CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2020-25584

    Last Modified: 21 Nov 2024

    In FreeBSD 13.0-STABLE before n245118, 12.2-STABLE before r369552, 11.4-STABLE before r369560, 13.0-RC5 before p1, 12.2-RELEASE before p6, and 11.4-RELEASE before p9, a superuser inside a FreeBSD jail configured with the non-default allow.mount permission could cause a race condition between the lookup of ".." and remounting a filesystem, allowing access to filesystem hierarchy outside of the jail.

    Published: 7 Apr 2021
    7.8
    High

    CVE-2021-28927

    Last Modified: 21 Nov 2024

    The text-to-speech engine in libretro RetroArch for Windows 1.9.0 passes unsanitized input to PowerShell through platform_win32.c via the accessibility_speak_windows function, which allows attackers who have write access on filesystems that are used by RetroArch to execute code via command injection using specially a crafted file and directory names.

    Published: 7 Apr 2021
    4.3
    Medium

    CVE-2021-21641

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability in Jenkins promoted builds Plugin 3.9 and earlier allows attackers to to promote builds.

    Published: 7 Apr 2021
    7.5
    High

    CVE-2021-30185

    Last Modified: 21 Nov 2024

    CERN Indico before 2.3.4 can use an attacker-supplied Host header in a password reset link.

    Published: 7 Apr 2021
    9.8
    Critical

    CVE-2021-30177

    Last Modified: 21 Nov 2024

    There is a SQL Injection vulnerability in PHP-Nuke 8.3.3 in the User Registration section, leading to remote code execution. This occurs because the U.S. state is not validated to be two letters, and the OrderBy field is not validated to be one of LASTNAME, CITY, or STATE.

    Published: 7 Apr 2021
    9.8
    Critical

    CVE-2021-26709

    Last Modified: 21 Nov 2024

    D-Link DSL-320B-D1 devices through EU_1.25 are prone to multiple Stack-Based Buffer Overflows that allow unauthenticated remote attackers to take over a device via the login.xgi user and pass parameters. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

    Published: 7 Apr 2021
    7.5
    High

    CVE-2020-11255

    Last Modified: 21 Nov 2024

    Denial of service while processing RTCP packets containing multiple SDES reports due to memory for last SDES packet is freed and rest of the memory is leaked in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Wearables

    Published: 7 Apr 2021
    8.4
    High

    CVE-2021-1892

    Last Modified: 21 Nov 2024

    Memory corruption due to improper input validation while processing IO control which is nonstandard in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Wired Infrastructure and Networking

    Published: 7 Apr 2021
    7.2
    High

    CVE-2020-11252

    Last Modified: 21 Nov 2024

    Trustzone initialization code will disable xPU`s when memory dumps are enabled and lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking

    Published: 7 Apr 2021
    8.2
    High

    CVE-2020-11247

    Last Modified: 21 Nov 2024

    Out of bound memory read while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 7 Apr 2021
    8.2
    High

    CVE-2020-11251

    Last Modified: 21 Nov 2024

    Out-of-bounds read vulnerability while accessing DTMF payload due to lack of check of buffer length before copying in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 7 Apr 2021
    8.4
    High

    CVE-2020-11246

    Last Modified: 21 Nov 2024

    A double free condition can occur when the device moves to suspend mode during secure playback in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

    Published: 7 Apr 2021
    7.5
    High

    CVE-2020-11243

    Last Modified: 21 Nov 2024

    RRC sends a connection establishment success to NAS even though connection setup validation returns failure and leads to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile

    Published: 7 Apr 2021
    8.4
    High

    CVE-2020-11245

    Last Modified: 21 Nov 2024

    Unintended reads and writes by NS EL2 in access control driver due to lack of check of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking

    Published: 7 Apr 2021
    8.4
    High

    CVE-2020-11242

    Last Modified: 21 Nov 2024

    User could gain access to secure memory due to incorrect argument into address range validation api used in SDI to capture requested contents in Snapdragon Industrial IOT, Snapdragon Mobile

    Published: 7 Apr 2021
    8.4
    High

    CVE-2020-11236

    Last Modified: 21 Nov 2024

    Memory corruption due to invalid value of total dimension in the non-histogram type KPI could lead to a denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile

    Published: 7 Apr 2021
    8.4
    High

    CVE-2020-11237

    Last Modified: 21 Nov 2024

    Memory crash when accessing histogram type KPI input received due to lack of check of histogram definition before accessing it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile

    Published: 7 Apr 2021
    8.4
    High

    CVE-2020-11234

    Last Modified: 21 Nov 2024

    When sending a socket event message to a user application, invalid information will be passed if socket is freed by other thread resulting in a Use After Free condition in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 7 Apr 2021
    9.3
    Critical

    CVE-2020-11210

    Last Modified: 21 Nov 2024

    Possible memory corruption in RPM region due to improper XPU configuration in Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking

    Published: 7 Apr 2021
    6.7
    Medium

    CVE-2020-11231

    Last Modified: 21 Nov 2024

    Two threads call one or both functions concurrently leading to corruption of pointers and reference counters which in turn can lead to heap corruption in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

    Published: 7 Apr 2021
    8.2
    High

    CVE-2020-11191

    Last Modified: 21 Nov 2024

    Out of bound read occurs while processing crafted SDP due to lack of check of null string in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 7 Apr 2021
    7.1
    High

    CVE-2021-20692

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in Archive collectively operation utility Ver.2.10.1.0 and earlier allows an attacker to create or overwrite files by leading a user to expand a malicious ZIP archives.

    Published: 7 Apr 2021
    6.1
    Medium

    CVE-2021-20690

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Yomi-Search Ver4.22 allows remote attackers to inject an arbitrary script via unspecified vectors.

    Published: 7 Apr 2021
    6.1
    Medium

    CVE-2021-20691

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Yomi-Search Ver4.22 allows remote attackers to inject an arbitrary script via unspecified vectors.

    Published: 7 Apr 2021
    6.1
    Medium

    CVE-2021-20689

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Yomi-Search Ver4.22 allows remote attackers to inject an arbitrary script via unspecified vectors.

    Published: 7 Apr 2021
    6.1
    Medium

    CVE-2021-20688

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Click Ranker Ver.3.5 allows remote attackers to inject an arbitrary script via unspecified vectors.

    Published: 7 Apr 2021
    8.8
    High

    CVE-2021-20687

    Last Modified: 21 Nov 2024

    Cross-site request forgery (CSRF) vulnerability in Kagemai 0.8.8 allows remote attackers to hijack the authentication of administrators via unspecified vectors.

    Published: 7 Apr 2021
    6.1
    Medium

    CVE-2021-20686

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Kagemai 0.8.8 allows remote attackers to inject an arbitrary script via unspecified vectors.

    Published: 7 Apr 2021
    6.1
    Medium

    CVE-2021-20684

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in MagazinegerZ v.1.01 allows remote attackers to inject an arbitrary script via unspecified vectors.

    Published: 7 Apr 2021
    6.1
    Medium

    CVE-2021-20685

    Last Modified: 21 Nov 2024

    Cross-site scripting vulnerability in Kagemai 0.8.8 allows remote attackers to inject an arbitrary script via unspecified vectors.

    Published: 7 Apr 2021
    8.8
    High

    CVE-2021-30147

    Last Modified: 21 Nov 2024

    DMA Softlab Radius Manager 4.4.0 allows CSRF with impacts such as adding new manager accounts via admin.php.

    Published: 7 Apr 2021
    4.3
    Medium

    CVE-2021-21639

    Last Modified: 21 Nov 2024

    Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not validate the type of object created after loading the data submitted to the `config.xml` REST API endpoint of a node, allowing attackers with Computer/Configure permission to replace a node with one of a different type.

    Published: 7 Apr 2021
    4.3
    Medium

    CVE-2021-21640

    Last Modified: 21 Nov 2024

    Jenkins 2.286 and earlier, LTS 2.277.1 and earlier does not properly check that a newly created view has an allowed name, allowing attackers with View/Create permission to create views with invalid or already-used names.

    Published: 7 Apr 2021
    5.5
    Medium

    CVE-2021-46822

    Last Modified: 21 Nov 2024

    The PPM reader in libjpeg-turbo through 2.0.90 mishandles use of tjLoadImage for loading a 16-bit binary PPM file into a grayscale buffer and loading a 16-bit binary PGM file into an RGB buffer. This is related to a heap-based buffer overflow in the get_word_rgb_row function in rdppm.c.

    Published: 7 Apr 2021
    8.1
    High

    CVE-2021-27900

    Last Modified: 21 Nov 2024

    The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) is missing an authorization check on several pages in the Web Console. This enables a view-only user to change any configuration setting and delete any registered agents. All versions before 7.11.1 are affected.

    Published: 6 Apr 2021
    7.2
    High

    CVE-2021-22158

    Last Modified: 21 Nov 2024

    The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) is vulnerable to XML external entity (XXE) injection in the Web Console. The vulnerability requires admin user privileges and knowledge of the XML file's encryption key to successfully exploit. All versions before 7.11 are affected.

    Published: 6 Apr 2021
    7.4
    High

    CVE-2021-27899

    Last Modified: 21 Nov 2024

    The Proofpoint Insider Threat Management Agents (formerly ObserveIT Agent) for MacOS and Linux perform improper validation of the ITM Server's certificate, which enables a remote attacker to intercept and alter these communications using a man-in-the-middle attack. All versions before 7.11.1 are affected. Agents for Windows and Cloud are not affected.

    Published: 6 Apr 2021
    6.1
    Medium

    CVE-2021-22157

    Last Modified: 21 Nov 2024

    Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.11.1 allows stored XSS.

    Published: 6 Apr 2021
    8.1
    High

    CVE-2020-13422

    Last Modified: 21 Nov 2024

    OpenIAM before 4.2.0.3 does not verify if a user has permissions to perform /webconsole/rest/api/* administrative actions.

    Published: 6 Apr 2021
    9.8
    Critical

    CVE-2020-13421

    Last Modified: 21 Nov 2024

    OpenIAM before 4.2.0.3 has Incorrect Access Control for the Create User, Modify User Permissions, and Password Reset actions.

    Published: 6 Apr 2021
    5.3
    Medium

    CVE-2020-13419

    Last Modified: 21 Nov 2024

    OpenIAM before 4.2.0.3 allows Directory Traversal in the Batch task.

    Published: 6 Apr 2021
    6.1
    Medium

    CVE-2020-13418

    Last Modified: 21 Nov 2024

    OpenIAM before 4.2.0.3 allows XSS in the Add New User feature.

    Published: 6 Apr 2021
    9.8
    Critical

    CVE-2020-13420

    Last Modified: 21 Nov 2024

    OpenIAM before 4.2.0.3 allows remote attackers to execute arbitrary code via Groovy Script.

    Published: 6 Apr 2021
    7.5
    High

    CVE-2021-21404

    Last Modified: 21 Nov 2024

    Syncthing is a continuous file synchronization program. In Syncthing before version 1.15.0, the relay server `strelaysrv` can be caused to crash and exit by sending a relay message with a negative length field. Similarly, Syncthing itself can crash for the same reason if given a malformed message from a malicious relay server when attempting to join the relay. Relay joins are essentially random (from a subset of low latency relays) and Syncthing will by default restart when crashing, at which point it's likely to pick another non-malicious relay. This flaw is fixed in version 1.15.0.

    Published: 6 Apr 2021
    5.5
    Medium

    CVE-2021-3659

    Last Modified: 21 Nov 2024

    A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking subsystem in the way the user closes the LR-WPAN connection. This flaw allows a local user to crash the system. The highest threat from this vulnerability is to system availability.

    Published: 6 Apr 2021
    4.6
    Medium

    CVE-2021-25692

    Last Modified: 21 Nov 2024

    Sensitive smart card data is logged in default INFO logs by Teradici's PCoIP Connection Manager and Security Gateway prior to version 21.01.3.

    Published: 6 Apr 2021
    6.8
    Medium

    CVE-2021-21423

    Last Modified: 21 Nov 2024

    `projen` is a project generation tool that synthesizes project configuration files such as `package.json`, `tsconfig.json`, `.gitignore`, GitHub Workflows, `eslint`, `jest`, and more, from a well-typed definition written in JavaScript. Users of projen's `NodeProject` project type (including any project type derived from it) include a `.github/workflows/rebuild-bot.yml` workflow that may allow any GitHub user to trigger execution of un-trusted code in the context of the "main" repository (as opposed to that of a fork). In some situations, such untrusted code may potentially be able to commit to the "main" repository. The rebuild-bot workflow is triggered by comments including `@projen rebuild` on pull-request to trigger a re-build of the projen project, and updating the pull request with the updated files. This workflow is triggered by an `issue_comment` event, and thus always executes with a `GITHUB_TOKEN` belonging to the repository into which the pull-request is made (this is in contrast with workflows triggered by `pull_request` events, which always execute with a `GITHUB_TOKEN` belonging to the repository from which the pull-request is made). Repositories that do not have branch protection configured on their default branch (typically `main` or `master`) could possibly allow an untrusted user to gain access to secrets configured on the repository (such as NPM tokens, etc). Branch protection prohibits this escalation, as the managed `GITHUB_TOKEN` would not be able to modify the contents of a protected branch and affected workflows must be defined on the default branch.

    Published: 6 Apr 2021
    6.5
    Medium

    CVE-2021-28688

    Last Modified: 21 Nov 2024

    The fix for XSA-365 includes initialization of pointers such that subsequent cleanup code wouldn't use uninitialized or stale values. This initialization went too far and may under certain conditions also overwrite pointers which are in need of cleaning up. The lack of cleanup would result in leaking persistent grants. The leak in turn would prevent fully cleaning up after a respective guest has died, leaving around zombie domains. All Linux versions having the fix for XSA-365 applied are vulnerable. XSA-365 was classified to affect versions back to at least 3.11.

    Published: 6 Apr 2021
    5.3
    Medium

    CVE-2020-36309

    Last Modified: 3 Nov 2025

    ngx_http_lua_module (aka lua-nginx-module) before 0.10.16 in OpenResty allows unsafe characters in an argument when using the API to mutate a URI, or a request or response header.

    Published: 6 Apr 2021
    4.8
    Medium

    CVE-2021-20334

    Last Modified: 21 Nov 2024

    A malicious 3rd party with local access to the Windows machine where MongoDB Compass is installed can execute arbitrary software with the privileges of the user who is running MongoDB Compass. This issue affects: MongoDB Inc. MongoDB Compass 1.x version 1.3.0 on Windows and later versions; 1.x versions prior to 1.25.0 on Windows.

    Published: 6 Apr 2021