Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
4.8
CVE-2021-3536
- EPSS 0.53%
- Veröffentlicht 20.05.2021 13:15:07
- Zuletzt bearbeitet 21.11.2024 06:21:47
A flaw was found in Wildfly in versions before 23.0.2.Final while creating a new role in domain mode via the admin console, it is possible to add a payload in the name field, leading to XSS. This affects Confidentiality and Integrity.
7.4
CVE-2021-20218
- EPSS 1.31%
- Veröffentlicht 16.03.2021 21:15:10
- Zuletzt bearbeitet 21.11.2024 05:46:09
A flaw was found in the fabric8 kubernetes-client in version 4.2.0 and after. This flaw allows a malicious pod/container to cause applications using the fabric8 kubernetes-client `copy` command to extract files outside the working path. The highest t...
6.5
CVE-2019-14900
- EPSS 2.13%
- Veröffentlicht 06.07.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:27:38
A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 and 5.5.0.Beta1. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SELECT or GROUP BY parts of the query. Th...