CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2021-31555

    Last Modified: 21 Nov 2024

    An issue was discovered in the Oauth extension for MediaWiki through 1.35.2. It did not validate the oarc_version (aka oauth_registered_consumer.oarc_version) parameter's length.

    Published: 22 Apr 2021
    6.5
    Medium

    CVE-2021-29466

    Last Modified: 21 Nov 2024

    Discord-Recon is a bot for the Discord chat service. In versions of Discord-Recon 0.0.3 and prior, a remote attacker is able to read local files from the server that can disclose important information. As a workaround, a bot maintainer can locate the file `app.py` and add `.replace('..', '')` into the `Path` variable inside of the `recon` function. The vulnerability is patched in version 0.0.4.

    Published: 22 Apr 2021
    8.3
    High

    CVE-2021-29465

    Last Modified: 21 Nov 2024

    Discord-Recon is a bot for the Discord chat service. Versions of Discord-Recon 0.0.3 and prior contain a vulnerability in which a remote attacker is able to overwrite any file on the system with the command results. This can result in remote code execution when the user overwrite important files on the system. As a workaround, bot maintainers can edit their `setting.py` file then add `<` and `>` into the `RCE` variable inside of it to fix the issue without an update. The vulnerability is patched in version 0.0.4.

    Published: 22 Apr 2021
    6.1
    Medium

    CVE-2021-29467

    Last Modified: 21 Nov 2024

    Wrongthink is an encrypted peer-to-peer chat program. A user could check their fingerprint into the service and enter a script to run arbitrary JavaScript on the site. No workarounds exist, but a patch exists in version 2.4.1.

    Published: 22 Apr 2021
    8.6
    High

    CVE-2021-3517

    Last Modified: 2 Dec 2025

    There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a crafted file to be processed by an application linked with the affected functionality of libxml2 could trigger an out-of-bounds read. The most likely impact of this flaw is to application availability, with some potential impact to confidentiality and integrity if an attacker is able to use memory information to further exploit the application.

    Published: 22 Apr 2021
    6.2
    Medium

    CVE-2021-28168

    Last Modified: 21 Nov 2024

    Eclipse Jersey 2.28 to 2.33 and Eclipse Jersey 3.0.0 to 3.0.1 contains a local information disclosure vulnerability. This is due to the use of the File.createTempFile which creates a file inside of the system temporary directory with the permissions: -rw-r--r--. Thus the contents of this file are viewable by all other users locally on the system. As such, if the contents written is security sensitive, it can be disclosed to other local users.

    Published: 22 Apr 2021
    2.3
    Low

    CVE-2021-2207

    Last Modified: 21 Nov 2024

    Vulnerability in the Oracle Database - Enterprise Edition component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Easily exploitable vulnerability allows high privileged attacker having RMAN executable privilege with logon to the infrastructure where Oracle Database - Enterprise Edition executes to compromise Oracle Database - Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Database - Enterprise Edition accessible data. CVSS 3.1 Base Score 2.3 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N).

    Published: 22 Apr 2021
    7.5
    High

    CVE-2021-29653

    Last Modified: 21 Nov 2024

    HashiCorp Vault and Vault Enterprise 1.5.1 and newer, under certain circumstances, may exclude revoked but unexpired certificates from the CRL. Fixed in 1.5.8, 1.6.4, and 1.7.1.

    Published: 22 Apr 2021
    7.8
    High

    CVE-2021-3496

    Last Modified: 21 Nov 2024

    A heap-based buffer overflow was found in jhead in version 3.06 in Get16u() in exif.c when processing a crafted file.

    Published: 22 Apr 2021
    5.9
    Medium

    CVE-2021-31525

    Last Modified: 21 Nov 2024

    net/http in Go before 1.15.12 and 1.16.x before 1.16.4 allows remote attackers to cause a denial of service (panic) via a large header to ReadRequest or ReadResponse. Server, Transport, and Client can each be affected in some configurations.

    Published: 22 Apr 2021
    7.5
    High

    CVE-2021-27400

    Last Modified: 21 Nov 2024

    HashiCorp Vault and Vault Enterprise Cassandra integrations (storage backend and database secrets engine plugin) did not validate TLS certificates when connecting to Cassandra clusters. Fixed in 1.6.4 and 1.7.1

    Published: 22 Apr 2021
    4.1
    Medium

    CVE-2021-2173

    Last Modified: 21 Nov 2024

    Vulnerability in the Recovery component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Easily exploitable vulnerability allows high privileged attacker having DBA Level Account privilege with network access via Oracle Net to compromise Recovery. While the vulnerability is in Recovery, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Recovery accessible data. CVSS 3.1 Base Score 4.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N).

    Published: 22 Apr 2021
    2.7
    Low

    CVE-2021-2175

    Last Modified: 21 Nov 2024

    Vulnerability in the Database Vault component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Easily exploitable vulnerability allows high privileged attacker having Create Any View, Select Any View privilege with network access via Oracle Net to compromise Database Vault. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Database Vault accessible data. CVSS 3.1 Base Score 2.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N).

    Published: 22 Apr 2021
    8.8
    High

    CVE-2021-3518

    Last Modified: 21 Nov 2024

    There's a flaw in libxml2 in versions before 2.9.11. An attacker who is able to submit a crafted file to be processed by an application linked with libxml2 could trigger a use-after-free. The greatest impact from this flaw is to confidentiality, integrity, and availability.

    Published: 22 Apr 2021
    5.5
    Medium

    CVE-2021-1078

    Last Modified: 21 Nov 2024

    NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel driver (nvlddmkm.sys) where a NULL pointer dereference may lead to system crash.

    Published: 21 Apr 2021
    7.3
    High

    CVE-2021-1075

    Last Modified: 21 Nov 2024

    NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the program dereferences a pointer that contains a location for memory that is no longer valid, which may lead to code execution, denial of service, or escalation of privileges. Attacker does not have any control over the information and may conduct limited data modification.

    Published: 21 Apr 2021
    7.3
    High

    CVE-2021-1074

    Last Modified: 21 Nov 2024

    NVIDIA GPU Display Driver for Windows installer contains a vulnerability where an attacker with local unprivileged system access may be able to replace an application resource with malicious files. This attack requires a user with system administration rights to execute the installer and requires the attacker to replace the files in a very short time window between file integrity validation and execution. Such an attack may lead to code execution, escalation of privileges, denial of service, and information disclosure.

    Published: 21 Apr 2021
    7.5
    High

    CVE-2020-27569

    Last Modified: 21 Nov 2024

    Arbitrary File Write exists in Aviatrix VPN Client 2.8.2 and earlier. The VPN service writes logs to a location that is world writable and can be leveraged to gain write access to any file on the system.

    Published: 21 Apr 2021
    7.5
    High

    CVE-2020-27568

    Last Modified: 21 Nov 2024

    Insecure File Permissions exist in Aviatrix Controller 5.3.1516. Several world writable files and directories were found in the controller resource. Note: All Aviatrix appliances are fully encrypted. This is an extra layer of security.

    Published: 21 Apr 2021
    9.1
    Critical

    CVE-2021-21427

    Last Modified: 21 Nov 2024

    Magento-lts is a long-term support alternative to Magento Community Edition (CE). A vulnerability in magento-lts versions before 19.4.13 and 20.0.9 potentially allows an administrator unauthorized access to restricted resources. This is a backport of CVE-2021-21024. The vulnerability is patched in versions 19.4.13 and 20.0.9.

    Published: 21 Apr 2021
    9.8
    Critical

    CVE-2021-21426

    Last Modified: 21 Nov 2024

    Magento-lts is a long-term support alternative to Magento Community Edition (CE). In magento-lts versions 19.4.12 and prior and 20.0.8 and prior, there is a vulnerability caused by the unsecured deserialization of an object. A patch in versions 19.4.13 and 20.0.9 was back ported from Zend Framework 3. The vulnerability was assigned CVE-2021-3007 in Zend Framework.

    Published: 21 Apr 2021
    6.1
    Medium

    CVE-2020-36324

    Last Modified: 21 Nov 2024

    Wikimedia Quarry analytics-quarry-web before 2020-12-15 allows Reflected XSS because app.py does not explicitly set the application/json content type.

    Published: 21 Apr 2021
    7.5
    High

    CVE-2020-28973

    Last Modified: 21 Nov 2024

    The ABUS Secvest wireless alarm system FUAA50000 (v3.01.17) fails to properly authenticate some requests to its built-in HTTPS interface. Someone can use this vulnerability to obtain sensitive information from the system, such as usernames and passwords. This information can then be used to reconfigure or disable the alarm system.

    Published: 21 Apr 2021
    5.7
    Medium

    CVE-2021-29456

    Last Modified: 21 Nov 2024

    Authelia is an open-source authentication and authorization server providing 2-factor authentication and single sign-on (SSO) for your applications via a web portal. In versions 4.27.4 and earlier, utilizing a HTTP query parameter an attacker is able to redirect users from the web application to any domain, including potentially malicious sites. This security issue does not directly impact the security of the web application itself. As a workaround, one can use a reverse proxy to strip the query parameter from the affected endpoint. There is a patch for version 4.28.0.

    Published: 21 Apr 2021
    7.8
    High

    CVE-2021-31523

    Last Modified: 21 Nov 2024

    The Debian xscreensaver 5.42+dfsg1-1 package for XScreenSaver has cap_net_raw enabled for the /usr/libexec/xscreensaver/sonar file, which allows local users to gain privileges because this is arguably incompatible with the design of the Mesa 3D Graphics library dependency.

    Published: 21 Apr 2021
    5.5
    Medium

    CVE-2020-23930

    Last Modified: 21 Nov 2024

    An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function nhmldump_send_header located in write_nhml.c. It allows an attacker to cause Denial of Service.

    Published: 21 Apr 2021
    7.1
    High

    CVE-2020-23931

    Last Modified: 21 Nov 2024

    An issue was discovered in gpac before 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer over-read.

    Published: 21 Apr 2021
    5.5
    Medium

    CVE-2020-23932

    Last Modified: 21 Nov 2024

    An issue was discovered in gpac before 1.0.1. A NULL pointer dereference exists in the function dump_isom_sdp located in filedump.c. It allows an attacker to cause Denial of Service.

    Published: 21 Apr 2021
    5.5
    Medium

    CVE-2020-23914

    Last Modified: 21 Nov 2024

    An issue was discovered in cpp-peglib through v0.1.12. A NULL pointer dereference exists in the peg::AstOptimizer::optimize() located in peglib.h. It allows an attacker to cause Denial of Service.

    Published: 21 Apr 2021
    9.8
    Critical

    CVE-2020-23907

    Last Modified: 21 Nov 2024

    An issue was discovered in retdec v3.3. In function canSplitFunctionOn() of ir_modifications.cpp, there is a possible out of bounds read due to a heap buffer overflow. The impact is: Deny of Service, Memory Disclosure, and Possible Code Execution.

    Published: 21 Apr 2021
    7.1
    High

    CVE-2020-23922

    Last Modified: 21 Nov 2024

    An issue was discovered in giflib through 5.1.4. DumpScreen2RGB in gif2rgb.c has a heap-based buffer over-read.

    Published: 21 Apr 2021
    5.5
    Medium

    CVE-2020-23915

    Last Modified: 21 Nov 2024

    An issue was discovered in cpp-peglib through v0.1.12. peg::resolve_escape_sequence() in peglib.h has a heap-based buffer over-read.

    Published: 21 Apr 2021
    7.1
    High

    CVE-2020-23921

    Last Modified: 21 Nov 2024

    An issue was discovered in fast_ber through v0.4. yy::yylex() in asn_compiler.hpp has a heap-based buffer over-read.

    Published: 21 Apr 2021
    7.1
    High

    CVE-2020-23928

    Last Modified: 21 Nov 2024

    An issue was discovered in gpac before 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer over-read.

    Published: 21 Apr 2021
    5.5
    Medium

    CVE-2020-23912

    Last Modified: 21 Nov 2024

    An issue was discovered in Bento4 through v1.6.0-637. A NULL pointer dereference exists in the function AP4_StszAtom::GetSampleSize() located in Ap4StszAtom.cpp. It allows an attacker to cause Denial of Service.

    Published: 21 Apr 2021
    6.5
    Medium

    CVE-2021-28167

    Last Modified: 21 Nov 2024

    In Eclipse Openj9 to version 0.25.0, usage of the jdk.internal.reflect.ConstantPool API causes the JVM in some cases to pre-resolve certain constant pool entries. This allows a user to call static methods or access static members without running the class initialization method, and may allow a user to observe uninitialized values.

    Published: 21 Apr 2021
    5.4
    Medium

    CVE-2021-31327

    Last Modified: 21 Nov 2024

    Stored XSS in Remote Clinic v2.0 in /medicines due to Medicine Name Field.

    Published: 21 Apr 2021
    —
    Unknown

    CVE-2021-30031

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 21 Apr 2021
    5.4
    Medium

    CVE-2021-31329

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) in Remote Clinic v2.0 via the "Chat" and "Personal Address" field on staff/register.php

    Published: 21 Apr 2021
    7.5
    High

    CVE-2021-30139

    Last Modified: 21 Nov 2024

    In Alpine Linux apk-tools before 2.12.5, the tarball parser allows a buffer overflow and crash.

    Published: 21 Apr 2021
    7.8
    High

    CVE-2020-35981

    Last Modified: 21 Nov 2024

    An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is an invalid pointer dereference in the function SetupWriters() in isomedia/isom_store.c.

    Published: 21 Apr 2021
    7.8
    High

    CVE-2020-35979

    Last Modified: 21 Nov 2024

    An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is heap-based buffer overflow in the function gp_rtp_builder_do_avc() in ietf/rtp_pck_mpeg4.c.

    Published: 21 Apr 2021
    7.8
    High

    CVE-2020-35982

    Last Modified: 21 Nov 2024

    An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is an invalid pointer dereference in the function gf_hinter_track_finalize() in media_tools/isom_hinter.c.

    Published: 21 Apr 2021
    4.3
    Medium

    CVE-2021-21647

    Last Modified: 21 Nov 2024

    Jenkins CloudBees CD Plugin 1.1.21 and earlier does not perform a permission check in an HTTP endpoint, allowing attackers with Item/Read permission to schedule builds of projects without having Item/Build permission.

    Published: 21 Apr 2021
    8.8
    High

    CVE-2021-21646

    Last Modified: 21 Nov 2024

    Jenkins Templating Engine Plugin 2.1 and earlier does not protect its pipeline configurations using Script Security Plugin, allowing attackers with Job/Configure permission to execute arbitrary code in the context of the Jenkins controller JVM.

    Published: 21 Apr 2021
    8.2
    High

    CVE-2021-20501

    Last Modified: 21 Nov 2024

    IBM i 7.1, 7.2, 7.3, and 7.4 SMTP allows a network attacker to send emails to non-existent local-domain recipients to the SMTP server, caused by using a non-default configuration. An attacker could exploit this vulnerability to consume unnecessary network bandwidth and disk space, and allow remote attackers to send spam email. IBM X-Force ID: 198056.

    Published: 21 Apr 2021
    8.2
    High

    CVE-2021-20454

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 196649.

    Published: 21 Apr 2021
    6.5
    Medium

    CVE-2021-21643

    Last Modified: 21 Nov 2024

    Jenkins Config File Provider Plugin 3.7.0 and earlier does not correctly perform permission checks in several HTTP endpoints, allowing attackers with global Job/Configure permission to enumerate system-scoped credentials IDs of credentials stored in Jenkins.

    Published: 21 Apr 2021
    5.5
    Medium

    CVE-2021-22207

    Last Modified: 21 Nov 2024

    Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12 allows denial of service via packet injection or crafted capture file

    Published: 21 Apr 2021
    5.4
    Medium

    CVE-2021-21644

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability in Jenkins Config File Provider Plugin 3.7.0 and earlier allows attackers to delete configuration files corresponding to an attacker-specified ID.

    Published: 21 Apr 2021