CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2020-12954

    Last Modified: 21 Nov 2024

    A side effect of an integrated chipset option may be able to be used by an attacker to bypass SPI ROM protections, allowing unauthorized SPI ROM modification.

    Published: 16 Nov 2021
    7.8
    High

    CVE-2021-26331

    Last Modified: 21 Nov 2024

    AMD System Management Unit (SMU) contains a potential issue where a malicious user may be able to manipulate mailbox entries leading to arbitrary code execution.

    Published: 16 Nov 2021
    7.8
    High

    CVE-2021-26335

    Last Modified: 21 Nov 2024

    Improper input and range checking in the AMD Secure Processor (ASP) boot loader image header may allow an attacker to use attacker-controlled values prior to signature validation potentially resulting in arbitrary code execution.

    Published: 16 Nov 2021
    5.5
    Medium

    CVE-2021-26321

    Last Modified: 21 Nov 2024

    Insufficient ID command validation in the SEV Firmware may allow a local authenticated attacker to perform a denial of service of the PSP.

    Published: 16 Nov 2021
    7.5
    High

    CVE-2020-21627

    Last Modified: 21 Nov 2024

    Ruijie RG-UAC commit 9071227 was discovered to contain a vulnerability in the component /current_action.php?action=reboot, which allows attackers to cause a denial of service (DoS) via unspecified vectors.

    Published: 16 Nov 2021
    6.1
    Medium

    CVE-2020-21639

    Last Modified: 21 Nov 2024

    Ruijie RG-UAC 6000-E50 commit 9071227 was discovered to contain a cross-site scripting (XSS) vulnerability via the rule_name parameter. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

    Published: 16 Nov 2021
    7
    High

    CVE-2020-12951

    Last Modified: 21 Nov 2024

    Race condition in ASP firmware could allow less privileged x86 code to perform ASP SMM (System Management Mode) operations.

    Published: 16 Nov 2021
    7.3
    High

    CVE-2021-41258

    Last Modified: 21 Nov 2024

    Kirby is an open source file structured CMS. In affected versions Kirby's blocks field stores structured data for each block. This data is then used in block snippets to convert the blocks to HTML for use in your templates. We recommend to escape HTML special characters to protect against cross-site scripting (XSS) attacks. The default snippet for the image block unfortunately did not use our escaping helper. This made it possible to include malicious HTML code in the source, alt and link fields of the image block, which would then be displayed on the site frontend and executed in the browsers of site visitors and logged in users who are browsing the site. Attackers must be in your group of authenticated Panel users in order to exploit this weakness. Users who do not make use of the blocks field are not affected. This issue has been patched in Kirby version 3.5.8 by escaping special HTML characters in the output from the default image block snippet. Please update to this or a later version to fix the vulnerability.

    Published: 16 Nov 2021
    5.5
    Medium

    CVE-2021-26320

    Last Modified: 21 Nov 2024

    Insufficient validation of the AMD SEV Signing Key (ASK) in the SEND_START command in the SEV Firmware may allow a local authenticated attacker to perform a denial of service of the PSP

    Published: 16 Nov 2021
    7.3
    High

    CVE-2021-41252

    Last Modified: 21 Nov 2024

    Kirby is an open source file structured CMS ### Impact Kirby's writer field stores its formatted content as HTML code. Unlike with other field types, it is not possible to escape HTML special characters against cross-site scripting (XSS) attacks, otherwise the formatting would be lost. If the user is logged in to the Panel, a harmful script can for example trigger requests to Kirby's API with the permissions of the victim. Because the writer field did not securely sanitize its contents on save, it was possible to inject malicious HTML code into the content file by sending it to Kirby's API directly without using the Panel. This malicious HTML code would then be displayed on the site frontend and executed in the browsers of site visitors and logged in users who are browsing the site. Attackers must be in your group of authenticated Panel users in order to exploit this weakness. Users who do not make use of the writer field are not affected. This issue has been patched in Kirby 3.5.8 by sanitizing all writer field contents on the backend whenever the content is modified via Kirby's API. Please update to this or a later version to fix the vulnerability.

    Published: 16 Nov 2021
    5.5
    Medium

    CVE-2021-26336

    Last Modified: 21 Nov 2024

    Insufficient bounds checking in System Management Unit (SMU) may cause invalid memory accesses/updates that could result in SMU hang and subsequent failure to service any further requests from other components.

    Published: 16 Nov 2021
    7.1
    High

    CVE-2020-12946

    Last Modified: 21 Nov 2024

    Insufficient input validation in ASP firmware for discrete TPM commands could allow a potential loss of integrity and denial of service.

    Published: 16 Nov 2021
    7.5
    High

    CVE-2021-26322

    Last Modified: 21 Nov 2024

    Persistent platform private key may not be protected with a random IV leading to a potential “two time pad attack”.

    Published: 16 Nov 2021
    5.5
    Medium

    CVE-2021-26329

    Last Modified: 21 Nov 2024

    AMD System Management Unit (SMU) may experience an integer overflow when an invalid length is provided which may result in a potential loss of resources.

    Published: 16 Nov 2021
    5.5
    Medium

    CVE-2021-26312

    Last Modified: 21 Nov 2024

    Failure to flush the Translation Lookaside Buffer (TLB) of the I/O memory management unit (IOMMU) may lead an IO device to write to memory it should not be able to access, resulting in a potential loss of integrity.

    Published: 16 Nov 2021
    7.5
    High

    CVE-2021-26338

    Last Modified: 21 Nov 2024

    Improper access controls in System Management Unit (SMU) may allow for an attacker to override performance control tables located in DRAM resulting in a potential lack of system resources.

    Published: 16 Nov 2021
    7.8
    High

    CVE-2021-26326

    Last Modified: 21 Nov 2024

    Failure to validate VM_HSAVE_PA during SNP_INIT may result in a loss of memory integrity.

    Published: 16 Nov 2021
    9.8
    Critical

    CVE-2021-43048

    Last Modified: 21 Nov 2024

    The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain a vulnerability that theoretically allows an unauthenticated attacker with network access to execute a clickjacking attack on the affected system. A successful attack using this vulnerability does not require human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO PartnerExpress: versions 6.2.1 and below.

    Published: 16 Nov 2021
    9
    Critical

    CVE-2021-43047

    Last Modified: 21 Nov 2024

    The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain easily exploitable Stored and Reflected Cross Site Scripting (XSS) vulnerabilities that allow a low privileged attacker to social engineer a legitimate user with network access to execute scripts targeting the affected system or the victim's local system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO PartnerExpress: versions 6.2.1 and below.

    Published: 16 Nov 2021
    7.5
    High

    CVE-2021-43046

    Last Modified: 21 Nov 2024

    The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain an easily exploitable vulnerability that allows an unauthenticated attacker with network access to obtain session tokens for the affected system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO PartnerExpress: versions 6.2.1 and below.

    Published: 16 Nov 2021
    5.5
    Medium

    CVE-2021-38949

    Last Modified: 21 Nov 2024

    IBM MQ 7.5, 8.0, 9.0 LTS, 9.1 CD, and 9.1 LTS stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 211403.

    Published: 16 Nov 2021
    4.4
    Medium

    CVE-2021-38882

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 5.1.0 through 5.1.1.1 could allow a privileged admin to destroy filesystem audit logging records before expiration time. IBM X-Force ID: 209164.

    Published: 16 Nov 2021
    9.9
    Critical

    CVE-2021-43362

    Last Modified: 20 May 2025

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MedData HBYS allows SQL Injection.This issue affects HBYS: from unspecified before 1.1.

    Published: 16 Nov 2021
    9.9
    Critical

    CVE-2021-43361

    Last Modified: 20 May 2025

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MedData HBYS allows SQL Injection.This issue affects HBYS: from unspecified before 1.1.

    Published: 16 Nov 2021
    9.8
    Critical

    CVE-2021-3958

    Last Modified: 21 Nov 2024

    Improper Handling of Parameters vulnerability in Ipack Automation Systems Ipack SCADA Software allows : Blind SQL Injection.This issue affects Ipack SCADA Software: from unspecified before 1.1.0.

    Published: 16 Nov 2021
    5.9
    Medium

    CVE-2021-3714

    Last Modified: 21 Nov 2024

    A flaw was found in the Linux kernels memory deduplication mechanism. Previous work has shown that memory deduplication can be attacked via a local exploitation mechanism. The same technique can be used if an attacker can upload page sized files and detect the change in access time from a networked service to determine if the page has been merged.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-30216

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue in a customer-controlled product. Notes: none

    Published: 16 Nov 2021
    7.8
    High

    CVE-2021-25985

    Last Modified: 30 Apr 2025

    In Factor (App Framework & Headless CMS) v1.0.4 to v1.8.30, improperly invalidate a user’s session even after the user logs out of the application. In addition, user sessions are stored in the browser’s local storage, which by default does not have an expiration time. This makes it possible for an attacker to steal and reuse the cookies using techniques such as XSS attacks, followed by a local account takeover.

    Published: 16 Nov 2021
    6.1
    Medium

    CVE-2021-25984

    Last Modified: 30 Apr 2025

    In Factor (App Framework & Headless CMS) forum plugin, versions v1.3.3 to v1.8.30, are vulnerable to stored Cross-Site Scripting (XSS) at the “post reply” section. An unauthenticated attacker can execute malicious JavaScript code and steal the session cookies.

    Published: 16 Nov 2021
    6.1
    Medium

    CVE-2021-25983

    Last Modified: 30 Apr 2025

    In Factor (App Framework & Headless CMS) forum plugin, versions v1.3.8 to v1.8.30, are vulnerable to reflected Cross-Site Scripting (XSS) at the “tags” and “category” parameters in the URL. An unauthenticated attacker can execute malicious JavaScript code and steal the session cookies.

    Published: 16 Nov 2021
    6.1
    Medium

    CVE-2021-25982

    Last Modified: 30 Apr 2025

    In Factor (App Framework & Headless CMS) forum plugin, versions 1.3.5 to 1.8.30, are vulnerable to reflected Cross-Site Scripting (XSS) at the “search” parameter in the URL. An unauthenticated attacker can execute malicious JavaScript code and steal the session cookies.

    Published: 16 Nov 2021
    9.8
    Critical

    CVE-2021-37580

    Last Modified: 21 Nov 2024

    A flaw was found in Apache ShenYu Admin. The incorrect use of JWT in ShenyuAdminBootstrap allows an attacker to bypass authentication. This issue affected Apache ShenYu 2.3.0 and 2.4.0

    Published: 16 Nov 2021
    8.8
    High

    CVE-2021-25940

    Last Modified: 30 Apr 2025

    In ArangoDB, versions v3.7.6 through v3.8.3 are vulnerable to Insufficient Session Expiration. When a user’s password is changed by the administrator, the session isn’t invalidated, allowing a malicious user to still be logged in and perform arbitrary actions within the system.

    Published: 16 Nov 2021
    8.8
    High

    CVE-2021-25965

    Last Modified: 30 Apr 2025

    In Calibre-web, versions 0.6.0 to 0.6.13 are vulnerable to Cross-Site Request Forgery (CSRF). By luring an authenticated user to click on a link, an attacker can create a new user role with admin privileges and attacker-controlled credentials, allowing them to take over the application.

    Published: 16 Nov 2021
    8.1
    High

    CVE-2021-25976

    Last Modified: 30 Apr 2025

    In PiranhaCMS, versions 4.0.0-alpha1 to 9.2.0 are vulnerable to cross-site request forgery (CSRF) when performing various actions supported by the management system, such as deleting a user, deleting a role, editing a post, deleting a media folder etc., when an ID is known.

    Published: 16 Nov 2021
    4.3
    Medium

    CVE-2021-42337

    Last Modified: 21 Nov 2024

    The permission control of AIFU cashier management salary query function can be bypassed, thus after obtaining general user’s permission, the remote attacker can access account information except passwords by crafting URL parameters.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43866

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43867

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43868

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43869

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43870

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43871

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43872

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43873

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43865

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43874

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    —
    Unknown

    CVE-2021-43864

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 16 Nov 2021
    4.8
    Medium

    CVE-2021-41271

    Last Modified: 21 Nov 2024

    Discourse is a platform for community discussion. In affected versions a maliciously crafted request could cause an error response to be cached by intermediate proxies. This could cause a loss of confidentiality for some content. This issue is patched in the latest stable, beta and tests-passed versions of Discourse.

    Published: 15 Nov 2021
    10
    Critical

    CVE-2021-41269

    Last Modified: 21 Nov 2024

    cron-utils is a Java library to define, parse, validate, migrate crons as well as get human readable descriptions for them. In affected versions A template Injection was identified in cron-utils enabling attackers to inject arbitrary Java EL expressions, leading to unauthenticated Remote Code Execution (RCE) vulnerability. Versions up to 9.1.2 are susceptible to this vulnerability. Please note, that only projects using the @Cron annotation to validate untrusted Cron expressions are affected. The issue was patched and a new version was released. Please upgrade to version 9.1.6. There are no known workarounds known.

    Published: 15 Nov 2021
    8.6
    High

    CVE-2021-41266

    Last Modified: 21 Nov 2024

    Minio console is a graphical user interface for the for MinIO operator. Minio itself is a multi-cloud object storage project. Affected versions are subject to an authentication bypass issue in the Operator Console when an external IDP is enabled. All users on release v0.12.2 and before are affected and are advised to update to 0.12.3 or newer. Users unable to upgrade should add automountServiceAccountToken: false to the operator-console deployment in Kubernetes so no service account token will get mounted inside the pod, then disable the external identity provider authentication by unset the CONSOLE_IDP_URL, CONSOLE_IDP_CLIENT_ID, CONSOLE_IDP_SECRET and CONSOLE_IDP_CALLBACK environment variable and instead use the Kubernetes service account token.

    Published: 15 Nov 2021