Latest CVE Feed
-
9.8
CRITICALCVE-2021-25779
Baby Care System v1.0 is vulnerable to SQL injection via the 'id' parameter on the contentsectionpage.php page.... Read more
Affected Products : baby_care_system- EPSS Score: %0.26
- Published: Feb. 17, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25778
In JetBrains TeamCity before 2020.2.1, permissions during user deletion were checked improperly.... Read more
Affected Products : teamcity- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25777
In JetBrains TeamCity before 2020.2.1, permissions during token removal were checked improperly.... Read more
Affected Products : teamcity- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-25776
In JetBrains TeamCity before 2020.2, an ECR token could be exposed in a build's parameters.... Read more
Affected Products : teamcity- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-25775
In JetBrains TeamCity before 2020.2.1, the server admin could create and see access tokens for any other users.... Read more
Affected Products : teamcity- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2021-25774
In JetBrains TeamCity before 2020.2.1, a user could get access to the GitHub access token of another user.... Read more
Affected Products : teamcity- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2021-25773
JetBrains TeamCity before 2020.2 was vulnerable to reflected XSS on several pages.... Read more
Affected Products : teamcity- EPSS Score: %0.01
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25772
In JetBrains TeamCity before 2020.2.2, TeamCity server DoS was possible via server integration.... Read more
Affected Products : teamcity- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.0
MEDIUMCVE-2021-25771
In JetBrains YouTrack before 2020.6.1099, project information could be potentially disclosed.... Read more
Affected Products : youtrack- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-25770
In JetBrains YouTrack before 2020.5.3123, server-side template injection (SSTI) was possible, which could lead to code execution.... Read more
Affected Products : youtrack- EPSS Score: %0.02
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-25769
In JetBrains YouTrack before 2020.4.6808, the YouTrack administrator wasn't able to access attachments.... Read more
Affected Products : youtrack- EPSS Score: %0.01
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25768
In JetBrains YouTrack before 2020.4.4701, permissions for attachments actions were checked improperly.... Read more
Affected Products : youtrack- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25767
In JetBrains YouTrack before 2020.6.1767, an issue's existence could be disclosed via YouTrack command execution.... Read more
Affected Products : youtrack- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25766
In JetBrains YouTrack before 2020.4.4701, improper resource access checks were made.... Read more
Affected Products : youtrack- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-25765
In JetBrains YouTrack before 2020.4.4701, CSRF via attachment upload was possible.... Read more
Affected Products : youtrack- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25764
In JetBrains PhpStorm before 2020.3, source code could be added to debug logs.... Read more
Affected Products : phpstorm- EPSS Score: %0.00
- Published: Mar. 18, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25763
In JetBrains Ktor before 1.4.2, weak cipher suites were enabled by default.... Read more
Affected Products : ktor- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25762
In JetBrains Ktor before 1.4.3, HTTP Request Smuggling was possible.... Read more
Affected Products : ktor- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25761
In JetBrains Ktor before 1.5.0, a birthday attack on SessionStorage key was possible.... Read more
Affected Products : ktor- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-25760
In JetBrains Hub before 2020.1.12669, information disclosure via the public API was possible.... Read more
Affected Products : hub- EPSS Score: %0.00
- Published: Feb. 03, 2021
- Modified: Nov. 21, 2024