Live
2026年8月29日
Sources: NVD · GHSA · OSV · CISA KEV · JVN
ログイン
新規登録
JA
·
EN
·
FR
SecPulse
v1
脆弱性
KEV
タグ
カテゴリ
脆弱性
KEV
タグ
カテゴリ
ホーム
/
カテゴリ
/
開発者ツール
🧰
開発者ツール
slug: developer-tooling
🛡 関連する脆弱性
31
ID
タイトル
重要度
検知
CVE-2026-78677
GitPython before 3.1.59 omits --separate-git-dir from unsafe_git_clone_options, allowing...
High
4日前
CVE-2026-78209
exceljs-hardened versions before 5.0.0 fail to neutralize leading equals, plus, minus, or at...
High
5日前
CVE-2026-78136
chirpmyradio CHIRP before 39178db allows eval injection via crafted CSV data. This occurs in...
High
6日前
CVE-2026-62960
Git for Windows is the Windows port of Git. Prior to 2.55.0.windows.4, a malicious remote Git server can advertise a bundle URI that reaches transport_get_remote_bundle_uri(), fetch_bundle_uri_interna...
High
1週間前
CVE-2026-73224
electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.15.120, electerm allows a malicious FTP or SFTP server to execute arbitrary commands when a user do...
High
2週間前
CVE-2026-73226
electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.15.186, electerm allows an authenticated WebSocket client to invoke unintended internal functions t...
High
2週間前
CVE-2026-73222
Claude Code Templates is a CLI tool for configuring and monitoring Claude Code. Prior to 1.29.4, the Claude Code Studio server launched by the --studio option in cli-tool/src/sandbox-server.js binds t...
High
2週間前
CVE-2026-48120
Kakoune is a code editor. Prior to version 2026.05.21, the bundled, enabled by default, `autorestore.kak` script can be exploited by malicious backup files leading to arbitrary kakoune and shell comma...
High
3週間前
CVE-2026-66036
FFmpeg through 8.1.2, fixed in commit 5d7112c, contains a heap out-of-bounds write vulnerability...
High
1ヶ月前
CVE-2026-58049
FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes...
High
2ヶ月前
CVE-2026-47964
DNG SDK versions 1.7.1 2536 and earlier are affected by a Heap-based Buffer Overflow...
High
2ヶ月前
CVE-2026-47908
Dreamweaver Desktop versions 21.7 and earlier are affected by an Access of Uninitialized Pointer...
High
2ヶ月前
CVE-2026-49366
In JetBrains IntelliJ IDEA before 2026.1.1 command injection was possible via filename completion
High
3ヶ月前
CVE-2026-49367
In JetBrains IntelliJ IDEA before 2026.1.1 command execution was possible via the guest user account
High
3ヶ月前
CVE-2026-42302
openai-sdk の脆弱性 (CVE-2026-42302)
Critical
3ヶ月前
CVE-2026-41588
timing-attack の脆弱性 (CVE-2026-41588)
Critical
3ヶ月前
CVE-2026-41507
remote に コードインジェクション (CVE-2026-41507)
Critical
3ヶ月前
CVE-2026-43944
electerm の脆弱性 (CVE-2026-43944)
Critical
3ヶ月前
CVE-2026-41500
electerm-project に コマンドインジェクション (CVE-2026-41500)
Critical
3ヶ月前
CVE-2025-63704
prototype-pollution の脆弱性 (CVE-2025-63704)
Critical
3ヶ月前
CVE-2025-63706
npm に コードインジェクション (CVE-2025-63706)
Critical
3ヶ月前
CVE-2026-34084
phpoffice/phpspreadsheet に 安全でないデシリアライゼーション (CVE-2026-34084)
Critical
3ヶ月前
CVE-2026-38431
frappe に コードインジェクション (CVE-2026-38431)
Critical
3ヶ月前
CVE-2026-26956
vm2-project の脆弱性 (CVE-2026-26956)
Critical
3ヶ月前
CVE-2026-24118
vm2-project に コードインジェクション (CVE-2026-24118)
Critical
3ヶ月前
CVE-2026-24781
vm2-project に コードインジェクション (CVE-2026-24781)
Critical
3ヶ月前
CVE-2012-1854
KEV
【KEV】Microsoft visual-basic-for-applications-vba の脆弱性 (CVE-2012-1854)
High
4ヶ月前
CVE-2026-32146
Improper Path Validation in Git Dependency Handling Allows Arbitrary File System Modification
High
4ヶ月前
CVE-2020-37208
SpotFTP 3.0.0.0 contains a buffer overflow vulnerability in the registration key input field that allows attackers to crash the application. Attackers can generate a 1000-character payload and paste i...
High
6ヶ月前
CVE-2025-69262
pnpm is a package manager. Versions 6.25.0 through 10.26.2 have a Command Injection vulnerability when using environment variable substitution in .npmrc configuration files with tokenHelper settings....
High
7ヶ月前
« Previous
Next »
Showing
1
to
30
of
31
results
1
2
🍪 Cookie について
当サイトはログイン状態の保持・言語設定・サービス改善のために Cookie を使用します。詳細は下記リンクをご確認ください。
すべて受け入れる
必須のみ
詳細 →