CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2021-29937

    Last Modified: 21 Nov 2024

    An issue was discovered in the telemetry crate through 2021-02-17 for Rust. There is a drop of uninitialized memory if a value.clone() call panics within misc::vec_with_size().

    Published: 1 Apr 2021
    7.5
    High

    CVE-2021-29938

    Last Modified: 21 Nov 2024

    An issue was discovered in the slice-deque crate through 2021-02-19 for Rust. A double drop can occur in SliceDeque::drain_filter upon a panic in a predicate function.

    Published: 1 Apr 2021
    7.3
    High

    CVE-2021-29939

    Last Modified: 21 Nov 2024

    An issue was discovered in the stackvector crate through 2021-02-19 for Rust. There is an out-of-bounds write in StackVec::extend if size_hint provides certain anomalous data.

    Published: 1 Apr 2021
    9.8
    Critical

    CVE-2021-29940

    Last Modified: 21 Nov 2024

    An issue was discovered in the through crate through 2021-02-18 for Rust. There is a double free (in through and through_and) upon a panic of the map function.

    Published: 1 Apr 2021
    7.3
    High

    CVE-2021-29941

    Last Modified: 21 Nov 2024

    An issue was discovered in the reorder crate through 2021-02-24 for Rust. swap_index has an out-of-bounds write if an iterator returns a len() that is too small.

    Published: 1 Apr 2021
    7.3
    High

    CVE-2021-29942

    Last Modified: 21 Nov 2024

    An issue was discovered in the reorder crate through 2021-02-24 for Rust. swap_index can return uninitialized values if an iterator returns a len() that is too large.

    Published: 1 Apr 2021
    5.3
    Medium

    CVE-2020-36286

    Last Modified: 21 Nov 2024

    The membersOf JQL search function in Jira Server and Data Center before version 8.5.13, from version 8.6.0 before version 8.13.5, and from version 8.14.0 before version 8.15.1 allows remote anonymous attackers to determine if a group exists & members of groups if they are assigned to publicly visible issue field.

    Published: 1 Apr 2021
    3.5
    Low

    CVE-2021-26071

    Last Modified: 21 Nov 2024

    The SetFeatureEnabled.jspa resource in Jira Server and Data Center before version 8.5.13, from version 8.6.0 before version 8.13.5, and from version 8.14.0 before version 8.15.1 allows remote anonymous attackers to enable and disable Jira Software configuration via a cross-site request forgery (CSRF) vulnerability.

    Published: 1 Apr 2021
    5.3
    Medium

    CVE-2020-36238

    Last Modified: 21 Nov 2024

    The /rest/api/1.0/render resource in Jira Server and Data Center before version 8.5.13, from version 8.6.0 before version 8.13.5, and from version 8.14.0 before version 8.15.1 allows remote anonymous attackers to determine if a username is valid or not via a missing permissions check.

    Published: 1 Apr 2021
    5.3
    Medium

    CVE-2021-28170

    Last Modified: 21 Nov 2024

    In the Jakarta Expression Language implementation 3.0.3 and earlier, a bug in the ELParserTokenManager enables invalid EL expressions to be evaluated as if they were valid.

    Published: 1 Apr 2021
    6.5
    Medium

    CVE-2021-20291

    Last Modified: 21 Nov 2024

    A deadlock vulnerability was found in 'github.com/containers/storage' in versions before 1.28.1. When a container image is processed, each layer is unpacked using `tar`. If one of those layers is not a valid `tar` archive this causes an error leading to an unexpected situation where the code indefinitely waits for the tar unpacked stream, which never finishes. An attacker could use this vulnerability to craft a malicious image, which when downloaded and stored by an application using containers/storage, would then cause a deadlock leading to a Denial of Service (DoS).

    Published: 1 Apr 2021
    2.7
    Low

    CVE-2021-28163

    Last Modified: 21 Nov 2024

    In Eclipse Jetty 9.4.32 to 9.4.38, 10.0.0.beta2 to 10.0.1, and 11.0.0.beta2 to 11.0.1, if a user uses a webapps directory that is a symlink, the contents of the webapps directory is deployed as a static webapp, inadvertently serving the webapps themselves and anything else that might be in that directory.

    Published: 1 Apr 2021
    5.3
    Medium

    CVE-2021-28164

    Last Modified: 21 Nov 2024

    In Eclipse Jetty 9.4.37.v20210219 to 9.4.38.v20210224, the default compliance mode allows requests with URIs that contain %2e or %2e%2e segments to access protected resources within the WEB-INF directory. For example a request to /context/%2e/WEB-INF/web.xml can retrieve the web.xml file. This can reveal sensitive information regarding the implementation of a web application.

    Published: 1 Apr 2021
    7.5
    High

    CVE-2021-28165

    Last Modified: 27 Aug 2025

    In Eclipse Jetty 7.2.2 to 9.4.38, 10.0.0.alpha0 to 10.0.1, and 11.0.0.alpha0 to 11.0.1, CPU usage can reach 100% upon receiving a large invalid TLS frame.

    Published: 1 Apr 2021
    7.5
    High

    CVE-2021-28677

    Last Modified: 21 Nov 2024

    An issue was discovered in Pillow before 8.2.0. For EPS data, the readline implementation used in EPSImageFile has to deal with any combination of \r and \n as line endings. It used an accidentally quadratic method of accumulating lines while looking for a line ending. A malicious EPS file could use this to perform a DoS of Pillow in the open phase, before an image was accepted for opening.

    Published: 1 Apr 2021
    9.1
    Critical

    CVE-2021-25287

    Last Modified: 21 Nov 2024

    An issue was discovered in Pillow before 8.2.0. There is an out-of-bounds read in J2kDecode, in j2ku_graya_la.

    Published: 1 Apr 2021
    9.1
    Critical

    CVE-2021-25288

    Last Modified: 21 Nov 2024

    An issue was discovered in Pillow before 8.2.0. There is an out-of-bounds read in J2kDecode, in j2ku_gray_i.

    Published: 1 Apr 2021
    7.5
    High

    CVE-2021-28676

    Last Modified: 21 Nov 2024

    An issue was discovered in Pillow before 8.2.0. For FLI data, FliDecode did not properly check that the block advance was non-zero, potentially leading to an infinite loop on load.

    Published: 1 Apr 2021
    5.5
    Medium

    CVE-2021-28678

    Last Modified: 21 Nov 2024

    An issue was discovered in Pillow before 8.2.0. For BLP data, BlpImagePlugin did not properly check that reads (after jumping to file offsets) returned data. This could lead to a DoS where the decoder could be run a large number of times on empty data.

    Published: 1 Apr 2021
    7.5
    High

    CVE-2021-29421

    Last Modified: 21 Nov 2024

    models/metadata.py in the pikepdf package 1.3.0 through 2.9.2 for Python allows XXE when parsing XMP metadata entries.

    Published: 1 Apr 2021
    7.5
    High

    CVE-2022-27387

    Last Modified: 21 Nov 2024

    MariaDB Server v10.7 and below was discovered to contain a global buffer overflow in the component decimal_bin_size, which is exploited via specially crafted SQL statements.

    Published: 1 Apr 2021
    6.5
    Medium

    CVE-2021-3514

    Last Modified: 21 Nov 2024

    When using a sync_repl client in 389-ds-base, an authenticated attacker can cause a NULL pointer dereference using a specially crafted query, causing a crash.

    Published: 1 Apr 2021
    5.5
    Medium

    CVE-2021-28675

    Last Modified: 21 Nov 2024

    An issue was discovered in Pillow before 8.2.0. PSDImagePlugin.PsdImageFile lacked a sanity check on the number of input layers relative to the size of the data block. This could lead to a DoS on Image.open prior to Image.load.

    Published: 1 Apr 2021
    6.5
    Medium

    CVE-2021-29349

    Last Modified: 21 Nov 2024

    Mahara 20.10 is affected by Cross Site Request Forgery (CSRF) that allows a remote attacker to remove inbox-mail on the server. The application fails to validate the CSRF token for a POST request. An attacker can craft a module/multirecipientnotification/inbox.php pieform_delete_all_notifications request, which leads to removing all messages from a mailbox.

    Published: 31 Mar 2021
    7.5
    High

    CVE-2021-28994

    Last Modified: 21 Nov 2024

    kopano-ical (formerly zarafa-ical) in Kopano Groupware Core through 8.7.16, 9.x through 9.1.0, 10.x through 10.0.7, and 11.x through 11.0.1 and Zarafa 6.30.x through 7.2.x allows memory exhaustion via long HTTP headers.

    Published: 31 Mar 2021
    5.3
    Medium

    CVE-2021-27220

    Last Modified: 21 Nov 2024

    An issue was discovered in PRTG Network Monitor before 21.1.66.1623. By invoking the screenshot functionality with prepared context paths, an attacker is able to verify the existence of certain files on the filesystem of the PRTG's Web server.

    Published: 31 Mar 2021
    6.1
    Medium

    CVE-2021-27349

    Last Modified: 21 Nov 2024

    Advanced Order Export before 3.1.8 for WooCommerce allows XSS, a different vulnerability than CVE-2020-11727.

    Published: 31 Mar 2021
    6.1
    Medium

    CVE-2020-24550

    Last Modified: 21 Nov 2024

    An Open Redirect vulnerability in EpiServer Find before 13.2.7 allows an attacker to redirect users to untrusted websites via the _t_redirect parameter in a crafted URL, such as a /find_v2/_click URL.

    Published: 31 Mar 2021
    6.3
    Medium

    CVE-2021-22538

    Last Modified: 21 Nov 2024

    A privilege escalation vulnerability impacting the Google Exposure Notification Verification Server (versions prior to 0.23.1), allows an attacker who (1) has UserWrite permissions and (2) is using a carefully crafted request or malicious proxy, to create another user with higher privileges than their own. This occurs due to insufficient checks on the allowed set of permissions. The new user creation event would be captured in the Event Log.

    Published: 31 Mar 2021
    8.2
    High

    CVE-2021-26943

    Last Modified: 21 Nov 2024

    The UX360CA BIOS through 303 on ASUS laptops allow an attacker (with the ring 0 privilege) to overwrite nearly arbitrary physical memory locations, including SMRAM, and execute arbitrary code in the SMM (issue 3 of 3).

    Published: 31 Mar 2021
    9.8
    Critical

    CVE-2020-35308

    Last Modified: 21 Nov 2024

    CONQUEST DICOM SERVER before 1.5.0 has a code execution vulnerability which can be exploited by attackers to execute malicious code.

    Published: 31 Mar 2021
    4.8
    Medium

    CVE-2021-29663

    Last Modified: 21 Nov 2024

    CourseMS (aka Course Registration Management System) 2.1 is affected by cross-site scripting (XSS). When an attacker with access to an Admin account creates a Job Title in the Site area (aka the admin/add_jobs.php name parameter), they can insert an XSS payload. This payload will execute whenever anyone visits the registration page.

    Published: 31 Mar 2021
    7.5
    High

    CVE-2021-21975

    Last Modified: 30 Oct 2025

    Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack to steal administrative credentials.

    Published: 31 Mar 2021
    6.5
    Medium

    CVE-2021-21983

    Last Modified: 21 Nov 2024

    Arbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an authenticated malicious actor with network access to the vRealize Operations Manager API can write files to arbitrary locations on the underlying photon operating system.

    Published: 31 Mar 2021
    8.8
    High

    CVE-2021-22993

    Last Modified: 21 Nov 2024

    On BIG-IP Advanced WAF and BIG-IP ASM versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2, 14.1.x before 14.1.3.1, 13.1.x before 13.1.3.6, and 12.1.x before 12.1.5.3, DOM-based XSS on DoS Profile properties page. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    6.1
    Medium

    CVE-2021-23006

    Last Modified: 21 Nov 2024

    On all 7.x and 6.x versions (fixed in 8.0.0), undisclosed BIG-IQ pages have a reflected cross-site scripting vulnerability. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    5.3
    Medium

    CVE-2021-23007

    Last Modified: 21 Nov 2024

    On BIG-IP versions 14.1.4 and 16.0.1.1, when the Traffic Management Microkernel (TMM) process handles certain undisclosed traffic, it may start dropping all fragmented IP traffic. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    9.1
    Critical

    CVE-2021-23005

    Last Modified: 21 Nov 2024

    On all 7.x and 6.x versions (fixed in 8.0.0), when using a Quorum device for BIG-IQ high availability (HA) for automatic failover, BIG-IQ does not make use of Transport Layer Security (TLS) with the Corosync protocol. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    7.5
    High

    CVE-2021-23004

    Last Modified: 21 Nov 2024

    On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2, 14.1.x before 14.1.3.1, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3, Multipath TCP (MPTCP) forwarding flows may be created on standard virtual servers without MPTCP enabled in the applied TCP profile. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    4.3
    Medium

    CVE-2021-23001

    Last Modified: 21 Nov 2024

    On versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3, the upload functionality in BIG-IP Advanced WAF and BIG-IP ASM allows an authenticated user to upload files to the BIG-IP system using a call to an undisclosed iControl REST endpoint. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    5.3
    Medium

    CVE-2021-22998

    Last Modified: 21 Nov 2024

    On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3, SYN flood protection thresholds are not enforced in secure network address translation (SNAT) listeners. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    7.5
    High

    CVE-2021-22997

    Last Modified: 21 Nov 2024

    On all 7.x and 6.x versions (fixed in 8.0.0), BIG-IQ HA ElasticSearch service does not implement any form of authentication for the clustering transport services, and all data used by ElasticSearch for transport is unencrypted. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    4.6
    Medium

    CVE-2021-21418

    Last Modified: 21 Nov 2024

    ps_emailsubscription is a newsletter subscription module for the PrestaShop platform. An employee can inject javascript in the newsletter condition field that will then be executed on the front office The issue has been fixed in 2.6.1

    Published: 31 Mar 2021
    7.5
    High

    CVE-2021-22996

    Last Modified: 21 Nov 2024

    On all 7.x versions (fixed in 8.0.0), when set up for auto failover, a BIG-IQ Data Collection Device (DCD) cluster member that receives an undisclosed message may cause the corosync process to abort. This behavior may lead to a denial-of-service (DoS) and impact the stability of a BIG-IQ high availability (HA) cluster. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    4.5
    Medium

    CVE-2021-23002

    Last Modified: 21 Nov 2024

    When using BIG-IP APM 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, or all 12.1.x and 11.6.x versions or Edge Client versions 7.2.1.x before 7.2.1.1, 7.1.9.x before 7.1.9.8, or 7.1.8.x before 7.1.8.5, the session ID is visible in the arguments of the f5vpn.exe command when VPN is launched from the browser on a Windows system. Addressing this issue requires both the client and server fixes. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    7.5
    High

    CVE-2021-22999

    Last Modified: 21 Nov 2024

    On versions 15.0.x before 15.1.0 and 14.1.x before 14.1.4, the BIG-IP system provides an option to connect HTTP/2 clients to HTTP/1.x servers. When a client is slow to accept responses and it closes a connection prematurely, the BIG-IP system may indefinitely retain some streams unclosed. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    7.5
    High

    CVE-2021-29662

    Last Modified: 21 Nov 2024

    The Data::Validate::IP module through 0.29 for Perl does not properly consider extraneous zero characters at the beginning of an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses.

    Published: 31 Mar 2021
    7.5
    High

    CVE-2021-23003

    Last Modified: 21 Nov 2024

    On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2, 14.1.x before 14.1.3.1, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3, the Traffic Management Microkernel (TMM) process may produce a core file when undisclosed MPTCP traffic passes through a standard virtual server. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    7.5
    High

    CVE-2021-23000

    Last Modified: 21 Nov 2024

    On BIG-IP versions 13.1.3.4-13.1.3.6 and 12.1.5.2, if the tmm.http.rfc.enforcement BigDB key is enabled in a BIG-IP system, or the Bad host header value is checked in the AFM HTTP security profile associated with a virtual server, in rare instances, a specific sequence of malicious requests may cause TMM to restart. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021
    6.1
    Medium

    CVE-2021-22994

    Last Modified: 21 Nov 2024

    On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, 12.1.x before 12.1.5.3, and 11.6.x before 11.6.5.3, undisclosed endpoints in iControl REST allow for a reflected XSS attack, which could lead to a complete compromise of the BIG-IP system if the victim user is granted the admin role. This vulnerability is due to an incomplete fix for CVE-2020-5948. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.

    Published: 31 Mar 2021