Home/Product/netapp oncommand insight
Product

netapp oncommand insight

500 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-24970
all versions
Netty, an asynchronous, event-driven network application framework, has a vulnerability starting in version 4.1.91.Final and prior
7.5HIGH
CVE-2025-21502
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
4.8MEDIUM
CVE-2025-21492
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2024-38808
all versions
In Spring Framework versions 5.3.0 - 5.3.38 and older unsupported versions, it is possible for a user to provide a specially craft
4.3MEDIUM
CVE-2024-21147
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
7.4HIGH
CVE-2024-21145
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
4.8MEDIUM
CVE-2024-21140
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
4.8MEDIUM
CVE-2024-21138
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7LOW
CVE-2024-21131
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7LOW
CVE-2024-25047
all versions
IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.2 is vulnerable to injection attacks in application logging by
8.6HIGH
CVE-2024-21102
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supported versions that are affect
4.9MEDIUM
CVE-2024-21101
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected ar
2.2LOW
CVE-2024-21096
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected ar
4.9MEDIUM
CVE-2024-21094
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7LOW
CVE-2024-21087
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that
4.9MEDIUM
CVE-2024-21085
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Concurrency). Suppor
3.7LOW
CVE-2024-21069
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2024-21068
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7LOW
CVE-2024-21062
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2024-21061
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Audit Plug-in). Supported versions that are affecte
4.9MEDIUM
CVE-2024-21060
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Data Dictionary). Supported versions that are affec
4.9MEDIUM
CVE-2024-21056
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2024-21055
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2024-21054
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2024-21053
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2024-21052
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2024-21051
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2024-21050
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2024-21049
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2024-21047
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.36 an
4.9MEDIUM
CVE-2024-21015
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
5.5MEDIUM
CVE-2024-21013
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.4MEDIUM
CVE-2024-21012
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7LOW
CVE-2024-21011
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7LOW
CVE-2024-21009
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2024-21008
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.4MEDIUM
CVE-2024-21005
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported v
3.1LOW
CVE-2024-21004
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported v
2.5LOW
CVE-2024-21003
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported v
3.1LOW
CVE-2024-21002
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported v
2.5LOW
CVE-2024-21000
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are
3.8LOW
CVE-2024-20998
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2024-20994
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are af
5.3MEDIUM
CVE-2024-20993
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-43051
all versions
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed ar
5.4MEDIUM
CVE-2023-38359
all versions
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed ar
6.1MEDIUM
CVE-2023-32344
all versions
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to form action hijacking where it is possible to modify the form act
4.3MEDIUM
CVE-2023-30996
all versions
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 could be vulnerable to information leakage due to unverified sources in messages s
5.3MEDIUM
CVE-2022-34357
all versions
IBM Cognos Analytics Mobile Server 11.1.7, 11.2.4, and 12.0.0 is vulnerable to Denial of Service due to due to weak or absence of
6.5MEDIUM
CVE-2024-20985
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versions that are affected are 8.0.
6.5MEDIUM
CVE-2024-20983
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2024-20981
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2024-20977
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5MEDIUM
CVE-2024-20975
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5MEDIUM
CVE-2024-20973
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5MEDIUM
CVE-2024-20971
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2024-20969
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
5.5MEDIUM
CVE-2024-20967
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected
5.5MEDIUM
CVE-2024-20965
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2024-20963
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are
6.5MEDIUM
CVE-2024-20961
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5MEDIUM
CVE-2024-20952
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
7.4HIGH
CVE-2024-20932
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
7.5HIGH
CVE-2024-20926
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
5.9MEDIUM
CVE-2024-20922
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported v
2.5LOW
CVE-2024-20918
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
7.4HIGH
CVE-2023-38545
all versions
This flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake. When curl is asked to pass along the host name t
9.8CRITICAL
CVE-2023-22115
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2023-22114
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.34 an
4.9MEDIUM
CVE-2023-22113
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are
2.7LOW
CVE-2023-22112
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22111
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2023-22110
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22104
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.32 an
4.9MEDIUM
CVE-2023-22103
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22102
all versions
Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are
8.3HIGH
CVE-2023-22097
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.34 an
4.9MEDIUM
CVE-2023-22095
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). The supported version that is affected
6.5MEDIUM
CVE-2023-22092
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22084
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.43 an
4.9MEDIUM
CVE-2023-22079
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5MEDIUM
CVE-2023-22078
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22070
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22068
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.34 an
4.9MEDIUM
CVE-2023-22066
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.34 an
4.9MEDIUM
CVE-2023-22065
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22064
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22059
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5MEDIUM
CVE-2023-22032
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22028
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22026
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22015
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-44487
all versions
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams q
7.5HIGH
CVE-2023-41993
all versions
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary
8.8HIGH
CVE-2023-22058
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
4.4MEDIUM
CVE-2023-22057
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected
4.9MEDIUM
CVE-2023-22056
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22054
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22053
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are
5.9MEDIUM
CVE-2023-22049
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (componen
3.7LOW
CVE-2023-22048
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that are affect
3.1LOW
CVE-2023-22046
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-22045
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (componen
3.7LOW
CVE-2023-22041
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (componen
5.1MEDIUM
CVE-2023-22038
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are
2.7LOW
CVE-2023-22036
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (componen
3.7LOW
CVE-2023-22033
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.33 an
4.4MEDIUM
CVE-2023-22008
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.33 an
4.9MEDIUM
CVE-2023-22006
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (componen
3.1LOW
CVE-2023-22005
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected
4.4MEDIUM
CVE-2023-21971
all versions
Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are
5.3MEDIUM
CVE-2023-21968
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supporte
3.7LOW
CVE-2023-21967
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported ver
5.9MEDIUM
CVE-2023-21962
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are a
4.9MEDIUM
CVE-2023-21955
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Partition). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-21954
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported
5.9MEDIUM
CVE-2023-21953
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Partition). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-21947
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are a
4.4MEDIUM
CVE-2023-21946
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5MEDIUM
CVE-2023-21945
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-21940
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are a
4.4MEDIUM
CVE-2023-21939
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported ve
5.3MEDIUM
CVE-2023-21938
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supporte
3.7LOW
CVE-2023-21937
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Support
3.7LOW
CVE-2023-21935
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-21933
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2023-21930
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported ver
7.4HIGH
CVE-2023-21929
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
5.5MEDIUM
CVE-2023-21920
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9MEDIUM
CVE-2023-21919
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
4.9MEDIUM
CVE-2023-21911
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.32 an
4.9MEDIUM
CVE-2022-43551
all versions
A vulnerability exists in curl <7.87.0 HSTS check that could be bypassed to trick it to keep using HTTP. Using its HSTS support, c
7.5HIGH
CVE-2022-38733
>= 7.3.1 and <= 7.3.14
OnCommand Insight versions 7.3.1 through 7.3.14 are susceptible to an authentication bypass vulnerability in the Data Warehouse co
8.6HIGH
CVE-2022-39410
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5MEDIUM
CVE-2022-39408
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5MEDIUM
CVE-2022-39400
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-39399
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supporte
3.7LOW
CVE-2022-21641
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21640
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21638
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21637
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.30 and
4.9MEDIUM
CVE-2022-21635
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.29 and
6.5MEDIUM
CVE-2022-21633
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
4.9MEDIUM
CVE-2022-21632
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are a
4.9MEDIUM
CVE-2022-21628
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Lightweight HTTP Serv
5.3MEDIUM
CVE-2022-21626
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported
5.3MEDIUM
CVE-2022-21625
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.4MEDIUM
CVE-2022-21624
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported vers
3.7LOW
CVE-2022-21619
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported
3.7LOW
CVE-2022-21618
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JGSS). Supported vers
5.3MEDIUM
CVE-2022-21617
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Connection Handling). Supported versions that are af
4.9MEDIUM
CVE-2022-21611
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.30 and
4.1MEDIUM
CVE-2022-21608
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21607
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21605
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Data Dictionary). Supported versions that are affect
4.9MEDIUM
CVE-2022-21604
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.30 and
4.9MEDIUM
CVE-2022-21600
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
7.2HIGH
CVE-2022-21599
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9MEDIUM
CVE-2022-21595
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: C API). Supported versions that are affected are 5.7.36 and
4.4MEDIUM
CVE-2022-21594
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21592
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are a
4.3MEDIUM
CVE-2022-21589
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are a
4.3MEDIUM
CVE-2022-2764
all versions
A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invoca
4.9MEDIUM
CVE-2022-36773
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML
8.1HIGH
CVE-2022-30614
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to a denial of service via email flooding caused by sending a specia
7.5HIGH
CVE-2021-39045
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a local attacker to obtain information due to the autocomplete feature
5.5MEDIUM
CVE-2021-39009
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by a local privilege
5.5MEDIUM
CVE-2021-29823
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execu
6.5MEDIUM
CVE-2021-20468
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execu
6.5MEDIUM
CVE-2020-4301
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execu
6.5MEDIUM
CVE-2022-1319
all versions
A flaw was found in Undertow. For an AJP 400 response, EAP 7 is improperly sending two response packets, and those packets have th
7.5HIGH
CVE-2022-1259
all versions
A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or
7.5HIGH
CVE-2021-3859
all versions
A flaw was found in Undertow that tripped the client-side invocation timeout with certain calls made over HTTP2. This flaw allows
7.5HIGH
CVE-2022-31160
all versions
jQuery UI is a curated set of user interface interactions, effects, widgets, and themes built on top of jQuery. Versions prior to
6.1MEDIUM
CVE-2022-21569
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5MEDIUM
CVE-2022-21556
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5MEDIUM
CVE-2022-21553
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21550
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21549
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3MEDIUM
CVE-2022-21547
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Federated). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21541
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported v
5.9MEDIUM
CVE-2022-21540
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported v
5.3MEDIUM
CVE-2022-21539
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.29 and
5.0MEDIUM
CVE-2022-21538
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are a
3.1LOW
CVE-2022-21537
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.29 and
4.9MEDIUM
CVE-2022-21534
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9MEDIUM
CVE-2022-21531
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21530
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21529
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21528
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5MEDIUM
CVE-2022-21527
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5MEDIUM
CVE-2022-21526
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21525
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21522
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.4MEDIUM
CVE-2022-21519
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
5.9MEDIUM
CVE-2022-21517
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.29 and
4.9MEDIUM
CVE-2022-21515
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 5
4.9MEDIUM
CVE-2022-21509
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5MEDIUM
CVE-2022-21455
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PAM Auth Plugin). Supported versions that are affect
4.9MEDIUM
CVE-2022-34169
all versions
The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This c
7.5HIGH
CVE-2021-39047
all versions
IBM Planning Analytics 2.0 and IBM Cognos Analytics 11.2.1, 11.2.0, and 11.1.7 are vulnerable to cross-site scripting. This vulner
6.1MEDIUM
CVE-2021-38945
all versions
IBM Cognos Analytics 11.2.1, 11.2.0, and 11.1.7 could allow a remote attacker to upload arbitrary files, caused by improper conten
9.8CRITICAL
CVE-2021-29768
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a low level user to obtain sensitive information from the details of t
6.5MEDIUM
CVE-2022-27778
all versions
A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when --no-clobber is used together
8.1HIGH
CVE-2021-3629
all versions
A flaw was found in Undertow. A potential security issue in flow control handling by the browser over http/2 may potentially cause
5.9MEDIUM
CVE-2021-3597
all versions
A flaw was found in undertow. The HTTP2SourceChannel fails to write the final frame under some circumstances, resulting in a denia
5.9MEDIUM
CVE-2022-22971
all versions
In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, application with a STOMP over WebSocket endp
6.5MEDIUM
CVE-2022-22970
all versions
In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, applications that handle file uploads are vu
5.3MEDIUM
CVE-2022-1292
all versions
The c_rehash script does not properly sanitise shell metacharacters to prevent command injection. This script is distributed by so
7.3HIGH
CVE-2021-38946
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed ar
5.4MEDIUM
CVE-2021-38905
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow an authenticated user to view report pages that they should not have a
4.3MEDIUM
CVE-2021-38904
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow a remote attacker to obtain credentials from a user's browser via inco
6.5MEDIUM
CVE-2021-38903
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to cross-site scripting, caused by improper validation of user-suppl
5.4MEDIUM
CVE-2021-38886
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to cross-site request forgery which could allow an attacker to execu
8.8HIGH
CVE-2021-29824
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to priviledge escalation where a lower level user could have read ac
4.3MEDIUM
CVE-2021-20464
all versions
IBM Cognos Analytics PowerPlay (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7) could be vulnerable to an XML Bomb attack by a ma
6.5MEDIUM
CVE-2022-21496
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported vers
5.3MEDIUM
CVE-2022-21490
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21489
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21486
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21485
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21484
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21483
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21482
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21479
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5MEDIUM
CVE-2022-21478
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5MEDIUM
CVE-2022-21476
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
7.5HIGH
CVE-2022-21462
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21460
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Logging). Supported versions that are affected are 5
4.4MEDIUM
CVE-2022-21459
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5MEDIUM
CVE-2022-21457
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PAM Auth Plugin). Supported versions that are affect
5.9MEDIUM
CVE-2022-21454
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that a
6.5MEDIUM
CVE-2022-21452
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21451
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.37 and
4.4MEDIUM
CVE-2022-21449
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
7.5HIGH
CVE-2022-21444
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 5.7.3
4.4MEDIUM
CVE-2022-21443
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
3.7LOW
CVE-2022-21440
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5MEDIUM
CVE-2022-21438
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21437
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21436
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21435
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21434
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3MEDIUM
CVE-2022-21427
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: FTS). Supported versions that are affected are 5.7.3
4.9MEDIUM
CVE-2022-21426
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported vers
5.3MEDIUM
CVE-2022-21425
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
5.5MEDIUM
CVE-2022-21423
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.28 and
2.7LOW
CVE-2022-21418
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.28 and
5.0MEDIUM
CVE-2022-21417
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.37 and
4.9MEDIUM
CVE-2022-21415
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
4.9MEDIUM
CVE-2022-21414
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21413
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2022-21412
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2020-36518
all versions
jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
7.5HIGH
CVE-2022-21824
all versions
Due to the formatting logic of the "console.table()" function it was not safe to allow user controlled input to be passed to the "
8.2HIGH
CVE-2021-22570
all versions
Nullptr dereference when a null char is present in a proto symbol. The symbol is parsed incorrectly, leading to an unchecked call
6.5MEDIUM
CVE-2022-21380
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21379
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that a
4.9MEDIUM
CVE-2022-21378
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5MEDIUM
CVE-2022-21374
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are aff
4.9MEDIUM
CVE-2022-21372
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are a
2.7LOW
CVE-2022-21370
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21368
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are af
4.7MEDIUM
CVE-2022-21367
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Compiling). Supported versions that are affected are
5.5MEDIUM
CVE-2022-21366
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported v
5.3MEDIUM
CVE-2022-21365
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported v
5.3MEDIUM
CVE-2022-21362
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are aff
4.9MEDIUM
CVE-2022-21360
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported v
5.3MEDIUM
CVE-2022-21358
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are a
6.5MEDIUM
CVE-2022-21357
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21356
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21355
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21352
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.26 and
5.9MEDIUM
CVE-2022-21351
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
7.1HIGH
CVE-2022-21349
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D). Supported versio
5.3MEDIUM
CVE-2022-21348
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.27 and
4.9MEDIUM
CVE-2022-21344
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
4.9MEDIUM
CVE-2022-21342
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21341
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization). Suppo
5.3MEDIUM
CVE-2022-21340
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3MEDIUM
CVE-2022-21339
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21337
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21336
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21335
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21334
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21333
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21332
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21331
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21330
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21329
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21328
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21327
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21326
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21325
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21324
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21323
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21322
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21321
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21320
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21319
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21318
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21317
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21316
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21315
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21314
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21313
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21312
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21311
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9LOW
CVE-2022-21310
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21309
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21308
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21307
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21305
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported v
5.3MEDIUM
CVE-2022-21304
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported versions that are affected are 5.
4.9MEDIUM
CVE-2022-21303
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9MEDIUM
CVE-2022-21302
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.27 and
5.3MEDIUM
CVE-2022-21301
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
5.5MEDIUM
CVE-2022-21299
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported vers
5.3MEDIUM
CVE-2022-21297
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21296
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported vers
5.3MEDIUM
CVE-2022-21294
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3MEDIUM
CVE-2022-21293
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3MEDIUM
CVE-2022-21291
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported v
5.3MEDIUM
CVE-2022-21290
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21289
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21288
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21287
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21286
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21285
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21284
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21283
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3MEDIUM
CVE-2022-21282
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported vers
5.3MEDIUM
CVE-2022-21280
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21279
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2022-21278
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
7.1HIGH
CVE-2022-21277
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported v
5.3MEDIUM
CVE-2022-21271
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3MEDIUM
CVE-2022-21270
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Federated). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21265
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
3.8LOW
CVE-2022-21264
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21256
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that a
4.9MEDIUM
CVE-2022-21254
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.3MEDIUM
CVE-2022-21253
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2022-21249
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
2.7LOW
CVE-2022-21248
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization). Suppo
3.7LOW
CVE-2022-21245
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are a
4.3MEDIUM
CVE-2021-44228
all versions
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration
10.0CRITICAL
CVE-2021-39002
all versions
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 uses weaker than expected crypto
7.5HIGH
CVE-2021-38931
all versions
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1, and 11.5 is vulnerable to an information disclosure as a r
6.5MEDIUM
CVE-2021-38926
all versions
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local user to gain
5.5MEDIUM
CVE-2021-29678
all versions
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a user with DBADM au
8.7HIGH
CVE-2021-38909
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J
5.4MEDIUM
CVE-2021-29867
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 could allow an authenticated to view or edit a Jupyter notebook that they should not have a
5.4MEDIUM
CVE-2021-29756
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to cross-site request forgery (CSRF) in the My Inbox page which could allow a
8.8HIGH
CVE-2021-29719
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 could be vulnerable to client side vulnerabilties due to a web response specifying an incor
5.3MEDIUM
CVE-2021-29716
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 could allow a low level user to reas of the application that privileged user should only be
6.5MEDIUM
CVE-2021-20493
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J
6.1MEDIUM
CVE-2021-20470
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 does not require that users should have strong passwords by default, which makes it easier
7.5HIGH
CVE-2021-35648
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: FTS). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-35647
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35646
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35645
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35644
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35643
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35642
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35641
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35640
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
2.7LOW
CVE-2021-35639
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9MEDIUM
CVE-2021-35638
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35637
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected are 8.0.26
4.9MEDIUM
CVE-2021-35636
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35635
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35634
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35633
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Logging). Supported versions that are affected are 8
2.7LOW
CVE-2021-35632
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Data Dictionary). Supported versions that are affect
4.4MEDIUM
CVE-2021-35631
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: GIS). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-35630
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 8
4.9MEDIUM
CVE-2021-35629
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35628
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35627
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35626
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35625
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are a
2.7LOW
CVE-2021-35624
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are a
4.9MEDIUM
CVE-2021-35623
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Roles). Supported versions that are affect
2.7LOW
CVE-2021-35622
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are a
4.9MEDIUM
CVE-2021-35621
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2021-35618
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
1.8LOW
CVE-2021-35613
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
3.7LOW
CVE-2021-35612
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5MEDIUM
CVE-2021-35610
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
7.1HIGH
CVE-2021-35608
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that a
5.3MEDIUM
CVE-2021-35607
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
6.5MEDIUM
CVE-2021-35604
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.35 and
5.5MEDIUM
CVE-2021-35603
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions th
3.7LOW
CVE-2021-35602
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 8
5.0MEDIUM
CVE-2021-35598
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2021-35597
all versions
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 8.0.26 and
6.5MEDIUM
CVE-2021-35596
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Error Handling). Supported versions that are affecte
4.9MEDIUM
CVE-2021-35594
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2021-35593
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2021-35592
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2021-35591
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-35590
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3MEDIUM
CVE-2021-35588
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions
3.1LOW
CVE-2021-35586
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions
5.3MEDIUM
CVE-2021-35584
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: ndbcluster/plugin DDL). Supported versions that ar
4.3MEDIUM
CVE-2021-35583
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Windows). Supported versions that are affected are 8
7.5HIGH
CVE-2021-35578
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions th
5.3MEDIUM
CVE-2021-35577
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35575
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-35567
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versio
6.8MEDIUM
CVE-2021-35565
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions th
5.3MEDIUM
CVE-2021-35564
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Keytool). Supported versions
5.3MEDIUM
CVE-2021-35561
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Utility). Supported versions
5.3MEDIUM
CVE-2021-35560
all versions
Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE:
7.5HIGH
CVE-2021-35559
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported versions t
5.3MEDIUM
CVE-2021-35556
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported versions t
5.3MEDIUM
CVE-2021-35550
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions th
5.9MEDIUM
CVE-2021-35546
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
4.9MEDIUM
CVE-2021-35537
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-2481
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5MEDIUM
CVE-2021-2479
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-2478
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-37137
all versions
The Snappy frame decoder function doesn't restrict the chunk length which may lead to excessive memory usage. Beside this it also
7.5HIGH
CVE-2021-37136
all versions
The Bzip2 decompression decoder function doesn't allow setting size restrictions on the decompressed output data (which affects th
7.5HIGH
CVE-2021-29745
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to priviledge escalation where a lower evel user could have access to the 'Ne
8.8HIGH
CVE-2021-29679
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 could allow an authenticated user to execute code remotely due to incorrectly neutralizaing
8.8HIGH
CVE-2020-4951
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 contains locally cached browser data, that could allow a local attacker to obtain sensitive
3.3LOW
CVE-2021-22946
all versions
A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (
7.5HIGH
CVE-2021-3711
all versions
In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt(). Typically an applic
9.8CRITICAL
CVE-2021-22931
all versions
Node.js before 16.6.0, 14.17.4, and 12.22.4 is vulnerable to Remote Code Execution, XSS, Application crashes due to missing input
9.8CRITICAL
CVE-2021-22926
all versions
libcurl-using applications can ask for a specific client certificate to be used in a transfer. This is done with the `CURLOPT_SSLC
7.5HIGH
CVE-2021-36222
all versions
ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x befor
7.5HIGH
CVE-2021-2444
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2441
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2440
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-2437
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2429
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.25 and
5.9MEDIUM
CVE-2021-2427
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2426
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2425
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2424
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9MEDIUM
CVE-2021-2422
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected are 8.0.25
4.9MEDIUM
CVE-2021-2418
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2417
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: GIS). Supported versions that are affected are 8.0.2
6.0MEDIUM
CVE-2021-2412
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2411
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: JS module). Supported versions that are affected a
3.7LOW
CVE-2021-2410
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2402
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Locking). Supported versions that are affected are 8
4.9MEDIUM
CVE-2021-2399
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-2390
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.34 and
5.9MEDIUM
CVE-2021-2389
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.34 and
5.9MEDIUM
CVE-2021-2387
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2385
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
5.0MEDIUM
CVE-2021-2384
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2383
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2374
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.25 and
4.1MEDIUM
CVE-2021-2372
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.34 and
4.4MEDIUM
CVE-2021-2370
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-2367
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2357
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2356
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
5.9MEDIUM
CVE-2021-2354
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Federated). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2352
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-2342
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2340
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Memcached). Supported versions that are affected are
2.7LOW
CVE-2021-2339
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-36090
all versions
When reading a specially crafted ZIP archive, Compress can be made to allocate large amounts of memory that finally leads to an ou
7.5HIGH
CVE-2021-35517
all versions
When reading a specially crafted TAR archive, Compress can be made to allocate large amounts of memory that finally leads to an ou
7.5HIGH
CVE-2021-35516
all versions
When reading a specially crafted 7Z archive, Compress can be made to allocate large amounts of memory that finally leads to an out
7.5HIGH
CVE-2021-35515
all versions
When reading a specially crafted 7Z archive, the construction of the list of codecs that decompress an entry can result in an infi
7.5HIGH
CVE-2021-20461
all versions
IBM Cognos Analytics 10.0 and 11.1 is susceptible to a weakness in the implementation of the System Appearance configuration setti
6.5MEDIUM
CVE-2021-22901
all versions
curl 7.75.0 through 7.76.1 suffers from a use-after-free vulnerability resulting in already freed memory being used when a TLS 1.3
8.1HIGH
CVE-2021-20293
all versions
A reflected Cross-Site Scripting (XSS) flaw was found in RESTEasy in all versions of RESTEasy up to 4.6.0.Final, where it did not
6.1MEDIUM
CVE-2021-3522
all versions
GStreamer before 1.18.4 may perform an out-of-bounds read when handling certain ID3v2 tags.
5.5MEDIUM
CVE-2020-14326
all versions
A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to s
7.5HIGH
CVE-2020-10771
all versions
A flaw was found in Infinispan version 10, where it is possible to perform various actions that could have side effects using GET
7.1HIGH
CVE-2020-4561
all versions
IBM Cognos Analytics 11.0 and 11.1 DQM API allows submitting of all control requests in unauthenticated sessions. This allows a re
10.0CRITICAL
CVE-2020-4520
all versions
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to inject malicious HTML code that when viewed by the authenticat
8.8HIGH
CVE-2020-4354
all versions
IBM Cognos Analytics 11.0 and 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaS
5.4MEDIUM
CVE-2020-4300
all versions
IBM Cognos Analytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remo
8.2HIGH
CVE-2019-4730
all versions
IBM Cognos Analytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remo
7.1HIGH
CVE-2019-4724
all versions
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain credentials from a user's browser via incorrect autocom
7.5HIGH
CVE-2019-4723
all versions
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain credentials from a user's browser via incorrect autocom
7.5HIGH
CVE-2019-4722
all versions
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain sensitive information via a stack trace due to mishandl
4.3MEDIUM
CVE-2019-4653
all versions
IBM Cognos Analytics 11.0 and 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaS
5.4MEDIUM
CVE-2019-4471
all versions
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain sensitive information, caused by the failure to set the
6.5MEDIUM
CVE-2021-3517
all versions
There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a
8.6HIGH
CVE-2021-29489
all versions
Highcharts JS is a JavaScript charting library based on SVG. In Highcharts versions 8 and earlier, the chart options structure was
7.6HIGH
CVE-2021-2308
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are aff
2.7LOW
CVE-2021-2307
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Packaging). Supported versions that are affected are
6.1MEDIUM
CVE-2021-2305
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-2304
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
5.5MEDIUM
CVE-2021-2301
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are aff
2.7LOW
CVE-2021-2300
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9MEDIUM
CVE-2021-2299
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2298
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5MEDIUM
CVE-2021-2293
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9MEDIUM
CVE-2021-2278
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9MEDIUM
CVE-2021-2232
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that a
1.9LOW
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin