Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CERT/CC — Vulnerabilities & Security Advisories 8

Browse all 8 CVE security advisories affecting CERT/CC. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CVE IDTitleCVSSSeverityPublished
CVE-2026-35467 Private Key stored as extractable in browser IndexeDB — cveClient/encrypt-storage.jsCWE-522 7.5AIHighAI2026-04-02
CVE-2026-35466 Stored XSS via unsanitized input from remote service — cveClient/cveInterface.jsCWE-79 6.1AIMediumAI2026-04-02
CVE-2024-10469 CERT/CC VINCE versions before 3.0.9 allows authenticated user to access User Management view. — VINCECWE-276 6.5AIMediumAI2024-10-28
CVE-2024-9953 Potential DoS Vulnerability in CERT VINCE Software Before Version 3.0.8 — VINCE - Vulnerability Information and Coordination EnvironmentCWE-502 4.9AIMediumAI2024-10-14
CVE-2022-40238 A Remote Code Injection vulnerability exists in CERT software prior to version 1.50.5 — VINCE - The Vulnerability Information and Coordination EnvironmentCWE-502 8.0 -2022-10-26
CVE-2022-40248 An HTML injection vulnerability exists in CERT/CC VINCE software prior to version 1.50.4 — VINCE - The Vulnerability Information and Coordination EnvironmentCWE-74 5.4 -2022-10-10
CVE-2022-40257 An HTML injection vulnerability exists in CERT/CC VINCE software prior to version 1.50.4 — VINCE - The Vulnerability Information and Coordination EnvironmentCWE-74 5.4 -2022-10-10
CVE-2022-25799 An open redirect vulnerability exists in CERT/CC VINCE software prior to version 1.50.0 — VINCE - The Vulnerability Information and Coordination EnvironmentCWE-601 6.1 -2022-08-16

This page lists every published CVE security advisory associated with CERT/CC. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.