search
menu
icon-carat-right
cmu-wordmark
×
Home
Notes
Search
Report a Vulnerability
Disclosure Guidance
VINCE
Carnegie Mellon University
Software Engineering Institute
CERT Coordination Center
Home
Notes
Search
Report a Vulnerability
Disclosure Guidance
VINCE
Home
Current:
Notes
CERT/CC Vulnerability Notes Database
Published
Public
Updated
ID
CVSS
Title
2023-12-06
2023-12-06
2025-09-23
VU#811862
Image files in UEFI can be abused to modify boot behavior
2025-09-22
2025-09-22
2025-09-22
VU#780141
Cross-site scripting vulnerability in Lectora course navigation
2021-10-04
2021-10-04
2025-09-15
VU#883754
Salesforce DX command line interface (CLI) does not adequately protect sfdxurl credentials
2025-01-14
2025-01-14
2025-09-12
VU#529659
Howyar Reloader UEFI bootloader vulnerable to unsigned software execution
2025-09-12
2025-09-12
2025-09-12
VU#949137
Langchaingo supports jinja2 and gonja for syntax parsing, allowing for arbitrary file read
2025-09-10
2025-09-10
2025-09-10
VU#974249
Elevated Privileges and Arbitrary Code Execution issues in Sunshine for Windows v2025.122.141614
2025-09-09
2025-09-09
2025-09-09
VU#763183
Amp'ed RF BT-AP 111 Bluetooth access point lacks an authentication mechanism
2025-09-09
2025-09-09
2025-09-09
VU#461364
Hiawatha open-source web server has multiple vulnerabilities
2024-07-09
2024-07-09
2025-09-03
VU#456537
RADIUS protocol susceptible to forgery attacks.
2025-01-14
2025-01-14
2025-08-25
VU#952657
Rsync contains six vulnerabilities
2025-08-19
2025-08-19
2025-08-19
VU#706118
Workhorse Software Services, Inc. software prior to version 1.9.4.48019, default deployment is vulnerable to multiple issues.
2025-08-15
2025-08-15
2025-08-15
VU#209095
SMM Memory Corruption Vulnerability in the AMI Aptio's SMM Module Across Multiple Devices
2025-07-29
2025-07-29
2025-08-04
VU#554637
TP-Link Archer C50 router is vulnerable to configuration-file decryption
2025-08-02
2025-08-02
2025-08-04
VU#317469
Partner Software/Partner Web does not sanitize Report files and Note content, allowing for XSS and RCE
2013-06-26
2013-06-24
2025-08-01
VU#662676
6.8
Digital Alert Systems DASDEC and Monroe Electronics R189 One-Net firmware exposes private root SSH key
Previous
1
2
3
You're on page
4
5
6
7
245
Next
Sponsored by
CISA.
Download PGP Key
Read CERT/CC Blog
Learn about Vulnerability Analysis