555 Commits

Author SHA1 Message Date
CVE Team
a25a85afd4
"-Synchronized-Data." 2022-02-09 13:01:24 +00:00
hagaiwech
5b7ef4bafa
Add CVE-2021-25939
ArangoDB - Blind SSRF when Downloading Foxx Service from URL
Committed by: Hagai Wechsler
2022-02-09 14:14:14 +02:00
CVE Team
ce13252800
"-Synchronized-Data." 2022-02-07 16:01:52 +00:00
CVE Team
7b1f278a57
"-Synchronized-Data." 2022-02-07 16:01:25 +00:00
CVE Team
84f778156c
Auto-merge PR#4420
Auto-merge PR#4420
2022-02-07 10:50:14 -05:00
CVE Team
7d05446661
Auto-merge PR#4119
Auto-merge PR#4119
2022-02-07 10:45:13 -05:00
erwanlr
52c87e1d99 Fixes CWE 2022-02-07 09:49:05 +01:00
erwanlr
611d4f2710 Adds CVE 2022-02-07 09:39:50 +01:00
CVE Team
f65603a2fc
"-Synchronized-Data." 2022-02-01 14:01:17 +00:00
erwanlr
ed677fbfdb Adds CVEs 2022-01-31 13:20:03 +01:00
bsitu
adf6349e3e
Merge branch 'master' into cna/Oracle/CPU2022Jan3rd 2022-01-24 11:13:17 -08:00
erwanlr
791b95ce9f Adds CVEs 2022-01-24 08:58:22 +01:00
BSITU
a87c8c972e Oracle 2022 January CPU 3rd party CVE updates
Committer: Bill Situ <Bill.Situ@.oracle.com>

 On branch cna/Oracle/CPU2022Jan3rd
Changes to be committed:
	modified:   2013/6xxx/CVE-2013-6440.json
	modified:   2016/7xxx/CVE-2016-7103.json
	modified:   2017/5xxx/CVE-2017-5645.json
	modified:   2018/11xxx/CVE-2018-11771.json
	modified:   2018/1xxx/CVE-2018-1311.json
	modified:   2018/1xxx/CVE-2018-1324.json
	modified:   2019/10xxx/CVE-2019-10086.json
	modified:   2019/10xxx/CVE-2019-10219.json
	modified:   2019/11xxx/CVE-2019-11358.json
	modified:   2019/13xxx/CVE-2019-13734.json
	modified:   2019/17xxx/CVE-2019-17091.json
	modified:   2019/17xxx/CVE-2019-17195.json
	modified:   2019/17xxx/CVE-2019-17495.json
	modified:   2019/17xxx/CVE-2019-17566.json
	modified:   2020/10xxx/CVE-2020-10543.json
	modified:   2020/10xxx/CVE-2020-10683.json
	modified:   2020/10xxx/CVE-2020-10878.json
	modified:   2020/11xxx/CVE-2020-11022.json
	modified:   2020/11xxx/CVE-2020-11023.json
	modified:   2020/11xxx/CVE-2020-11979.json
	modified:   2020/11xxx/CVE-2020-11987.json
	modified:   2020/12xxx/CVE-2020-12723.json
	modified:   2020/13xxx/CVE-2020-13817.json
	modified:   2020/13xxx/CVE-2020-13934.json
	modified:   2020/13xxx/CVE-2020-13935.json
	modified:   2020/13xxx/CVE-2020-13936.json
	modified:   2020/13xxx/CVE-2020-13949.json
	modified:   2020/13xxx/CVE-2020-13956.json
	modified:   2020/14xxx/CVE-2020-14340.json
	modified:   2020/15xxx/CVE-2020-15824.json
	modified:   2020/17xxx/CVE-2020-17521.json
	modified:   2020/17xxx/CVE-2020-17527.json
	modified:   2020/17xxx/CVE-2020-17530.json
	modified:   2020/1xxx/CVE-2020-1945.json
	modified:   2020/1xxx/CVE-2020-1963.json
	modified:   2020/24xxx/CVE-2020-24616.json
	modified:   2020/24xxx/CVE-2020-24750.json
	modified:   2020/25xxx/CVE-2020-25649.json
	modified:   2020/26xxx/CVE-2020-26217.json
	modified:   2020/27xxx/CVE-2020-27216.json
	modified:   2020/27xxx/CVE-2020-27618.json
	modified:   2020/28xxx/CVE-2020-28052.json
	modified:   2020/28xxx/CVE-2020-28469.json
	modified:   2020/28xxx/CVE-2020-28500.json
	modified:   2020/29xxx/CVE-2020-29582.json
	modified:   2020/35xxx/CVE-2020-35490.json
	modified:   2020/35xxx/CVE-2020-35491.json
	modified:   2020/35xxx/CVE-2020-35728.json
	modified:   2020/36xxx/CVE-2020-36179.json
	modified:   2020/36xxx/CVE-2020-36180.json
	modified:   2020/36xxx/CVE-2020-36181.json
	modified:   2020/36xxx/CVE-2020-36182.json
	modified:   2020/36xxx/CVE-2020-36183.json
	modified:   2020/36xxx/CVE-2020-36184.json
	modified:   2020/36xxx/CVE-2020-36185.json
	modified:   2020/36xxx/CVE-2020-36186.json
	modified:   2020/36xxx/CVE-2020-36187.json
	modified:   2020/36xxx/CVE-2020-36188.json
	modified:   2020/36xxx/CVE-2020-36189.json
	modified:   2020/5xxx/CVE-2020-5258.json
	modified:   2020/5xxx/CVE-2020-5421.json
	modified:   2020/6xxx/CVE-2020-6950.json
	modified:   2020/7xxx/CVE-2020-7712.json
	modified:   2020/8xxx/CVE-2020-8177.json
	modified:   2020/8xxx/CVE-2020-8203.json
	modified:   2020/8xxx/CVE-2020-8284.json
	modified:   2020/8xxx/CVE-2020-8285.json
	modified:   2020/8xxx/CVE-2020-8554.json
	modified:   2020/8xxx/CVE-2020-8908.json
	modified:   2020/9xxx/CVE-2020-9281.json
	modified:   2020/9xxx/CVE-2020-9484.json
	modified:   2021/20xxx/CVE-2021-20718.json
	modified:   2021/21xxx/CVE-2021-21341.json
	modified:   2021/21xxx/CVE-2021-21342.json
	modified:   2021/21xxx/CVE-2021-21343.json
	modified:   2021/21xxx/CVE-2021-21344.json
	modified:   2021/21xxx/CVE-2021-21345.json
	modified:   2021/21xxx/CVE-2021-21346.json
	modified:   2021/21xxx/CVE-2021-21347.json
	modified:   2021/21xxx/CVE-2021-21348.json
	modified:   2021/21xxx/CVE-2021-21349.json
	modified:   2021/21xxx/CVE-2021-21350.json
	modified:   2021/21xxx/CVE-2021-21351.json
	modified:   2021/21xxx/CVE-2021-21409.json
	modified:   2021/21xxx/CVE-2021-21703.json
	modified:   2021/21xxx/CVE-2021-21705.json
	modified:   2021/21xxx/CVE-2021-21783.json
	modified:   2021/22xxx/CVE-2021-22118.json
	modified:   2021/22xxx/CVE-2021-22119.json
	modified:   2021/22xxx/CVE-2021-22298.json
	modified:   2021/22xxx/CVE-2021-22897.json
	modified:   2021/22xxx/CVE-2021-22898.json
	modified:   2021/22xxx/CVE-2021-22901.json
	modified:   2021/22xxx/CVE-2021-22924.json
	modified:   2021/22xxx/CVE-2021-22925.json
	modified:   2021/22xxx/CVE-2021-22926.json
	modified:   2021/22xxx/CVE-2021-22931.json
	modified:   2021/22xxx/CVE-2021-22939.json
	modified:   2021/22xxx/CVE-2021-22940.json
	modified:   2021/22xxx/CVE-2021-22946.json
	modified:   2021/22xxx/CVE-2021-22947.json
	modified:   2021/22xxx/CVE-2021-22959.json
	modified:   2021/22xxx/CVE-2021-22960.json
	modified:   2021/23xxx/CVE-2021-23017.json
	modified:   2021/23xxx/CVE-2021-23336.json
	modified:   2021/23xxx/CVE-2021-23337.json
	modified:   2021/23xxx/CVE-2021-23440.json
	modified:   2021/23xxx/CVE-2021-23840.json
	modified:   2021/25xxx/CVE-2021-25122.json
	modified:   2021/25xxx/CVE-2021-25329.json
	modified:   2021/26xxx/CVE-2021-26272.json
	modified:   2021/26xxx/CVE-2021-26691.json
	modified:   2021/27xxx/CVE-2021-27568.json
	modified:   2021/28xxx/CVE-2021-28163.json
	modified:   2021/28xxx/CVE-2021-28164.json
	modified:   2021/28xxx/CVE-2021-28165.json
	modified:   2021/28xxx/CVE-2021-28169.json
	modified:   2021/29xxx/CVE-2021-29425.json
	modified:   2021/29xxx/CVE-2021-29505.json
	modified:   2021/29xxx/CVE-2021-29921.json
	modified:   2021/29xxx/CVE-2021-29923.json
	modified:   2021/30xxx/CVE-2021-30639.json
	modified:   2021/30xxx/CVE-2021-30640.json
	modified:   2021/31xxx/CVE-2021-31684.json
	modified:   2021/31xxx/CVE-2021-31811.json
	modified:   2021/31xxx/CVE-2021-31812.json
	modified:   2021/32xxx/CVE-2021-32012.json
	modified:   2021/32xxx/CVE-2021-32013.json
	modified:   2021/32xxx/CVE-2021-32014.json
	modified:   2021/32xxx/CVE-2021-32723.json
	modified:   2021/32xxx/CVE-2021-32808.json
	modified:   2021/32xxx/CVE-2021-32809.json
	modified:   2021/32xxx/CVE-2021-32827.json
	modified:   2021/33xxx/CVE-2021-33037.json
	modified:   2021/33xxx/CVE-2021-33193.json
	modified:   2021/33xxx/CVE-2021-33560.json
	modified:   2021/33xxx/CVE-2021-33880.json
	modified:   2021/33xxx/CVE-2021-33909.json
	modified:   2021/34xxx/CVE-2021-34428.json
	modified:   2021/34xxx/CVE-2021-34429.json
	modified:   2021/34xxx/CVE-2021-34558.json
	modified:   2021/34xxx/CVE-2021-34798.json
	modified:   2021/35xxx/CVE-2021-35043.json
	modified:   2021/35xxx/CVE-2021-35515.json
	modified:   2021/35xxx/CVE-2021-35516.json
	modified:   2021/35xxx/CVE-2021-35517.json
	modified:   2021/36xxx/CVE-2021-36090.json
	modified:   2021/36xxx/CVE-2021-36160.json
	modified:   2021/36xxx/CVE-2021-36221.json
	modified:   2021/36xxx/CVE-2021-36373.json
	modified:   2021/36xxx/CVE-2021-36374.json
	modified:   2021/36xxx/CVE-2021-36690.json
	modified:   2021/37xxx/CVE-2021-37136.json
	modified:   2021/37xxx/CVE-2021-37137.json
	modified:   2021/37xxx/CVE-2021-37695.json
	modified:   2021/37xxx/CVE-2021-37714.json
	modified:   2021/38xxx/CVE-2021-38153.json
	modified:   2021/39xxx/CVE-2021-39139.json
	modified:   2021/39xxx/CVE-2021-39140.json
	modified:   2021/39xxx/CVE-2021-39141.json
	modified:   2021/39xxx/CVE-2021-39144.json
	modified:   2021/39xxx/CVE-2021-39145.json
	modified:   2021/39xxx/CVE-2021-39146.json
	modified:   2021/39xxx/CVE-2021-39147.json
	modified:   2021/39xxx/CVE-2021-39148.json
	modified:   2021/39xxx/CVE-2021-39149.json
	modified:   2021/39xxx/CVE-2021-39150.json
	modified:   2021/39xxx/CVE-2021-39151.json
	modified:   2021/39xxx/CVE-2021-39152.json
	modified:   2021/39xxx/CVE-2021-39153.json
	modified:   2021/39xxx/CVE-2021-39154.json
	modified:   2021/39xxx/CVE-2021-39275.json
	modified:   2021/3xxx/CVE-2021-3177.json
	modified:   2021/3xxx/CVE-2021-3326.json
	modified:   2021/3xxx/CVE-2021-3426.json
	modified:   2021/3xxx/CVE-2021-3448.json
	modified:   2021/3xxx/CVE-2021-3516.json
	modified:   2021/3xxx/CVE-2021-3517.json
	modified:   2021/3xxx/CVE-2021-3541.json
	modified:   2021/3xxx/CVE-2021-3634.json
	modified:   2021/3xxx/CVE-2021-3711.json
	modified:   2021/3xxx/CVE-2021-3712.json
	modified:   2021/40xxx/CVE-2021-40438.json
	modified:   2021/41xxx/CVE-2021-41164.json
	modified:   2021/41xxx/CVE-2021-41165.json
	modified:   2021/41xxx/CVE-2021-41355.json
	modified:   2021/41xxx/CVE-2021-41524.json
	modified:   2021/41xxx/CVE-2021-41773.json
	modified:   2021/42xxx/CVE-2021-42013.json
	modified:   2021/42xxx/CVE-2021-42340.json
	modified:   2021/42xxx/CVE-2021-42575.json
	modified:   2021/44xxx/CVE-2021-44224.json
	modified:   2021/44xxx/CVE-2021-44228.json
	modified:   2021/44xxx/CVE-2021-44790.json
	modified:   2021/44xxx/CVE-2021-44832.json
	modified:   2021/45xxx/CVE-2021-45046.json
	modified:   2021/45xxx/CVE-2021-45105.json
	modified:   2021/4xxx/CVE-2021-4104.json
2022-01-18 14:34:17 -08:00
CVE Team
f035c320a4
"-Synchronized-Data." 2022-01-17 14:01:11 +00:00
erwanlr
b9d1e6e2f7 Adds CVEs 2022-01-17 13:54:59 +01:00
Siemens ProductCERT
8d0e3d5f86
Siemens CVE update for AD-2022-01 2022-01-11 11:42:12 +01:00
erwanlr
76ce75de96 Adds CVEs 2022-01-10 09:12:32 +01:00
CVE Team
6075eccc91
"-Synchronized-Data." 2022-01-07 01:01:03 +00:00
CVE Team
e55868b19f
Auto-merge PR#3964
Auto-merge PR#3964
2022-01-06 19:00:18 -05:00
Tim Allclair
3123767c61 CVE-2021-25743: ANSI escape characters in kubectl output are not being filtered 2022-01-06 15:56:03 -08:00
CVE Team
c4223993b5
"-Synchronized-Data." 2022-01-03 22:01:02 +00:00
erwanlr
be904a9380 Adds CVEs 2022-01-03 09:30:07 +01:00
CVE Team
27b2216a38
"-Synchronized-Data." 2022-01-03 07:01:15 +00:00
hagaiwech
9bdee62389
Add CVE-2021-25994
Userfrosting - Host-Header Injection Leads to Account Takeover
Committed by: Hagai Wechsler
2022-01-03 08:40:54 +02:00
hagaiwech
50517ef9ea
Add CVE-2021-25981
Talkyard - Insufficient Session Expiration
Committed by: Hagai Wechsler
2022-01-03 08:30:56 +02:00
CVE Team
9653455970
Auto-merge PR#3894
Auto-merge PR#3894
2021-12-29 13:25:10 -05:00
CVE Team
6401df4cc0
"-Synchronized-Data." 2021-12-29 17:01:18 +00:00
Miriam Iomin
61c12eb087
Add CVE-2021-25993
Requarks wiki.js - Stored Cross-Site Scripting (XSS) in markdown editor
Committed by Miriam Iomin
2021-12-29 18:43:02 +02:00
Miriam Iomin
b1c9dc676f
Update CVE-2021-25991
Fixed description in CVE-2021-25991
Committed by Miriam Iomin
2021-12-29 16:21:57 +02:00
CVE Team
8ef335443f
"-Synchronized-Data." 2021-12-29 10:01:10 +00:00
Miriam Iomin
7a4e9e003f
Add CVE-2021-25991
ifme - Improper Access Control leads to admin deactivation
Committed by Miriam Iomin
2021-12-29 11:01:21 +02:00
Miriam Iomin
ad8662d6c8
Add CVE-2021-25990
ifme - Stored Cross-Site Scripting (XSS) in Contacts section
Committed by Miriam Iomin
2021-12-29 10:48:46 +02:00
Miriam Iomin
1de85afb5b
Add CVE-2021-25989
ifme - Stored Cross-Site Scripting (XSS) in Groups section
Committed by Miriam Iomin
2021-12-29 10:39:12 +02:00
Miriam Iomin
1ad380cd33
Add CVE-2021-25988
ifme - Stored Cross-Site Scripting (XSS) in Notifications section
Committed by Miriam Iomin
2021-12-29 10:20:04 +02:00
CVE Team
5e37d40ebe
"-Synchronized-Data." 2021-12-08 15:01:32 +00:00
erwanlr
48dc41c994 Adds CVEs 2021-12-06 16:49:26 +01:00
CVE Team
2934f4ea87
"-Synchronized-Data." 2021-12-03 19:00:57 +00:00
CVE Team
94cb403e4b
"-Synchronized-Data." 2021-12-03 08:01:04 +00:00
CVE Team
7c56b0cac4
"-Synchronized-Data." 2021-12-02 23:00:57 +00:00
CVE Team
9ddb8d3164
"-Synchronized-Data." 2021-12-01 14:01:05 +00:00
hagaiwech
f909a2ddef
Add CVE-2021-25967
CKAN - Stored Cross-Site Scripting (XSS) via SVG File Upload
Committed by: Hagai Wechsler
2021-12-01 15:36:17 +02:00
CVE Team
2793522c4d
"-Synchronized-Data." 2021-11-30 14:01:11 +00:00
Daniel Elkabes
5bb4cab349
Add CVE-2021-25987
Hexo - Stored XSS
Committed by: Daniel Elkabes
2021-11-30 15:44:55 +02:00
CVE Team
a6561f1fd6
Auto-merge PR#3577
Auto-merge PR#3577
2021-11-26 09:15:11 -05:00
Moritz Grimm
0f52eacdc0 Sophos CVE-2021-25269 2021-11-26 10:07:51 +01:00
hagaiwech
d7a89201bc
Update CVE-2021-25969
After coordinating with NVD about the Privileges Required metric, it was agreed that the public description should reflect that the attacker is unauthenticated, so NVD could properly modify their score.
Committed by: Hagai Wechsler
2021-11-24 16:02:48 +02:00
CVE Team
866949a3b7
"-Synchronized-Data." 2021-11-23 21:01:22 +00:00
CVE Team
de1caf5ba5
Auto-merge PR#3514
Auto-merge PR#3514
2021-11-23 14:17:14 -05:00
CVE Team
6a8c76446d
"-Synchronized-Data." 2021-11-19 20:01:05 +00:00
wsmi22
4ae82736e0
Add CVE-2021-25986
Django-wiki - Stored Cross-Site Scripting (XSS) in Notifications Section
Committed by Miriam Iomin
2021-11-18 12:46:02 +02:00