Latest CVE Feed
-
5.5
MEDIUMCVE-2021-46336
There is an Assertion 'opts & PARSER_CLASS_LITERAL_CTOR_PRESENT' failed at /parser/js/js-parser-expr.c(parser_parse_class_body) in JerryScript 3.0.0.... Read more
Affected Products : jerryscript- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-46335
Moddable SDK v11.5.0 was discovered to contain a NULL pointer dereference in the component fx_Function_prototype_hasInstance.... Read more
Affected Products : moddable_sdk- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-46334
Moddable SDK v11.5.0 was discovered to contain a stack buffer overflow via the component __interceptor_strcat.... Read more
Affected Products : moddable_sdk- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-46333
Moddable SDK v11.5.0 was discovered to contain an invalid memory access vulnerability via the component __asan_memmove.... Read more
Affected Products : moddable_sdk- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-46332
Moddable SDK v11.5.0 was discovered to contain a heap-buffer-overflow via xs/sources/xsDataView.c in fxUint8Getter.... Read more
Affected Products : moddable_sdk- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-46331
Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via xs/sources/xsProxy.c in fxProxyGetPrototype.... Read more
Affected Products : moddable_sdk- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-46330
Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via xs/sources/xsDataView.c in fx_ArrayBuffer_prototype_concat.... Read more
Affected Products : moddable_sdk- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-46329
Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via the component _fini.... Read more
Affected Products : moddable_sdk- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-46328
Moddable SDK v11.5.0 was discovered to contain a heap-buffer-overflow via the component __libc_start_main.... Read more
Affected Products : moddable_sdk- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-46327
Moddable SDK v11.5.0 was discovered to contain a SEGV vulnerability via xs/sources/xsArray.c in fx_Array_prototype_sort.... Read more
Affected Products : moddable_sdk- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-46326
Moddable SDK v11.5.0 was discovered to contain a heap-buffer-overflow via the component __asan_memcpy.... Read more
Affected Products : moddable_sdk- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-46325
Espruino 2v10.246 was discovered to contain a stack buffer overflow via src/jsutils.c in vcbprintf.... Read more
Affected Products : espruino- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-46324
Espruino 2v11.251 was discovered to contain a stack buffer overflow via src/jsvar.c in jsvNewFromString.... Read more
Affected Products : espruino- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-46323
Espruino 2v11.251 was discovered to contain a SEGV vulnerability via src/jsinteractive.c in jsiGetDeviceFromClass.... Read more
Affected Products : espruino- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-46322
Duktape v2.99.99 was discovered to contain a SEGV vulnerability via the component duk_push_tval in duktape/duk_api_stack.c.... Read more
Affected Products : duktape- Published: Jan. 20, 2022
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-46321
Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wifiBasicCfg module. This vulnerability allows attackers to cause a Denial of Service (DoS) via crafted overflow data.... Read more
- Published: Feb. 15, 2022
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-46320
In OpenZeppelin <=v4.4.0, initializer functions that are invoked separate from contract creation (the most prominent example being minimal proxies) may be reentered if they make an untrusted non-view external call. Once an initializer has finished running... Read more
Affected Products : openzeppelin- Published: Feb. 04, 2022
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2021-46319
Remote Code Execution (RCE) vulnerability exists in D-Link Router DIR-846 DIR846A1_FW100A43.bin and DIR846enFW100A53DLA-Retail.bin. Malicious users can use this vulnerability to use "\ " or backticks to bypass the shell metacharacters in the ssid0 or ssid... Read more
- Published: Feb. 17, 2022
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2021-46315
Remote Command Execution (RCE) vulnerability exists in HNAP1/control/SetWizardConfig.php in D-Link Router DIR-846 DIR846A1_FW100A43.bin and DIR846enFW100A53DLA-Retail.bin. Malicoius users can use this vulnerability to use "\ " or backticks in the shell me... Read more
- Published: Feb. 17, 2022
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-46314
A Remote Command Execution (RCE) vulnerability exists in HNAP1/control/SetNetworkTomographySettings.php of D-Link Router DIR-846 DIR846A1_FW100A43.bin and DIR846enFW100A53DLA-Retail.bin because backticks can be used for command injection when judging whet... Read more
- Published: Feb. 17, 2022
- Modified: Nov. 21, 2024