ENISA EUVD · EUVD-2026-6238Official EUVD mappingcryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 46.0.5, the public_key_from_numbers (or EllipticCurvePublicNumbers.public_key()), EllipticCurvePublicNumbers.public_key(), load_der_public_key() and load_pem_public_key() functions do not verify that the point belongs to the expected prime-order subgroup of the curve. This missing validation allows an attacker to provide a public key point P from a small-order subgroup. This can lead to security issues in various situations, such as the most commonly used signature verification (ECDSA) and shared key negotiation (ECDH). When the victim computes the shared secret as S = [victim_private_key]P via ECDH, this leaks information about victim_private_key mod (small_subgroup_order). For curves with cofactor > 1, this reveals the least significant bits of the private key. When these weak public keys are used in ECDSA , it's easy to forge signatures on the small subgroup. Only SECT curves are impacted by this. This vulnerability is fixed in 46.0.5.
Official EUVD record ↗BSI · German · WID-SEC-2026-3046IBM Concert: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in IBM Concert ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, um einen Cross-Site Scripting Angriff durchzuführen, um einen SQL-Injection Angriff durchzuführen und um Sicherheitsvorkehrungen zu umgehen.
Official advisory ↗BSI · German · WID-SEC-2026-2933Splunk SOAR: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Splunk SOAR ausnutzen, um Sicherheitsvorkehrungen zu umgehen, um Informationen offenzulegen, um Dateien zu manipulieren, um einen SQL-Injection Angriff durchzuführen, um einen Cross-Site Scripting Angriff durchzuführen, und um beliebigen Programmcode auszuführen.
Official advisory ↗BSI · German · WID-SEC-2026-2451Oracle Siebel CRM: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Siebel CRM ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2026-1194Oracle Communications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Communications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2026-0935Red Hat Ansible Automation Platform: Mehrere SchwachstellenEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat Ansible Automation Platform ausnutzen, um einen Denial of Service Angriff durchzuführen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, vertrauliche Informationen offenzulegen oder Cross-Site-Scripting-Angriffe durchzuführen.
Official advisory ↗BSI · German · WID-SEC-2026-1198Oracle Database Server: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Database Server ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗Cyber Security Agency of Singapore · English · CSA-SB-20260211Security Bulletin 11 Feb 2026The Cyber Security Agency of Singapore included this CVE in its official Security Bulletin 11 Feb 2026, published on 11 February 2026. Open the linked bulletin for the product, severity and reference information published in that issue.
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-1206Multiples vulnérabilités dans les produits IBMd?id=CVE-2026-22741
Référence CVE CVE-2026-22745
https://www.cve.org/CVERecord?id=CVE-2026-22745
Référence CVE CVE-2026-22746
https://www.cve.org/CVERecord?id=CVE-2026-22746
Référence CVE CVE-2026-22751
https://www.cve.org/CVERecord?id=CVE-2026-22751
Référence CVE CVE-2026-23490
https://www.cve.org/CVERecord?id=CVE-2026-23490
Référence CVE CVE-2026-23865
https://www.cve.org/CVERecord?id=CVE-2026-23865
Référence CVE CVE-2026-24051
https://www.cve.org/CVERecord?id=CVE-2026-24051
Référence CVE CVE-2026-25639
https://www.cve.org/CVERecord?id=CVE-2026-25639
Référence CVE CVE-2026-25646
https://www.cve.org/CVERecord?id=CVE-2026-25646
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-26996
https://www.cve.org/CVERecord?id=CVE-2026-26996
Référence CVE CVE-2026-27024
https://www.cve.org/CVERecord?id=CVE-2026-27024
Référence CVE CVE-2026-27025
https://www.cve.org/CVERecord?id=CVE-2026-27025
Référence CVE CVE-2026-27026
https://www.cve.org/CVERecord?id=CVE-2026-27026
Référence CVE CVE-2026-27205
https://www.cve.org/CVERecord?id=CVE-2026-27205
Référence CVE CVE-2026-27903
https://www.cve.org/CVERecord?id=CVE-2026-27903
Référence CVE CVE-2026-27904
https://www.cve.org/CVERecord?id=CVE-2026-27904
Référence CVE CVE-2026-2950
https://www.cve.org/CVERecord?id=C
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-1094Multiples vulnérabilités dans les produits IBMecord?id=CVE-2026-22018
Référence CVE CVE-2026-22021
https://www.cve.org/CVERecord?id=CVE-2026-22021
Référence CVE CVE-2026-22815
https://www.cve.org/CVERecord?id=CVE-2026-22815
Référence CVE CVE-2026-23216
https://www.cve.org/CVERecord?id=CVE-2026-23216
Référence CVE CVE-2026-2359
https://www.cve.org/CVERecord?id=CVE-2026-2359
Référence CVE CVE-2026-23865
https://www.cve.org/CVERecord?id=CVE-2026-23865
Référence CVE CVE-2026-2482
https://www.cve.org/CVERecord?id=CVE-2026-2482
Référence CVE CVE-2026-25243
https://www.cve.org/CVERecord?id=CVE-2026-25243
Référence CVE CVE-2026-25749
https://www.cve.org/CVERecord?id=CVE-2026-25749
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-26996
https://www.cve.org/CVERecord?id=CVE-2026-26996
Référence CVE CVE-2026-27205
https://www.cve.org/CVERecord?id=CVE-2026-27205
Référence CVE CVE-2026-2739
https://www.cve.org/CVERecord?id=CVE-2026-2739
Référence CVE CVE-2026-27601
https://www.cve.org/CVERecord?id=CVE-2026-27601
Référence CVE CVE-2026-27903
https://www.cve.org/CVERecord?id=CVE-2026-27903
Référence CVE CVE-2026-27904
https://www.cve.org/CVERecord?id=CVE-2026-27904
Référence CVE CVE-2026-29786
https://www.cve.org/CVERecord?id=CVE-2026-29786
Référence CVE CVE-2026-31411
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-1056Multiples vulnérabilités dans les produits Splunkd?id=CVE-2026-24043
Référence CVE CVE-2026-24133
https://www.cve.org/CVERecord?id=CVE-2026-24133
Référence CVE CVE-2026-24737
https://www.cve.org/CVERecord?id=CVE-2026-24737
Référence CVE CVE-2026-25535
https://www.cve.org/CVERecord?id=CVE-2026-25535
Référence CVE CVE-2026-25673
https://www.cve.org/CVERecord?id=CVE-2026-25673
Référence CVE CVE-2026-25674
https://www.cve.org/CVERecord?id=CVE-2026-25674
Référence CVE CVE-2026-25679
https://www.cve.org/CVERecord?id=CVE-2026-25679
Référence CVE CVE-2026-25755
https://www.cve.org/CVERecord?id=CVE-2026-25755
Référence CVE CVE-2026-25940
https://www.cve.org/CVERecord?id=CVE-2026-25940
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-26996
https://www.cve.org/CVERecord?id=CVE-2026-26996
Référence CVE CVE-2026-27140
https://www.cve.org/CVERecord?id=CVE-2026-27140
Référence CVE CVE-2026-27143
https://www.cve.org/CVERecord?id=CVE-2026-27143
Référence CVE CVE-2026-27144
https://www.cve.org/CVERecord?id=CVE-2026-27144
Référence CVE CVE-2026-27199
https://www.cve.org/CVERecord?id=CVE-2026-27199
Référence CVE CVE-2026-2739
https://www.cve.org/CVERecord?id=CVE-2026-2739
Référence CVE CVE-2026-27651
https://www.cve.org/CVERecord?id=CVE-2026-27651
Référence CVE CVE-2026-27654
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0865Multiples vulnérabilités dans les produits IBMd?id=CVE-2026-11546
Référence CVE CVE-2026-11594
https://www.cve.org/CVERecord?id=CVE-2026-11594
Référence CVE CVE-2026-11595
https://www.cve.org/CVERecord?id=CVE-2026-11595
Référence CVE CVE-2026-11707
https://www.cve.org/CVERecord?id=CVE-2026-11707
Référence CVE CVE-2026-11708
https://www.cve.org/CVERecord?id=CVE-2026-11708
Référence CVE CVE-2026-11712
https://www.cve.org/CVERecord?id=CVE-2026-11712
Référence CVE CVE-2026-11714
https://www.cve.org/CVERecord?id=CVE-2026-11714
Référence CVE CVE-2026-11806
https://www.cve.org/CVERecord?id=CVE-2026-11806
Référence CVE CVE-2026-21441
https://www.cve.org/CVERecord?id=CVE-2026-21441
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-34073
https://www.cve.org/CVERecord?id=CVE-2026-34073
Référence CVE CVE-2026-39892
https://www.cve.org/CVERecord?id=CVE-2026-39892
Référence CVE CVE-2026-50645
https://www.cve.org/CVERecord?id=CVE-2026-50645
Référence CVE CVE-2026-9171
https://www.cve.org/CVERecord?id=CVE-2026-9171
Référence CVE CVE-2026-9322
https://www.cve.org/CVERecord?id=CVE-2026-9322
Référence CVE CVE-2026-9563
https://www.cve.org/CVERecord?id=CVE-2026-9563
Gestion détaillée du document
le 10 juillet 2026
Version initiale
Alertes
Avis
Bulletins d’actualités
Mentions légales
Conditions générales
À pro
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0698Multiples vulnérabilités dans les produits IBMCVERecord?id=CVE-2026-22021
Référence CVE CVE-2026-22036
https://www.cve.org/CVERecord?id=CVE-2026-22036
Référence CVE CVE-2026-2229
https://www.cve.org/CVERecord?id=CVE-2026-2229
Référence CVE CVE-2026-2332
https://www.cve.org/CVERecord?id=CVE-2026-2332
Référence CVE CVE-2026-2359
https://www.cve.org/CVERecord?id=CVE-2026-2359
Référence CVE CVE-2026-24486
https://www.cve.org/CVERecord?id=CVE-2026-24486
Référence CVE CVE-2026-25645
https://www.cve.org/CVERecord?id=CVE-2026-25645
Référence CVE CVE-2026-25793
https://www.cve.org/CVERecord?id=CVE-2026-25793
Référence CVE CVE-2026-2581
https://www.cve.org/CVERecord?id=CVE-2026-2581
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-29063
https://www.cve.org/CVERecord?id=CVE-2026-29063
Référence CVE CVE-2026-2950
https://www.cve.org/CVERecord?id=CVE-2026-2950
Référence CVE CVE-2026-30951
https://www.cve.org/CVERecord?id=CVE-2026-30951
Référence CVE CVE-2026-32286
https://www.cve.org/CVERecord?id=CVE-2026-32286
Référence CVE CVE-2026-3304
https://www.cve.org/CVERecord?id=CVE-2026-3304
Référence CVE CVE-2026-33151
https://www.cve.org/CVERecord?id=CVE-2026-33151
Référence CVE CVE-2026-33532
https://www.cve.org/CVERecord?id=CVE-2026-33532
Référence CVE CVE-2026-33671
https://www.cve.org/CVERecord?id=CVE-
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0641Multiples vulnérabilités dans les produits IBMord?id=CVE-2026-22013
Référence CVE CVE-2026-22016
https://www.cve.org/CVERecord?id=CVE-2026-22016
Référence CVE CVE-2026-22018
https://www.cve.org/CVERecord?id=CVE-2026-22018
Référence CVE CVE-2026-22021
https://www.cve.org/CVERecord?id=CVE-2026-22021
Référence CVE CVE-2026-23865
https://www.cve.org/CVERecord?id=CVE-2026-23865
Référence CVE CVE-2026-2391
https://www.cve.org/CVERecord?id=CVE-2026-2391
Référence CVE CVE-2026-24281
https://www.cve.org/CVERecord?id=CVE-2026-24281
Référence CVE CVE-2026-25639
https://www.cve.org/CVERecord?id=CVE-2026-25639
Référence CVE CVE-2026-25679
https://www.cve.org/CVERecord?id=CVE-2026-25679
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-26996
https://www.cve.org/CVERecord?id=CVE-2026-26996
Référence CVE CVE-2026-27142
https://www.cve.org/CVERecord?id=CVE-2026-27142
Référence CVE CVE-2026-27903
https://www.cve.org/CVERecord?id=CVE-2026-27903
Référence CVE CVE-2026-27904
https://www.cve.org/CVERecord?id=CVE-2026-27904
Référence CVE CVE-2026-29045
https://www.cve.org/CVERecord?id=CVE-2026-29045
Référence CVE CVE-2026-29063
https://www.cve.org/CVERecord?id=CVE-2026-29063
Référence CVE CVE-2026-29087
https://www.cve.org/CVERecord?id=CVE-2026-29087
Référence CVE CVE-2026-31958
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0627Multiples vulnérabilités dans les produits Splunkd?id=CVE-2026-24688
Référence CVE CVE-2026-25210
https://www.cve.org/CVERecord?id=CVE-2026-25210
Référence CVE CVE-2026-25541
https://www.cve.org/CVERecord?id=CVE-2026-25541
Référence CVE CVE-2026-25639
https://www.cve.org/CVERecord?id=CVE-2026-25639
Référence CVE CVE-2026-25679
https://www.cve.org/CVERecord?id=CVE-2026-25679
Référence CVE CVE-2026-25833
https://www.cve.org/CVERecord?id=CVE-2026-25833
Référence CVE CVE-2026-25834
https://www.cve.org/CVERecord?id=CVE-2026-25834
Référence CVE CVE-2026-25835
https://www.cve.org/CVERecord?id=CVE-2026-25835
Référence CVE CVE-2026-25990
https://www.cve.org/CVERecord?id=CVE-2026-25990
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-2648
https://www.cve.org/CVERecord?id=CVE-2026-2648
Référence CVE CVE-2026-2649
https://www.cve.org/CVERecord?id=CVE-2026-2649
Référence CVE CVE-2026-2650
https://www.cve.org/CVERecord?id=CVE-2026-2650
Référence CVE CVE-2026-2673
https://www.cve.org/CVERecord?id=CVE-2026-2673
Référence CVE CVE-2026-27024
https://www.cve.org/CVERecord?id=CVE-2026-27024
Référence CVE CVE-2026-27025
https://www.cve.org/CVERecord?id=CVE-2026-27025
Référence CVE CVE-2026-27026
https://www.cve.org/CVERecord?id=CVE-2026-27026
Référence CVE CVE-2026-27139
https://www.cve.org/CVERecord?id=CVE-2026
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0467Multiples vulnérabilités dans Oracle Database ServerDe multiples vulnérabilités ont été découvertes dans Oracle Database Server. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et un contournement de la politique de sécurité.
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0424Multiples vulnérabilités dans les produits IBMord?id=CVE-2026-21945
Référence CVE CVE-2026-22029
https://www.cve.org/CVERecord?id=CVE-2026-22029
Référence CVE CVE-2026-22030
https://www.cve.org/CVERecord?id=CVE-2026-22030
Référence CVE CVE-2026-2327
https://www.cve.org/CVERecord?id=CVE-2026-2327
Référence CVE CVE-2026-23950
https://www.cve.org/CVERecord?id=CVE-2026-23950
Référence CVE CVE-2026-24688
https://www.cve.org/CVERecord?id=CVE-2026-24688
Référence CVE CVE-2026-24842
https://www.cve.org/CVERecord?id=CVE-2026-24842
Référence CVE CVE-2026-25528
https://www.cve.org/CVERecord?id=CVE-2026-25528
Référence CVE CVE-2026-25639
https://www.cve.org/CVERecord?id=CVE-2026-25639
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-26013
https://www.cve.org/CVERecord?id=CVE-2026-26013
Référence CVE CVE-2026-27024
https://www.cve.org/CVERecord?id=CVE-2026-27024
Référence CVE CVE-2026-27025
https://www.cve.org/CVERecord?id=CVE-2026-27025
Référence CVE CVE-2026-27026
https://www.cve.org/CVERecord?id=CVE-2026-27026
Référence CVE CVE-2026-27199
https://www.cve.org/CVERecord?id=CVE-2026-27199
Référence CVE CVE-2026-27205
https://www.cve.org/CVERecord?id=CVE-2026-27205
Référence CVE CVE-2026-27212
https://www.cve.org/CVERecord?id=CVE-2026-27212
Référence CVE CVE-2026-27628
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0395Multiples vulnérabilités dans les produits IBMrd?id=CVE-2026-1188
Référence CVE CVE-2026-21860
https://www.cve.org/CVERecord?id=CVE-2026-21860
Référence CVE CVE-2026-21925
https://www.cve.org/CVERecord?id=CVE-2026-21925
Référence CVE CVE-2026-21932
https://www.cve.org/CVERecord?id=CVE-2026-21932
Référence CVE CVE-2026-21933
https://www.cve.org/CVERecord?id=CVE-2026-21933
Référence CVE CVE-2026-21945
https://www.cve.org/CVERecord?id=CVE-2026-21945
Référence CVE CVE-2026-23001
https://www.cve.org/CVERecord?id=CVE-2026-23001
Référence CVE CVE-2026-23074
https://www.cve.org/CVERecord?id=CVE-2026-23074
Référence CVE CVE-2026-23097
https://www.cve.org/CVERecord?id=CVE-2026-23097
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-27199
https://www.cve.org/CVERecord?id=CVE-2026-27199
Référence CVE CVE-2026-27205
https://www.cve.org/CVERecord?id=CVE-2026-27205
Gestion détaillée du document
le 03 avril 2026
Version initiale
Alertes
Avis
Bulletins d’actualités
Mentions légales
Conditions générales
À propos
Contact
cyber.gouv.fr
service-public.fr
legifrance.gouv.fr
info.gouv.fr
france.fr
info.gouv.fr/risques
Premier Ministre / Secrétariat Général de la Défense et de la Sécurité Nationale / Agence nationale de la
sécurité des systèmes d'information
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0339Multiples vulnérabilités dans les produits VMwared?id=CVE-2026-21932
Référence CVE CVE-2026-21933
https://www.cve.org/CVERecord?id=CVE-2026-21933
Référence CVE CVE-2026-21945
https://www.cve.org/CVERecord?id=CVE-2026-21945
Référence CVE CVE-2026-24051
https://www.cve.org/CVERecord?id=CVE-2026-24051
Référence CVE CVE-2026-24515
https://www.cve.org/CVERecord?id=CVE-2026-24515
Référence CVE CVE-2026-25210
https://www.cve.org/CVERecord?id=CVE-2026-25210
Référence CVE CVE-2026-25639
https://www.cve.org/CVERecord?id=CVE-2026-25639
Référence CVE CVE-2026-25646
https://www.cve.org/CVERecord?id=CVE-2026-25646
Référence CVE CVE-2026-25679
https://www.cve.org/CVERecord?id=CVE-2026-25679
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-26996
https://www.cve.org/CVERecord?id=CVE-2026-26996
Référence CVE CVE-2026-27137
https://www.cve.org/CVERecord?id=CVE-2026-27137
Référence CVE CVE-2026-27138
https://www.cve.org/CVERecord?id=CVE-2026-27138
Référence CVE CVE-2026-27139
https://www.cve.org/CVERecord?id=CVE-2026-27139
Référence CVE CVE-2026-27142
https://www.cve.org/CVERecord?id=CVE-2026-27142
Référence CVE CVE-2026-27571
https://www.cve.org/CVERecord?id=CVE-2026-27571
Référence CVE CVE-2026-27903
https://www.cve.org/CVERecord?id=CVE-2026-27903
Référence CVE CVE-2026-27904
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0326Multiples vulnérabilités dans les produits VMwared?id=CVE-2026-24051
Référence CVE CVE-2026-24733
https://www.cve.org/CVERecord?id=CVE-2026-24733
Référence CVE CVE-2026-24734
https://www.cve.org/CVERecord?id=CVE-2026-24734
Référence CVE CVE-2026-24842
https://www.cve.org/CVERecord?id=CVE-2026-24842
Référence CVE CVE-2026-25500
https://www.cve.org/CVERecord?id=CVE-2026-25500
Référence CVE CVE-2026-25639
https://www.cve.org/CVERecord?id=CVE-2026-25639
Référence CVE CVE-2026-25679
https://www.cve.org/CVERecord?id=CVE-2026-25679
Référence CVE CVE-2026-25702
https://www.cve.org/CVERecord?id=CVE-2026-25702
Référence CVE CVE-2026-25749
https://www.cve.org/CVERecord?id=CVE-2026-25749
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-26157
https://www.cve.org/CVERecord?id=CVE-2026-26157
Référence CVE CVE-2026-26158
https://www.cve.org/CVERecord?id=CVE-2026-26158
Référence CVE CVE-2026-26269
https://www.cve.org/CVERecord?id=CVE-2026-26269
Référence CVE CVE-2026-26958
https://www.cve.org/CVERecord?id=CVE-2026-26958
Référence CVE CVE-2026-26960
https://www.cve.org/CVERecord?id=CVE-2026-26960
Référence CVE CVE-2026-26996
https://www.cve.org/CVERecord?id=CVE-2026-26996
Référence CVE CVE-2026-27137
https://www.cve.org/CVERecord?id=CVE-2026-27137
Référence CVE CVE-2026-27138
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0316Multiples vulnérabilités dans les produits VMwared?id=CVE-2026-23745
Référence CVE CVE-2026-23950
https://www.cve.org/CVERecord?id=CVE-2026-23950
Référence CVE CVE-2026-24001
https://www.cve.org/CVERecord?id=CVE-2026-24001
Référence CVE CVE-2026-24051
https://www.cve.org/CVERecord?id=CVE-2026-24051
Référence CVE CVE-2026-24842
https://www.cve.org/CVERecord?id=CVE-2026-24842
Référence CVE CVE-2026-25500
https://www.cve.org/CVERecord?id=CVE-2026-25500
Référence CVE CVE-2026-25679
https://www.cve.org/CVERecord?id=CVE-2026-25679
Référence CVE CVE-2026-25702
https://www.cve.org/CVERecord?id=CVE-2026-25702
Référence CVE CVE-2026-25749
https://www.cve.org/CVERecord?id=CVE-2026-25749
Référence CVE CVE-2026-26007
https://www.cve.org/CVERecord?id=CVE-2026-26007
Référence CVE CVE-2026-26157
https://www.cve.org/CVERecord?id=CVE-2026-26157
Référence CVE CVE-2026-26158
https://www.cve.org/CVERecord?id=CVE-2026-26158
Référence CVE CVE-2026-26269
https://www.cve.org/CVERecord?id=CVE-2026-26269
Référence CVE CVE-2026-26960
https://www.cve.org/CVERecord?id=CVE-2026-26960
Référence CVE CVE-2026-26996
https://www.cve.org/CVERecord?id=CVE-2026-26996
Référence CVE CVE-2026-27137
https://www.cve.org/CVERecord?id=CVE-2026-27137
Référence CVE CVE-2026-27138
https://www.cve.org/CVERecord?id=CVE-2026-27138
Référence CVE CVE-2026-27139
https://www.cve.org/CVERecord?id=
Official advisory ↗JVN iPedia · Japanese · JVNDB-2026-004717Cryptographyにおけるデータの信頼性についての不十分な検証に関する脆弱性cryptographyは、Python開発者に暗号プリミティブとレシピを提供するために設計されたパッケージです。バージョン46.0.5以前では、public_key_from_numbers(またはEllipticCurvePublicNumbers.public_key())、EllipticCurvePublicNumbers.public_key()、load_der_public_key()、およびload_pem_public_key()関数が、点が曲線の期待される素数位数部分群に属しているかどうかを検証していませんでした。この検証の欠如により、攻撃者は小位数部分群からの公開鍵点Pを提供することが可能でした。これにより、最も一般的に使用される署名検証(ECDSA)や共有鍵ネゴシエーション(ECDH)など、様々な状況でセキュリティ問題が生じる可能性がありました。被害者がECDHを通じて共有秘密S=[被害者の秘密鍵]Pを計算する際、これは被害者の秘密鍵のmod(小部分群の位数)に関する情報を漏洩させます。共因子が1より大きい曲線の場合、これは秘密鍵の最下位ビットを明らかにします。これらの弱い公開鍵がECDSAに使用されると、小部分群上での署名の偽造が容易になります。この問題はSECT曲線にのみ影響します。この脆弱性はバージョン46.0.5で修正されました。
Official advisory ↗