:00 |
| jvndb-2015-000001 | Cybozu Remote Service Manager vulnerable to denial-of-service (DoS) | 2015-01-30T14:19+09:00 | 2015-01-30T14:19+09:00 |
| jvndb-2015-000010 | Fumy News Clipper vulnerable to cross-site scripting | 2015-01-30T13:52+09:00 | 2015-02-16T15:55+09:00 |
| jvndb-2015-000007 | Arbitrary files may be overwritten in multiple VMware products | 2015-01-29T13:52+09:00 | 2015-02-16T15:34+09:00 |
| jvndb-2015-000012 | Multiple ASUS wireless LAN routers vulnerable to cross-site request forgery | 2015-01-27T14:24+09:00 | 2015-06-17T16:42+09:00 |
| jvndb-2015-000011 | Multiple ASUS wireless LAN routers vulnerable to OS command injection | 2015-01-27T14:23+09:00 | 2015-06-17T16:42+09:00 |
| jvndb-2015-000009 | NP-BBRM vulnerable in UPnP functionality | 2015-01-26T13:42+09:00 | 2015-08-18T14:36+09:00 |
| jvndb-2015-000008 | shiromuku(bu2)BBS vulnerable to arbitrary file creation | 2015-01-23T14:22+09:00 | 2015-02-13T09:51+09:00 |
| jvndb-2015-000006 | SYNCK GRAPHICA Download Log CGI vulnerable to directory traversal | 2015-01-19T13:54+09:00 | 2015-02-13T15:09+09:00 |
| jvndb-2014-000152 | WBS Gantt-Chart for JIRA vulnerable to cross-site scripting | 2014-12-18T14:49+09:00 | 2014-12-22T17:33+09:00 |
| jvndb-2014-000151 | WBS Gantt-Chart for JIRA vulnerable to cross-site scripting | 2014-12-18T14:48+09:00 | 2014-12-22T17:30+09:00 |
| jvndb-2014-000132 | Multiple Allied Telesis products vulnerable to buffer overflow | 2014-12-18T14:47+09:00 | 2015-01-28T17:38+09:00 |
| jvndb-2014-000124 | TSUTAYA App for Android vulnerable to arbitrary Java method execution | 2014-12-18T13:41+09:00 | 2014-12-22T17:52+09:00 |
| jvndb-2014-005987 | Multiple Vulnerabilities in JP1/Cm2/Network Node Manager i | 2014-12-16T17:31+09:00 | 2016-02-26T17:52+09:00 |
| jvndb-2014-005986 | Multiple buffer overflows in Hitachi JP1/Cm2/Network Node Manager i | 2014-12-16T17:30+09:00 | 2016-02-26T17:32+09:00 |
| jvndb-2014-000150 | LinPHA vulnerable to cross-site scripting | 2014-12-12T13:48+09:00 | 2014-12-16T17:07+09:00 |
| jvndb-2014-000149 | Chyrp vulnerable to cross-site scripting | 2014-12-10T14:18+09:00 | 2014-12-15T18:06+09:00 |
| jvndb-2014-000146 | i-HTTPD vulnerable to cross-site scripting | 2014-12-09T14:45+09:00 | 2014-12-09T14:45+09:00 |
| jvndb-2014-000145 | "Omake BBS" of i-HTTPD vulnerable to cross-site scripting | 2014-12-09T14:44+09:00 | 2014-12-15T19:16+09:00 |
| jvndb-2014-000144 | i-HTTPD vulnerable to cross-site scripting | 2014-12-09T14:41+09:00 | 2014-12-16T17:09+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2024-avi-0679 | Multiples vulnérabilités dans les produits Intel | 2024-08-14T00:00:00.000000 | 2024-08-14T00:00:00.000000 |
| certfr-2024-avi-0678 | Multiples vulnérabilités dans les produits Adobe | 2024-08-14T00:00:00.000000 | 2024-08-14T00:00:00.000000 |
| certfr-2024-avi-0677 | Multiples vulnérabilités dans les produits Fortinet | 2024-08-14T00:00:00.000000 | 2024-08-14T00:00:00.000000 |
| certfr-2024-avi-0676 | Multiples vulnérabilités dans Tenable Security Center | 2024-08-14T00:00:00.000000 | 2024-08-14T00:00:00.000000 |
| certfr-2024-avi-0675 | Multiples vulnérabilités dans Nagios XI | 2024-08-14T00:00:00.000000 | 2024-08-14T00:00:00.000000 |
| certfr-2024-avi-0674 | Multiples vulnérabilités dans Zabbix | 2024-08-13T00:00:00.000000 | 2024-08-13T00:00:00.000000 |
| certfr-2024-avi-0673 | Multiples vulnérabilités dans les produits Schneider Electric | 2024-08-13T00:00:00.000000 | 2024-08-13T00:00:00.000000 |
| certfr-2024-avi-0672 | Multiples vulnérabilités dans les produits Siemens | 2024-08-13T00:00:00.000000 | 2024-08-16T00:00:00.000000 |
| certfr-2024-avi-0671 | Multiples vulnérabilités dans les produits SAP | 2024-08-13T00:00:00.000000 | 2024-08-13T00:00:00.000000 |
| certfr-2024-avi-0670 | Multiples vulnérabilités dans Splunk Machine Learning Toolkit | 2024-08-13T00:00:00.000000 | 2024-08-13T00:00:00.000000 |
| certfr-2024-avi-0669 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2024-08-09T00:00:00.000000 | 2024-08-09T00:00:00.000000 |
| certfr-2024-avi-0668 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2024-08-09T00:00:00.000000 | 2024-08-09T00:00:00.000000 |
| certfr-2024-avi-0667 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2024-08-09T00:00:00.000000 | 2024-08-09T00:00:00.000000 |
| certfr-2024-avi-0666 | Multiples vulnérabilités dans les produits IBM | 2024-08-09T00:00:00.000000 | 2024-08-09T00:00:00.000000 |
| certfr-2024-avi-0665 | Multiples vulnérabilités dans Microsoft Edge | 2024-08-09T00:00:00.000000 | 2024-08-09T00:00:00.000000 |
| certfr-2024-avi-0664 | Vulnérabilité dans PostgreSQL | 2024-08-09T00:00:00.000000 | 2024-08-09T00:00:00.000000 |
| certfr-2024-avi-0663 | Vulnérabilité dans Asterisk | 2024-08-09T00:00:00.000000 | 2024-08-09T00:00:00.000000 |
| certfr-2024-avi-0662 | Vulnérabilité dans MongoDB | 2024-08-09T00:00:00.000000 | 2024-08-09T00:00:00.000000 |
| certfr-2024-avi-0661 | Multiples vulnérabilités dans les produits Cisco | 2024-08-08T00:00:00.000000 | 2024-08-08T00:00:00.000000 |
| certfr-2024-avi-0660 | Multiples vulnérabilités dans Microsoft Windows | 2024-08-08T00:00:00.000000 | 2024-08-08T00:00:00.000000 |
| certfr-2024-avi-0659 | Multiples vulnérabilités dans GitLab | 2024-08-08T00:00:00.000000 | 2024-08-08T00:00:00.000000 |
| certfr-2024-avi-0658 | Multiples vulnérabilités dans Google Chrome | 2024-08-07T00:00:00.000000 | 2024-08-07T00:00:00.000000 |
| certfr-2024-avi-0657 | Multiples vulnérabilités dans les produits HPE Aruba Networking | 2024-08-07T00:00:00.000000 | 2024-08-07T00:00:00.000000 |
| certfr-2024-avi-0656 | Multiples vulnérabilités dans les produits Mozilla | 2024-08-07T00:00:00.000000 | 2024-08-07T00:00:00.000000 |
| certfr-2024-avi-0655 | Multiples vulnérabilités dans Google Android | 2024-08-07T00:00:00.000000 | 2024-08-07T00:00:00.000000 |
| certfr-2024-avi-0654 | Vulnérabilité dans Kibana | 2024-08-06T00:00:00.000000 | 2024-08-06T00:00:00.000000 |
| certfr-2024-avi-0653 | Vulnérabilité dans LibreOffice | 2024-08-06T00:00:00.000000 | 2024-08-06T00:00:00.000000 |
| certfr-2024-avi-0652 | Vulnérabilité dans les produits Cisco | 2024-08-05T00:00:00.000000 | 2024-08-05T00:00:00.000000 |
| certfr-2024-avi-0651 | Vulnérabilité dans les produits Trend Micro | 2024-08-05T00:00:00.000000 | 2024-08-05T00:00:00.000000 |
| certfr-2024-avi-0650 | Multiples vulnérabilités dans Stormshield Management Center | 2024-08-05T00:00:00.000000 | 2024-08-05T00:00:00.000000 |