cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 205 of 264
CVE-2020-35478P4MEDIUMCVSS 6.1v332020-12-18
CVE-2020-35478 [MEDIUM] CWE-79 CVE-2020-35478: MediaWiki before 1.35.1 allows XSS via BlockLogFormatter.php. MediaWiki:blanknamespace potentially c MediaWiki before 1.35.1 allows XSS via BlockLogFormatter.php. MediaWiki:blanknamespace potentially can be output as raw HTML with SCRIPT tags via LogFormatter::makePageLink(). This affects MediaWiki 1.33.0 and later.
nvd
CVE-2020-9440P4MEDIUMCVSS 6.1v30v31+1 more2020-03-10
CVE-2020-9440 [MEDIUM] CWE-79 CVE-2020-9440: A cross-site scripting (XSS) vulnerability in the WSC plugin through 5.5.7.5 for CKEditor 4 allows r A cross-site scripting (XSS) vulnerability in the WSC plugin through 5.5.7.5 for CKEditor 4 allows remote attackers to run arbitrary web script inside an IFRAME element by injecting a crafted HTML element into the editor.
nvd
CVE-2021-41798P4MEDIUMCVSS 6.1v33v34+1 more2021-10-11
CVE-2021-41798 [MEDIUM] CWE-79 CVE-2021-41798: MediaWiki before 1.36.2 allows XSS. Month related MediaWiki messages are not escaped before being us MediaWiki before 1.36.2 allows XSS. Month related MediaWiki messages are not escaped before being used on the Special:Search results page.
nvd
CVE-2022-42334P4MEDIUMCVSS 6.5v37v382023-03-21
CVE-2022-42334 [MEDIUM] CVE-2022-42334: x86/HVM pinned cache attributes mis-handling T[his CNA information record relates to multiple CVEs; x86/HVM pinned cache attributes mis-handling T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] To allow cachability control for HVM guests with passed through devices, an interface exists to explicitly override defaults which would otherwise be put in place. While not exposed to t
nvd
CVE-2021-45473P4MEDIUMCVSS 6.1v352021-12-24
CVE-2021-45473 [MEDIUM] CWE-79 CVE-2021-45473: In MediaWiki through 1.37, Wikibase item descriptions allow XSS, which is triggered upon a visit to In MediaWiki through 1.37, Wikibase item descriptions allow XSS, which is triggered upon a visit to an action=info URL (aka a page-information sidebar).
nvd
CVE-2013-4158P4MEDIUMCVSS 6.1v18v192019-12-11
CVE-2013-4158 [MEDIUM] CVE-2013-4158: smokeping before 2.6.9 has XSS (incomplete fix for CVE-2012-0790) smokeping before 2.6.9 has XSS (incomplete fix for CVE-2012-0790)
nvd
CVE-2020-35738P4MEDIUMCVSS 6.1v32v332020-12-28
CVE-2020-35738 [MEDIUM] CWE-190 CVE-2020-35738: WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument. NOTE: some third-parties claim that there are later "unofficial" releases through 5.3.2, which are also affected.
nvd
CVE-2022-28202P4MEDIUMCVSS 6.1v362022-03-30
CVE-2022-28202 [MEDIUM] CWE-79 CVE-2022-28202: An XSS issue was discovered in MediaWiki before 1.35.6, 1.36.x before 1.36.4, and 1.37.x before 1.37 An XSS issue was discovered in MediaWiki before 1.35.6, 1.36.x before 1.36.4, and 1.37.x before 1.37.2. The widthheight, widthheightpage, and nbytes properties of messages are not escaped when used in galleries or Special:RevisionDelete.
nvd
CVE-2019-15945P4MEDIUMCVSS 6.4v312019-09-05
CVE-2019-15945 [MEDIUM] CWE-119 CVE-2019-15945: OpenSC before 0.20.0-rc1 has an out-of-bounds access of an ASN.1 Bitstring in decode_bit_string in l OpenSC before 0.20.0-rc1 has an out-of-bounds access of an ASN.1 Bitstring in decode_bit_string in libopensc/asn1.c.
nvd
CVE-2019-15946P4MEDIUMCVSS 6.4v312019-09-05
CVE-2019-15946 [MEDIUM] CWE-119 CVE-2019-15946: OpenSC before 0.20.0-rc1 has an out-of-bounds access of an ASN.1 Octet string in asn1_decode_entry i OpenSC before 0.20.0-rc1 has an out-of-bounds access of an ASN.1 Octet string in asn1_decode_entry in libopensc/asn1.c.
nvd
CVE-2020-35494P4MEDIUMCVSS 6.1v322021-01-04
CVE-2020-35494 [MEDIUM] CWE-908 CVE-2020-35494: There's a flaw in binutils /opcodes/tic4x-dis.c. An attacker who is able to submit a crafted input f There's a flaw in binutils /opcodes/tic4x-dis.c. An attacker who is able to submit a crafted input file to be processed by binutils could cause usage of uninitialized memory. The highest threat is to application availability with a lower threat to data confidentiality. This flaw affects binutils versions prior to 2.34.
nvd
CVE-2024-27285P4MEDIUMCVSS 6.1v382024-02-28
CVE-2024-27285 [MEDIUM] CWE-79 CVE-2024-27285: YARD is a Ruby Documentation tool. The "frames.html" file within the Yard Doc's generated documentat YARD is a Ruby Documentation tool. The "frames.html" file within the Yard Doc's generated documentation is vulnerable to Cross-Site Scripting (XSS) attacks due to inadequate sanitization of user input within the JavaScript segment of the "frames.erb" template file. This vulnerability is fixed in 0.9.36.
nvd
CVE-2021-44025P4MEDIUMCVSS 6.1v33v342021-11-19
CVE-2021-44025 [MEDIUM] CWE-79 CVE-2021-44025: Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to XSS in handling an attachment's filename Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to XSS in handling an attachment's filename extension when displaying a MIME type warning message.
nvd
CVE-2020-13964P4MEDIUMCVSS 6.1v31v322020-06-09
CVE-2020-13964 [MEDIUM] CWE-79 CVE-2020-13964: An issue was discovered in Roundcube Webmail before 1.3.12 and 1.4.x before 1.4.5. include/rcmail_ou An issue was discovered in Roundcube Webmail before 1.3.12 and 1.4.x before 1.4.5. include/rcmail_output_html.php allows XSS via the username template object.
nvd
CVE-2022-34911P4MEDIUMCVSS 6.1v36v372022-07-02
CVE-2022-34911 [MEDIUM] CWE-79 CVE-2022-34911: An issue was discovered in MediaWiki before 1.35.7, 1.36.x and 1.37.x before 1.37.3, and 1.38.x befo An issue was discovered in MediaWiki before 1.35.7, 1.36.x and 1.37.x before 1.37.3, and 1.38.x before 1.38.1. XSS can occur in configurations that allow a JavaScript payload in a username. After account creation, when it sets the page title to "Welcome" followed by the username, the username is not escaped: SpecialCreateAccount::successfulAction() c
nvd
CVE-2022-34912P4MEDIUMCVSS 6.1v36v372022-07-02
CVE-2022-34912 [MEDIUM] CVE-2022-34912: An issue was discovered in MediaWiki before 1.37.3 and 1.38.x before 1.38.1. The contributions-title An issue was discovered in MediaWiki before 1.37.3 and 1.38.x before 1.38.1. The contributions-title, used on Special:Contributions, is used as page title without escaping. Hence, in a non-default configuration where a username contains HTML entities, it won't be escaped.
nvd
CVE-2021-45474P4MEDIUMCVSS 6.1v352021-12-24
CVE-2021-45474 [MEDIUM] CWE-79 CVE-2021-45474: In MediaWiki through 1.37, the Special:ImportFile URI (aka FileImporter) allows XSS, as demonstrated In MediaWiki through 1.37, the Special:ImportFile URI (aka FileImporter) allows XSS, as demonstrated by the clientUrl parameter.
nvd
CVE-2021-45472P4MEDIUMCVSS 6.1v352021-12-24
CVE-2021-45472 [MEDIUM] CWE-79 CVE-2021-45472: In MediaWiki through 1.37, XSS can occur in Wikibase because an external identifier property can hav In MediaWiki through 1.37, XSS can occur in Wikibase because an external identifier property can have a URL format that includes a $1 formatter substitution marker, and the javascript: URL scheme (among others) can be used.
nvd
CVE-2016-4482P4MEDIUMCVSS 6.2v242016-05-23
CVE-2016-4482 [MEDIUM] CWE-200 CVE-2016-4482: The proc_connectinfo function in drivers/usb/core/devio.c in the Linux kernel through 4.6 does not i The proc_connectinfo function in drivers/usb/core/devio.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted USBDEVFS_CONNECTINFO ioctl call.
nvd
CVE-2020-26419P4MEDIUMCVSS 5.3v32v332020-12-11
CVE-2020-26419 [MEDIUM] CWE-401 CVE-2020-26419: Memory leak in the dissection engine in Wireshark 3.4.0 allows denial of service via packet injectio Memory leak in the dissection engine in Wireshark 3.4.0 allows denial of service via packet injection or crafted capture file.
nvd
Fedoraproject Fedora vulnerabilities | cvebase