CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2020-23697

    Last Modified: 21 Nov 2024

    Cross Site Scripting vulnerabilty in Monstra CMS 3.0.4 via the page feature in admin/index.php.

    Published: 6 Jul 2021
    3.5
    Low

    CVE-2021-22232

    Last Modified: 21 Nov 2024

    HTML injection was possible via the full name field before versions 13.11.6, 13.12.6, and 14.0.2 in GitLab CE

    Published: 6 Jul 2021
    5.9
    Medium

    CVE-2021-22229

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab CE/EE affecting all versions starting with 12.8. Under a special condition it was possible to access data of an internal repository through project fork done by a project member.

    Published: 6 Jul 2021
    9.8
    Critical

    CVE-2020-22249

    Last Modified: 21 Nov 2024

    Remote Code Execution vulnerability in phplist 3.5.1. The application does not check any file extensions stored in the plugin zip file, Uploading a malicious plugin which contains the php files with extensions like PHP,phtml,php7 will be copied to the plugins directory which would lead to the remote code execution

    Published: 6 Jul 2021
    4.8
    Medium

    CVE-2020-22251

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in phpList 3.5.3 via the login name field in Manage Administrators when adding a new admin.

    Published: 6 Jul 2021
    4.8
    Medium

    CVE-2021-34190

    Last Modified: 21 Nov 2024

    A stored cross site scripting (XSS) vulnerability in index.php?menu=billing_rates of Issabel PBX version 4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Name" or "Prefix" fields under the "Create New Rate" module.

    Published: 6 Jul 2021
    6.1
    Medium

    CVE-2021-35440

    Last Modified: 21 Nov 2024

    Smashing 1.3.4 is vulnerable to Cross Site Scripting (XSS). A URL for a widget can be crafted and used to execute JavaScript on the victim's computer. The JavaScript code can then steal data available in the session/cookies depending on the user environment (e.g. if re-using internal URL's for deploying, or cookies that are very permissive) private information may be retrieved by the attacker.

    Published: 6 Jul 2021
    —
    Unknown

    CVE-2021-31771

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 6 Jul 2021
    5.4
    Medium

    CVE-2021-27930

    Last Modified: 21 Nov 2024

    Multiple stored XSS vulnerabilities in IrisNext Edition 9.5.16, which allows an authenticated (or compromised) user to inject malicious JavaScript in folder/file name within the application in order to grab other users’ sessions or execute malicious code in their browsers (1-click RCE).

    Published: 6 Jul 2021
    6.5
    Medium

    CVE-2021-32559

    Last Modified: 27 Mar 2025

    An integer overflow exists in pywin32 prior to version b301 when adding an access control entry (ACE) to an access control list (ACL) that would cause the size to be greater than 65535 bytes. An attacker who successfully exploited this vulnerability could crash the vulnerable process.

    Published: 6 Jul 2021
    5.4
    Medium

    CVE-2021-24494

    Last Modified: 21 Nov 2024

    The WP Offload SES Lite WordPress plugin before 1.4.5 did not escape some of the fields in the Activity page of the admin dashboard, such as the email's id, subject and recipient, which could lead to Stored Cross-Site Scripting issues when an attacker can control any of these fields, like the subject when filling a contact form for example. The XSS will be executed in the context of a logged in admin viewing the Activity tab of the plugin.

    Published: 6 Jul 2021
    7.2
    High

    CVE-2021-24451

    Last Modified: 21 Nov 2024

    The Export Users With Meta WordPress plugin before 0.6.5 did not escape the list of roles to export before using them in a SQL statement in the export functionality, available to admins, leading to an authenticated SQL Injection.

    Published: 6 Jul 2021
    6.1
    Medium

    CVE-2021-24407

    Last Modified: 21 Nov 2024

    The Jannah WordPress theme before 5.4.5 did not properly sanitize the 'query' POST parameter in its tie_ajax_search AJAX action, leading to a Reflected Cross-site Scripting (XSS) vulnerability.

    Published: 6 Jul 2021
    6.1
    Medium

    CVE-2021-24406

    Last Modified: 21 Nov 2024

    The wpForo Forum WordPress plugin before 1.9.7 did not validate the redirect_to parameter in the login form of the forum, leading to an open redirect issue after a successful login. Such issue could allow an attacker to induce a user to use a login URL redirecting to a website under their control and being a replica of the legitimate one, asking them to re-enter their credentials (which will then in the attacker hands)

    Published: 6 Jul 2021
    6.5
    Medium

    CVE-2021-24405

    Last Modified: 21 Nov 2024

    The Easy Cookies Policy WordPress plugin through 1.6.2 is lacking any capability and CSRF check when saving its settings, allowing any authenticated users (such as subscriber) to change them. If users can't register, this can be done through CSRF. Furthermore, the cookie banner setting is not sanitised or validated before being output in all pages of the frontend and the backend settings one, leading to a Stored Cross-Site Scripting issue.

    Published: 6 Jul 2021
    6.1
    Medium

    CVE-2021-24389

    Last Modified: 21 Nov 2024

    The WP Foodbakery WordPress plugin before 2.2, used in the FoodBakery WordPress theme before 2.2 did not properly sanitize the foodbakery_radius parameter before outputting it back in the response, leading to an unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability.

    Published: 6 Jul 2021
    6.1
    Medium

    CVE-2021-24387

    Last Modified: 21 Nov 2024

    The WP Pro Real Estate 7 WordPress theme before 3.1.1 did not properly sanitise the ct_community parameter in its search listing page before outputting it back in it, leading to a reflected Cross-Site Scripting which can be triggered in both unauthenticated or authenticated user context

    Published: 6 Jul 2021
    5.4
    Medium

    CVE-2021-24388

    Last Modified: 21 Nov 2024

    In the VikRentCar Car Rental Management System WordPress plugin before 1.1.7, there is a custom filed option by which we can manage all the fields that the users will have to fill in before saving the order. However, the field name is not sanitised or escaped before being output back in the page, leading to a stored Cross-Site Scripting issue. There is also no CSRF check done before saving the setting, allowing attackers to make a logged in admin set arbitrary Custom Fields, including one with XSS payload in it.

    Published: 6 Jul 2021
    5.4
    Medium

    CVE-2021-24386

    Last Modified: 21 Nov 2024

    The WP SVG images WordPress plugin before 3.4 did not sanitise the SVG files uploaded, which could allow low privilege users such as author+ to upload a malicious SVG and then perform XSS attacks by inducing another user to access the file directly. In v3.4, the plugin restricted such upload to editors and admin, with an option to also allow author to do so. The description of the plugin has also been updated with a security warning as upload of such content is intended.

    Published: 6 Jul 2021
    9.8
    Critical

    CVE-2021-24384

    Last Modified: 21 Nov 2024

    The joomsport_md_load AJAX action of the JoomSport WordPress plugin before 5.1.8, registered for both unauthenticated and unauthenticated users, unserialised user input from the shattr POST parameter, leading to a PHP Object Injection issue. Even though the plugin does not have a suitable gadget chain to exploit this, other installed plugins could, which might lead to more severe issues such as RCE

    Published: 6 Jul 2021
    9.8
    Critical

    CVE-2021-24375

    Last Modified: 21 Nov 2024

    Lack of authentication or validation in motor_load_more, motor_gallery_load_more, motor_quick_view and motor_project_quick_view AJAX handlers of the Motor WordPress theme before 3.1.0 allows an unauthenticated attacker access to arbitrary files in the server file system, and to execute arbitrary php scripts found on the server file system. We found no vulnerability for uploading files with this theme, so any scripts to be executed must already be on the server file system.

    Published: 6 Jul 2021
    4
    Medium

    CVE-2021-24005

    Last Modified: 21 Nov 2024

    Usage of hard-coded cryptographic keys to encrypt configuration files and debug logs in FortiAuthenticator versions before 6.3.0 may allow an attacker with access to the files or the CLI configuration to decrypt the sensitive data, via knowledge of the hard-coded key.

    Published: 6 Jul 2021
    7.5
    High

    CVE-2021-38202

    Last Modified: 12 May 2026

    fs/nfsd/trace.h in the Linux kernel before 5.13.4 might allow remote attackers to cause a denial of service (out-of-bounds read in strlen) by sending NFS traffic when the trace event framework is being used for nfsd.

    Published: 6 Jul 2021
    7.8
    High

    CVE-2021-35039

    Last Modified: 21 Nov 2024

    kernel/module.c in the Linux kernel before 5.12.14 mishandles Signature Verification, aka CID-0c18f29aae7c. Without CONFIG_MODULE_SIG, verification that a kernel module is signed, for loading via init_module, does not occur for a module.sig_enforce=1 command-line argument.

    Published: 6 Jul 2021
    5.3
    Medium

    CVE-2021-3664

    Last Modified: 21 Nov 2024

    url-parse is vulnerable to URL Redirection to Untrusted Site

    Published: 6 Jul 2021
    5.5
    Medium

    CVE-2022-0286

    Last Modified: 21 Nov 2024

    A flaw was found in the Linux kernel. A null pointer dereference in bond_ipsec_add_sa() may lead to local denial of service.

    Published: 6 Jul 2021
    6.1
    Medium

    CVE-2021-32233

    Last Modified: 21 Nov 2024

    SmarterTools SmarterMail before Build 7776 allows XSS.

    Published: 5 Jul 2021
    5.9
    Medium

    CVE-2021-36158

    Last Modified: 21 Nov 2024

    In the xrdp package (in branches through 3.14) for Alpine Linux, RDP sessions are vulnerable to man-in-the-middle attacks because pre-generated RSA certificates and private keys are used.

    Published: 5 Jul 2021
    7.8
    High

    CVE-2021-35331

    Last Modified: 21 Nov 2024

    In Tcl 8.6.11, a format string vulnerability in nmakehlp.c might allow code execution via a crafted file. NOTE: multiple third parties dispute the significance of this finding

    Published: 5 Jul 2021
    7.5
    High

    CVE-2020-26763

    Last Modified: 21 Nov 2024

    The Rocket.Chat desktop application 2.17.11 opens external links without user interaction.

    Published: 5 Jul 2021
    5.4
    Medium

    CVE-2021-23401

    Last Modified: 21 Nov 2024

    This affects all versions of package Flask-User. When using the make_safe_url function, it is possible to bypass URL validation and redirect a user to an arbitrary URL by providing multiple back slashes such as /////evil.com/path or \\\evil.com/path. This vulnerability is only exploitable if an alternative WSGI server other than Werkzeug is used, or the default behaviour of Werkzeug is modified using 'autocorrect_location_header=False.

    Published: 5 Jul 2021
    6.1
    Medium

    CVE-2021-33192

    Last Modified: 21 Nov 2024

    A vulnerability in the HTML pages of Apache Jena Fuseki allows an attacker to execute arbitrary javascript on certain page views. This issue affects Apache Jena Fuseki from version 2.0.0 to version 4.0.0 (inclusive).

    Published: 5 Jul 2021
    8.8
    High

    CVE-2021-3570

    Last Modified: 21 Nov 2024

    A flaw was found in the ptp4l program of the linuxptp package. A missing length check when forwarding a PTP message between ports allows a remote attacker to cause an information leak, crash, or potentially remote code execution. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. This flaw affects linuxptp versions before 3.1.1, before 2.0.1, before 1.9.3, before 1.8.1, before 1.7.1, before 1.6.1 and before 1.5.1.

    Published: 5 Jul 2021
    7.1
    High

    CVE-2021-3571

    Last Modified: 21 Nov 2024

    A flaw was found in the ptp4l program of the linuxptp package. When ptp4l is operating on a little-endian architecture as a PTP transparent clock, a remote attacker could send a crafted one-step sync message to cause an information leak or crash. The highest threat from this vulnerability is to data confidentiality and system availability. This flaw affects linuxptp versions before 3.1.1 and before 2.0.1.

    Published: 5 Jul 2021
    7.8
    High

    CVE-2021-38160

    Last Modified: 5 May 2025

    In drivers/char/virtio_console.c in the Linux kernel before 5.13.4, data corruption or loss can be triggered by an untrusted device that supplies a buf->len value exceeding the buffer size. NOTE: the vendor indicates that the cited data corruption is not a vulnerability in any existing use case; the length validation was added solely for robustness in the face of anomalous host OS behavior

    Published: 3 Jul 2021
    7.5
    High

    CVE-2021-32740

    Last Modified: 21 Nov 2024

    Addressable is an alternative implementation to the URI implementation that is part of Ruby's standard library. An uncontrolled resource consumption vulnerability exists after version 2.3.0 through version 2.7.0. Within the URI template implementation in Addressable, a maliciously crafted template may result in uncontrolled resource consumption, leading to denial of service when matched against a URI. In typical usage, templates would not normally be read from untrusted user input, but nonetheless, no previous security advisory for Addressable has cautioned against doing this. Users of the parsing capabilities in Addressable but not the URI template capabilities are unaffected. The vulnerability is patched in version 2.8.0. As a workaround, only create Template objects from trusted sources that have been validated not to produce catastrophic backtracking.

    Published: 3 Jul 2021
    8.8
    High

    CVE-2021-34527

    Last Modified: 10 Aug 2026

    A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. UPDATE July 7, 2021: The security update for Windows Server 2012, Windows Server 2016 and Windows 10, Version 1607 have been released. Please see the Security Updates table for the applicable update for your system. We recommend that you install these updates immediately. If you are unable to install these updates, see the FAQ and Workaround sections in this CVE for information on how to help protect your system from this vulnerability. In addition to installing the updates, in order to secure your system, you must confirm that the following registry settings are set to 0 (zero) or are not defined (Note: These registry keys do not exist by default, and therefore are already at the secure setting.), also that your Group Policy setting are correct (see FAQ): HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Printers\PointAndPrint NoWarningNoElevationOnInstall = 0 (DWORD) or not defined (default setting) UpdatePromptSettings = 0 (DWORD) or not defined (default setting) Having NoWarningNoElevationOnInstall set to 1 makes your system vulnerable by design. UPDATE July 6, 2021: Microsoft has completed the investigation and has released security updates to address this vulnerability. Please see the Security Updates table for the applicable update for your system. We recommend that you install these updates immediately. If you are unable to install these updates, see the FAQ and Workaround sections in this CVE for information on how to help protect your system from this vulnerability. See also KB5005010: Restricting installation of new printer drivers after applying the July 6, 2021 updates. Note that the security updates released on and after July 6, 2021 contain protections for CVE-2021-1675 and the additional remote code execution exploit in the Windows Print Spooler service known as “PrintNightmare”, documented in CVE-2021-34527.

    Published: 2 Jul 2021
    7.5
    High

    CVE-2021-36143

    Last Modified: 21 Nov 2024

    ACRN before 2.5 has a hw/pci/virtio/virtio.c vq_endchains NULL Pointer Dereference.

    Published: 2 Jul 2021
    7.5
    High

    CVE-2021-36144

    Last Modified: 21 Nov 2024

    The polling timer handler in ACRN before 2.5 has a use-after-free for a freed virtio device, related to devicemodel/hw/pci/virtio/*.c.

    Published: 2 Jul 2021
    7.5
    High

    CVE-2021-36145

    Last Modified: 21 Nov 2024

    The Device Model in ACRN through 2.5 has a devicemodel/core/mem.c use-after-free for a freed rb_entry.

    Published: 2 Jul 2021
    7.5
    High

    CVE-2021-36146

    Last Modified: 21 Nov 2024

    ACRN before 2.5 has a devicemodel/hw/pci/xhci.c NULL Pointer Dereference for a trb pointer.

    Published: 2 Jul 2021
    7.5
    High

    CVE-2021-36147

    Last Modified: 21 Nov 2024

    An issue was discovered in ACRN before 2.5. It allows a devicemodel/hw/pci/virtio/virtio_net.c virtio_net_ping_rxq NULL pointer dereference for vq->used.

    Published: 2 Jul 2021
    7.8
    High

    CVE-2021-36148

    Last Modified: 21 Nov 2024

    An issue was discovered in ACRN before 2.5. dmar_free_irte in hypervisor/arch/x86/vtd.c allows an irte_alloc_bitmap buffer overflow.

    Published: 2 Jul 2021
    6.1
    Medium

    CVE-2021-35207

    Last Modified: 21 Nov 2024

    An issue was discovered in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.0 before 9.0.0 Patch 16. An XSS vulnerability exists in the login component of Zimbra Web Client, in which an attacker can execute arbitrary JavaScript by adding executable JavaScript to the loginErrorCode parameter of the login url.

    Published: 2 Jul 2021
    5.4
    Medium

    CVE-2021-35208

    Last Modified: 21 Nov 2024

    An issue was discovered in ZmMailMsgView.js in the Calendar Invite component in Zimbra Collaboration Suite 8.8.x before 8.8.15 Patch 23. An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes unescaped, causing arbitrary markup to be injected into the document.

    Published: 2 Jul 2021
    9.8
    Critical

    CVE-2021-35209

    Last Modified: 21 Nov 2024

    An issue was discovered in ProxyServlet.java in the /proxy servlet in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.x before 9.0.0 Patch 16. The value of the X-Host header overwrites the value of the Host header in proxied requests. The value of X-Host header is not checked against the whitelist of hosts Zimbra is allowed to proxy to (the zimbraProxyAllowedDomains setting).

    Published: 2 Jul 2021
    6.1
    Medium

    CVE-2021-34807

    Last Modified: 21 Nov 2024

    An open redirect vulnerability exists in the /preauth Servlet in Zimbra Collaboration Suite through 9.0. To exploit the vulnerability, an attacker would need to have obtained a valid zimbra auth token or a valid preauth token. Once the token is obtained, an attacker could redirect a user to any URL via isredirect=1&redirectURL= in conjunction with the token data (e.g., a valid authtoken= value).

    Published: 2 Jul 2021
    8.8
    High

    CVE-2021-30557

    Last Modified: 21 Nov 2024

    Use after free in TabGroups in Google Chrome prior to 91.0.4472.114 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.

    Published: 2 Jul 2021
    8.8
    High

    CVE-2021-30556

    Last Modified: 21 Nov 2024

    Use after free in WebAudio in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 2 Jul 2021
    8.8
    High

    CVE-2021-30555

    Last Modified: 21 Nov 2024

    Use after free in Sharing in Google Chrome prior to 91.0.4472.114 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page and user gesture.

    Published: 2 Jul 2021