CVE Feed

    Dashboard / CVE

    7.2
    High

    CVE-2021-36792

    Last Modified: 21 Nov 2024

    The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 has incorrect Access Control for confirming various applications.

    Published: 13 Aug 2021
    5.3
    Medium

    CVE-2021-36791

    Last Modified: 21 Nov 2024

    The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows Information Disclosure of application registration data.

    Published: 13 Aug 2021
    6.1
    Medium

    CVE-2021-36790

    Last Modified: 21 Nov 2024

    The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows XSS.

    Published: 13 Aug 2021
    9.8
    Critical

    CVE-2021-36789

    Last Modified: 21 Nov 2024

    The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows SQL Injection.

    Published: 13 Aug 2021
    9.8
    Critical

    CVE-2021-36380

    Last Modified: 5 Nov 2025

    Sunhillo SureLine before 8.7.0.1.1 allows Unauthenticated OS Command Injection via shell metacharacters in ipAddr or dnsAddr /cgi/networkDiag.cgi.

    Published: 13 Aug 2021
    6.7
    Medium

    CVE-2021-37028

    Last Modified: 21 Nov 2024

    There is a command injection vulnerability in the HG8045Q product. When the command-line interface is enabled, which is disabled by default, attackers with administrator privilege could execute part of commands.

    Published: 13 Aug 2021
    6.5
    Medium

    CVE-2021-29880

    Last Modified: 21 Nov 2024

    IBM QRadar SIEM 7.4.3 GA - 7.4.3 Fix Pack 1 when using domains or multi-tenancy could be vulnerable to information disclosure between tenants by routing SIEM data to the incorrect domain. IBM X-Force ID: 206979.

    Published: 13 Aug 2021
    7.8
    High

    CVE-2021-34398

    Last Modified: 21 Nov 2024

    NVIDIA DCGM, all versions prior to 2.2.9, contains a vulnerability in the DIAG module where any user can inject shared libraries into the DCGM server, which is usually running as root, which may lead to privilege escalation, total loss of confidentiality and integrity, and complete denial of service.

    Published: 13 Aug 2021
    9.8
    Critical

    CVE-2021-1104

    Last Modified: 21 Nov 2024

    The RISC-V Instruction Set Manual contains a documented ambiguity for the Machine Trap Vector Base Address (MTVEC) register that may lead to a vulnerability due to the initial state of the register not being defined, potentially leading to information disclosure, data tampering and denial of service.

    Published: 13 Aug 2021
    4.8
    Medium

    CVE-2021-32069

    Last Modified: 21 Nov 2024

    The AWV component of Mitel MiCollab before 9.3 could allow an attacker to perform a Man-In-the-Middle attack due to improper TLS negotiation. A successful exploit could allow an attacker to view and modify data.

    Published: 13 Aug 2021
    4.9
    Medium

    CVE-2021-37586

    Last Modified: 21 Nov 2024

    The PowerPlay Web component of Mitel Interaction Recording Multitenancy systems before 6.7 could allow a user (with Administrator rights) to replay a previously recorded conversation of another tenant due to insufficient validation.

    Published: 13 Aug 2021
    9.1
    Critical

    CVE-2021-3352

    Last Modified: 21 Nov 2024

    The Software Development Kit in Mitel MiContact Center Business from 8.0.0.0 through 8.1.4.1 and 9.0.0.0 through 9.3.1.0 could allow an unauthenticated attacker to access (view and modify) user data without authorization due to improper handling of tokens.

    Published: 13 Aug 2021
    6.5
    Medium

    CVE-2021-32072

    Last Modified: 21 Nov 2024

    The MiCollab Client Service component in Mitel MiCollab before 9.3 could allow an attacker to get source code information (disclosing sensitive application data) due to insufficient output sanitization. A successful exploit could allow an attacker to view source code methods.

    Published: 13 Aug 2021
    9.8
    Critical

    CVE-2021-32071

    Last Modified: 21 Nov 2024

    The MiCollab Client service in Mitel MiCollab before 9.3 could allow an unauthenticated user to gain system access due to improper access control. A successful exploit could allow an attacker to view and modify application data, and cause a denial of service for users.

    Published: 13 Aug 2021
    5.4
    Medium

    CVE-2021-32070

    Last Modified: 21 Nov 2024

    The MiCollab Client Service component in Mitel MiCollab before 9.3 could allow an attacker to perform a clickjacking attack due to an insecure header response. A successful exploit could allow an attacker to modify the browser header and redirect users.

    Published: 13 Aug 2021
    3.7
    Low

    CVE-2021-32068

    Last Modified: 21 Nov 2024

    The AWV and MiCollab Client Service components in Mitel MiCollab before 9.3 could allow an attacker to perform a Man-In-the-Middle attack by sending multiple session renegotiation requests, due to insufficient TLS session controls. A successful exploit could allow an attacker to modify application data and state.

    Published: 13 Aug 2021
    6.5
    Medium

    CVE-2021-32067

    Last Modified: 21 Nov 2024

    The MiCollab Client Service component in Mitel MiCollab before 9.3 could allow an attacker to view sensitive system information through an HTTP response due to insufficient output sanitization.

    Published: 13 Aug 2021
    6.5
    Medium

    CVE-2021-27402

    Last Modified: 21 Nov 2024

    The SAS Admin portal of Mitel MiCollab before 9.2 FP2 could allow an unauthenticated attacker to access (view and modify) user data by injecting arbitrary directory paths due to improper URL validation, aka Directory Traversal.

    Published: 13 Aug 2021
    6.1
    Medium

    CVE-2021-27401

    Last Modified: 21 Nov 2024

    The Join Meeting page of Mitel MiCollab Web Client before 9.2 FP2 could allow an attacker to access (view and modify) user data by executing arbitrary code due to insufficient input validation, aka Cross-Site Scripting (XSS).

    Published: 13 Aug 2021
    4.3
    Medium

    CVE-2021-37703

    Last Modified: 21 Nov 2024

    Discourse is an open-source platform for community discussion. In Discourse before versions 2.7.8 and 2.8.0.beta5, a user's read state for a topic such as the last read post number and the notification level is exposed.

    Published: 13 Aug 2021
    5.3
    Medium

    CVE-2021-37693

    Last Modified: 21 Nov 2024

    Discourse is an open-source platform for community discussion. In Discourse before versions 2.7.8 and 2.8.0.beta4, when adding additional email addresses to an existing account on a Discourse site an email token is generated as part of the email verification process. Deleting the additional email address does not invalidate an unused token which can then be used in other contexts, including reseting a password.

    Published: 13 Aug 2021
    6.1
    Medium

    CVE-2021-38619

    Last Modified: 21 Nov 2024

    openBaraza HCM 3.1.6 does not properly neutralize user-controllable input: an unauthenticated remote attacker can conduct a stored cross-site scripting (XSS) attack against an administrative user from hr/subscription.jsp and hr/application.jsp and and hr/index.jsp (with view=).

    Published: 13 Aug 2021
    9.1
    Critical

    CVE-2021-38621

    Last Modified: 21 Nov 2024

    The remove API in v1/controller/cloudStorage/alibabaCloud/remove/index.ts in netless Agora Flat Server before 2021-07-30 mishandles file ownership.

    Published: 13 Aug 2021
    6.1
    Medium

    CVE-2021-38583

    Last Modified: 21 Nov 2024

    openBaraza HCM 3.1.6 does not properly neutralize user-controllable input, which allows reflected cross-site scripting (XSS) on multiple pages: hr/subscription.jsp and hr/application.jsp and and hr/index.jsp (with view= and data=).

    Published: 13 Aug 2021
    9.1
    Critical

    CVE-2021-27741

    Last Modified: 21 Nov 2024

    " Security vulnerability in HCL Commerce Management Center allowing XML external entity (XXE) injection"

    Published: 13 Aug 2021
    4.6
    Medium

    CVE-2021-31399

    Last Modified: 30 May 2025

    On 2N Access Unit 2.0 2.31.0.40.5 devices, an attacker can pose as the web relay for a man-in-the-middle attack.

    Published: 13 Aug 2021
    8.8
    High

    CVE-2021-37343

    Last Modified: 21 Nov 2024

    A path traversal vulnerability exists in Nagios XI below version 5.8.5 AutoDiscovery component and could lead to post authenticated RCE under security context of the user running Nagios.

    Published: 13 Aug 2021
    9.8
    Critical

    CVE-2021-37344

    Last Modified: 21 Nov 2024

    Nagios XI Switch Wizard before version 2.5.7 is vulnerable to remote code execution through improper neutralisation of special elements used in an OS Command (OS Command injection).

    Published: 13 Aug 2021
    7.8
    High

    CVE-2021-37345

    Last Modified: 21 Nov 2024

    Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because xi-sys.cfg is being imported from the var directory for some scripts with elevated permissions.

    Published: 13 Aug 2021
    9.8
    Critical

    CVE-2021-37346

    Last Modified: 21 Nov 2024

    Nagios XI WatchGuard Wizard before version 1.4.8 is vulnerable to remote code execution through Improper neutralisation of special elements used in an OS Command (OS Command injection).

    Published: 13 Aug 2021
    7.8
    High

    CVE-2021-37347

    Last Modified: 21 Nov 2024

    Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because getprofile.sh does not validate the directory name it receives as an argument.

    Published: 13 Aug 2021
    7.5
    High

    CVE-2021-37348

    Last Modified: 21 Nov 2024

    Nagios XI before version 5.8.5 is vulnerable to local file inclusion through improper limitation of a pathname in index.php.

    Published: 13 Aug 2021
    7.8
    High

    CVE-2021-37349

    Last Modified: 21 Nov 2024

    Nagios XI before version 5.8.5 is vulnerable to local privilege escalation because cleaner.php does not sanitise input read from the database.

    Published: 13 Aug 2021
    9.8
    Critical

    CVE-2021-37350

    Last Modified: 21 Nov 2024

    Nagios XI before version 5.8.5 is vulnerable to SQL injection vulnerability in Bulk Modifications Tool due to improper input sanitisation.

    Published: 13 Aug 2021
    5.3
    Medium

    CVE-2021-37351

    Last Modified: 21 Nov 2024

    Nagios XI before version 5.8.5 is vulnerable to insecure permissions and allows unauthenticated users to access guarded pages through a crafted HTTP request to the server.

    Published: 13 Aug 2021
    6.1
    Medium

    CVE-2021-37352

    Last Modified: 21 Nov 2024

    An open redirect vulnerability exists in Nagios XI before version 5.8.5 that could lead to spoofing. To exploit the vulnerability, an attacker could send a link that has a specially crafted URL and convince the user to click the link.

    Published: 13 Aug 2021
    9.8
    Critical

    CVE-2021-37353

    Last Modified: 21 Nov 2024

    Nagios XI Docker Wizard before version 1.1.3 is vulnerable to SSRF due to improper sanitation in table_population.php.

    Published: 13 Aug 2021
    4.4
    Medium

    CVE-2021-38553

    Last Modified: 21 Nov 2024

    HashiCorp Vault and Vault Enterprise 1.4.0 through 1.7.3 initialized an underlying database file associated with the Integrated Storage feature with excessively broad filesystem permissions. Fixed in Vault and Vault Enterprise 1.8.0.

    Published: 13 Aug 2021
    5.3
    Medium

    CVE-2021-38554

    Last Modified: 21 Nov 2024

    HashiCorp Vault and Vault Enterprise’s UI erroneously cached and exposed user-viewed secrets between sessions in a single shared browser. Fixed in 1.8.0 and pending 1.7.4 / 1.6.6 releases.

    Published: 13 Aug 2021
    5.5
    Medium

    CVE-2021-46663

    Last Modified: 21 Nov 2024

    MariaDB through 10.5.13 allows a ha_maria::extra application crash via certain SELECT statements.

    Published: 13 Aug 2021
    5.5
    Medium

    CVE-2021-46667

    Last Modified: 21 Nov 2024

    MariaDB before 10.6.5 has a sql_lex.cc integer overflow, leading to an application crash.

    Published: 13 Aug 2021
    7.5
    High

    CVE-2022-27379

    Last Modified: 21 Nov 2024

    An issue in the component Arg_comparator::compare_real_fixed of MariaDB Server v10.6.2 and below was discovered to allow attackers to cause a Denial of Service (DoS) via specially crafted SQL statements.

    Published: 13 Aug 2021
    6.6
    Medium

    CVE-2021-37690

    Last Modified: 21 Nov 2024

    TensorFlow is an end-to-end open source platform for machine learning. In affected versions when running shape functions, some functions (such as `MutableHashTableShape`) produce extra output information in the form of a `ShapeAndType` struct. The shapes embedded in this struct are owned by an inference context that is cleaned up almost immediately; if the upstream code attempts to access this shape information, it can trigger a segfault. `ShapeRefiner` is mitigating this for normal output shapes by cloning them (and thus putting the newly created shape under ownership of an inference context that will not die), but we were not doing the same for shapes and types. This commit fixes that by doing similar logic on output shapes and types. We have patched the issue in GitHub commit ee119d4a498979525046fba1c3dd3f13a039fbb1. The fix will be included in TensorFlow 2.6.0. We will also cherrypick this commit on TensorFlow 2.5.1, TensorFlow 2.4.3, and TensorFlow 2.3.4, as these are also affected and still in supported range.

    Published: 12 Aug 2021
    7.3
    High

    CVE-2021-37695

    Last Modified: 21 Nov 2024

    ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered in CKEditor 4 [Fake Objects](https://ckeditor.com/cke4/addon/fakeobjects) package. The vulnerability allowed to inject malformed Fake Objects HTML, which could result in executing JavaScript code. It affects all users using the CKEditor 4 plugins listed above at version < 4.16.2. The problem has been recognized and patched. The fix will be available in version 4.16.2.

    Published: 12 Aug 2021
    9.3
    Critical

    CVE-2021-37678

    Last Modified: 21 Nov 2024

    TensorFlow is an end-to-end open source platform for machine learning. In affected versions TensorFlow and Keras can be tricked to perform arbitrary code execution when deserializing a Keras model from YAML format. The [implementation](https://github.com/tensorflow/tensorflow/blob/460e000de3a83278fb00b61a16d161b1964f15f4/tensorflow/python/keras/saving/model_config.py#L66-L104) uses `yaml.unsafe_load` which can perform arbitrary code execution on the input. Given that YAML format support requires a significant amount of work, we have removed it for now. We have patched the issue in GitHub commit 23d6383eb6c14084a8fc3bdf164043b974818012. The fix will be included in TensorFlow 2.6.0. We will also cherrypick this commit on TensorFlow 2.5.1, TensorFlow 2.4.3, and TensorFlow 2.3.4, as these are also affected and still in supported range.

    Published: 12 Aug 2021
    5.5
    Medium

    CVE-2021-37692

    Last Modified: 21 Nov 2024

    TensorFlow is an end-to-end open source platform for machine learning. In affected versions under certain conditions, Go code can trigger a segfault in string deallocation. For string tensors, `C.TF_TString_Dealloc` is called during garbage collection within a finalizer function. However, tensor structure isn't checked until encoding to avoid a performance penalty. The current method for dealloc assumes that encoding succeeded, but segfaults when a string tensor is garbage collected whose encoding failed (e.g., due to mismatched dimensions). To fix this, the call to set the finalizer function is deferred until `NewTensor` returns and, if encoding failed for a string tensor, deallocs are determined based on bytes written. We have patched the issue in GitHub commit 8721ba96e5760c229217b594f6d2ba332beedf22. The fix will be included in TensorFlow 2.6.0. We will also cherrypick this commit on TensorFlow 2.5.1, which is the other affected version.

    Published: 12 Aug 2021
    5.5
    Medium

    CVE-2021-37669

    Last Modified: 21 Nov 2024

    TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause denial of service in applications serving models using `tf.raw_ops.NonMaxSuppressionV5` by triggering a division by 0. The [implementation](https://github.com/tensorflow/tensorflow/blob/460e000de3a83278fb00b61a16d161b1964f15f4/tensorflow/core/kernels/image/non_max_suppression_op.cc#L170-L271) uses a user controlled argument to resize a `std::vector`. However, as `std::vector::resize` takes the size argument as a `size_t` and `output_size` is an `int`, there is an implicit conversion to unsigned. If the attacker supplies a negative value, this conversion results in a crash. A similar issue occurs in `CombinedNonMaxSuppression`. We have patched the issue in GitHub commit 3a7362750d5c372420aa8f0caf7bf5b5c3d0f52d and commit [b5cdbf12ffcaaffecf98f22a6be5a64bb96e4f58. The fix will be included in TensorFlow 2.6.0. We will also cherrypick this commit on TensorFlow 2.5.1, TensorFlow 2.4.3, and TensorFlow 2.3.4, as these are also affected and still in supported range.

    Published: 12 Aug 2021
    5.5
    Medium

    CVE-2021-37673

    Last Modified: 21 Nov 2024

    TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a denial of service via a `CHECK`-fail in `tf.raw_ops.MapStage`. The [implementation](https://github.com/tensorflow/tensorflow/blob/460e000de3a83278fb00b61a16d161b1964f15f4/tensorflow/core/kernels/map_stage_op.cc#L513) does not check that the `key` input is a valid non-empty tensor. We have patched the issue in GitHub commit d7de67733925de196ec8863a33445b73f9562d1d. The fix will be included in TensorFlow 2.6.0. We will also cherrypick this commit on TensorFlow 2.5.1, TensorFlow 2.4.3, and TensorFlow 2.3.4, as these are also affected and still in supported range.

    Published: 12 Aug 2021
    7.8
    High

    CVE-2021-37663

    Last Modified: 21 Nov 2024

    TensorFlow is an end-to-end open source platform for machine learning. In affected versions due to incomplete validation in `tf.raw_ops.QuantizeV2`, an attacker can trigger undefined behavior via binding a reference to a null pointer or can access data outside the bounds of heap allocated arrays. The [implementation](https://github.com/tensorflow/tensorflow/blob/84d053187cb80d975ef2b9684d4b61981bca0c41/tensorflow/core/kernels/quantize_op.cc#L59) has some validation but does not check that `min_range` and `max_range` both have the same non-zero number of elements. If `axis` is provided (i.e., not `-1`), then validation should check that it is a value in range for the rank of `input` tensor and then the lengths of `min_range` and `max_range` inputs match the `axis` dimension of the `input` tensor. We have patched the issue in GitHub commit 6da6620efad397c85493b8f8667b821403516708. The fix will be included in TensorFlow 2.6.0. We will also cherrypick this commit on TensorFlow 2.5.1, TensorFlow 2.4.3, and TensorFlow 2.3.4, as these are also affected and still in supported range.

    Published: 12 Aug 2021
    4.4
    Medium

    CVE-2021-37682

    Last Modified: 21 Nov 2024

    TensorFlow is an end-to-end open source platform for machine learning. In affected versions all TFLite operations that use quantization can be made to use unitialized values. [For example](https://github.com/tensorflow/tensorflow/blob/460e000de3a83278fb00b61a16d161b1964f15f4/tensorflow/lite/kernels/depthwise_conv.cc#L198-L200). The issue stems from the fact that `quantization.params` is only valid if `quantization.type` is different that `kTfLiteNoQuantization`. However, these checks are missing in large parts of the code. We have patched the issue in GitHub commits 537bc7c723439b9194a358f64d871dd326c18887, 4a91f2069f7145aab6ba2d8cfe41be8a110c18a5 and 8933b8a21280696ab119b63263babdb54c298538. The fix will be included in TensorFlow 2.6.0. We will also cherrypick this commit on TensorFlow 2.5.1, TensorFlow 2.4.3, and TensorFlow 2.3.4, as these are also affected and still in supported range.

    Published: 12 Aug 2021