threat
engine
.sh
Back
·
··:··
Home
/
Product
/
netapp oncommand insight
Product
netapp oncommand insight
500 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2025-24970
all versions
Netty, an asynchronous, event-driven network application framework, has a vulnerability starting in version 4.1.91.Final and prior
7.5
HIGH
CVE-2025-21502
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
4.8
MEDIUM
CVE-2025-21492
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2024-38808
all versions
In Spring Framework versions 5.3.0 - 5.3.38 and older unsupported versions, it is possible for a user to provide a specially craft
4.3
MEDIUM
CVE-2024-21147
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
7.4
HIGH
CVE-2024-21145
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
4.8
MEDIUM
CVE-2024-21140
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
4.8
MEDIUM
CVE-2024-21138
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7
LOW
CVE-2024-21131
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7
LOW
CVE-2024-25047
all versions
IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.2 is vulnerable to injection attacks in application logging by
8.6
HIGH
CVE-2024-21102
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Thread Pooling). Supported versions that are affect
4.9
MEDIUM
CVE-2024-21101
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected ar
2.2
LOW
CVE-2024-21096
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected ar
4.9
MEDIUM
CVE-2024-21094
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7
LOW
CVE-2024-21087
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that
4.9
MEDIUM
CVE-2024-21085
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Concurrency). Suppor
3.7
LOW
CVE-2024-21069
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2024-21068
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7
LOW
CVE-2024-21062
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2024-21061
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Audit Plug-in). Supported versions that are affecte
4.9
MEDIUM
CVE-2024-21060
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Data Dictionary). Supported versions that are affec
4.9
MEDIUM
CVE-2024-21056
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2024-21055
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2024-21054
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2024-21053
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2024-21052
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2024-21051
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2024-21050
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2024-21049
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2024-21047
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.36 an
4.9
MEDIUM
CVE-2024-21015
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
5.5
MEDIUM
CVE-2024-21013
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.4
MEDIUM
CVE-2024-21012
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7
LOW
CVE-2024-21011
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
3.7
LOW
CVE-2024-21009
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2024-21008
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.4
MEDIUM
CVE-2024-21005
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported v
3.1
LOW
CVE-2024-21004
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported v
2.5
LOW
CVE-2024-21003
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported v
3.1
LOW
CVE-2024-21002
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported v
2.5
LOW
CVE-2024-21000
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are
3.8
LOW
CVE-2024-20998
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2024-20994
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are af
5.3
MEDIUM
CVE-2024-20993
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-43051
all versions
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed ar
5.4
MEDIUM
CVE-2023-38359
all versions
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed ar
6.1
MEDIUM
CVE-2023-32344
all versions
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to form action hijacking where it is possible to modify the form act
4.3
MEDIUM
CVE-2023-30996
all versions
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 could be vulnerable to information leakage due to unverified sources in messages s
5.3
MEDIUM
CVE-2022-34357
all versions
IBM Cognos Analytics Mobile Server 11.1.7, 11.2.4, and 12.0.0 is vulnerable to Denial of Service due to due to weak or absence of
6.5
MEDIUM
CVE-2024-20985
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versions that are affected are 8.0.
6.5
MEDIUM
CVE-2024-20983
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2024-20981
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2024-20977
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5
MEDIUM
CVE-2024-20975
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5
MEDIUM
CVE-2024-20973
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5
MEDIUM
CVE-2024-20971
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2024-20969
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
5.5
MEDIUM
CVE-2024-20967
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected
5.5
MEDIUM
CVE-2024-20965
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2024-20963
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are
6.5
MEDIUM
CVE-2024-20961
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5
MEDIUM
CVE-2024-20952
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
7.4
HIGH
CVE-2024-20932
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
7.5
HIGH
CVE-2024-20926
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
5.9
MEDIUM
CVE-2024-20922
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JavaFX). Supported v
2.5
LOW
CVE-2024-20918
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (componen
7.4
HIGH
CVE-2023-38545
all versions
This flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake. When curl is asked to pass along the host name t
9.8
CRITICAL
CVE-2023-22115
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2023-22114
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.34 an
4.9
MEDIUM
CVE-2023-22113
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are
2.7
LOW
CVE-2023-22112
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22111
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2023-22110
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22104
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.32 an
4.9
MEDIUM
CVE-2023-22103
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22102
all versions
Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are
8.3
HIGH
CVE-2023-22097
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.34 an
4.9
MEDIUM
CVE-2023-22095
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). The supported version that is affected
6.5
MEDIUM
CVE-2023-22092
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22084
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.43 an
4.9
MEDIUM
CVE-2023-22079
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5
MEDIUM
CVE-2023-22078
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22070
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22068
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.34 an
4.9
MEDIUM
CVE-2023-22066
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.34 an
4.9
MEDIUM
CVE-2023-22065
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22064
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22059
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5
MEDIUM
CVE-2023-22032
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22028
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22026
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22015
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-44487
all versions
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams q
7.5
HIGH
CVE-2023-41993
all versions
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary
8.8
HIGH
CVE-2023-22058
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
4.4
MEDIUM
CVE-2023-22057
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected
4.9
MEDIUM
CVE-2023-22056
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22054
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22053
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are
5.9
MEDIUM
CVE-2023-22049
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (componen
3.7
LOW
CVE-2023-22048
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that are affect
3.1
LOW
CVE-2023-22046
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-22045
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (componen
3.7
LOW
CVE-2023-22041
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (componen
5.1
MEDIUM
CVE-2023-22038
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are
2.7
LOW
CVE-2023-22036
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (componen
3.7
LOW
CVE-2023-22033
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.33 an
4.4
MEDIUM
CVE-2023-22008
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.33 an
4.9
MEDIUM
CVE-2023-22006
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (componen
3.1
LOW
CVE-2023-22005
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected
4.4
MEDIUM
CVE-2023-21971
all versions
Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are
5.3
MEDIUM
CVE-2023-21968
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supporte
3.7
LOW
CVE-2023-21967
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported ver
5.9
MEDIUM
CVE-2023-21962
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are a
4.9
MEDIUM
CVE-2023-21955
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Partition). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-21954
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported
5.9
MEDIUM
CVE-2023-21953
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Partition). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-21947
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are a
4.4
MEDIUM
CVE-2023-21946
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
6.5
MEDIUM
CVE-2023-21945
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-21940
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are a
4.4
MEDIUM
CVE-2023-21939
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported ve
5.3
MEDIUM
CVE-2023-21938
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supporte
3.7
LOW
CVE-2023-21937
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Support
3.7
LOW
CVE-2023-21935
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-21933
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2023-21930
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported ver
7.4
HIGH
CVE-2023-21929
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
5.5
MEDIUM
CVE-2023-21920
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected ar
4.9
MEDIUM
CVE-2023-21919
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.
4.9
MEDIUM
CVE-2023-21911
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.32 an
4.9
MEDIUM
CVE-2022-43551
all versions
A vulnerability exists in curl <7.87.0 HSTS check that could be bypassed to trick it to keep using HTTP. Using its HSTS support, c
7.5
HIGH
CVE-2022-38733
>= 7.3.1 and <= 7.3.14
OnCommand Insight versions 7.3.1 through 7.3.14 are susceptible to an authentication bypass vulnerability in the Data Warehouse co
8.6
HIGH
CVE-2022-39410
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5
MEDIUM
CVE-2022-39408
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5
MEDIUM
CVE-2022-39400
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-39399
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supporte
3.7
LOW
CVE-2022-21641
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21640
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21638
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21637
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.30 and
4.9
MEDIUM
CVE-2022-21635
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.29 and
6.5
MEDIUM
CVE-2022-21633
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
4.9
MEDIUM
CVE-2022-21632
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are a
4.9
MEDIUM
CVE-2022-21628
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Lightweight HTTP Serv
5.3
MEDIUM
CVE-2022-21626
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported
5.3
MEDIUM
CVE-2022-21625
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.4
MEDIUM
CVE-2022-21624
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported vers
3.7
LOW
CVE-2022-21619
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported
3.7
LOW
CVE-2022-21618
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JGSS). Supported vers
5.3
MEDIUM
CVE-2022-21617
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Connection Handling). Supported versions that are af
4.9
MEDIUM
CVE-2022-21611
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.30 and
4.1
MEDIUM
CVE-2022-21608
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21607
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21605
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Data Dictionary). Supported versions that are affect
4.9
MEDIUM
CVE-2022-21604
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.30 and
4.9
MEDIUM
CVE-2022-21600
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
7.2
HIGH
CVE-2022-21599
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9
MEDIUM
CVE-2022-21595
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: C API). Supported versions that are affected are 5.7.36 and
4.4
MEDIUM
CVE-2022-21594
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21592
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are a
4.3
MEDIUM
CVE-2022-21589
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are a
4.3
MEDIUM
CVE-2022-2764
all versions
A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invoca
4.9
MEDIUM
CVE-2022-36773
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML
8.1
HIGH
CVE-2022-30614
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to a denial of service via email flooding caused by sending a specia
7.5
HIGH
CVE-2021-39045
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a local attacker to obtain information due to the autocomplete feature
5.5
MEDIUM
CVE-2021-39009
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by a local privilege
5.5
MEDIUM
CVE-2021-29823
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execu
6.5
MEDIUM
CVE-2021-20468
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execu
6.5
MEDIUM
CVE-2020-4301
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execu
6.5
MEDIUM
CVE-2022-1319
all versions
A flaw was found in Undertow. For an AJP 400 response, EAP 7 is improperly sending two response packets, and those packets have th
7.5
HIGH
CVE-2022-1259
all versions
A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or
7.5
HIGH
CVE-2021-3859
all versions
A flaw was found in Undertow that tripped the client-side invocation timeout with certain calls made over HTTP2. This flaw allows
7.5
HIGH
CVE-2022-31160
all versions
jQuery UI is a curated set of user interface interactions, effects, widgets, and themes built on top of jQuery. Versions prior to
6.1
MEDIUM
CVE-2022-21569
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5
MEDIUM
CVE-2022-21556
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5
MEDIUM
CVE-2022-21553
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21550
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21549
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3
MEDIUM
CVE-2022-21547
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Federated). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21541
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported v
5.9
MEDIUM
CVE-2022-21540
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported v
5.3
MEDIUM
CVE-2022-21539
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.29 and
5.0
MEDIUM
CVE-2022-21538
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are a
3.1
LOW
CVE-2022-21537
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.29 and
4.9
MEDIUM
CVE-2022-21534
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9
MEDIUM
CVE-2022-21531
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21530
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21529
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21528
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5
MEDIUM
CVE-2022-21527
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5
MEDIUM
CVE-2022-21526
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21525
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21522
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.4
MEDIUM
CVE-2022-21519
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
5.9
MEDIUM
CVE-2022-21517
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.29 and
4.9
MEDIUM
CVE-2022-21515
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 5
4.9
MEDIUM
CVE-2022-21509
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5
MEDIUM
CVE-2022-21455
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PAM Auth Plugin). Supported versions that are affect
4.9
MEDIUM
CVE-2022-34169
all versions
The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT stylesheets. This c
7.5
HIGH
CVE-2021-39047
all versions
IBM Planning Analytics 2.0 and IBM Cognos Analytics 11.2.1, 11.2.0, and 11.1.7 are vulnerable to cross-site scripting. This vulner
6.1
MEDIUM
CVE-2021-38945
all versions
IBM Cognos Analytics 11.2.1, 11.2.0, and 11.1.7 could allow a remote attacker to upload arbitrary files, caused by improper conten
9.8
CRITICAL
CVE-2021-29768
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a low level user to obtain sensitive information from the details of t
6.5
MEDIUM
CVE-2022-27778
all versions
A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when
--no-clobber
is used together
8.1
HIGH
CVE-2021-3629
all versions
A flaw was found in Undertow. A potential security issue in flow control handling by the browser over http/2 may potentially cause
5.9
MEDIUM
CVE-2021-3597
all versions
A flaw was found in undertow. The HTTP2SourceChannel fails to write the final frame under some circumstances, resulting in a denia
5.9
MEDIUM
CVE-2022-22971
all versions
In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, application with a STOMP over WebSocket endp
6.5
MEDIUM
CVE-2022-22970
all versions
In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, applications that handle file uploads are vu
5.3
MEDIUM
CVE-2022-1292
all versions
The c_rehash script does not properly sanitise shell metacharacters to prevent command injection. This script is distributed by so
7.3
HIGH
CVE-2021-38946
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed ar
5.4
MEDIUM
CVE-2021-38905
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow an authenticated user to view report pages that they should not have a
4.3
MEDIUM
CVE-2021-38904
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow a remote attacker to obtain credentials from a user's browser via inco
6.5
MEDIUM
CVE-2021-38903
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to cross-site scripting, caused by improper validation of user-suppl
5.4
MEDIUM
CVE-2021-38886
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to cross-site request forgery which could allow an attacker to execu
8.8
HIGH
CVE-2021-29824
all versions
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to priviledge escalation where a lower level user could have read ac
4.3
MEDIUM
CVE-2021-20464
all versions
IBM Cognos Analytics PowerPlay (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7) could be vulnerable to an XML Bomb attack by a ma
6.5
MEDIUM
CVE-2022-21496
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JNDI). Supported vers
5.3
MEDIUM
CVE-2022-21490
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21489
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21486
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21485
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21484
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21483
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21482
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21479
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5
MEDIUM
CVE-2022-21478
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5
MEDIUM
CVE-2022-21476
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
7.5
HIGH
CVE-2022-21462
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21460
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Logging). Supported versions that are affected are 5
4.4
MEDIUM
CVE-2022-21459
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5
MEDIUM
CVE-2022-21457
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PAM Auth Plugin). Supported versions that are affect
5.9
MEDIUM
CVE-2022-21454
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that a
6.5
MEDIUM
CVE-2022-21452
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21451
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.37 and
4.4
MEDIUM
CVE-2022-21449
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
7.5
HIGH
CVE-2022-21444
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 5.7.3
4.4
MEDIUM
CVE-2022-21443
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
3.7
LOW
CVE-2022-21440
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5
MEDIUM
CVE-2022-21438
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21437
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21436
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21435
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21434
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3
MEDIUM
CVE-2022-21427
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: FTS). Supported versions that are affected are 5.7.3
4.9
MEDIUM
CVE-2022-21426
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported vers
5.3
MEDIUM
CVE-2022-21425
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
5.5
MEDIUM
CVE-2022-21423
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.28 and
2.7
LOW
CVE-2022-21418
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.28 and
5.0
MEDIUM
CVE-2022-21417
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.37 and
4.9
MEDIUM
CVE-2022-21415
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
4.9
MEDIUM
CVE-2022-21414
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21413
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2022-21412
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2020-36518
all versions
jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
7.5
HIGH
CVE-2022-21824
all versions
Due to the formatting logic of the "console.table()" function it was not safe to allow user controlled input to be passed to the "
8.2
HIGH
CVE-2021-22570
all versions
Nullptr dereference when a null char is present in a proto symbol. The symbol is parsed incorrectly, leading to an unchecked call
6.5
MEDIUM
CVE-2022-21380
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21379
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that a
4.9
MEDIUM
CVE-2022-21378
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5
MEDIUM
CVE-2022-21374
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are aff
4.9
MEDIUM
CVE-2022-21372
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are a
2.7
LOW
CVE-2022-21370
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21368
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are af
4.7
MEDIUM
CVE-2022-21367
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Compiling). Supported versions that are affected are
5.5
MEDIUM
CVE-2022-21366
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported v
5.3
MEDIUM
CVE-2022-21365
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported v
5.3
MEDIUM
CVE-2022-21362
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are aff
4.9
MEDIUM
CVE-2022-21360
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported v
5.3
MEDIUM
CVE-2022-21358
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are a
6.5
MEDIUM
CVE-2022-21357
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21356
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21355
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21352
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.26 and
5.9
MEDIUM
CVE-2022-21351
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
7.1
HIGH
CVE-2022-21349
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: 2D). Supported versio
5.3
MEDIUM
CVE-2022-21348
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.27 and
4.9
MEDIUM
CVE-2022-21344
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
4.9
MEDIUM
CVE-2022-21342
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21341
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization). Suppo
5.3
MEDIUM
CVE-2022-21340
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3
MEDIUM
CVE-2022-21339
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21337
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21336
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21335
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21334
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21333
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21332
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21331
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21330
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21329
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21328
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21327
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21326
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21325
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21324
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21323
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21322
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21321
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21320
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21319
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21318
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21317
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21316
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21315
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21314
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21313
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21312
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21311
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
2.9
LOW
CVE-2022-21310
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21309
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21308
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21307
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21305
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported v
5.3
MEDIUM
CVE-2022-21304
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported versions that are affected are 5.
4.9
MEDIUM
CVE-2022-21303
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9
MEDIUM
CVE-2022-21302
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.27 and
5.3
MEDIUM
CVE-2022-21301
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
5.5
MEDIUM
CVE-2022-21299
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported vers
5.3
MEDIUM
CVE-2022-21297
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21296
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported vers
5.3
MEDIUM
CVE-2022-21294
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3
MEDIUM
CVE-2022-21293
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3
MEDIUM
CVE-2022-21291
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported v
5.3
MEDIUM
CVE-2022-21290
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21289
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21288
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21287
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21286
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21285
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21284
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21283
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3
MEDIUM
CVE-2022-21282
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JAXP). Supported vers
5.3
MEDIUM
CVE-2022-21280
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21279
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2022-21278
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
7.1
HIGH
CVE-2022-21277
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported v
5.3
MEDIUM
CVE-2022-21271
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported
5.3
MEDIUM
CVE-2022-21270
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Federated). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21265
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
3.8
LOW
CVE-2022-21264
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21256
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that a
4.9
MEDIUM
CVE-2022-21254
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.3
MEDIUM
CVE-2022-21253
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2022-21249
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
2.7
LOW
CVE-2022-21248
all versions
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization). Suppo
3.7
LOW
CVE-2022-21245
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are a
4.3
MEDIUM
CVE-2021-44228
all versions
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration
10.0
CRITICAL
CVE-2021-39002
all versions
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 uses weaker than expected crypto
7.5
HIGH
CVE-2021-38931
all versions
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1, and 11.5 is vulnerable to an information disclosure as a r
6.5
MEDIUM
CVE-2021-38926
all versions
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local user to gain
5.5
MEDIUM
CVE-2021-29678
all versions
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a user with DBADM au
8.7
HIGH
CVE-2021-38909
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J
5.4
MEDIUM
CVE-2021-29867
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 could allow an authenticated to view or edit a Jupyter notebook that they should not have a
5.4
MEDIUM
CVE-2021-29756
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to cross-site request forgery (CSRF) in the My Inbox page which could allow a
8.8
HIGH
CVE-2021-29719
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 could be vulnerable to client side vulnerabilties due to a web response specifying an incor
5.3
MEDIUM
CVE-2021-29716
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 could allow a low level user to reas of the application that privileged user should only be
6.5
MEDIUM
CVE-2021-20493
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J
6.1
MEDIUM
CVE-2021-20470
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 does not require that users should have strong passwords by default, which makes it easier
7.5
HIGH
CVE-2021-35648
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: FTS). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-35647
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35646
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35645
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35644
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35643
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35642
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35641
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35640
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
2.7
LOW
CVE-2021-35639
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9
MEDIUM
CVE-2021-35638
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35637
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected are 8.0.26
4.9
MEDIUM
CVE-2021-35636
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35635
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35634
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35633
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Logging). Supported versions that are affected are 8
2.7
LOW
CVE-2021-35632
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Data Dictionary). Supported versions that are affect
4.4
MEDIUM
CVE-2021-35631
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: GIS). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-35630
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 8
4.9
MEDIUM
CVE-2021-35629
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35628
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35627
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35626
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35625
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are a
2.7
LOW
CVE-2021-35624
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are a
4.9
MEDIUM
CVE-2021-35623
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Roles). Supported versions that are affect
2.7
LOW
CVE-2021-35622
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are a
4.9
MEDIUM
CVE-2021-35621
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2021-35618
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
1.8
LOW
CVE-2021-35613
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
3.7
LOW
CVE-2021-35612
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
5.5
MEDIUM
CVE-2021-35610
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
7.1
HIGH
CVE-2021-35608
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that a
5.3
MEDIUM
CVE-2021-35607
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
6.5
MEDIUM
CVE-2021-35604
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.35 and
5.5
MEDIUM
CVE-2021-35603
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions th
3.7
LOW
CVE-2021-35602
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affected are 8
5.0
MEDIUM
CVE-2021-35598
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2021-35597
all versions
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 8.0.26 and
6.5
MEDIUM
CVE-2021-35596
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Error Handling). Supported versions that are affecte
4.9
MEDIUM
CVE-2021-35594
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2021-35593
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2021-35592
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2021-35591
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-35590
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are
6.3
MEDIUM
CVE-2021-35588
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions
3.1
LOW
CVE-2021-35586
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions
5.3
MEDIUM
CVE-2021-35584
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: ndbcluster/plugin DDL). Supported versions that ar
4.3
MEDIUM
CVE-2021-35583
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Windows). Supported versions that are affected are 8
7.5
HIGH
CVE-2021-35578
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions th
5.3
MEDIUM
CVE-2021-35577
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35575
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-35567
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versio
6.8
MEDIUM
CVE-2021-35565
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions th
5.3
MEDIUM
CVE-2021-35564
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Keytool). Supported versions
5.3
MEDIUM
CVE-2021-35561
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Utility). Supported versions
5.3
MEDIUM
CVE-2021-35560
all versions
Vulnerability in the Java SE product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE:
7.5
HIGH
CVE-2021-35559
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported versions t
5.3
MEDIUM
CVE-2021-35556
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported versions t
5.3
MEDIUM
CVE-2021-35550
all versions
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions th
5.9
MEDIUM
CVE-2021-35546
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
4.9
MEDIUM
CVE-2021-35537
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-2481
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5
MEDIUM
CVE-2021-2479
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-2478
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-37137
all versions
The Snappy frame decoder function doesn't restrict the chunk length which may lead to excessive memory usage. Beside this it also
7.5
HIGH
CVE-2021-37136
all versions
The Bzip2 decompression decoder function doesn't allow setting size restrictions on the decompressed output data (which affects th
7.5
HIGH
CVE-2021-29745
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to priviledge escalation where a lower evel user could have access to the 'Ne
8.8
HIGH
CVE-2021-29679
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 could allow an authenticated user to execute code remotely due to incorrectly neutralizaing
8.8
HIGH
CVE-2020-4951
all versions
IBM Cognos Analytics 11.1.7 and 11.2.0 contains locally cached browser data, that could allow a local attacker to obtain sensitive
3.3
LOW
CVE-2021-22946
all versions
A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (
7.5
HIGH
CVE-2021-3711
all versions
In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt(). Typically an applic
9.8
CRITICAL
CVE-2021-22931
all versions
Node.js before 16.6.0, 14.17.4, and 12.22.4 is vulnerable to Remote Code Execution, XSS, Application crashes due to missing input
9.8
CRITICAL
CVE-2021-22926
all versions
libcurl-using applications can ask for a specific client certificate to be used in a transfer. This is done with the `CURLOPT_SSLC
7.5
HIGH
CVE-2021-36222
all versions
ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x befor
7.5
HIGH
CVE-2021-2444
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2441
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2440
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-2437
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2429
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.25 and
5.9
MEDIUM
CVE-2021-2427
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2426
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2425
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2424
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9
MEDIUM
CVE-2021-2422
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected are 8.0.25
4.9
MEDIUM
CVE-2021-2418
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2417
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: GIS). Supported versions that are affected are 8.0.2
6.0
MEDIUM
CVE-2021-2412
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2411
all versions
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: JS module). Supported versions that are affected a
3.7
LOW
CVE-2021-2410
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2402
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Locking). Supported versions that are affected are 8
4.9
MEDIUM
CVE-2021-2399
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-2390
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.34 and
5.9
MEDIUM
CVE-2021-2389
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.34 and
5.9
MEDIUM
CVE-2021-2387
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2385
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
5.0
MEDIUM
CVE-2021-2384
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2383
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2374
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.25 and
4.1
MEDIUM
CVE-2021-2372
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.34 and
4.4
MEDIUM
CVE-2021-2370
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-2367
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2357
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2356
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected a
5.9
MEDIUM
CVE-2021-2354
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Federated). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2352
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-2342
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2340
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Memcached). Supported versions that are affected are
2.7
LOW
CVE-2021-2339
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-36090
all versions
When reading a specially crafted ZIP archive, Compress can be made to allocate large amounts of memory that finally leads to an ou
7.5
HIGH
CVE-2021-35517
all versions
When reading a specially crafted TAR archive, Compress can be made to allocate large amounts of memory that finally leads to an ou
7.5
HIGH
CVE-2021-35516
all versions
When reading a specially crafted 7Z archive, Compress can be made to allocate large amounts of memory that finally leads to an out
7.5
HIGH
CVE-2021-35515
all versions
When reading a specially crafted 7Z archive, the construction of the list of codecs that decompress an entry can result in an infi
7.5
HIGH
CVE-2021-20461
all versions
IBM Cognos Analytics 10.0 and 11.1 is susceptible to a weakness in the implementation of the System Appearance configuration setti
6.5
MEDIUM
CVE-2021-22901
all versions
curl 7.75.0 through 7.76.1 suffers from a use-after-free vulnerability resulting in already freed memory being used when a TLS 1.3
8.1
HIGH
CVE-2021-20293
all versions
A reflected Cross-Site Scripting (XSS) flaw was found in RESTEasy in all versions of RESTEasy up to 4.6.0.Final, where it did not
6.1
MEDIUM
CVE-2021-3522
all versions
GStreamer before 1.18.4 may perform an out-of-bounds read when handling certain ID3v2 tags.
5.5
MEDIUM
CVE-2020-14326
all versions
A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to s
7.5
HIGH
CVE-2020-10771
all versions
A flaw was found in Infinispan version 10, where it is possible to perform various actions that could have side effects using GET
7.1
HIGH
CVE-2020-4561
all versions
IBM Cognos Analytics 11.0 and 11.1 DQM API allows submitting of all control requests in unauthenticated sessions. This allows a re
10.0
CRITICAL
CVE-2020-4520
all versions
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to inject malicious HTML code that when viewed by the authenticat
8.8
HIGH
CVE-2020-4354
all versions
IBM Cognos Analytics 11.0 and 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaS
5.4
MEDIUM
CVE-2020-4300
all versions
IBM Cognos Analytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remo
8.2
HIGH
CVE-2019-4730
all versions
IBM Cognos Analytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remo
7.1
HIGH
CVE-2019-4724
all versions
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain credentials from a user's browser via incorrect autocom
7.5
HIGH
CVE-2019-4723
all versions
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain credentials from a user's browser via incorrect autocom
7.5
HIGH
CVE-2019-4722
all versions
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain sensitive information via a stack trace due to mishandl
4.3
MEDIUM
CVE-2019-4653
all versions
IBM Cognos Analytics 11.0 and 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaS
5.4
MEDIUM
CVE-2019-4471
all versions
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain sensitive information, caused by the failure to set the
6.5
MEDIUM
CVE-2021-3517
all versions
There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a
8.6
HIGH
CVE-2021-29489
all versions
Highcharts JS is a JavaScript charting library based on SVG. In Highcharts versions 8 and earlier, the chart options structure was
7.6
HIGH
CVE-2021-2308
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are aff
2.7
LOW
CVE-2021-2307
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Packaging). Supported versions that are affected are
6.1
MEDIUM
CVE-2021-2305
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-2304
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
5.5
MEDIUM
CVE-2021-2301
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are aff
2.7
LOW
CVE-2021-2300
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.2
4.9
MEDIUM
CVE-2021-2299
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2298
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
6.5
MEDIUM
CVE-2021-2293
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affec
4.9
MEDIUM
CVE-2021-2278
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are
4.9
MEDIUM
CVE-2021-2232
all versions
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that a
1.9
LOW
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin