VendorsFedora Projectfedoraall versions
Vulnerabilities

Fedora Project Fedora

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5368CVEs
CVE-2022-3560
A flaw was found in pesign. The pesign package provides a systemd service used to start the pesign daemon. This service unit runs a script to set ACLs for /etc/pki/pesign and /run/pesign directories to grant access privileges to users in the 'pesign' group. However, the script doesn't check for symbolic links. This could allow an attacker to gain access to privileged files and directories via a path traversal attack.
Published 2023-02-02 · Modified
5.5EPSS 0.002
CVE-2022-3169
A flaw was found in the Linux kernel. A denial of service flaw may occur if there is a consecutive request of the NVME_IOCTL_RESET and the NVME_IOCTL_SUBSYS_RESET through the device file of the driver, resulting in a PCIe link disconnect.
Published 2022-09-09 · Modified
5.5EPSS 0.002
CVE-2021-4023
A flaw was found in the io-workqueue implementation in the Linux kernel versions prior to 5.15-rc1. The kernel can panic when an improper cancellation operation triggers the submission of new io-uring operations during a shortage of free space. This flaw allows a local user with permissions to execute io-uring requests to possibly crash the system.
Published 2022-03-09 · Modified
5.5EPSS 0.002
CVE-2024-26986
drm/amdkfd: Fix memory leak in create_process failure
Published 2024-05-01 · Modified
5.5EPSS 0.002
CVE-2023-4133
Kernel: cxgb4: use-after-free in ch_flower_stats_cb()
Published 2023-08-03 · Modified
5.5EPSS 0.002
CVE-2024-27015
netfilter: flowtable: incorrect pppoe tuple
Published 2024-05-01 · Modified
5.5EPSS 0.002
CVE-2023-42811
AEADs/aes-gcm: Plaintext exposed in decrypt_in_place_detached even on tag verification failure
Published 2023-09-22 · Modified
5.5EPSS 0.002
CVE-2022-44020
An issue was discovered in OpenStack Sushy-Tools through 0.21.0 and VirtualBMC through 2.2.2. Changing the boot device configuration with these packages removes password protection from the managed libvirt XML domain. NOTE: this only affects an "unsupported, production-like configuration."
Published 2022-10-29 · Modified
5.5EPSS 0.002
CVE-2024-27004
clk: Get runtime PM before walking tree during disable_unused
Published 2024-05-01 · Modified
5.5EPSS 0.002
CVE-2023-3161
A flaw was found in the Framebuffer Console (fbcon) in the Linux Kernel. When providing font->width and font->height greater than 32 to fbcon_set_font, since there are no checks in place, a shift-out-of-bounds occurs leading to undefined behavior and possible denial of service.
Published 2023-06-12 · Modified
5.5EPSS 0.002
CVE-2023-4134
Kernel: cyttsp4_core: use-after-free in cyttsp4_watchdog_work()
Published 2024-11-14 · Analyzed
5.5EPSS 0.002
CVE-2026-54231
Abrt: unsanitized systemd journal content written to dump directory files enables content injection
Published 2026-06-13 · Modified
5.5EPSS 0.002
CVE-2023-1055
A flaw was found in RHDS 11 and RHDS 12. While browsing entries LDAP tries to decode the userPassword attribute instead of the userCertificate attribute which could lead into sensitive information leaked. An attacker with a local account where the cockpit-389-ds is running can list the processes and display the hashed passwords. The highest threat from this vulnerability is to data confidentiality.
Published 2023-02-27 · Modified
5.5EPSS 0.002
CVE-2022-4129
A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.
Published 2022-11-28 · Modified
5.5EPSS 0.002
CVE-2024-27014
net/mlx5e: Prevent deadlock while disabling aRFS
Published 2024-05-01 · Modified
5.5EPSS 0.002
CVE-2024-26987
mm/memory-failure: fix deadlock when hugetlb_optimize_vmemmap is enabled
Published 2024-05-01 · Modified
5.5EPSS 0.002
CVE-2026-35094
Libinput: libinput: information disclosure via dangling pointer in lua plugin handling
Published 2026-04-01 · Analyzed
5.5EPSS 0.002
CVE-2021-3446
A flaw was found in libtpms in versions before 0.8.2. The commonly used integration of libtpms with OpenSSL contained a vulnerability related to the returned IV (initialization vector) when certain symmetric ciphers were used. Instead of returning the last IV it returned the initial IV to the caller, thus weakening the subsequent encryption and decryption steps. The highest threat from this vulnerability is to data confidentiality.
Published 2021-03-25 · Modified
5.5EPSS 0.001
CVE-2024-31444
Cacti XSS vulnerability in lib/html.php by reading dirty data stored in database
Published 2024-05-13 · Modified
5.4EPSS 0.147
CVE-2019-6341
Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2019-004
Published 2019-03-26 · Modified
5.4EPSS 0.122
CVE-2020-4046
Authenticated XSS through embed block in WordPress
Published 2020-06-12 · Modified
5.4EPSS 0.021
CVE-2019-14833
A flaw was found in Samba, all versions starting samba 4.5.0 before samba 4.9.15, samba 4.10.10, samba 4.11.2, in the way it handles a user password change or a new password for a samba user. The Samba Active Directory Domain Controller can be configured to use a custom script to check for password complexity. This configuration can fail to verify password complexity when non-ASCII characters are used in the password, which could lead to weak passwords being set for samba users, making it vulnerable to dictionary attacks.
Published 2019-11-06 · Modified
5.4EPSS 0.019
CVE-2024-29133
Apache Commons Configuration: StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree
Published 2024-03-21 · Analyzed
5.4EPSS 0.017
CVE-2016-2040
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 allow remote authenticated users to inject arbitrary web script or HTML via a (1) table name, (2) SET value, (3) search query, or (4) hostname in a Location header.
Published 2016-02-20 · Modified
5.4EPSS 0.016
CVE-2019-15587
In the Loofah gem for Ruby through v2.3.0 unsanitized JavaScript may occur in sanitized output when a crafted SVG element is republished.
Published 2019-10-22 · Modified
5.4EPSS 0.016
CVE-2016-2045
Cross-site scripting (XSS) vulnerability in the SQL editor in phpMyAdmin 4.5.x before 4.5.4 allows remote authenticated users to inject arbitrary web script or HTML via a SQL query that triggers JSON data in a response.
Published 2016-02-20 · Modified
5.4EPSS 0.015
CVE-2020-10803
In phpMyAdmin 4.x before 4.9.5 and 5.x before 5.0.2, a SQL injection vulnerability was discovered where malicious code could be used to trigger an XSS attack through retrieving and displaying results (in tbl_get_field.php and libraries/classes/Display/Results.php). The attacker must be able to insert crafted data into certain database tables, which when retrieved (for instance, through the Browse tab) can trigger the XSS attack.
Published 2020-03-22 · Modified
5.4EPSS 0.014
CVE-2021-20280
Text-based feedback answers required additional sanitizing to prevent stored XSS and blind SSRF risks in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
Published 2021-03-15 · Modified
5.4EPSS 0.013
CVE-2016-2043
Cross-site scripting (XSS) vulnerability in the goToFinish1NF function in js/normalization.js in phpMyAdmin 4.4.x before 4.4.15.3 and 4.5.x before 4.5.4 allows remote authenticated users to inject arbitrary web script or HTML via a table name to the normalization page.
Published 2016-02-20 · Modified
5.4EPSS 0.013
CVE-2020-35132
An XSS issue has been discovered in phpLDAPadmin before 1.2.6.2 that allows users to store malicious values that may be executed by other users at a later time via get_request in lib/function.php.
Published 2020-12-11 · Modified
5.4EPSS 0.013
CVE-2022-24728
Cross-site Scripting in CKEditor4
Published 2022-03-16 · Modified
5.4EPSS 0.012
CVE-2021-32809
Arbitrary HTML injection vulnerability in ckeditor
Published 2021-08-12 · Modified
5.4EPSS 0.012
CVE-2023-5546
Moodle: stored xss in quiz grading report via user id number
Published 2023-11-09 · Modified
5.4EPSS 0.012
CVE-2019-3886
An incorrect permissions check was discovered in libvirt 4.8.0 and above. The readonly permission was allowed to invoke APIs depending on the guest agent, which could lead to potentially disclosing unintended information or denial of service by causing libvirt to block.
Published 2019-04-04 · Modified
5.4EPSS 0.011
CVE-2016-3144
Cross-site scripting (XSS) vulnerability in the Block Class module 7.x-2.x before 7.x-2.2 for Drupal allows remote authenticated users with the "Administer block classes" permission to inject arbitrary web script or HTML via a class name.
Published 2016-04-15 · Modified
5.4EPSS 0.011
CVE-2022-0157
Cross-site Scripting (XSS) - Stored in phoronix-test-suite/phoronix-test-suite
Published 2022-01-10 · Modified
5.4EPSS 0.011
CVE-2021-36568
In certain Moodle products after creating a course, it is possible to add in a arbitrary "Topic" a resource, in this case a "Database" with the type "Text" where its values "Field name" and "Field description" are vulnerable to Cross Site Scripting Stored(XSS). This affects Moodle 3.11 and Moodle 3.10.4 and Moodle 3.9.7.
Published 2022-09-13 · Modified
5.4EPSS 0.010
CVE-2021-26925
Roundcube before 1.4.11 allows XSS via crafted Cascading Style Sheets (CSS) token sequences during HTML email rendering.
Published 2021-02-09 · Modified
5.4EPSS 0.010
CVE-2021-20279
The ID number user profile field required additional sanitizing to prevent a stored XSS risk in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
Published 2021-03-15 · Modified
5.4EPSS 0.010
CVE-2024-34064
Jinja vulnerable to HTML attribute injection when passing user input as keys to xmlattr filter
Published 2024-05-06 · Modified
5.4EPSS 0.010
← Prev111 / 135Next →