Latest CVE Feed
-
9.3
HIGHCVE-2022-1030
Okta Advanced Server Access Client for Linux and macOS prior to version 1.58.0 was found to be vulnerable to command injection via a specially crafted URL. An attacker, who has knowledge of a valid team name for the victim and also knows a valid target ho... Read more
- Published: Mar. 23, 2022
- Modified: Nov. 21, 2024
-
9.3
CRITICALCVE-2022-0990
Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.18.... Read more
- Published: Apr. 04, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-46363
An issue in the Export function of Magnolia v6.2.3 and below allows attackers to perform Formula Injection attacks via crafted CSV/XLS files. These formulas may result in arbitrary code execution on a victim's computer when opening the exported files with... Read more
Affected Products : magnolia_cms- Published: Feb. 11, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-45341
A buffer overflow vulnerability in CDataMoji of the jwwlib component of LibreCAD 2.2.0-rc3 and older allows an attacker to achieve Remote Code Execution using a crafted JWW document.... Read more
- Published: Jan. 25, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-45061
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita... Read more
- Published: Jan. 14, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-44706
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by a use-after-free vulnerability in the processing of Format event actions that could result in arbitrary code execution in the c... Read more
- Published: Jan. 14, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-44705
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by a use-after-free vulnerability in the processing of Format event actions that could result in arbitrary code execution in the c... Read more
- Published: Jan. 14, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-45060
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memo... Read more
- Published: Jan. 14, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-44707
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita... Read more
- Published: Jan. 14, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-44711
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current use... Read more
- Published: Jan. 14, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-44710
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by a use-after-free vulnerability in the processing of Format event actions that could result in arbitrary code execution in the c... Read more
- Published: Jan. 14, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-44181
Adobe Dimension versions 3.4.3 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must ... Read more
- Published: Dec. 20, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-44179
Adobe Dimension versions 3.4.3 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious GIF file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is requi... Read more
- Published: Dec. 20, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-44180
Adobe Dimension versions 3.4.3 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must ... Read more
- Published: Dec. 20, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-43747
Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious WAV file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is r... Read more
- Published: Dec. 20, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-43809
`Bundler` is a package for managing application dependencies in Ruby. In `bundler` versions before 2.2.33, when working with untrusted and apparently harmless `Gemfile`'s, it is not expected that they lead to execution of external code, unless that's expl... Read more
Affected Products : bundler- Published: Dec. 08, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-43025
Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious SVG file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is r... Read more
- Published: Dec. 20, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-43022
Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious PNG file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is r... Read more
- Published: Dec. 20, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-43023
Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious EPS/TIFF file, potentially resulting in arbitrary code execution in the context of the current user. User interaction... Read more
- Published: Dec. 20, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-42726
Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious M4A file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required... Read more
- Published: Nov. 16, 2021
- Modified: Nov. 21, 2024