VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Fedoraproject
>
Fedora
> High
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2022-01-10
CVE-2021-29454
Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic.
network
low complexity
smarty
debian
fedoraproject
8.8
8.8
2022-01-06
CVE-2022-21661
SQL Injection vulnerability in multiple products
WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database.
network
low complexity
wordpress
fedoraproject
debian
CWE-89
7.5
7.5
2022-01-06
CVE-2022-21663
Deserialization of Untrusted Data vulnerability in multiple products
WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database.
network
low complexity
wordpress
debian
fedoraproject
CWE-502
7.2
7.2
2022-01-06
CVE-2022-21664
SQL Injection vulnerability in multiple products
WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database.
network
low complexity
wordpress
debian
fedoraproject
CWE-89
8.8
8.8
2022-01-05
CVE-2021-45115
An issue was discovered in Django 2.2 before 2.2.26, 3.2 before 3.2.11, and 4.0 before 4.0.1.
network
low complexity
djangoproject
fedoraproject
7.5
7.5
2022-01-05
CVE-2021-45116
Improper Input Validation vulnerability in multiple products
An issue was discovered in Django 2.2 before 2.2.26, 3.2 before 3.2.11, and 4.0 before 4.0.1.
network
low complexity
djangoproject
fedoraproject
CWE-20
7.5
7.5
2022-01-04
CVE-2021-3842
nltk is vulnerable to Inefficient Regular Expression Complexity
network
low complexity
nltk
debian
fedoraproject
7.5
7.5
2022-01-01
CVE-2021-41819
Reliance on Cookies without Validation and Integrity Checking vulnerability in multiple products
CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names.
network
low complexity
ruby-lang
redhat
debian
suse
opensuse
fedoraproject
CWE-565
7.5
7.5
2022-01-01
CVE-2021-41817
Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string.
network
low complexity
ruby-lang
redhat
fedoraproject
debian
suse
opensuse
7.5
7.5
2021-12-31
CVE-2021-4192
vim is vulnerable to Use After Free
local
low complexity
vim
fedoraproject
debian
apple
7.8
7.8
«
Previous
1
2
...
77
78
79
(current)
80
81
...
218
219
»
Next