CVE-2021-39929
- EPSS 0.16%
 - Published 19.11.2021 17:15:08
 - Last modified 21.11.2024 06:20:35
 
Uncontrolled Recursion in the Bluetooth DHT dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file
CVE-2021-3968
- EPSS 0.31%
 - Published 19.11.2021 12:15:09
 - Last modified 21.11.2024 06:23:15
 
vim is vulnerable to Heap-based Buffer Overflow
CVE-2021-3973
- EPSS 0.18%
 - Published 19.11.2021 12:15:09
 - Last modified 21.11.2024 06:23:16
 
vim is vulnerable to Heap-based Buffer Overflow
CVE-2021-3974
- EPSS 0.2%
 - Published 19.11.2021 11:15:07
 - Last modified 21.11.2024 06:23:17
 
vim is vulnerable to Use After Free
CVE-2021-44026
- EPSS 62.47%
 - Published 19.11.2021 04:15:07
 - Last modified 22.10.2025 00:17:47
 
Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to a potential SQL injection via search or search_params.
CVE-2021-44025
- EPSS 0.75%
 - Published 19.11.2021 04:15:06
 - Last modified 21.11.2024 06:30:14
 
Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to XSS in handling an attachment's filename extension when displaying a MIME type warning message.
CVE-2021-39920
- EPSS 0.42%
 - Published 18.11.2021 19:15:08
 - Last modified 21.11.2024 06:20:33
 
NULL pointer exception in the IPPUSB dissector in Wireshark 3.4.0 to 3.4.9 allows denial of service via packet injection or crafted capture file
CVE-2021-39928
- EPSS 1.16%
 - Published 18.11.2021 19:15:08
 - Last modified 21.11.2024 06:20:35
 
NULL pointer exception in the IEEE 802.11 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file
CVE-2021-27023
- EPSS 0.41%
 - Published 18.11.2021 15:15:09
 - Last modified 21.11.2024 05:57:11
 
A flaw was discovered in Puppet Agent and Puppet Server that may result in a leak of HTTP credentials when following HTTP redirects to a different host. This is similar to CVE-2018-1000007
CVE-2021-27025
- EPSS 0.17%
 - Published 18.11.2021 15:15:09
 - Last modified 21.11.2024 05:57:12
 
A flaw was discovered in Puppet Agent where the agent may silently ignore Augeas settings or may be vulnerable to a Denial of Service condition prior to the first 'pluginsync'.