Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
HIGH 7.8 CVE-2021-36048 XMP Toolkit SDK version 2020.1 (and earlier) is affected by an Improper Input Validation vulnerability potentially resulting in arbitrary code execut… Debian Linux after 2020.1 Fix from $1,9502021-09-01 HIGH 7.2 CVE-2021-36025 Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil… Adobe Commerce after 2.4.2 Fix from $1,9502021-09-01 HIGH 7.5 CVE-2021-36030 Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil… Adobe Commerce after 2.4.2 Fix from $1,9502021-09-01 HIGH 8.8 CVE-2021-36032 Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil… Adobe Commerce after 2.4.2 Fix from $1,9502021-09-01 HIGH 7.2 CVE-2021-36034 Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil… Adobe Commerce after 2.4.2 Fix from $1,9502021-09-01 HIGH 7.2 CVE-2021-36035 Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil… Adobe Commerce after 2.4.2 Fix from $1,9502021-09-01 MEDIUM 6.5 CVE-2021-36038 Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerabil… Adobe Commerce after 2.4.2 Fix from $1,6002021-09-01 HIGH 7.5 CVE-2020-9002 An issue was discovered in iPortalis iCS 7.1.13.0. An attacker can gain privileges by intercepting a request and changing UserRoleKey=COMPANY_ADMIN t… Iportalis Control Portal Mitigation only Fix from $1,9502021-09-01 HIGH 8.8 CVE-2021-35223 The Serv-U File Server allows for events such as user login failures to be audited by executing a command. This command can be supplied with paramete… Serv U 15.2.4+ Fix from $1,9502021-08-31 HIGH 7.2 CVE-2021-32759 OpenMage magento-lts is an alternative to the Magento CE official releases. Due to missing sanitation in data flow in versions prior to 19.4.15 and 2… Magento 19.4.13 / 20.0.11+ Fix from $1,9502021-08-27 HIGH 8.6 CVE-2021-1588 A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software could allow an unauthenticated, remote a… Nx Os Patch available Fix from $1,9502021-08-25 HIGH 7.8 CVE-2021-30917 A memory corruption issue existed in the processing of ICC profiles. This issue was addressed with improved input validation. This issue is fixed in … Ipad Os 8.1 / 10.15.7+ Fix from $1,9502021-08-24 HIGH 7.8 CVE-2021-30881 An input validation issue was addressed with improved memory handling. This issue is fixed in iOS 15.1 and iPadOS 15.1, macOS Monterey 12.0.1, tvOS 1… Ipados 8.1 / 10.15.7+ Fix from $1,9502021-08-24 MEDIUM 6.1 CVE-2021-30862 A validation issue was addressed with improved input sanitization. This issue is fixed in iTunes U 3.8.3. Processing a maliciously crafted URL may le… Itunes U 3.8.3+ Fix from $1,6002021-08-24 HIGH 7.5 CVE-2021-22357 There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages due to validating inputs insufficiently. A… S12700 Firmware Mitigation only Fix from $1,9502021-08-23 HIGH 7.5 CVE-2020-35684 An issue was discovered in HCC Nichestack 3.0. The code that parses TCP packets relies on an unchecked value of the IP payload size (extracted from t… Nichestack 1.2.0 / 2.0.0+ Fix from $1,9502021-08-19 HIGH 7.5 CVE-2021-31401 An issue was discovered in tcp_rcv() in nptcp.c in HCC embedded InterNiche 4.0.1. The TCP header processing code doesn't sanitize the value of the IP… Nichestack 1.2.0 / 2.0.0+ Fix from $1,9502021-08-19 MEDIUM 5.5 CVE-2021-0416 In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no ad… Android Mitigation only Fix from $1,6002021-08-18 MEDIUM 5.5 CVE-2021-0417 In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no ad… Android Mitigation only Fix from $1,6002021-08-18 MEDIUM 5.5 CVE-2021-0418 In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no ad… Android Mitigation only Fix from $1,6002021-08-18 MEDIUM 5.5 CVE-2021-0419 In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no ad… Android Mitigation only Fix from $1,6002021-08-18 MEDIUM 5.3 CVE-2021-20764 Improper input validation vulnerability in Attaching Files of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to alter the data of Attaching Fi… Garoon after 5.0.2 Fix from $1,6002021-08-18 HIGH 7.5 CVE-2021-37707 Shopware is an open source eCommerce platform. Versions prior to 6.4.3.1 contain a vulnerability that allows manipulation of product reviews via API.… Shopware 6.4.3.1+ Fix from $1,9502021-08-16 CRITICAL 9.8 CVE-2021-22931EPSS 22% Node.js before 16.6.0, 14.17.4, and 12.22.4 is vulnerable to Remote Code Execution, XSS, Application crashes due to missing input validation of host … Node.js 12.22.5 / 14.17.5+ Fix from $2,3002021-08-16 MEDIUM 5.5 CVE-2021-37677 TensorFlow is an end-to-end open source platform for machine learning. In affected versions the shape inference code for `tf.raw_ops.Dequantize` has … Tensorflow 2.3.4 / 2.4.3+ Fix from $1,6002021-08-12 MEDIUM 5.5 CVE-2021-37692 TensorFlow is an end-to-end open source platform for machine learning. In affected versions under certain conditions, Go code can trigger a segfault … Tensorflow 2.6.0+ Fix from $1,6002021-08-12 HIGH 7.8 CVE-2021-37663 TensorFlow is an end-to-end open source platform for machine learning. In affected versions due to incomplete validation in `tf.raw_ops.QuantizeV2`, … Tensorflow 2.3.4 / 2.4.3+ Fix from $1,9502021-08-12 HIGH 7.8 CVE-2021-37665 TensorFlow is an end-to-end open source platform for machine learning. In affected versions due to incomplete validation in MKL implementation of req… Tensorflow 2.3.4 / 2.4.3+ Fix from $1,9502021-08-12 MEDIUM 5.5 CVE-2021-37673 TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a denial of service via a `CHECK`… Tensorflow 2.3.4 / 2.4.3+ Fix from $1,6002021-08-12 MEDIUM 5.5 CVE-2021-37674 TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a denial of service via a segment… Tensorflow 2.3.4 / 2.4.3+ Fix from $1,6002021-08-12