- EPSS 0.11%
- Published 20.10.2021 11:16:37
- Last modified 21.11.2024 06:12:31
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Keytool). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily ...
- EPSS 0.16%
- Published 20.10.2021 11:16:35
- Last modified 21.11.2024 06:12:31
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Utility). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily ...
CVE-2021-35560
- EPSS 0.64%
- Published 20.10.2021 11:16:35
- Last modified 21.11.2024 06:12:31
Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u301. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to...
- EPSS 0.12%
- Published 20.10.2021 11:16:34
- Last modified 21.11.2024 06:12:31
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily ex...
- EPSS 0.14%
- Published 20.10.2021 11:16:33
- Last modified 21.11.2024 06:12:30
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily ex...
CVE-2021-35550
- EPSS 0.08%
- Published 20.10.2021 11:16:31
- Last modified 21.11.2024 06:12:29
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Difficult to e...
CVE-2021-34429
- EPSS 93.8%
- Published 15.07.2021 17:15:08
- Last modified 21.11.2024 06:10:23
For Eclipse Jetty versions 9.4.37-9.4.42, 10.0.1-10.0.5 & 11.0.1-11.0.5, URIs can be crafted using some encoded characters to access the content of the WEB-INF directory and/or bypass some security constraints. This is a variation of the vulnerabilit...
CVE-2021-34428
- EPSS 0.51%
- Published 22.06.2021 15:15:16
- Last modified 21.11.2024 06:10:23
For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, if an exception is thrown from the SessionListener#sessionDestroyed() method, then the session ID is not invalidated in the session ID manager. On deployments with clustered sessions and mul...
CVE-2021-3522
- EPSS 0.11%
- Published 02.06.2021 15:15:07
- Last modified 21.11.2024 06:21:45
GStreamer before 1.18.4 may perform an out-of-bounds read when handling certain ID3v2 tags.
CVE-2021-3517
- EPSS 0.09%
- Published 19.05.2021 14:15:07
- Last modified 21.11.2024 06:21:44
There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a crafted file to be processed by an application linked with the affected functionality of libxml2 could trigger an out-o...