Open Source Vulnerabilities
kernel
CVE-2021-31829 affecting package kernel for versions less than 5.10.78.1-1
kernel
CVE-2021-31829 affecting package kernel for versions less than 5.10.78.1-1
linux-azure, linux, linux-aws, linux-lts-xenial, linux-aws-hwe, linux-azure, linux-gcp, linux-hwe, linux-oracle, linux, linux-aws, linux-hwe-edge, linux-kvm, linux-fips, linux-fips, linux, linux-aws, linux-aws-5.4, linux-azure-4.15, linux-azure-5.4, linux-dell300x, linux-gcp-4.15, linux-gcp-5.4, linux-gke-5.4, linux-gkeop-5.4, linux-hwe-5.4, linux-kvm, linux-oracle, linux-oracle-5.4, linux-raspi-5.4, linux-raspi2, linux-snapdragon, linux-aws-5.0, linux-aws-5.3, linux-azure, linux-azure-5.3, linux-azure-edge, linux-gcp, linux-gcp-5.3, linux-gcp-edge, linux-gke-4.15, linux-hwe, linux-hwe-edge, linux-oem, linux-oracle-5.0, linux-oracle-5.3, linux-aws-fips, linux-azure-fips, linux-fips, linux-gcp-fips, linux-aws-fips, linux-azure-fips, linux-fips, linux-gcp-fips, linux, linux-aws, linux-aws-5.8, linux-azure, linux-azure-5.8, linux-bluefield, linux-gcp, linux-gcp-5.8, linux-gke, linux-gkeop, linux-hwe-5.8, linux-kvm, linux-oem-5.10, linux-oracle, linux-oracle-5.8, linux-raspi, linux-riscv-5.8, linux-azure-fde-5.15, linux-oem-5.6, linux-raspi2, linux-riscv, linux-aws-fips, linux-azure-fips, linux-fips, linux-gcp-fips, linux-aws-fips, linux-azure-fips, linux-fips, linux-gcp-fips, linux-intel-iot-realtime, linux-realtime, linux-raspi-realtime
linux-azure/ linux/ linux-aws/ linux-lts-xenial/ linux-aws-hwe/ linux-azure/ linux-gcp/ linux-hwe/ linux-oracle/ linux/ linux-aws/ linux-hwe-edge/ linux-kvm/ linux-fips/ linux-fips/ linux/ linux-aws/ linux-aws-5.4/ linux-azure-4.15/ linux-azure-5.4/ linux-dell300x/ linux-gcp-4.15/ linux-gcp-5.4/ linux-gke-5.4/ linux-gkeop-5.4/ linux-hwe-5.4/ linux-kvm/ linux-oracle/ linux-oracle-5.4/ linux-raspi-5.4/ linux-raspi2/ linux-snapdragon/ linux-aws-5.0/ linux-aws-5.3/ linux-azure/ linux-azure-5.3/ linux-azure-edge/ linux-gcp/ linux-gcp-5.3/ linux-gcp-edge/ linux-gke-4.15/ linux-hwe/ linux-hwe-edge/ linux-oem/ linux-oracle-5.0/ linux-oracle-5.3/ linux-aws-fips/ linux-azure-fips/ linux-fips/ linux-gcp-fips/ linux-aws-fips/ linux-azure-fips/ linux-fips/ linux-gcp-fips/ linux/ linux-aws/ linux-aws-5.8/ linux-azure/ linux-azure-5.8/ linux-bluefield/ linux-gcp/ linux-gcp-5.8/ linux-gke/ linux-gkeop/ linux-hwe-5.8/ linux-kvm/ linux-oem-5.10/ linux-oracle/ linux-oracle-5.8/ linux-raspi/ linux-riscv-5.8/ linux-azure-fde-5.15/ linux-oem-5.6/ linux-raspi2/ linux-riscv/ linux-aws-fips/ linux-azure-fips/ linux-fips/ linux-gcp-fips/ linux-aws-fips/ linux-azure-fips/ linux-fips/ linux-gcp-fips/ linux-intel-iot-realtime/ linux-realtime/ linux-raspi-realtime
CVE-2021-31829 does not affect BellSoft software
static-eval
Withdrawn: Arbitrary Code Execution in static-eval
static-eval
Withdrawn: Arbitrary Code Execution in static-eval
ua-parser-js
Regular Expression Denial of Service (ReDoS) in ua-parser-js
ua-parser-js
Regular Expression Denial of Service (ReDoS) in ua-parser-js
url-parse
Path traversal in url-parse
hosted-git-info, hosted-git-info
Regular Expression Denial of Service in hosted-git-info
hosted-git-info/ hosted-git-info
Regular Expression Denial of Service in hosted-git-info
sanitize-html
Improper Input Validation in sanitize-html
sanitize-html
Improper Input Validation in sanitize-html
underscore
Arbitrary Code Execution in underscore
lodash, lodash-es, lodash.template, lodash-template, lodash-rails
Command Injection in lodash
lodash/ lodash-es/ lodash.template/ lodash-template/ lodash-rails
Command Injection in lodash
chrono-node
Denial of service in chrono-node
handlebars, org.webjars:handlebars, org.webjars.npm:handlebars, org.webjars.bowergithub.wycats:handlebars.js
Remote code execution in handlebars when compiling templates
handlebars/ org.webjars:handlebars/ org.webjars.npm:handlebars/ org.webjars.bowergithub.wycats:handlebars.js
Remote code execution in handlebars when compiling templates
roar-pidusage
Arbitrary command execution in roar-pidusage
roar-pidusage
Arbitrary command execution in roar-pidusage
ffmpegdotjs
Command Injection in ffmpegdotjs
killing
Command Injection in killing
portkiller
Command injection in portkiller
psnode
Command Injection in psnode
react-draft-wysiwyg
Cross-site Scripting in React Draft Wysiwyg
react-draft-wysiwyg
Cross-site Scripting in React Draft Wysiwyg
backbone-query-parameters
Prototype Pollution in backbone-query-parameters
backbone-query-parameters
Prototype Pollution in backbone-query-parameters
mixme
Use of Potentially Dangerous Function in mixme
highcharts
Options structure open to Cross-site Scripting if passed unfiltered
highcharts
Options structure open to Cross-site Scripting if passed unfiltered
docassemble
Unauthorized access through URL manipulation
com.vaadin:vaadin-bom, com.vaadin:vaadin-bom
Insecure temporary directory usage in frontend build functionality of Vaadin 14 and 15-19
com.vaadin:vaadin-bom/ com.vaadin:vaadin-bom
Insecure temporary directory usage in frontend build functionality of Vaadin 14 and 15-19
com.vaadin:flow-server, com.vaadin:flow-server
Insecure temporary directory usage in frontend build functionality of Vaadin 14 and 15-19
com.vaadin:flow-server/ com.vaadin:flow-server
Insecure temporary directory usage in frontend build functionality of Vaadin 14 and 15-19
aom, aom, aom, aom, aom, aom, aom, aom
libgetdata, libgetdata, libgetdata
libgetdata, libgetdata, libgetdata, libgetdata, libgetdata, libgetdata, libgetdata
libgetdata/ libgetdata/ libgetdata/ libgetdata/ libgetdata/ libgetdata/ libgetdata
tmpdir
Tempfile on Windows path traversal vulnerability
