CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2021-33611

    Last Modified: 21 Nov 2024

    Missing output sanitization in test sources in org.webjars.bowergithub.vaadin:vaadin-menu-bar versions 1.0.0 through 1.2.0 (Vaadin 14.0.0 through 14.4.4) allows remote attackers to execute malicious JavaScript in browser by opening crafted URL

    Published: 2 Nov 2021
    9.8
    Critical

    CVE-2021-36560

    Last Modified: 21 Nov 2024

    Phone Shop Sales Managements System using PHP with Source Code 1.0 is vulnerable to authentication bypass which leads to account takeover of the admin.

    Published: 2 Nov 2021
    6.5
    Medium

    CVE-2021-25973

    Last Modified: 30 Apr 2025

    In Publify, 9.0.0.pre1 to 9.2.4 are vulnerable to Improper Access Control. “guest” role users can self-register even when the admin does not allow. This happens due to front-end restriction only.

    Published: 2 Nov 2021
    5.3
    Medium

    CVE-2021-33593

    Last Modified: 21 Nov 2024

    Whale browser for iOS before 1.14.0 has an inconsistent user interface issue that allows an attacker to obfuscate the address bar which may lead to address bar spoofing.

    Published: 2 Nov 2021
    8.8
    High

    CVE-2021-38504

    Last Modified: 21 Nov 2024

    When interacting with an HTML input element's file picker dialog with webkitdirectory set, a use-after-free could have resulted, leading to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.

    Published: 2 Nov 2021
    6.5
    Medium

    CVE-2021-38505

    Last Modified: 21 Nov 2024

    Microsoft introduced a new feature in Windows 10 known as Cloud Clipboard which, if enabled, will record data copied to the clipboard to the cloud, and make it available on other computers in certain scenarios. Applications that wish to prevent copied data from being recorded in Cloud History must use specific clipboard formats; and Firefox before versions 94 and ESR 91.3 did not implement them. This could have caused sensitive data to be recorded to a user's Microsoft account. *This bug only affects Firefox for Windows 10+ with Cloud Clipboard enabled. Other operating systems are unaffected.*. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.

    Published: 2 Nov 2021
    4.3
    Medium

    CVE-2021-38506

    Last Modified: 21 Nov 2024

    Through a series of navigations, Firefox could have entered fullscreen mode without notification or warning to the user. This could lead to spoofing attacks on the browser UI including phishing. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.

    Published: 2 Nov 2021
    4.3
    Medium

    CVE-2021-38509

    Last Modified: 21 Nov 2024

    Due to an unusual sequence of attacker-controlled events, a Javascript alert() dialog with arbitrary (although unstyled) contents could be displayed over top an uncontrolled webpage of the attacker's choosing. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.

    Published: 2 Nov 2021
    8.8
    High

    CVE-2021-43535

    Last Modified: 21 Nov 2024

    A use-after-free could have occured when an HTTP2 session object was released on a different thread, leading to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 93, Thunderbird < 91.3, and Firefox ESR < 91.3.

    Published: 2 Nov 2021
    7.5
    High

    CVE-2021-3765

    Last Modified: 21 Nov 2024

    validator.js is vulnerable to Inefficient Regular Expression Complexity

    Published: 2 Nov 2021
    10
    Critical

    CVE-2021-38503

    Last Modified: 21 Nov 2024

    The iframe sandbox rules were not correctly applied to XSLT stylesheets, allowing an iframe to bypass restrictions such as executing scripts or navigating the top-level frame. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.

    Published: 2 Nov 2021
    6.5
    Medium

    CVE-2021-38507

    Last Modified: 21 Nov 2024

    The Opportunistic Encryption feature of HTTP2 (RFC 8164) allows a connection to be transparently upgraded to TLS while retaining the visual properties of an HTTP connection, including being same-origin with unencrypted connections on port 80. However, if a second encrypted port on the same IP address (e.g. port 8443) did not opt-in to opportunistic encryption; a network attacker could forward a connection from the browser to port 443 to port 8443, causing the browser to treat the content of port 8443 as same-origin with HTTP. This was resolved by disabling the Opportunistic Encryption feature, which had low usage. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.

    Published: 2 Nov 2021
    4.3
    Medium

    CVE-2021-38508

    Last Modified: 21 Nov 2024

    By displaying a form validity message in the correct location at the same time as a permission prompt (such as for geolocation), the validity message could have obscured the prompt, resulting in the user potentially being tricked into granting the permission. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.

    Published: 2 Nov 2021
    9.8
    Critical

    CVE-2021-43267

    Last Modified: 21 Nov 2024

    An issue was discovered in net/tipc/crypto.c in the Linux kernel before 5.14.16. The Transparent Inter-Process Communication (TIPC) functionality allows remote attackers to exploit insufficient validation of user-supplied sizes for the MSG_CRYPTO message type.

    Published: 2 Nov 2021
    8.8
    High

    CVE-2021-43534

    Last Modified: 21 Nov 2024

    Mozilla developers and community members reported memory safety bugs present in Firefox 93 and Firefox ESR 91.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.

    Published: 2 Nov 2021
    8.8
    High

    CVE-2021-38510

    Last Modified: 21 Nov 2024

    The executable file warning was not presented when downloading .inetloc files, which, due to a flaw in Mac OS, can run commands on a user's computer.*Note: This issue only affected Mac OS operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.

    Published: 2 Nov 2021
    6.1
    Medium

    CVE-2021-41310

    Last Modified: 21 Nov 2024

    Affected versions of Atlassian Jira Server and Data Center allow anonymous remote attackers to inject arbitrary HTML or JavaScript via a Cross-Site Scripting (XSS) vulnerability in the Associated Projects feature (/secure/admin/AssociatedProjectsForCustomField.jspa). The affected versions are before version 8.5.19, from version 8.6.0 before 8.13.11, and from version 8.14.0 before 8.19.1.

    Published: 1 Nov 2021
    8.1
    High

    CVE-2021-41187

    Last Modified: 21 Nov 2024

    DHIS 2 is an information system for data capture, management, validation, analytics and visualization. A SQL injection security vulnerability has been found in specific versions of DHIS2. This vulnerability affects the API endpoints for /api/trackedEntityInstances and api/events in DHIS2. The system is vulnerable to attack only from users that are logged in to DHIS2, and there is no known way of exploiting the vulnerability without first being logged in as a DHIS2 user. A successful exploit of this vulnerability could allow the malicious user to read, edit and delete data in the DHIS2 instance. There are no known exploits of the security vulnerabilities addressed by these patch releases. However, we strongly recommend that all DHIS2 implementations using versions 2.32, 2.33, 2.34, 2.35 and 2.36 install these patches as soon as possible. There is no straightforward known workaround for DHIS2 instances using the Tracker functionality other than upgrading the affected DHIS2 server to one of the patches in which this vulnerability has been fixed. For implementations which do NOT use Tracker functionality, it may be possible to block all network access to POST to the /api/trackedEntityInstance and /api/events endpoints as a temporary workaround while waiting to upgrade.

    Published: 1 Nov 2021
    6.1
    Medium

    CVE-2021-43058

    Last Modified: 21 Nov 2024

    An open redirect vulnerability exists in Replicated Classic versions prior to 2.53.1 that could lead to spoofing. To exploit this vulnerability, an attacker could send a link that has a specially crafted URL and convince the user to click the link, redirecting the user to an untrusted site.

    Published: 1 Nov 2021
    8.2
    High

    CVE-2021-39341

    Last Modified: 31 Mar 2025

    The OptinMonster WordPress plugin is vulnerable to sensitive information disclosure and unauthorized setting updates due to insufficient authorization validation via the logged_in_or_has_api_key function in the ~/OMAPI/RestApi.php file that can used to exploit inject malicious web scripts on sites with the plugin installed. This affects versions up to, and including, 2.6.4.

    Published: 1 Nov 2021
    4.8
    Medium

    CVE-2021-39340

    Last Modified: 31 Mar 2025

    The Notification WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient input validation and sanitization via several parameters found in the ~/src/classes/Utils/Settings.php file which made it possible for attackers with administrative user access to inject arbitrary web scripts, in versions up to and including 7.2.4. This affects multi-site installations where unfiltered_html is disabled for administrators, and sites where unfiltered_html is disabled.

    Published: 1 Nov 2021
    8.1
    High

    CVE-2021-39333

    Last Modified: 31 Mar 2025

    The Hashthemes Demo Importer Plugin <= 1.1.1 for WordPress contained several AJAX functions which relied on a nonce which was visible to all logged-in users for access control, allowing them to execute a function that truncated nearly all database tables and removed the contents of wp-content/uploads.

    Published: 1 Nov 2021
    6.1
    Medium

    CVE-2021-38356

    Last Modified: 31 Mar 2025

    The NextScripts: Social Networks Auto-Poster <= 4.3.20 WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the $_REQUEST['page'] parameter which is echoed out on inc/nxs_class_snap.php by supplying the appropriate value 'nxssnap-post' to load the page in $_GET['page'] along with malicious JavaScript in $_POST['page'].

    Published: 1 Nov 2021
    4.8
    Medium

    CVE-2021-39346

    Last Modified: 31 Mar 2025

    The Google Maps Easy WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient input validation and sanitization via several parameters found in the ~/modules/marker_groups/views/tpl/mgrEditMarkerGroup.php file which allowed attackers with administrative user access to inject arbitrary web scripts, in versions up to and including 1.9.33. This affects multi-site installations where unfiltered_html is disabled for administrators, and sites where unfiltered_html is disabled.

    Published: 1 Nov 2021
    —
    Unknown

    CVE-2018-10909

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 1 Nov 2021
    9.8
    Critical

    CVE-2021-20136

    Last Modified: 21 Nov 2024

    ManageEngine Log360 Builds < 5235 are affected by an improper access control vulnerability allowing database configuration overwrite. An unauthenticated remote attacker can send a specially crafted message to Log360 to change its backend database to an attacker-controlled database and to force Log360 to restart. An attacker can leverage this vulnerability to achieve remote code execution by replacing files executed by Log360 on startup.

    Published: 1 Nov 2021
    8.4
    High

    CVE-2021-31848

    Last Modified: 21 Nov 2024

    Cross site scripting (XSS) vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.7.100 allows a remote attacker to highjack an active DLP ePO administrator session by convincing the logged in administrator to click on a carefully crafted link in the case management part of the DLP ePO extension.

    Published: 1 Nov 2021
    8.4
    High

    CVE-2021-31849

    Last Modified: 21 Nov 2024

    SQL injection vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.7.100 allows a remote attacker logged into ePO as an administrator to inject arbitrary SQL into the ePO database through the user management section of the DLP ePO extension.

    Published: 1 Nov 2021
    9.8
    Critical

    CVE-2021-26740

    Last Modified: 21 Nov 2024

    Arbitrary file upload vulnerability sysupload.php in millken doyocms 2.3 allows attackers to execute arbitrary code.

    Published: 1 Nov 2021
    9.8
    Critical

    CVE-2021-26739

    Last Modified: 21 Nov 2024

    SQL Injection vulnerability in pay.php in millken doyocms 2.3, allows attackers to execute arbitrary code, via the attribute parameter.

    Published: 1 Nov 2021
    8.8
    High

    CVE-2021-38847

    Last Modified: 21 Nov 2024

    S-Cart v6.4.1 and below was discovered to contain an arbitrary file upload vulnerability in the Editor module on the Admin panel. This vulnerability allows attackers to execute arbitrary code via a crafted IMG file.

    Published: 1 Nov 2021
    7.5
    High

    CVE-2020-28702

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability in TopicMapper.xml of PybbsCMS v5.2.1 allows attackers to access sensitive database information.

    Published: 1 Nov 2021
    9.8
    Critical

    CVE-2021-3705

    Last Modified: 21 Nov 2024

    Potential security vulnerabilities have been discovered on a certain HP LaserJet Pro printer that may allow an unauthorized user to reconfigure, reset the device.

    Published: 1 Nov 2021
    9.8
    Critical

    CVE-2021-29212

    Last Modified: 21 Nov 2024

    A remote unauthenticated directory traversal security vulnerability has been identified in HPE iLO Amplifier Pack versions 1.80, 1.81, 1.90 and 1.95. The vulnerability could be remotely exploited to allow an unauthenticated user to run arbitrary code leading complete impact to confidentiality, integrity, and availability of the iLO Amplifier Pack appliance.

    Published: 1 Nov 2021
    6.7
    Medium

    CVE-2021-29213

    Last Modified: 21 Nov 2024

    A potential local bypass of security restrictions vulnerability has been identified in HPE ProLiant DL20 Gen10, HPE ProLiant ML30 Gen10, and HPE ProLiant MicroServer Gen10 Plus server's system ROMs prior to version 2.52. The vulnerability could be locally exploited to cause disclosure of sensitive information, denial of service (DoS), and/or compromise system integrity.

    Published: 1 Nov 2021
    7.5
    High

    CVE-2021-27005

    Last Modified: 21 Nov 2024

    Clustered Data ONTAP versions 9.6 and higher prior to 9.6P16, 9.7P16, 9.8P7 and 9.9.1P3 are susceptible to a vulnerability which could allow a remote attacker to cause a crash of the httpd server.

    Published: 1 Nov 2021
    7.5
    High

    CVE-2021-3704

    Last Modified: 21 Nov 2024

    Potential security vulnerabilities have been discovered on a certain HP LaserJet Pro printer that may allow a Denial of Service on the device.

    Published: 1 Nov 2021
    7.8
    High

    CVE-2021-3440

    Last Modified: 21 Nov 2024

    HP Print and Scan Doctor, an application within the HP Smart App for Windows, is potentially vulnerable to local elevation of privilege.

    Published: 1 Nov 2021
    4.5
    Medium

    CVE-2021-22564

    Last Modified: 21 Nov 2024

    For certain valid JPEG XL images with a size slightly larger than an integer number of groups (256x256 pixels) when processing the groups out of order the decoder can perform an out of bounds copy of image pixels from an image buffer in the heap to another. This copy can occur when processing the right or bottom edges of the image, but only when groups are processed in certain order. Groups can be processed out of order in multi-threaded decoding environments with heavy thread load but also with images that contain the groups in an arbitrary order in the file. It is recommended to upgrade past 0.6.0 or patch with https://github.com/libjxl/libjxl/pull/775

    Published: 1 Nov 2021
    4.5
    Medium

    CVE-2021-22563

    Last Modified: 21 Nov 2024

    Invalid JPEG XL images using libjxl can cause an out of bounds access on a std::vector<std::vector<T>> when rendering splines. The OOB read access can either lead to a segfault, or rendering splines based on other process memory. It is recommended to upgrade past 0.6.0 or patch with https://github.com/libjxl/libjxl/pull/757

    Published: 1 Nov 2021
    5.5
    Medium

    CVE-2021-27004

    Last Modified: 21 Nov 2024

    System Manager 9.x versions 9.7 and higher prior to 9.7P16, 9.8P7 and 9.9.1P2 are susceptible to a vulnerability which could allow a local attacker to discover plaintext iSCSI CHAP credentials.

    Published: 1 Nov 2021
    6.1
    Medium

    CVE-2021-25878

    Last Modified: 21 Nov 2024

    AVideo/YouPHPTube 10.0 and prior is affected by multiple reflected Cross Script Scripting vulnerabilities via the videoName parameter which allows a remote attacker to steal administrators' session cookies or perform actions as an administrator.

    Published: 1 Nov 2021
    7.2
    High

    CVE-2021-25877

    Last Modified: 21 Nov 2024

    AVideo/YouPHPTube 10.0 and prior is affected by Insecure file write. An administrator privileged user is able to write files on filesystem using flag and code variables in file save.php.

    Published: 1 Nov 2021
    6.1
    Medium

    CVE-2021-25876

    Last Modified: 21 Nov 2024

    AVideo/YouPHPTube 10.0 and prior has multiple reflected Cross Script Scripting vulnerabilities via the u parameter which allows a remote attacker to steal administrators' session cookies or perform actions as an administrator.

    Published: 1 Nov 2021
    6.1
    Medium

    CVE-2021-25875

    Last Modified: 21 Nov 2024

    AVideo/YouPHPTube AVideo/YouPHPTube 10.0 and prior has multiple reflected Cross Script Scripting vulnerabilities via the searchPhrase parameter which allows a remote attacker to steal administrators' session cookies or perform actions as an administrator.

    Published: 1 Nov 2021
    7.5
    High

    CVE-2021-25874

    Last Modified: 21 Nov 2024

    AVideo/YouPHPTube AVideo/YouPHPTube 10.0 and prior is affected by a SQL Injection SQL injection in the catName parameter which allows a remote unauthenticated attacker to retrieve databases information such as application passwords hashes.

    Published: 1 Nov 2021
    7.5
    High

    CVE-2021-42557

    Last Modified: 21 Nov 2024

    In Jeedom through 4.1.19, a bug allows a remote attacker to bypass API access and retrieve users credentials.

    Published: 1 Nov 2021
    8.8
    High

    CVE-2021-27644

    Last Modified: 21 Nov 2024

    In Apache DolphinScheduler before 1.3.6 versions, authorized users can use SQL injection in the data source center. (Only applicable to MySQL data source with internal login account password)

    Published: 1 Nov 2021
    4.8
    Medium

    CVE-2021-24813

    Last Modified: 21 Nov 2024

    The Events Made Easy WordPress plugin before 2.2.24 does not sanitise and escape Custom Field Names, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 1 Nov 2021
    8.8
    High

    CVE-2021-24809

    Last Modified: 21 Nov 2024

    The BP Better Messages WordPress plugin before 1.9.9.41 does not check for CSRF in multiple of its AJAX actions: bp_better_messages_leave_chat, bp_better_messages_join_chat, bp_messages_leave_thread, bp_messages_mute_thread, bp_messages_unmute_thread, bp_better_messages_add_user_to_thread, bp_better_messages_exclude_user_from_thread. This could allow attackers to make logged in users do unwanted actions

    Published: 1 Nov 2021