An issue was discovered in SaltStack Salt before 3003.3. A user who has control of the source, and source_hash URLs can gain full file system access …
An issue was discovered in SaltStack Salt before 3003.3. The salt minion installer will accept and use a minion config file at C:\salt\conf if that f…
The find_color_or_error function in gifsicle 1.92 contains a NULL pointer dereference.
The ElGamal implementation in Botan through 2.18.1, as used in Thunderbird and other products, allows plaintext recovery because, during interaction …
The ElGamal implementation in Crypto++ through 8.5 allows plaintext recovery because, during interaction between two cryptographic libraries, a certa…
vim is vulnerable to Heap-based Buffer Overflow
Chromium: CVE-2021-30623 Use after free in Bookmarks
Chromium: CVE-2021-30624 Use after free in Autofill
Chromium: CVE-2021-30606 Use after free in Blink
Chromium: CVE-2021-30607 Use after free in Permissions
Chromium: CVE-2021-30608 Use after free in Web Share
Chromium: CVE-2021-30609 Use after free in Sign-In
Chromium: CVE-2021-30610 Use after free in Extensions API
Chromium: CVE-2021-30611 Use after free in WebRTC
Chromium: CVE-2021-30612 Use after free in WebRTC
Chromium: CVE-2021-30613 Use after free in Base internals
Chromium: CVE-2021-30614 Heap buffer overflow in TabStrip
Chromium: CVE-2021-30616 Use after free in Media
Chromium: CVE-2021-30618 Inappropriate implementation in DevTools
Chromium: CVE-2021-30620 Insufficient policy enforcement in Blink
Chromium: CVE-2021-30622 Use after free in WebApp Installs
Chromium: CVE-2021-30615 Cross-origin data leak in Navigation
Chromium: CVE-2021-30617 Policy bypass in Blink
Chromium: CVE-2021-30619 UI Spoofing in Autofill
Chromium: CVE-2021-30621 UI Spoofing in Autofill
mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenti…
Cyrus IMAP before 3.4.2 allows remote attackers to cause a denial of service (multiple-minute daemon hang) via input that is mishandled during hash-t…
In Eclipse Mosquitto versions 2.0 to 2.0.11, when using the dynamic security plugin, if the ability for a client to make subscriptions on a topic is …
Fetchmail before 6.4.22 fails to enforce STARTTLS session encryption in some circumstances, such as a certain situation with IMAP and PREAUTH.
grant table v2 status pages may remain accessible after de-allocation Guest get permitted access to certain Xen-owned pages of memory. The majority o…