Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-54523 | Kyverno: NamespacedGeneratingPolicy generator.apply() … |
kyverno |
kyverno |
2026-08-26T14:20:37.236Z | 2026-08-26T15:06:37.284Z | |
| cve-2026-54548 | kas: Persistent SSH Host Key Checking Disablement |
siemens |
kas |
2026-08-26T14:17:32.620Z | 2026-08-26T15:36:30.207Z | |
| cve-2026-54553 | Starlette-Admin: Unvalidated `order_by` parameter allo… |
jowilf |
starlette-admin |
2026-08-26T14:13:33.204Z | 2026-08-26T15:15:35.305Z | |
| cve-2026-54556 | Http4s: HTTP/2 Denial of Service with Ember Backend |
http4s |
http4s |
2026-08-26T14:10:22.349Z | 2026-08-29T02:38:44.725Z | |
| cve-2026-13481 | 5.4 (v3.1) | Out-of-bounds read in PTP management TLV TIME parsing … |
zephyrproject |
zephyr |
2026-08-26T14:03:49.820Z | 2026-08-31T23:13:16.291Z |
| cve-2026-13480 | 3.1 (v3.1) | Out-of-bounds read in LoRaWAN fragmented data block tr… |
zephyrproject |
zephyr |
2026-08-26T14:03:48.784Z | 2026-08-26T15:45:14.744Z |
| cve-2026-13479 | 3.1 (v3.1) | Out-of-bounds read in LoRaWAN clock-sync AppTimeAns do… |
zephyrproject |
zephyr |
2026-08-26T14:03:47.708Z | 2026-08-26T15:44:15.133Z |
| cve-2026-19271 | 7.5 (v3.1) | Blind LDAP Injection in Sign-In Endpoint in TÜBİTAK Bİ… |
TÜBİTAK BİLGEM Software Technologies Research Institute |
Liderahenk |
2026-08-26T13:44:57.748Z | 2026-08-26T15:43:48.093Z |
| cve-2025-10903 | 6.5 (v3.1) | Loop with Unreachable Exit Condition ('Infinite Loop')… |
GitLab |
GitLab |
2026-08-26T13:37:00.097Z | 2026-08-26T15:43:12.549Z |
| cve-2026-3035 | 5.5 (v3.1) | Authentication Bypass Using an Alternate Path or Chann… |
GitLab |
GitLab |
2026-08-26T13:36:45.137Z | 2026-08-26T15:41:48.692Z |
| cve-2026-7487 | 3.5 (v3.1) | Access Control Check Implemented After Asset is Access… |
GitLab |
GitLab |
2026-08-26T13:36:25.081Z | 2026-08-26T15:41:22.945Z |
| cve-2026-15387 | 4.3 (v3.1) | Acceptance of Extraneous Untrusted Data With Trusted D… |
GitLab |
GitLab |
2026-08-26T13:36:05.088Z | 2026-08-26T15:40:50.442Z |
| cve-2026-18252 | 7.3 (v3.1) | Inclusion of Functionality from Untrusted Control Sphe… |
GitLab |
GitLab |
2026-08-26T13:36:00.100Z | 2026-08-27T03:57:14.567Z |
| cve-2026-77801 | 6.5 (v3.1) | Allocation of Resources Without Limits or Throttling i… |
GitLab |
GitLab |
2026-08-26T13:35:45.203Z | 2026-08-26T15:55:52.127Z |
| cve-2026-75896 | 9.1 (v3.1) | Use of Hard-coded LDAP Credentials in TÜBİTAK BİLGEM's… |
TÜBİTAK BİLGEM Software Technologies Research Institute |
Liderahenk |
2026-08-26T13:35:05.852Z | 2026-08-26T17:10:29.246Z |
| cve-2026-79902 | 5.5 (v3.1) | Gimp: stack vla size underflow denial of service in seattle |
GNOME |
GIMP |
2026-08-26T13:34:24.555Z | 2026-08-26T15:38:04.436Z |
| cve-2026-15990 | Formidable Charts <= 2.0.1 - Unauthenticated Arbitrary… |
Strategy11 |
Formidable Charts |
2026-08-26T13:28:08.896Z | 2026-08-27T14:34:07.818Z | |
| cve-2026-75960 | 8.7 (v4.0) 8.1 (v3.1) | Insufficiently Protected Credentials in Rently Smart Home |
Rently |
Smart Home |
2026-08-26T13:20:19.920Z | 2026-08-26T17:10:54.255Z |
| cve-2026-73108 | 8.7 (v4.0) 7.5 (v3.1) | RustDesk < 1.4.7 Uncontrolled Memory Allocation DoS vi… |
rustdesk |
rustdesk |
2026-08-26T13:00:29.283Z | 2026-08-29T11:47:46.413Z |
| cve-2026-73102 | 6.9 (v4.0) 5.7 (v3.1) | RustDesk Path Traversal via macOS Clipboard File-Paste |
rustdesk |
rustdesk |
2026-08-26T13:00:00.405Z | 2026-08-29T11:47:45.736Z |
| cve-2026-12717 | 9.4 (v4.0) | Remote Code Execution in BigQuery Data Transfer Servic… |
Google Cloud |
BigQuery Data Transfer Service |
2026-08-26T12:59:56.543Z | 2026-08-26T19:03:22.491Z |
| cve-2026-79619 | 7.3 (v4.0) | OpenZFS: user-namespace capability check allows unpriv… |
OpenZFS |
OpenZFS |
2026-08-26T12:50:10.502Z | 2026-08-27T17:32:03.057Z |
| cve-2026-12587 | 8.6 (v4.0) | Embedded credentials in Virtuagym |
Resamania |
Virtuagym |
2026-08-26T12:20:52.212Z | 2026-08-26T13:06:16.524Z |
| cve-2026-77658 | 7.8 (v3.1) | Dia: dia: stack buffer overflow in bus object via unva… |
GNOME |
Dia |
2026-08-26T12:10:07.556Z | 2026-08-26T13:11:12.732Z |
| cve-2026-15985 | Classified Listing - Mobile Number Verification <= 1.6… |
RadiusTheme |
Classified Listing - Mobile Number Verification |
2026-08-26T11:36:39.336Z | 2026-08-26T12:30:21.617Z | |
| cve-2026-63041 | 5.3 (v4.0) | Apache APISIX: attach-consumer-label does not strip cl… |
Apache Software Foundation |
Apache APISIX |
2026-08-26T11:34:59.724Z | 2026-08-26T12:31:31.308Z |
| cve-2026-18080 | ERP: Complete HR, Accounting & CRM Suite Built for Woo… |
wedevs |
ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce |
2026-08-26T11:05:44.740Z | 2026-08-26T12:00:54.990Z | |
| cve-2026-3235 | WP Data Access – No-Code App Builder with Tables, Form… |
peterschulznl |
WP Data Access – App Builder for Tables, Forms, Charts, Maps & Dashboards |
2026-08-26T11:05:44.350Z | 2026-08-28T18:35:57.502Z | |
| cve-2026-5092 | Greenshift <= 12.8.9 - Authenticated (Contributor+) St… |
wpsoul |
Greenshift – animation and page builder blocks |
2026-08-26T11:05:43.804Z | 2026-08-26T14:49:54.313Z | |
| cve-2026-77532 | 9.6 (v3.1) | A malicious actor with access to an adjacent netw… |
Ubiquiti Inc |
EdgeMAX EdgeSwitch |
2026-08-26T11:01:30.309Z | 2026-08-26T12:36:20.285Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2015-000022 | AL-Mail32 vulnerable to buffer overflow | 2015-02-20T14:55+09:00 | 2015-02-24T16:36+09:00 |
| jvndb-2015-000019 | Squid input validation vulnerability | 2015-02-20T14:55+09:00 | 2015-03-06T14:57+09:00 |
| jvndb-2015-000021 | AL-Mail32 vulnerable to denial-of-service (DoS) | 2015-02-20T14:54+09:00 | 2015-02-24T16:37+09:00 |
| jvndb-2015-000020 | AL-Mail32 vulnerable to directory traversal | 2015-02-20T14:37+09:00 | 2015-02-24T16:38+09:00 |
| jvndb-2015-000018 | C-BOARD Moyuku vulnerable to arbitrary file creation | 2015-02-17T14:21+09:00 | 2015-04-07T17:57+09:00 |
| jvndb-2015-000017 | Saurus CMS Community Edition vulnerable to cross-site scripting | 2015-02-17T14:20+09:00 | 2015-04-08T15:20+09:00 |
| jvndb-2015-001269 | Cross-site Scripting Vulnerability in Hitachi Application Server Help | 2015-02-16T11:21+09:00 | 2015-03-03T16:59+09:00 |
| jvndb-2015-001268 | Cross-site Scripting Vulnerability in Hitachi Command Suite Products | 2015-02-16T11:12+09:00 | 2015-03-03T16:59+09:00 |
| jvndb-2015-000016 | Smartphone Passbook for Android information management vulnerability | 2015-02-13T14:33+09:00 | 2015-05-21T10:05+09:00 |
| jvndb-2015-000015 | Smartphone Passbook fails to verify SSL server certificates | 2015-02-13T14:32+09:00 | 2018-03-07T13:50+09:00 |
| jvndb-2015-000014 | PerlTreeBBS vulnerable to cross-site scripting | 2015-02-13T13:58+09:00 | 2015-02-13T13:58+09:00 |
| jvndb-2015-000013 | shiromuku(u1)GUESTBOOK vulnerable to cross-site scripting | 2015-02-13T13:58+09:00 | 2015-02-13T13:58+09:00 |
| jvndb-2015-000001 | Cybozu Remote Service Manager vulnerable to denial-of-service (DoS) | 2015-01-30T14:19+09:00 | 2015-01-30T14:19+09:00 |
| jvndb-2015-000010 | Fumy News Clipper vulnerable to cross-site scripting | 2015-01-30T13:52+09:00 | 2015-02-16T15:55+09:00 |
| jvndb-2015-000007 | Arbitrary files may be overwritten in multiple VMware products | 2015-01-29T13:52+09:00 | 2015-02-16T15:34+09:00 |
| jvndb-2015-000012 | Multiple ASUS wireless LAN routers vulnerable to cross-site request forgery | 2015-01-27T14:24+09:00 | 2015-06-17T16:42+09:00 |
| jvndb-2015-000011 | Multiple ASUS wireless LAN routers vulnerable to OS command injection | 2015-01-27T14:23+09:00 | 2015-06-17T16:42+09:00 |
| jvndb-2015-000009 | NP-BBRM vulnerable in UPnP functionality | 2015-01-26T13:42+09:00 | 2015-08-18T14:36+09:00 |
| jvndb-2015-000008 | shiromuku(bu2)BBS vulnerable to arbitrary file creation | 2015-01-23T14:22+09:00 | 2015-02-13T09:51+09:00 |
| jvndb-2015-000006 | SYNCK GRAPHICA Download Log CGI vulnerable to directory traversal | 2015-01-19T13:54+09:00 | 2015-02-13T15:09+09:00 |
| jvndb-2014-000152 | WBS Gantt-Chart for JIRA vulnerable to cross-site scripting | 2014-12-18T14:49+09:00 | 2014-12-22T17:33+09:00 |
| jvndb-2014-000151 | WBS Gantt-Chart for JIRA vulnerable to cross-site scripting | 2014-12-18T14:48+09:00 | 2014-12-22T17:30+09:00 |
| jvndb-2014-000132 | Multiple Allied Telesis products vulnerable to buffer overflow | 2014-12-18T14:47+09:00 | 2015-01-28T17:38+09:00 |
| jvndb-2014-000124 | TSUTAYA App for Android vulnerable to arbitrary Java method execution | 2014-12-18T13:41+09:00 | 2014-12-22T17:52+09:00 |
| jvndb-2014-005987 | Multiple Vulnerabilities in JP1/Cm2/Network Node Manager i | 2014-12-16T17:31+09:00 | 2016-02-26T17:52+09:00 |
| jvndb-2014-005986 | Multiple buffer overflows in Hitachi JP1/Cm2/Network Node Manager i | 2014-12-16T17:30+09:00 | 2016-02-26T17:32+09:00 |
| jvndb-2014-000150 | LinPHA vulnerable to cross-site scripting | 2014-12-12T13:48+09:00 | 2014-12-16T17:07+09:00 |
| jvndb-2014-000149 | Chyrp vulnerable to cross-site scripting | 2014-12-10T14:18+09:00 | 2014-12-15T18:06+09:00 |
| jvndb-2014-000146 | i-HTTPD vulnerable to cross-site scripting | 2014-12-09T14:45+09:00 | 2014-12-09T14:45+09:00 |
| jvndb-2014-000145 | "Omake BBS" of i-HTTPD vulnerable to cross-site scripting | 2014-12-09T14:44+09:00 | 2014-12-15T19:16+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2025-avi-0084 | Vulnérabilité dans Microsoft Edge | 2025-01-31T00:00:00.000000 | 2025-01-31T00:00:00.000000 |
| certfr-2025-avi-0083 | Vulnérabilité dans Apple GarageBand | 2025-01-31T00:00:00.000000 | 2025-01-31T00:00:00.000000 |
| certfr-2025-avi-0082 | Vulnérabilité dans Sonicwall NetExtender | 2025-01-30T00:00:00.000000 | 2025-01-30T00:00:00.000000 |
| certfr-2025-avi-0081 | Multiples vulnérabilités dans ISC BIND | 2025-01-30T00:00:00.000000 | 2025-01-30T00:00:00.000000 |
| certfr-2025-avi-0080 | Vulnérabilité dans les produits Moxa | 2025-01-29T00:00:00.000000 | 2025-01-29T00:00:00.000000 |
| certfr-2025-avi-0079 | Multiples vulnérabilités dans Google Chrome | 2025-01-29T00:00:00.000000 | 2025-01-29T00:00:00.000000 |
| certfr-2025-avi-0078 | Vulnérabilité dans VMware Avi Load Balancer | 2025-01-29T00:00:00.000000 | 2025-01-29T00:00:00.000000 |
| certfr-2025-avi-0077 | Multiples vulnérabilités dans HPE Aruba Networking Fabric Composer | 2025-01-29T00:00:00.000000 | 2025-01-29T00:00:00.000000 |
| certfr-2025-avi-0076 | Vulnérabilité dans NetApp ONTAP | 2025-01-28T00:00:00.000000 | 2025-01-28T00:00:00.000000 |
| certfr-2025-avi-0075 | Multiples vulnérabilités dans les produits Apple | 2025-01-28T00:00:00.000000 | 2025-01-28T00:00:00.000000 |
| certfr-2025-avi-0074 | Vulnérabilité dans Synacor Zimbra Collaboration | 2025-01-28T00:00:00.000000 | 2025-04-28T00:00:00.000000 |
| certfr-2025-avi-0073 | Multiples vulnérabilités dans Microsoft Edge | 2025-01-27T00:00:00.000000 | 2025-01-28T00:00:00.000000 |
| certfr-2025-avi-0072 | Multiples vulnérabilités dans Juniper Secure Analytics | 2025-01-27T00:00:00.000000 | 2025-01-27T00:00:00.000000 |
| certfr-2025-avi-0071 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2025-01-24T00:00:00.000000 | 2025-01-24T00:00:00.000000 |
| certfr-2025-avi-0070 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2025-01-24T00:00:00.000000 | 2025-01-24T00:00:00.000000 |
| certfr-2025-avi-0069 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2025-01-24T00:00:00.000000 | 2025-01-24T00:00:00.000000 |
| certfr-2025-avi-0068 | Vulnérabilité dans ClamAV | 2025-01-24T00:00:00.000000 | 2025-01-24T00:00:00.000000 |
| certfr-2025-avi-0067 | Multiples vulnérabilités dans Qnap HBS 3 Hybrid Backup Sync | 2025-01-24T00:00:00.000000 | 2025-01-24T00:00:00.000000 |
| certfr-2025-avi-0066 | Vulnérabilité dans Sonicwall Secure Mobile Access | 2025-01-23T00:00:00.000000 | 2025-01-23T00:00:00.000000 |
| certfr-2025-avi-0065 | Multiples vulnérabilités dans les produits Mitel | 2025-01-23T00:00:00.000000 | 2025-01-23T00:00:00.000000 |
| certfr-2025-avi-0064 | Multiples vulnérabilités dans les produits Cisco | 2025-01-23T00:00:00.000000 | 2025-01-23T00:00:00.000000 |
| certfr-2025-avi-0063 | Multiples vulnérabilités dans GitLab | 2025-01-23T00:00:00.000000 | 2025-02-13T00:00:00.000000 |
| certfr-2025-avi-0062 | Multiples vulnérabilités dans les produits Elastic | 2025-01-23T00:00:00.000000 | 2025-01-23T00:00:00.000000 |
| certfr-2025-avi-0061 | Multiples vulnérabilités dans Google Chrome | 2025-01-23T00:00:00.000000 | 2025-01-23T00:00:00.000000 |
| certfr-2025-avi-0060 | Multiples vulnérabilités dans Node.js | 2025-01-22T00:00:00.000000 | 2025-01-22T00:00:00.000000 |
| certfr-2025-avi-0059 | Multiples vulnérabilités dans les produits Atlassian | 2025-01-22T00:00:00.000000 | 2025-01-22T00:00:00.000000 |
| certfr-2025-avi-0058 | Multiples vulnérabilités dans Oracle Weblogic | 2025-01-22T00:00:00.000000 | 2025-01-22T00:00:00.000000 |
| certfr-2025-avi-0057 | Multiples vulnérabilités dans Oracle Virtualization | 2025-01-22T00:00:00.000000 | 2025-01-22T00:00:00.000000 |
| certfr-2025-avi-0056 | Vulnérabilité dans Oracle Systems | 2025-01-22T00:00:00.000000 | 2025-01-22T00:00:00.000000 |
| certfr-2025-avi-0055 | Multiples vulnérabilités dans Oracle PeopleSoft | 2025-01-22T00:00:00.000000 | 2025-01-22T00:00:00.000000 |