Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2021-0070
Improper input validation in the BMC firmware for Intel(R) Server Board M10JNP2SB before version EFI BIOS 7215, BMC 8100.01.08 may allow an unauthent…
Efi Bios 7215
Mitigation only
MEDIUM 5.5
CVE-2020-12295
Improper input validation in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via lo…
Jhl6240 Thunderbolt 3 Firmware
21 / 22+
MEDIUM 5.5
CVE-2020-24486
Improper input validation in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via lo…
Bios
Patch available
HIGH 7.5
CVE-2020-15379
Brocade SANnav before v.2.1.0a could allow remote attackers cause a denial-of-service condition due to a lack of proper validation, of the length of …
Brocade Sannav
after 2.1.0
CRITICAL 9.8
CVE-2021-23853
In Bosch IP cameras, improper validation of the HTTP header allows an attacker to inject arbitrary HTTP headers through crafted URLs.
Cpp4 Firmware
Mitigation only
MEDIUM 5.5
CVE-2021-27638
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated JT file received from untrusted sources which results in crashing of …
3d Visual Enterprise Viewer
Mitigation only
MEDIUM 5.5
CVE-2021-27639
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated JT file received from untrusted sources which results in crashing of …
3d Visual Enterprise Viewer
Mitigation only
MEDIUM 5.5
CVE-2021-27640
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PSD file received from untrusted sources which results in crashing of…
3d Visual Enterprise Viewer
Mitigation only
MEDIUM 5.5
CVE-2021-27641
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated TIF file received from untrusted sources which results in crashing of…
3d Visual Enterprise Viewer
Mitigation only
MEDIUM 5.5
CVE-2021-27642
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PCX file received from untrusted sources which results in crashing of…
3d Visual Enterprise Viewer
Mitigation only
MEDIUM 5.5
CVE-2021-27643
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated IFF file received from untrusted sources which results in crashing of…
3d Visual Enterprise Viewer
Mitigation only
MEDIUM 5.5
CVE-2021-33659
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated GIF file received from untrusted sources which results in crashing of…
3d Visual Enterprise Viewer
Mitigation only
MEDIUM 5.5
CVE-2021-33660
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated FLI file received from untrusted sources which results in crashing of…
3d Visual Enterprise Viewer
Mitigation only
MEDIUM 5.5
CVE-2021-33661
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PCX file received from untrusted sources which results in crashing of…
3d Visual Enterprise Viewer
Mitigation only
HIGH 7.8
CVE-2020-11178
Trusted APPS to overwrite the CPZ memory of another use-case as TZ only checks the physical address not overlapping with its memory and its RoT memor…
Aqt1000 Firmware
Mitigation only
HIGH 7.8
CVE-2020-11261 KEV
Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdragon Auto, Snapdrago…
Apq8009 Firmware
Patch available
MEDIUM 5.3
CVE-2020-26138
In SilverStripe through 4.6.0-rc1, a FormField with square brackets in the field name skips validation.
Silverstripe
4.6.0+
HIGH 7.5
CVE-2021-22116
RabbitMQ all versions prior to 3.8.16 are prone to a denial of service vulnerability due to improper input validation in AMQP 1.0 client connection e…
Rabbitmq
3.8.16+
HIGH 7.8
CVE-2021-3490EPSS 27%
The eBPF ALU32 bounds tracking for bitwise ops (AND, OR and XOR) in the Linux kernel did not properly update 32-bit bounds, which could be turned int…
Linux Kernel
5.10.37 / 5.11.21+
MEDIUM 6.5
CVE-2021-32666
wire-ios is the iOS version of Wire, an open-source secure messaging app. In wire-ios versions 3.8.0 and prior, a vulnerability exists that can cause…
Wire
3.81+
MEDIUM 6.3
CVE-2021-32635
Singularity is an open source container platform. In verions 3.7.2 and 3.7.3, Dde to incorrect use of a default URL, `singularity` action commands (`…
Singularity
Mitigation only
MEDIUM 6.5
CVE-2021-29507
GENIVI Diagnostic Log and Trace (DLT) provides a log and trace interface. In versions of GENIVI DLT between 2.10.0 and 2.18.6, a configuration file c…
Diagnostic Log And Trace
after 2.18.6
CRITICAL 9.4
CVE-2021-32642
radsecproxy is a generic RADIUS proxy that supports both UDP and TLS (RadSec) RADIUS transports. Missing input validation in radsecproxy's `naptr-edu…
Fedora
1.9.0+
HIGH 7.5
CVE-2021-29629
In FreeBSD 13.0-STABLE before n245765-bec0d2c9c841, 12.2-STABLE before r369859, 11.4-STABLE before r369866, 13.0-RELEASE before p1, 12.2-RELEASE befo…
FreeBSD
Mitigation only
MEDIUM 6.5
CVE-2021-33620EPSS 80%
Squid before 4.15 and 5.x before 5.0.6 allows remote servers to cause a denial of service (affecting availability to all clients) via an HTTP respons…
Fedora
4.15 / 5.0.6+
CRITICAL 9.6
CVE-2021-20195
A flaw was found in keycloak in versions before 13.0.0. A Self Stored XSS attack vector escalating to a complete account takeover is possible due to …
Keycloak
12.0.3+
CRITICAL 9.0
CVE-2020-15180EPSS 6%
A flaw was found in the mysql-wsrep component of mariadb. Lack of input sanitization in `wsrep_sst_method` allows for command injection that can be e…
MariaDB
5.6.49 / 5.6.49-28.42.2+
HIGH 7.5
CVE-2021-22359
There is a denial of service vulnerability in the verisions V200R005C00SPC500 of S5700 and V200R005C00SPC500 of S6700. An attacker could exploit this…
S5700 Firmware
Mitigation only
MEDIUM 5.5
CVE-2021-30501
An assertion abort was found in upx MemBuffer::alloc() in mem.cpp, in version UPX 4.0.0. The flow allows attackers to cause a denial of service (abor…
Enterprise Linux
Patch available
MEDIUM 5.3
CVE-2021-28170
In the Jakarta Expression Language implementation 3.0.3 and earlier, a bug in the ELParserTokenManager enables invalid EL expressions to be evaluated…
Jakarta Expression Language
2.3.0+