CVE Feed

    Dashboard / CVE

    6.4
    Medium

    CVE-2021-0920

    Last Modified: 23 Oct 2025

    In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-196926917References: Upstream kernel

    Published: 28 Jul 2021
    8.8
    High

    CVE-2021-30661

    Last Modified: 23 Oct 2025

    A use after free issue was addressed with improved memory management. This issue is fixed in Safari 14.1, iOS 12.5.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..

    Published: 28 Jul 2021
    8.8
    High

    CVE-2021-30663

    Last Modified: 23 Oct 2025

    An integer overflow was addressed with improved input validation. This issue is fixed in iOS 14.5.1 and iPadOS 14.5.1, tvOS 14.6, iOS 12.5.3, Safari 14.1.1, macOS Big Sur 11.3.1. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published: 28 Jul 2021
    8.8
    High

    CVE-2021-30665

    Last Modified: 23 Oct 2025

    A memory corruption issue was addressed with improved state management. This issue is fixed in watchOS 7.4.1, iOS 14.5.1 and iPadOS 14.5.1, tvOS 14.6, iOS 12.5.3, macOS Big Sur 11.3.1. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..

    Published: 28 Jul 2021
    8.8
    High

    CVE-2021-30666

    Last Modified: 23 Oct 2025

    A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 12.5.3. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..

    Published: 28 Jul 2021
    8.8
    High

    CVE-2021-30761

    Last Modified: 23 Oct 2025

    A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 12.5.4. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..

    Published: 28 Jul 2021
    6.1
    Medium

    CVE-2021-37596

    Last Modified: 21 Nov 2024

    Telegram Web K Alpha 0.6.1 allows XSS via a document name.

    Published: 27 Jul 2021
    9.8
    Critical

    CVE-2021-37594

    Last Modified: 21 Nov 2024

    In FreeRDP before 2.4.0 on Windows, wf_cliprdr_server_file_contents_request in client/Windows/wf_cliprdr.c has missing input checks for a FILECONTENTS_SIZE File Contents Request PDU.

    Published: 27 Jul 2021
    9.8
    Critical

    CVE-2021-37595

    Last Modified: 21 Nov 2024

    In FreeRDP before 2.4.0 on Windows, wf_cliprdr_server_file_contents_request in client/Windows/wf_cliprdr.c has missing input checks for a FILECONTENTS_RANGE File Contents Request PDU.

    Published: 27 Jul 2021
    9.1
    Critical

    CVE-2021-37593

    Last Modified: 21 Nov 2024

    PEEL Shopping version 9.4.0 allows remote SQL injection. A public user/guest (unauthenticated) can inject a malicious SQL query in order to affect the execution of predefined SQL commands. Upon a successful SQL injection attack, an attacker can read sensitive data from the database and possibly modify database data.

    Published: 27 Jul 2021
    4.8
    Medium

    CVE-2020-20701

    Last Modified: 21 Nov 2024

    A stored cross site scripting (XSS) vulnerability in /app/config/of S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

    Published: 27 Jul 2021
    4.8
    Medium

    CVE-2020-20700

    Last Modified: 21 Nov 2024

    A stored cross site scripting (XSS) vulnerability in /app/form_add/of S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the Title Entry text box.

    Published: 27 Jul 2021
    4.8
    Medium

    CVE-2020-20699

    Last Modified: 21 Nov 2024

    A cross site scripting (XSS) vulnerability in S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the Copyright text box under Basic Settings.

    Published: 27 Jul 2021
    7.2
    High

    CVE-2020-20698

    Last Modified: 21 Nov 2024

    A remote code execution (RCE) vulnerability in /1.com.php of S-CMS PHP v3.0 allows attackers to getshell via modification of a PHP file.

    Published: 27 Jul 2021
    6.5
    Medium

    CVE-2021-37587

    Last Modified: 21 Nov 2024

    In Charm 0.43, any single user can decrypt DAC-MACS or MA-ABE-YJ14 data.

    Published: 27 Jul 2021
    5.9
    Medium

    CVE-2021-37588

    Last Modified: 21 Nov 2024

    In Charm 0.43, any two users can collude to achieve the ability to decrypt YCT14 data.

    Published: 27 Jul 2021
    4.3
    Medium

    CVE-2021-32788

    Last Modified: 21 Nov 2024

    Discourse is an open source discussion platform. In versions prior to 2.7.7 there are two bugs which led to the post creator of a whisper post being revealed to non-staff users. 1: Staff users that creates a whisper post in a personal message is revealed to non-staff participants of the personal message even though the whisper post cannot be seen by them. 2: When a whisper post is before the last post in a post stream, deleting the last post will result in the creator of the whisper post to be revealed to non-staff users as the last poster of the topic.

    Published: 27 Jul 2021
    4.3
    Medium

    CVE-2021-32748

    Last Modified: 21 Nov 2024

    Nextcloud Richdocuments in an open source self hosted online office. Nextcloud uses the WOPI ("Web Application Open Platform Interface") protocol to communicate with the Collabora Editor, the communication between these two services was not protected by a credentials or IP check. Whilst this does not result in gaining access to data that the user has not yet access to, it can result in a bypass of any enforced watermark on documents as described on the [Nextcloud Virtual Data Room](https://nextcloud.com/virtual-data-room/) website and [our documentation](https://portal.nextcloud.com/article/nextcloud-and-virtual-data-room-configuration-59.html). The Nextcloud Richdocuments releases 3.8.3 and 4.2.0 add an additional admin settings for an allowlist of IP addresses that can access the WOPI API. We recommend upgrading and configuring the allowlist to a list of Collabora servers. There is no known workaround. Note that this primarily results a bypass of any configured watermark or download protection using File Access Control. If you do not require or rely on these as a security feature no immediate action is required on your end.

    Published: 27 Jul 2021
    5.3
    Medium

    CVE-2021-30483

    Last Modified: 21 Nov 2024

    isomorphic-git before 1.8.2 allows Directory Traversal via a crafted repository.

    Published: 27 Jul 2021
    5.4
    Medium

    CVE-2020-19118

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerabiity in YzmCMS 5.2 via the site_code parameter in admin/index/init.html.

    Published: 27 Jul 2021
    9.8
    Critical

    CVE-2020-21806

    Last Modified: 21 Nov 2024

    SQL Injection Vulnerability in ECTouch v2 via the shop page in index.php..

    Published: 27 Jul 2021
    7.5
    High

    CVE-2021-28966

    Last Modified: 21 Nov 2024

    In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with TmpDir.

    Published: 27 Jul 2021
    5.4
    Medium

    CVE-2021-28674

    Last Modified: 21 Nov 2024

    The node management page in SolarWinds Orion Platform before 2020.2.5 HF1 allows an attacker to create or delete a node (outside of the attacker's perimeter) via an account with write permissions. This occurs because node IDs are predictable (with incrementing numbers) and the access control on Services/NodeManagement.asmx/DeleteObjNow is incorrect. To exploit this, an attacker must be authenticated and must have node management rights associated with at least one valid group on the platform.

    Published: 27 Jul 2021
    7.5
    High

    CVE-2021-34432

    Last Modified: 2 Jul 2026

    In Eclipse Mosquitto versions 2.0.7 and earlier, the server will crash if the client tries to send a PUBLISH packet with topic length = 0.

    Published: 27 Jul 2021
    9.8
    Critical

    CVE-2020-18013

    Last Modified: 21 Nov 2024

    SQL Injextion vulnerability exists in Whatsns 4.0 via the ip parameter in index.php?admin_banned/add.htm.

    Published: 27 Jul 2021
    5.4
    Medium

    CVE-2021-36605

    Last Modified: 21 Nov 2024

    engineercms 1.03 is vulnerable to Cross Site Scripting (XSS). There is no escaping in the nickname field on the user list page. When viewing this page, the JavaScript code will be executed in the user's browser.

    Published: 27 Jul 2021
    7.5
    High

    CVE-2020-16839

    Last Modified: 21 Nov 2024

    On Crestron DM-NVX-DIR, DM-NVX-DIR80, and DM-NVX-ENT devices before the DM-XIO/1-0-3-802 patch, the password can be changed by sending an unauthenticated WebSocket request.

    Published: 27 Jul 2021
    7.5
    High

    CVE-2020-14999

    Last Modified: 21 Nov 2024

    A logic bug in system monitoring driver of Acronis Agent after 12.5.21540 and before 12.5.23094 allowed to bypass Windows memory protection and access sensitive data.

    Published: 27 Jul 2021
    8.8
    High

    CVE-2021-36004

    Last Modified: 21 Nov 2024

    Adobe InDesign version 16.0 (and earlier) is affected by an Out-of-bounds Write vulnerability in the CoolType library. An unauthenticated attacker could leverage this vulnerability to achieve remote code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 27 Jul 2021
    5.4
    Medium

    CVE-2021-35479

    Last Modified: 21 Nov 2024

    Nagios Log Server before 2.1.9 contains Stored XSS in the custom column view for the alert history and audit log function through the affected pp parameter. This affects users who open a crafted link or third-party web page.

    Published: 27 Jul 2021
    5.4
    Medium

    CVE-2021-35478

    Last Modified: 21 Nov 2024

    Nagios Log Server before 2.1.9 contains Reflected XSS in the dropdown box for the alert history and audit log function. All parameters used for filtering are affected. This affects users who open a crafted link or third-party web page.

    Published: 27 Jul 2021
    8.8
    High

    CVE-2021-34802

    Last Modified: 21 Nov 2024

    A failure in resetting the security context in some transaction actions in Neo4j Graph Database 4.2 and 4.3 could allow authenticated users to execute commands with elevated privileges.

    Published: 27 Jul 2021
    5.4
    Medium

    CVE-2021-20562

    Last Modified: 21 Nov 2024

    IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5_3 and 6.1.0.0 through 6.1.0.2 vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199232.

    Published: 27 Jul 2021
    9.1
    Critical

    CVE-2021-20399

    Last Modified: 21 Nov 2024

    IBM Qradar SIEM 7.3.0 to 7.3.3 Patch 8 and 7.4.0 to 7.4.3 GA is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 196073.

    Published: 27 Jul 2021
    7.2
    High

    CVE-2021-36766

    Last Modified: 21 Nov 2024

    Concrete5 through 8.5.5 deserializes Untrusted Data. The vulnerable code is located within the controllers/single_page/dashboard/system/environment/logging.php Logging::update_logging() method. User input passed through the logFile request parameter is not properly sanitized before being used in a call to the file_exists() PHP function. This can be exploited by malicious users to inject arbitrary PHP objects into the application scope (PHP Object Injection via phar:// stream wrapper), allowing them to carry out a variety of attacks, such as executing arbitrary PHP code.

    Published: 27 Jul 2021
    7.5
    High

    CVE-2021-36754

    Last Modified: 21 Nov 2024

    PowerDNS Authoritative Server 4.5.0 before 4.5.1 allows anybody to crash the process by sending a specific query (QTYPE 65535) that causes an out-of-bounds exception.

    Published: 27 Jul 2021
    8.8
    High

    CVE-2021-35472

    Last Modified: 21 Nov 2024

    An issue was discovered in LemonLDAP::NG before 2.0.12. Session cache corruption can lead to authorization bypass or spoofing. By running a loop that makes many authentication attempts, an attacker might alternately be authenticated as one of two different users.

    Published: 27 Jul 2021
    9.8
    Critical

    CVE-2021-35458

    Last Modified: 21 Nov 2024

    Online Pet Shop We App 1.0 is vulnerable to Union SQL Injection in products.php (aka p=products) via the c or s parameter.

    Published: 27 Jul 2021
    7.1
    High

    CVE-2021-32610

    Last Modified: 21 Nov 2024

    In Archive_Tar before 1.4.14, symlinks can refer to targets outside of the extracted archive, a different vulnerability than CVE-2020-36193.

    Published: 27 Jul 2021
    7.5
    High

    CVE-2021-32558

    Last Modified: 21 Nov 2024

    An issue was discovered in Sangoma Asterisk 13.x before 13.38.3, 16.x before 16.19.1, 17.x before 17.9.4, and 18.x before 18.5.1, and Certified Asterisk before 16.8-cert10. If the IAX2 channel driver receives a packet that contains an unsupported media format, a crash can occur.

    Published: 27 Jul 2021
    6.5
    Medium

    CVE-2021-31878

    Last Modified: 21 Nov 2024

    An issue was discovered in PJSIP in Asterisk before 16.19.1 and before 18.5.1. To exploit, a re-INVITE without SDP must be received after Asterisk has sent a BYE request.

    Published: 27 Jul 2021
    4.8
    Medium

    CVE-2021-28095

    Last Modified: 21 Nov 2024

    OX Documents before 7.10.5-rev5 has Incorrect Access Control for documents that contain XML structures because hash collisions can occur, due to use of CRC32.

    Published: 27 Jul 2021
    6.5
    Medium

    CVE-2021-28093

    Last Modified: 21 Nov 2024

    OX Documents before 7.10.5-rev5 has Incorrect Access Control of converted images because hash collisions can occur, due to use of Adler32.

    Published: 27 Jul 2021
    6.5
    Medium

    CVE-2021-28094

    Last Modified: 21 Nov 2024

    OX Documents before 7.10.5-rev7 has Incorrect Access Control for converted documents because hash collisions can occur, due to use of CRC32.

    Published: 27 Jul 2021
    8.1
    High

    CVE-2020-11511

    Last Modified: 21 Nov 2024

    The LearnPress plugin before 3.2.6.9 for WordPress allows remote attackers to escalate the privileges of any user to LP Instructor via the accept-to-be-teacher action parameter.

    Published: 27 Jul 2021
    6.5
    Medium

    CVE-2021-32796

    Last Modified: 21 Nov 2024

    xmldom is an open source pure JavaScript W3C standard-based (XML DOM Level 2 Core) DOMParser and XMLSerializer module. xmldom versions 0.6.0 and older do not correctly escape special characters when serializing elements removed from their ancestor. This may lead to unexpected syntactic changes during XML processing in some downstream applications. This issue has been resolved in version 0.7.0. As a workaround downstream applications can validate the input and reject the maliciously crafted documents.

    Published: 27 Jul 2021
    5.5
    Medium

    CVE-2021-37600

    Last Modified: 21 Nov 2024

    An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this is unexploitable in GNU C Library environments, and possibly in all realistic environments.

    Published: 27 Jul 2021
    7.5
    High

    CVE-2021-38593

    Last Modified: 21 Nov 2024

    Qt 5.x before 5.15.6 and 6.x through 6.1.2 has an out-of-bounds write in QOutlineMapper::convertPath (called from QRasterPaintEngine::fill and QPaintEngineEx::stroke).

    Published: 27 Jul 2021
    6.5
    Medium

    CVE-2021-3658

    Last Modified: 15 Apr 2026

    bluetoothd from bluez incorrectly saves adapters' Discoverable status when a device is powered down, and restores it when powered up. If a device is powered down while discoverable, it will be discoverable when powered on again. This could lead to inadvertent exposure of the bluetooth stack to physically nearby attackers.

    Published: 27 Jul 2021
    7.5
    High

    CVE-2020-18430

    Last Modified: 21 Nov 2024

    tinyexr 0.9.5 was discovered to contain an array index error in the tinyexr::DecodeEXRImage component, which can lead to a denial of service (DOS).

    Published: 26 Jul 2021