search
menu
icon-carat-right
cmu-wordmark
×
Home
Notes
Search
Report a Vulnerability
Disclosure Guidance
VINCE
Carnegie Mellon University
Software Engineering Institute
CERT Coordination Center
Home
Notes
Search
Report a Vulnerability
Disclosure Guidance
VINCE
Home
Current:
Notes
CERT/CC Vulnerability Notes Database
Published
Public
Updated
ID
CVSS
Title
2026-07-23
2026-07-23
2026-07-23
VU#492466
Logto Identity Platform has authentication and authorization failures in core protocol handling
2026-07-22
2026-07-22
2026-07-22
VU#847406
Duplicati backup software v2.3.0.1 is vulnerable to an incorrect permission assignment vulnerability
2026-07-21
2026-07-21
2026-07-21
VU#762226
Plane contains multi-tenant authorization bypass vulnerability
2026-03-24
2026-03-24
2026-07-17
VU#330121
IDrive for Windows contains local privilege escalation vulnerability
2026-07-16
2026-07-16
2026-07-16
VU#326070
SGLang contains a vulnerable pickle deserialization vulnerability through the expert-parallel subsystem
2026-07-15
2026-07-15
2026-07-15
VU#529388
Privilege escalation vulnerability via unprotected IOCTL interface in Pegatron Tdelo64.sys
2026-07-15
2026-07-15
2026-07-15
VU#725167
node-forge Signature Forgery Vulnerabilities in RSA-PKCS and ED25519 Implementations
2026-06-09
2026-06-09
2026-07-14
VU#616257
Microsoft-signed UEFI shim bootloaders vulnerable to Secure Boot bypass
2026-07-10
2026-07-10
2026-07-10
VU#564823
GNU Wget enables SSRF via unvalidated FTP PASV IPs
2026-07-09
2026-07-09
2026-07-09
VU#152953
PayRange Android app version 7.0.7 contains multiple vulnerabilities
2026-07-09
2026-07-09
2026-07-09
VU#734812
Xerte Online Toolkit contains an authentication bypass that allows for RCE
2026-07-08
2026-07-08
2026-07-08
VU#849433
Adalo Database API Enables Cross-App User Data Extraction via Over-Fetching and Missing Authorization Controls
2026-06-22
2026-06-22
2026-07-06
VU#226679
Microsoft WinRE allows for bypass of UEFI/BIOS password enforcement
2026-07-06
2026-07-06
2026-07-06
VU#828543
HP Deskjet 2800 Printer Series Webservers contain Missing Authorization Vulnerability
2026-07-02
2026-07-02
2026-07-02
VU#639124
Multiple local privilege escalation vulnerabilities in Little Orbits GameFirst Anti-Cheat
Previous
1
You're on page
2
3
4
5
248
Next
Sponsored by
CISA.
Download PGP Key
Read CERT/CC Blog
Learn about Vulnerability Analysis