Vulnerabilities > Fedoraproject > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-02-24 | CVE-2020-11987 | Server-Side Request Forgery (SSRF) vulnerability in multiple products Apache Batik 1.13 is vulnerable to server-side request forgery, caused by improper input validation by the NodePickerPanel. | 8.2 |
2021-02-24 | CVE-2020-28599 | Out-of-bounds Write vulnerability in multiple products A stack-based buffer overflow vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12-RC2. | 7.8 |
2021-02-23 | CVE-2021-3410 | Integer Overflow or Wraparound vulnerability in multiple products A flaw was found in libcaca v0.99.beta19. | 7.8 |
2021-02-23 | CVE-2021-20247 | Path Traversal vulnerability in multiple products A flaw was found in mbsync before v1.3.5 and v1.4.1. | 7.4 |
2021-02-23 | CVE-2021-26926 | Out-of-bounds Read vulnerability in multiple products A flaw was found in jasper before 2.0.25. | 7.1 |
2021-02-22 | CVE-2021-21157 | Use After Free vulnerability in multiple products Use after free in Web Sockets in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | 8.8 |
2021-02-22 | CVE-2021-21156 | Out-of-bounds Write vulnerability in multiple products Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.182 allowed a remote attacker to potentially exploit heap corruption via a crafted script. | 8.8 |
2021-02-22 | CVE-2021-21153 | Out-of-bounds Write vulnerability in multiple products Stack buffer overflow in GPU Process in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. | 8.8 |
2021-02-22 | CVE-2021-21152 | Out-of-bounds Write vulnerability in multiple products Heap buffer overflow in Media in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | 8.8 |
2021-02-22 | CVE-2021-21149 | Out-of-bounds Write vulnerability in multiple products Stack buffer overflow in Data Transfer in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. | 8.8 |