Latest CVE Feed
-
5.5
MEDIUMCVE-2021-39860
Acrobat Pro DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by a Null pointer dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose sensiti... Read more
- Published: Sep. 29, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39859
Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulner... Read more
- Published: Sep. 06, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39854
Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by a Null pointer dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an ap... Read more
- Published: Sep. 29, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39866
A business logic error in the project deletion process in GitLab 13.6 and later allows persistent access via project access tokens.... Read more
Affected Products : gitlab- Published: Oct. 05, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2025-31236
An information disclosure issue was addressed with improved privacy controls. This issue is fixed in macOS Sequoia 15.5. An app may be able to access sensitive user data.... Read more
Affected Products : macos- Published: May. 12, 2025
- Modified: May. 27, 2025
- Vuln Type: Information Disclosure
-
5.5
MEDIUMCVE-2021-39849
Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by a Null pointer dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an ap... Read more
- Published: Sep. 29, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2025-31199
A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.4 and iPadOS 18.4, visionOS 2.4, macOS Sequoia 15.4. An app may be able to access sensitive user data.... Read more
- Published: May. 29, 2025
- Modified: Jun. 02, 2025
- Vuln Type: Information Disclosure
-
5.5
MEDIUMCVE-2021-39788
In TelecomManager, there is a possible way to check if a particular self managed phone account was registered on the device due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39800
In ion_ioctl of ion-ioctl.c, there is a possible way to leak kernel head data due to a use after free. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product:... Read more
Affected Products : android- Published: Apr. 12, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39770
In Framework, there is a possible disclosure of the device owner package due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Pro... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39791
In WallpaperManagerService, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges ne... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39777
In Telephony, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction ... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39766
In Settings, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User inte... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39779
In getCallStateUsingPackage of Telecom Service, there is a missing permission check. This could lead to local information disclosure of the call state with no additional execution privileges needed. User interaction is not needed for exploitation.Product:... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2025-27187
After Effects versions 25.1, 24.6.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this i... Read more
- Published: Apr. 08, 2025
- Modified: Apr. 18, 2025
- Vuln Type: Information Disclosure
-
5.5
MEDIUMCVE-2021-39756
In Framework, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User int... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39774
In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Androi... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39751
In Settings, there is a possible way to read Bluetooth device names without proper permissions due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not neede... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39769
In Device Policy, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interact... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-39753
In DomainVerificationService, there is a possible way to access app domain verification information due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not ... Read more
Affected Products : android- Published: Mar. 30, 2022
- Modified: Nov. 21, 2024