Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2021-07-07 CVE-2021-29759 Information Exposure Through Log Files vulnerability in IBM APP Connect Enterprise Certified Container
IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, and 1.3 could allow a privileged user to obtain sensitive information from internal log files.
local
low complexity
ibm CWE-532
2.3
2021-07-01 CVE-2021-36084 Use After Free vulnerability in multiple products
The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __cil_verify_classpermission and __cil_pre_verify_helper).
local
low complexity
selinux-project fedoraproject CWE-416
3.3
2021-07-01 CVE-2021-36085 Use After Free vulnerability in multiple products
The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __verify_map_perm_classperms and hashtab_map).
local
low complexity
selinux-project fedoraproject CWE-416
3.3
2021-07-01 CVE-2021-36086 Use After Free vulnerability in multiple products
The CIL compiler in SELinux 3.2 has a use-after-free in cil_reset_classpermission (called from cil_reset_classperms_set and cil_reset_classperms_list).
local
low complexity
selinux-project fedoraproject CWE-416
3.3
2021-07-01 CVE-2021-36087 Out-of-bounds Read vulnerability in multiple products
The CIL compiler in SELinux 3.2 has a heap-based buffer over-read in ebitmap_match_any (called indirectly from cil_check_neverallow).
local
low complexity
selinux-project fedoraproject CWE-125
3.3
2021-06-29 CVE-2021-29480 Use of Insufficiently Random Values vulnerability in Ratpack Project Ratpack
Ratpack is a toolkit for creating web applications.
network
high complexity
ratpack-project CWE-330
3.1
2021-06-29 CVE-2021-31506 Out-of-bounds Read vulnerability in Opentext Brava! Desktop 16.6.3.84/16.6.4.55
This vulnerability allows remote attackers to disclose sensitive information on affected installations of OpenText Brava! Desktop Build 16.6.4.55.
local
low complexity
opentext CWE-125
3.3
2021-06-28 CVE-2021-28587 Unspecified vulnerability in Adobe After Effects
After Effects versions 18.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory.
local
low complexity
adobe
3.3
2021-06-25 CVE-2021-27040 Out-of-bounds Read vulnerability in multiple products
A maliciously crafted DWG file can be forced to read beyond allocated boundaries when parsing the DWG file.
3.3
2021-06-24 CVE-2021-24000 Race Condition vulnerability in Mozilla Firefox
A race condition with requestPointerLock() and setTimeout() could have resulted in a user interacting with one tab when they believed they were on a separate tab.
network
high complexity
mozilla CWE-362
3.1