CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2021-46149

    Last Modified: 21 Nov 2024

    An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. A denial of service (resource consumption) can be accomplished by searching for a very long key in a Language Name Search.

    Published: 7 Jan 2022
    4.8
    Medium

    CVE-2021-46150

    Last Modified: 21 Nov 2024

    An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. Special:CheckUserLog allows CheckUser XSS because of date mishandling, as demonstrated by an XSS payload in MediaWiki:October.

    Published: 7 Jan 2022
    5.4
    Medium

    CVE-2021-46146

    Last Modified: 21 Nov 2024

    An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. The WikibaseMediaInfo component is vulnerable to XSS via the caption fields for a given media file.

    Published: 7 Jan 2022
    6.5
    Medium

    CVE-2020-9061

    Last Modified: 21 Nov 2024

    Z-Wave devices using Silicon Labs 500 and 700 series chipsets, including but not likely limited to the SiLabs UZB-7 version 7.00, ZooZ ZST10 version 6.04, Aeon Labs ZW090-A version 3.95, and Samsung STH-ETH-200 version 6.04, are susceptible to denial of service via malformed routing messages.

    Published: 7 Jan 2022
    6.5
    Medium

    CVE-2020-9060

    Last Modified: 21 Nov 2024

    Z-Wave devices based on Silicon Labs 500 series chipsets using S2, including but likely not limited to the ZooZ ZST10 version 6.04, ZooZ ZEN20 version 5.03, ZooZ ZEN25 version 5.03, Aeon Labs ZW090-A version 3.95, and Fibaro FGWPB-111 version 4.3, are susceptible to denial of service and resource exhaustion via malformed SECURITY NONCE GET, SECURITY NONCE GET 2, NO OPERATION, or NIF REQUEST messages.

    Published: 7 Jan 2022
    6.5
    Medium

    CVE-2020-9059

    Last Modified: 21 Nov 2024

    Z-Wave devices based on Silicon Labs 500 series chipsets using S0 authentication are susceptible to uncontrolled resource consumption leading to battery exhaustion. As an example, the Schlage BE468 version 3.42 door lock is vulnerable and fails open at a low battery level.

    Published: 7 Jan 2022
    8.1
    High

    CVE-2020-9058

    Last Modified: 21 Nov 2024

    Z-Wave devices based on Silicon Labs 500 series chipsets using CRC-16 encapsulation, including but likely not limited to the Linear LB60Z-1 version 3.5, Dome DM501 version 4.26, and Jasco ZW4201 version 4.05, do not implement encryption or replay protection.

    Published: 7 Jan 2022
    8.8
    High

    CVE-2020-9057

    Last Modified: 21 Nov 2024

    Z-Wave devices based on Silicon Labs 100, 200, and 300 series chipsets do not support encryption, allowing an attacker within radio range to take control of or cause a denial of service to a vulnerable device. An attacker can also capture and replay Z-Wave traffic. Firmware upgrades cannot directly address this vulnerability as it is an issue with the Z-Wave specification for these legacy chipsets. One way to protect against this vulnerability is to use 500 or 700 series chipsets that support Security 2 (S2) encryption. As examples, the Linear WADWAZ-1 version 3.43 and WAPIRZ-1 version 3.43 (with 300 series chipsets) are vulnerable.

    Published: 7 Jan 2022
    8.8
    High

    CVE-2021-20048

    Last Modified: 21 Nov 2024

    A Stack-based buffer overflow in the SonicOS SessionID HTTP response header allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in code execution in the firewall. This vulnerability affected SonicOS Gen 5, Gen 6 and Gen 7 firmware versions.

    Published: 7 Jan 2022
    8.8
    High

    CVE-2021-20046

    Last Modified: 21 Nov 2024

    A Stack-based buffer overflow in the SonicOS HTTP Content-Length response header allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in code execution in the firewall. This vulnerability affected SonicOS Gen 5, Gen 6 and Gen 7 firmware versions.

    Published: 7 Jan 2022
    4.2
    Medium

    CVE-2021-38674

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability has been reported to affect QTS, QuTS hero and QuTScloud. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions of QTS, QuTS hero and QuTScloud: QuTS hero h4.5.4.1771 build 20210825 and later QTS 4.5.4.1787 build 20210910 and later QuTScloud c4.5.7.1864 and later

    Published: 7 Jan 2022
    5.5
    Medium

    CVE-2021-46046

    Last Modified: 21 Nov 2024

    A Pointer Derefernce Vulnerbility exists GPAC 1.0.1 the gf_isom_box_size function, which could cause a Denial of Service (context-dependent).

    Published: 7 Jan 2022
    5.5
    Medium

    CVE-2021-46047

    Last Modified: 21 Nov 2024

    A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the gf_hinter_finalize function.

    Published: 7 Jan 2022
    5.5
    Medium

    CVE-2021-46049

    Last Modified: 21 Nov 2024

    A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the gf_fileio_check function, which could cause a Denial of Service.

    Published: 7 Jan 2022
    5.5
    Medium

    CVE-2021-46051

    Last Modified: 21 Nov 2024

    A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the Media_IsSelfContained function, which could cause a Denial of Service. .

    Published: 7 Jan 2022
    5.3
    Medium

    CVE-2022-0512

    Last Modified: 21 Nov 2024

    Authorization Bypass Through User-Controlled Key in NPM url-parse prior to 1.5.6.

    Published: 7 Jan 2022
    5.5
    Medium

    CVE-2021-46045

    Last Modified: 21 Nov 2024

    GPAC 1.0.1 is affected by: Abort failed. The impact is: cause a denial of service (context-dependent).

    Published: 7 Jan 2022
    8
    High

    CVE-2022-21662

    Last Modified: 23 Apr 2025

    WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. Low-privileged authenticated users (like author) in WordPress core are able to execute JavaScript/perform stored XSS attack, which can affect high-privileged users. This has been patched in WordPress version 5.8.3. Older affected versions are also fixed via security release, that go back till 3.7.37. We strongly recommend that you keep auto-updates enabled. There are no known workarounds for this issue.

    Published: 6 Jan 2022
    6.6
    Medium

    CVE-2022-21663

    Last Modified: 22 Apr 2025

    WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. On a multisite, users with Super Admin role can bypass explicit/additional hardening under certain conditions through object injection. This has been patched in WordPress version 5.8.3. Older affected versions are also fixed via security release, that go back till 3.7.37. We strongly recommend that you keep auto-updates enabled. There are no known workarounds for this issue.

    Published: 6 Jan 2022
    7.4
    High

    CVE-2022-21664

    Last Modified: 23 Apr 2025

    WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. Due to lack of proper sanitization in one of the classes, there's potential for unintended SQL queries to be executed. This has been patched in WordPress version 5.8.3. Older affected versions are also fixed via security release, that go back till 4.1.34. We strongly recommend that you keep auto-updates enabled. There are no known workarounds for this issue.

    Published: 6 Jan 2022
    8
    High

    CVE-2022-21661

    Last Modified: 19 Aug 2025

    WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. Due to improper sanitization in WP_Query, there can be cases where SQL injection is possible through plugins or themes that use it in a certain way. This has been patched in WordPress version 5.8.3. Older affected versions are also fixed via security release, that go back till 3.7.37. We strongly recommend that you keep auto-updates enabled. There are no known workarounds for this vulnerability.

    Published: 6 Jan 2022
    6.1
    Medium

    CVE-2021-42841

    Last Modified: 21 Nov 2024

    Insta HMS before 12.4.10 is vulnerable to XSS because of improper validation of user-supplied input by multiple scripts. A remote attacker could exploit this vulnerability via a crafted URL to execute script in a victim's Web browser within the security context of the hosting Web site, once the URL is clicked. An attacker could use this vulnerability to steal the victim's cookie-based authentication credentials.

    Published: 6 Jan 2022
    6.5
    Medium

    CVE-2021-4194

    Last Modified: 21 Nov 2024

    bookstack is vulnerable to Improper Access Control

    Published: 6 Jan 2022
    6.5
    Medium

    CVE-2021-28715

    Last Modified: 22 May 2025

    Guest can force Linux netback driver to hog large amounts of kernel memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Incoming data packets for a guest in the Linux kernel's netback driver are buffered until the guest is ready to process them. There are some measures taken for avoiding to pile up too much data, but those can be bypassed by the guest: There is a timeout how long the client side of an interface can stop consuming new packets before it is assumed to have stalled, but this timeout is rather long (60 seconds by default). Using a UDP connection on a fast interface can easily accumulate gigabytes of data in that time. (CVE-2021-28715) The timeout could even never trigger if the guest manages to have only one free slot in its RX queue ring page and the next package would require more than one free slot, which may be the case when using GSO, XDP, or software hashing. (CVE-2021-28714)

    Published: 6 Jan 2022
    6.5
    Medium

    CVE-2021-28714

    Last Modified: 21 Nov 2024

    Guest can force Linux netback driver to hog large amounts of kernel memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Incoming data packets for a guest in the Linux kernel's netback driver are buffered until the guest is ready to process them. There are some measures taken for avoiding to pile up too much data, but those can be bypassed by the guest: There is a timeout how long the client side of an interface can stop consuming new packets before it is assumed to have stalled, but this timeout is rather long (60 seconds by default). Using a UDP connection on a fast interface can easily accumulate gigabytes of data in that time. (CVE-2021-28715) The timeout could even never trigger if the guest manages to have only one free slot in its RX queue ring page and the next package would require more than one free slot, which may be the case when using GSO, XDP, or software hashing. (CVE-2021-28714)

    Published: 6 Jan 2022
    7.2
    High

    CVE-2021-46079

    Last Modified: 21 Nov 2024

    An Unrestricted File Upload vulnerability exists in Sourcecodester Vehicle Service Management System 1.0. A remote attacker can upload malicious files leading to Html Injection.

    Published: 6 Jan 2022
    4.8
    Medium

    CVE-2021-46078

    Last Modified: 21 Nov 2024

    An Unrestricted File Upload vulnerability exists in Sourcecodester Vehicle Service Management System 1.0. A remote attacker can upload malicious files leading to a Stored Cross-Site Scripting vulnerability.

    Published: 6 Jan 2022
    4.8
    Medium

    CVE-2021-46068

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the My Account Section in login panel.

    Published: 6 Jan 2022
    9.8
    Critical

    CVE-2021-46067

    Last Modified: 21 Nov 2024

    In Vehicle Service Management System 1.0 an attacker can steal the cookies leading to Full Account Takeover.

    Published: 6 Jan 2022
    5.4
    Medium

    CVE-2021-45745

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Bludit 3.13.1 via the About Plugin in login panel.

    Published: 6 Jan 2022
    5.4
    Medium

    CVE-2021-45744

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in bludit 3.13.1 via the TAGS section in login panel.

    Published: 6 Jan 2022
    4.8
    Medium

    CVE-2021-46069

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Mechanic List Section in login panel.

    Published: 6 Jan 2022
    4.8
    Medium

    CVE-2021-46070

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Service Requests Section in login panel.

    Published: 6 Jan 2022
    4.8
    Medium

    CVE-2021-46071

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Category List Section in login panel.

    Published: 6 Jan 2022
    4.8
    Medium

    CVE-2021-46072

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the Service List Section in login panel.

    Published: 6 Jan 2022
    4.8
    Medium

    CVE-2021-46073

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 1.0 via the User List Section in login panel.

    Published: 6 Jan 2022
    4.8
    Medium

    CVE-2021-46074

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 1.0 via the Settings Section in login panel.

    Published: 6 Jan 2022
    7.2
    High

    CVE-2021-46075

    Last Modified: 21 Nov 2024

    A Privilege Escalation vulnerability exists in Sourcecodester Vehicle Service Management System 1.0. Staff account users can access the admin resources and perform CRUD Operations.

    Published: 6 Jan 2022
    8.8
    High

    CVE-2021-46076

    Last Modified: 21 Nov 2024

    Sourcecodester Vehicle Service Management System 1.0 is vulnerable to File upload. An attacker can upload a malicious php file in multiple endpoints it leading to Code Execution.

    Published: 6 Jan 2022
    4.8
    Medium

    CVE-2021-46080

    Last Modified: 21 Nov 2024

    A Cross Site Request Forgery (CSRF) vulnerability exists in Vehicle Service Management System 1.0. An successful CSRF attacks leads to Stored Cross Site Scripting Vulnerability.

    Published: 6 Jan 2022
    6.5
    Medium

    CVE-2021-44591

    Last Modified: 21 Nov 2024

    In libming 0.4.8, the parseSWF_DEFINELOSSLESS2 function in util/parser.c lacks a boundary check that would lead to denial-of-service attacks via a crafted SWF file.

    Published: 6 Jan 2022
    6.5
    Medium

    CVE-2021-44590

    Last Modified: 21 Nov 2024

    In libming 0.4.8, a memory exhaustion vulnerability exist in the function cws2fws in util/main.c. Remote attackers could launch denial of service attacks by submitting a crafted SWF file that exploits this vulnerability.

    Published: 6 Jan 2022
    7.5
    High

    CVE-2021-44878

    Last Modified: 21 Nov 2024

    If an OpenID Connect provider supports the "none" algorithm (i.e., tokens with no signature), pac4j v5.3.0 (and prior) does not refuse it without an explicit configuration on its side or for the "idtoken" response type which is not secure and violates the OpenID Core Specification. The "none" algorithm does not require any signature verification when validating the ID tokens, which allows the attacker to bypass the token validation by injecting a malformed ID token using "none" as the value of "alg" key in the header with an empty signature value.

    Published: 6 Jan 2022
    7.5
    High

    CVE-2021-45458

    Last Modified: 21 Nov 2024

    Apache Kylin provides encryption classes PasswordPlaceholderConfigurer to help users encrypt their passwords. In the encryption algorithm used by this encryption class, the cipher is initialized with a hardcoded key and IV. If users use class PasswordPlaceholderConfigurer to encrypt their password and configure it into kylin's configuration file, there is a risk that the password may be decrypted. This issue affects Apache Kylin 2 version 2.6.6 and prior versions; Apache Kylin 3 version 3.1.2 and prior versions; Apache Kylin 4 version 4.0.0 and prior versions.

    Published: 6 Jan 2022
    7.5
    High

    CVE-2021-45457

    Last Modified: 21 Nov 2024

    In Apache Kylin, Cross-origin requests with credentials are allowed to be sent from any origin. This issue affects Apache Kylin 2 version 2.6.6 and prior versions; Apache Kylin 3 version 3.1.2 and prior versions; Apache Kylin 4 version 4.0.0 and prior versions.

    Published: 6 Jan 2022
    9.8
    Critical

    CVE-2021-45456

    Last Modified: 21 Nov 2024

    Apache kylin checks the legitimacy of the project before executing some commands with the project name passed in by the user. There is a mismatch between what is being checked and what is being used as the shell command argument in DiagnosisService. This may cause an illegal project name to pass the check and perform the following steps, resulting in a command injection vulnerability. This issue affects Apache Kylin 4.0.0.

    Published: 6 Jan 2022
    6.5
    Medium

    CVE-2021-36774

    Last Modified: 21 Nov 2024

    Apache Kylin allows users to read data from other database systems using JDBC. The MySQL JDBC driver supports certain properties, which, if left unmitigated, can allow an attacker to execute arbitrary code from a hacker-controlled malicious MySQL server within Kylin server processes. This issue affects Apache Kylin 2 version 2.6.6 and prior versions; Apache Kylin 3 version 3.1.2 and prior versions.

    Published: 6 Jan 2022
    9.8
    Critical

    CVE-2021-31522

    Last Modified: 21 Nov 2024

    Kylin can receive user input and load any class through Class.forName(...). This issue affects Apache Kylin 2 version 2.6.6 and prior versions; Apache Kylin 3 version 3.1.2 and prior versions; Apache Kylin 4 version 4.0.0 and prior versions.

    Published: 6 Jan 2022
    7.5
    High

    CVE-2021-27738

    Last Modified: 21 Nov 2024

    All request mappings in `StreamingCoordinatorController.java` handling `/kylin/api/streaming_coordinator/*` REST API endpoints did not include any security checks, which allowed an unauthenticated user to issue arbitrary requests, such as assigning/unassigning of streaming cubes, creation/modification and deletion of replica sets, to the Kylin Coordinator. For endpoints accepting node details in HTTP message body, unauthenticated (but limited) server-side request forgery (SSRF) can be achieved. This issue affects Apache Kylin Apache Kylin 3 versions prior to 3.1.2.

    Published: 6 Jan 2022
    6.1
    Medium

    CVE-2021-44584

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in index.php in emlog version <= pro-1.0.7 allows remote attackers to inject arbitrary web script or HTML via the s parameter.

    Published: 6 Jan 2022