Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-23708 | 6.7 (v3.1) | A improper authentication vulnerability in Fortin… |
Fortinet |
FortiSOAR PaaS |
2026-04-14T15:38:18.327Z | 2026-04-15T03:58:22.574Z |
| cve-2026-39814 | 6.2 (v3.1) | A relative path traversal vulnerability in Fortin… |
Fortinet |
FortiWeb |
2026-04-14T15:38:16.660Z | 2026-04-15T03:58:21.366Z |
| cve-2026-39813 | 9.1 (v3.1) | A path traversal: '../filedir' vulnerability in F… |
Fortinet |
FortiSandbox |
2026-04-14T15:38:30.311Z | 2026-04-15T03:58:20.016Z |
| cve-2026-39809 | 6.2 (v3.1) | A improper neutralization of special elements use… |
Fortinet |
FortiClientEMS |
2026-04-14T15:05:56.647Z | 2026-04-15T03:58:18.867Z |
| cve-2026-4369 | 7.1 (v3.1) | Stored Cross-Site Scripting (XSS) Vulnerability in Ass… |
Autodesk |
Fusion |
2026-04-14T13:47:01.968Z | 2026-04-15T03:58:17.421Z |
| cve-2026-4345 | 7.1 (v3.1) | Stored Cross-Site Scripting (XSS) Vulnerability in Des… |
Autodesk |
Fusion |
2026-04-14T13:56:22.111Z | 2026-04-15T03:58:16.255Z |
| cve-2026-4344 | 7.1 (v3.1) | Stored Cross-Site Scripting (XSS) Vulnerability in Ass… |
Autodesk |
Fusion |
2026-04-14T13:56:56.801Z | 2026-04-15T03:58:14.791Z |
| cve-2025-8095 | 9.1 (v4.0) | Recoverable obfuscation using the OECH1 prefix encodin… |
Progress Software Corporation |
OpenEdge |
2026-04-14T13:13:43.739Z | 2026-04-15T03:58:13.601Z |
| cve-2026-2332 | 7.4 (v3.1) | HTTP Request Smuggling via Chunked Extension Quoted-St… |
Eclipse Foundation |
Eclipse Jetty |
2026-04-14T10:59:10.193Z | 2026-04-15T03:58:12.322Z |
| cve-2026-27674 | 6.1 (v3.1) | Code Injection vulnerability in SAP NetWeaver Applicat… |
SAP_SE |
SAP NetWeaver Application Server Java (Web Dynpro Java) |
2026-04-14T00:06:50.301Z | 2026-04-15T03:58:11.103Z |
| cve-2009-0238 | N/A | Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 S… |
n/a |
n/a |
2009-02-25T16:00:00.000Z | 2026-04-15T03:58:09.636Z |
| cve-2026-0209 | 6.9 (v4.0) | Under certain administrative conditions, FlashArr… |
PureStorage |
FlashArray |
2026-04-14T17:52:54.759Z | 2026-04-14T21:56:10.258Z |
| cve-2026-0207 | 8.5 (v4.0) | Sensitive Information Logging Vulnerability in FlashBlade |
PureStorage |
FlashBlade |
2026-04-14T17:53:42.785Z | 2026-04-14T21:55:52.041Z |
| cve-2024-12747 | 5.6 (v3.1) | Rsync: race condition in rsync handling symbolic links |
|
|
2025-01-14T17:39:16.031Z | 2026-04-14T21:41:38.769Z |
| cve-2024-12087 | 6.5 (v3.1) | Rsync: path traversal vulnerability in rsync |
|
|
2025-01-14T17:57:33.927Z | 2026-04-14T21:41:38.443Z |
| cve-2024-12088 | 6.5 (v3.1) | Rsync: --safe-links option bypass leads to path traversal |
|
|
2025-01-14T17:38:34.890Z | 2026-04-14T21:41:38.100Z |
| cve-2024-12086 | 6.1 (v3.1) | Rsync: rsync server leaks arbitrary client files |
|
|
2025-01-14T17:37:54.960Z | 2026-04-14T21:41:26.494Z |
| cve-2025-7425 | 7.8 (v3.1) | Libxslt: heap use-after-free in libxslt caused by atyp… |
GNOME |
libxml2 |
2025-07-10T13:53:37.295Z | 2026-04-14T21:37:16.749Z |
| cve-2025-7424 | 7.5 (v3.1) | Libxslt: type confusion in xmlnode.psvi between styles… |
GNOME |
libxslt |
2025-07-10T14:05:41.808Z | 2026-04-14T21:37:16.234Z |
| cve-2026-24045 | Docmost Affected by Stored XSS in Public Share Page |
docmost |
docmost |
2026-02-10T16:56:37.966Z | 2026-04-14T21:36:07.934Z | |
| cve-2022-29083 | Prior Dell BIOS versions contain an Improper Auth… |
Dell |
CPG BIOS |
2022-08-09T20:15:15.536Z | 2026-04-14T20:23:14.520Z | |
| cve-2026-40289 | PraisonAI Browser Server allows unauthenticated WebSoc… |
MervinPraison |
PraisonAI |
2026-04-14T03:05:05.514Z | 2026-04-14T20:18:37.319Z | |
| cve-2026-22565 | N/A | An Improper Input Validation vulnerability could … |
Ubiquiti Inc |
UniFi Play PowerAmp |
2026-04-13T21:28:10.916Z | 2026-04-14T20:18:31.138Z |
| cve-2026-40683 | 7.7 (v3.1) | In OpenStack Keystone before 28.0.1, the LDAP ide… |
OpenStack |
Keystone |
2026-04-14T20:05:03.274Z | 2026-04-14T20:14:44.539Z |
| cve-2026-31924 | Apache APISIX: Plugin tencent-cloud-cls log export use… |
Apache Software Foundation |
Apache APISIX |
2026-04-14T08:08:05.615Z | 2026-04-14T19:51:55.994Z | |
| cve-2026-33929 | Apache PDFBox Examples: Path Traversal in PDFBox Extra… |
Apache Software Foundation |
Apache PDFBox Examples |
2026-04-14T08:09:39.517Z | 2026-04-14T19:50:07.000Z | |
| cve-2026-22692 | October CMS: Twig Sandbox Bypass via Collection Methods |
octobercms |
october |
2026-04-14T16:48:04.730Z | 2026-04-14T19:42:40.460Z | |
| cve-2026-27285 | 5.5 (v3.1) | InDesign Desktop | Heap-based Buffer Overflow (CWE-122) |
Adobe |
InDesign Desktop |
2026-04-14T16:45:54.941Z | 2026-04-14T19:41:12.307Z |
| cve-2026-34625 | 5.4 (v3.1) | Adobe Experience Manager | Cross-site Scripting (DOM-b… |
Adobe |
Adobe Experience Manager |
2026-04-14T18:26:01.009Z | 2026-04-14T19:38:42.488Z |
| cve-2026-6122 | Tenda F451 httpd L7Prot frmL7ProtForm stack-based overflow |
Tenda |
F451 |
2026-04-12T07:30:14.700Z | 2026-04-14T19:37:43.798Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2011-001633 | Header Customization by Hitachi Web Server RequetHeader Directive Could Allow Attacker to Access Data Deleted from Memory | 2011-06-29T17:54+09:00 | 2014-05-21T18:21+09:00 |
| jvndb-2008-001513 | Cross-Site Scripting Vulnerability in Hitachi Web Server Status Information Display Function | 2008-07-30T13:45+09:00 | 2014-05-21T18:19+09:00 |
| jvndb-2009-001741 | Hitachi Web Server Vulnerability in SSL Client Authentication | 2009-07-14T10:17+09:00 | 2014-05-21T18:16+09:00 |
| jvndb-2011-000053 | Android vulnerability where an incorrect SSL certificate is displayed | 2011-07-29T14:26+09:00 | 2014-05-19T17:19+09:00 |
| jvndb-2014-000042 | Cybozu Garoon Phone Messages vulnerable to denial-of-service (DoS) | 2014-04-30T15:14+09:00 | 2014-05-14T10:50+09:00 |
| jvndb-2014-000044 | intra-mart vulnerable to open redirect | 2014-05-08T12:46+09:00 | 2014-05-12T17:45+09:00 |
| jvndb-2014-000043 | Cybozu Garoon API access restriction bypass vulnerability | 2014-04-30T15:08+09:00 | 2014-05-08T18:06+09:00 |
| jvndb-2014-000040 | Cybozu Remote Service Manager vulnerable to session fixation | 2014-04-18T13:35+09:00 | 2014-04-28T18:14+09:00 |
| jvndb-2014-000039 | Cybozu Remote Service Manager vulnerable to denial-of-service (DoS) | 2014-04-18T13:40+09:00 | 2014-04-28T18:13+09:00 |
| jvndb-2014-000037 | AndExplorer vulnerable to directory traversal | 2014-04-18T12:39+09:00 | 2014-04-28T18:12+09:00 |
| jvndb-2014-000038 | TOSHIBA TEC e-Studio series vulnerable to cross-site request forgery | 2014-04-18T14:30+09:00 | 2014-04-28T18:11+09:00 |
| jvndb-2014-000036 | Content Provider in CamiApp for Android fails to restrict access permissions | 2014-04-14T13:45+09:00 | 2014-04-21T18:34+09:00 |
| jvndb-2014-000035 | SD Card Manager vulnerable to directory traversal | 2014-04-11T13:43+09:00 | 2014-04-16T18:22+09:00 |
| jvndb-2014-000041 | Redmine vulnerable to open redirect | 2014-04-16T15:06+09:00 | 2014-04-16T15:06+09:00 |
| jvndb-2014-000029 | sp mode mail vulnerability where Java methods may be executed | 2014-03-18T14:09+09:00 | 2014-03-25T19:25+09:00 |
| jvndb-2014-000028 | sp mode mail issue where emails in the process of creation may be accessed | 2014-03-18T14:08+09:00 | 2014-03-25T19:24+09:00 |
| jvndb-2014-000027 | sp mode mail issue when accessing attachments in incoming mail | 2014-03-18T14:07+09:00 | 2014-03-24T19:04+09:00 |
| jvndb-2014-000033 | ES File Explorer vulnerable to directory traversal | 2014-03-20T14:05+09:00 | 2014-03-24T18:50+09:00 |
| jvndb-2014-000032 | Silex vulnerable to cross-site scripting | 2014-03-20T14:02+09:00 | 2014-03-24T18:27+09:00 |
| jvndb-2014-000031 | Unzipper vulnerable to directory traversal | 2014-03-17T13:45+09:00 | 2014-03-19T15:15+09:00 |
| jvndb-2014-000030 | Demaecan for Android. contains an issue where it fails to verify SSL server certificates | 2014-03-17T13:43+09:00 | 2014-03-19T15:14+09:00 |
| jvndb-2013-000111 | Android OS vulnerable to arbitrary Java method execution | 2013-12-17T13:57+09:00 | 2014-03-05T17:27+09:00 |
| jvndb-2014-000025 | XooNIps vulnerable to cross-site scripting | 2014-02-26T15:19+09:00 | 2014-03-03T18:50+09:00 |
| jvndb-2014-000022 | Denny's App for Android. contains an issue where it fails to verify SSL server certificates | 2014-02-26T15:21+09:00 | 2014-03-03T18:49+09:00 |
| jvndb-2014-000026 | Norman Security Suite vulnerable to privilege escalation | 2014-02-26T15:20+09:00 | 2014-03-03T18:47+09:00 |
| jvndb-2014-000021 | Cybozu Garoon vulnerable to session management | 2014-02-26T15:21+09:00 | 2014-03-03T18:45+09:00 |
| jvndb-2014-000023 | Cybozu Garoon vulnerable to directory traversal | 2014-02-26T15:22+09:00 | 2014-03-03T18:44+09:00 |
| jvndb-2014-000024 | Cybozu Garoon vulnerable to SQL injection | 2014-02-26T15:23+09:00 | 2014-03-03T18:42+09:00 |
| jvndb-2014-000012 | Blackboard Vista/CE vulnerable to cross-site scripting | 2014-02-21T14:12+09:00 | 2014-02-25T16:40+09:00 |
| jvndb-2014-000019 | AutoCAD vulnerable to arbitrary VBScript execution | 2014-02-21T14:16+09:00 | 2014-02-25T16:39+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2024-avi-0530 | Multiples vulnérabilités dans les produits NetApp | 2024-07-01T00:00:00.000000 | 2024-07-01T00:00:00.000000 |
| certfr-2024-avi-0529 | Multiples vulnérabilités dans les produits IBM | 2024-06-28T00:00:00.000000 | 2024-06-28T00:00:00.000000 |
| certfr-2024-avi-0528 | Multiples vulnérabilités dans le noyau Linux de Red Hat | 2024-06-28T00:00:00.000000 | 2024-06-28T00:00:00.000000 |
| certfr-2024-avi-0527 | Multiples vulnérabilités dans le noyau Linux de Debian LTS | 2024-06-28T00:00:00.000000 | 2024-06-28T00:00:00.000000 |
| certfr-2024-avi-0526 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2024-06-28T00:00:00.000000 | 2024-06-28T00:00:00.000000 |
| certfr-2024-avi-0525 | Multiples vulnérabilités dans les produits Juniper Networks | 2024-06-28T00:00:00.000000 | 2024-06-28T00:00:00.000000 |
| certfr-2024-avi-0524 | Multiples vulnérabilités dans les produits VMware | 2024-06-28T00:00:00.000000 | 2024-06-28T00:00:00.000000 |
| certfr-2024-avi-0523 | Multiples vulnérabilités dans Microsoft Edge | 2024-06-28T00:00:00.000000 | 2024-06-28T00:00:00.000000 |
| certfr-2024-avi-0522 | Vulnérabilité dans OpenSSL | 2024-06-27T00:00:00.000000 | 2024-06-27T00:00:00.000000 |
| certfr-2024-avi-0521 | Multiples vulnérabilités dans GitLab | 2024-06-27T00:00:00.000000 | 2024-06-27T00:00:00.000000 |
| certfr-2024-avi-0520 | Multiples vulnérabilités dans les produits Progress | 2024-06-26T00:00:00.000000 | 2024-06-26T00:00:00.000000 |
| certfr-2024-avi-0519 | Multiples vulnérabilités dans les produits VMware | 2024-06-26T00:00:00.000000 | 2024-06-26T00:00:00.000000 |
| certfr-2024-avi-0518 | Vulnérabilité dans LibreOffice | 2024-06-25T00:00:00.000000 | 2024-06-25T00:00:00.000000 |
| certfr-2024-avi-0517 | Vulnérabilité dans Citrix Secure Access client | 2024-06-25T00:00:00.000000 | 2024-06-25T00:00:00.000000 |
| certfr-2024-avi-0516 | Multiples vulnérabilités dans WordPress | 2024-06-25T00:00:00.000000 | 2024-06-25T00:00:00.000000 |
| certfr-2024-avi-0515 | Multiples vulnérabilités dans Google Chrome | 2024-06-25T00:00:00.000000 | 2024-06-25T00:00:00.000000 |
| certfr-2024-avi-0493 | Multiples vulnérabilités dans les produits Mozilla | 2024-06-14T00:00:00.000000 | 2024-06-24T00:00:00.000000 |
| certfr-2024-avi-0514 | Multiples vulnérabilités dans les produits IBM | 2024-06-21T00:00:00.000000 | 2024-06-21T00:00:00.000000 |
| certfr-2024-avi-0513 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2024-06-21T00:00:00.000000 | 2024-06-21T00:00:00.000000 |
| certfr-2024-avi-0512 | Multiples vulnérabilités dans les produits Moxa | 2024-06-21T00:00:00.000000 | 2024-06-21T00:00:00.000000 |
| certfr-2024-avi-0511 | Vulnérabilité dans les produits ESET | 2024-06-21T00:00:00.000000 | 2024-06-21T00:00:00.000000 |
| certfr-2024-avi-0510 | Multiples vulnérabilités dans Microsoft Edge | 2024-06-21T00:00:00.000000 | 2024-06-21T00:00:00.000000 |
| certfr-2024-avi-0494 | Vulnérabilité dans FreeRADIUS | 2024-06-14T00:00:00.000000 | 2024-06-21T00:00:00.000000 |
| certfr-2024-avi-0509 | Multiples vulnérabilités dans SonicWall SonicOS | 2024-06-20T00:00:00.000000 | 2024-06-20T00:00:00.000000 |
| certfr-2024-avi-0508 | Multiples vulnérabilités dans les produits Moxa | 2024-06-20T00:00:00.000000 | 2024-06-20T00:00:00.000000 |
| certfr-2024-avi-0507 | Vulnérabilité dans Spring Cloud Function | 2024-06-20T00:00:00.000000 | 2024-06-20T00:00:00.000000 |
| certfr-2024-avi-0506 | Multiples vulnérabilités dans Juniper Secure Analytics | 2024-06-19T00:00:00.000000 | 2024-06-19T00:00:00.000000 |
| certfr-2024-avi-0505 | Multiples vulnérabilités dans Moodle | 2024-06-19T00:00:00.000000 | 2024-06-19T00:00:00.000000 |
| certfr-2024-avi-0504 | Multiples vulnérabilités dans les produits Atlassian | 2024-06-19T00:00:00.000000 | 2024-06-19T00:00:00.000000 |
| certfr-2024-avi-0503 | Multiples vulnérabilités dans Google Chrome | 2024-06-19T00:00:00.000000 | 2024-06-19T00:00:00.000000 |