Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 9.8

    CRITICAL
    CVE-2021-25779

    Baby Care System v1.0 is vulnerable to SQL injection via the 'id' parameter on the contentsectionpage.php page.... Read more

    Affected Products : baby_care_system
    • EPSS Score: %0.26
    • Published: Feb. 17, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25778

    In JetBrains TeamCity before 2020.2.1, permissions during user deletion were checked improperly.... Read more

    Affected Products : teamcity
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25777

    In JetBrains TeamCity before 2020.2.1, permissions during token removal were checked improperly.... Read more

    Affected Products : teamcity
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-25776

    In JetBrains TeamCity before 2020.2, an ECR token could be exposed in a build's parameters.... Read more

    Affected Products : teamcity
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.5

    MEDIUM
    CVE-2021-25775

    In JetBrains TeamCity before 2020.2.1, the server admin could create and see access tokens for any other users.... Read more

    Affected Products : teamcity
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 4.3

    MEDIUM
    CVE-2021-25774

    In JetBrains TeamCity before 2020.2.1, a user could get access to the GitHub access token of another user.... Read more

    Affected Products : teamcity
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2021-25773

    JetBrains TeamCity before 2020.2 was vulnerable to reflected XSS on several pages.... Read more

    Affected Products : teamcity
    • EPSS Score: %0.01
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25772

    In JetBrains TeamCity before 2020.2.2, TeamCity server DoS was possible via server integration.... Read more

    Affected Products : teamcity
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.0

    MEDIUM
    CVE-2021-25771

    In JetBrains YouTrack before 2020.6.1099, project information could be potentially disclosed.... Read more

    Affected Products : youtrack
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2021-25770

    In JetBrains YouTrack before 2020.5.3123, server-side template injection (SSTI) was possible, which could lead to code execution.... Read more

    Affected Products : youtrack
    • EPSS Score: %0.02
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2021-25769

    In JetBrains YouTrack before 2020.4.6808, the YouTrack administrator wasn't able to access attachments.... Read more

    Affected Products : youtrack
    • EPSS Score: %0.01
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25768

    In JetBrains YouTrack before 2020.4.4701, permissions for attachments actions were checked improperly.... Read more

    Affected Products : youtrack
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25767

    In JetBrains YouTrack before 2020.6.1767, an issue's existence could be disclosed via YouTrack command execution.... Read more

    Affected Products : youtrack
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25766

    In JetBrains YouTrack before 2020.4.4701, improper resource access checks were made.... Read more

    Affected Products : youtrack
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2021-25765

    In JetBrains YouTrack before 2020.4.4701, CSRF via attachment upload was possible.... Read more

    Affected Products : youtrack
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25764

    In JetBrains PhpStorm before 2020.3, source code could be added to debug logs.... Read more

    Affected Products : phpstorm
    • EPSS Score: %0.00
    • Published: Mar. 18, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25763

    In JetBrains Ktor before 1.4.2, weak cipher suites were enabled by default.... Read more

    Affected Products : ktor
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25762

    In JetBrains Ktor before 1.4.3, HTTP Request Smuggling was possible.... Read more

    Affected Products : ktor
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25761

    In JetBrains Ktor before 1.5.0, a birthday attack on SessionStorage key was possible.... Read more

    Affected Products : ktor
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2021-25760

    In JetBrains Hub before 2020.1.12669, information disclosure via the public API was possible.... Read more

    Affected Products : hub
    • EPSS Score: %0.00
    • Published: Feb. 03, 2021
    • Modified: Nov. 21, 2024
Showing 20 of 291513 Results