Skip to main content

CWE archive

CWE-327 CVEs

Programmatic archive

685 CVEs tagged with CWE-32765 Critical, 256 High, 300 Medium, 64 Low, 0 Unrated.

CVE-2021-43808

Published Dec 8, 2021

Laravel is a web application framework. Laravel prior to versions 8.75.0, 7.30.6, and 6.20.42 contain a possible cross-site scripting (XSS) vulnerability in the Blade templating e…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-22170

Published Dec 6, 2021

Assuming a database breach, nonce reuse issues in GitLab 11.6+ allows an attacker to decrypt some of the database's encrypted content

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-22356

Published Nov 23, 2021

There is a weak secure algorithm vulnerability in Huawei products. A weak secure algorithm is used in a module. Attackers can exploit this vulnerability by capturing and analyzing…

CVSS 5.9 · Medium

CVE-2021-41263

Published Nov 15, 2021

rails_multisite provides multi-db support for Rails applications. In affected versions this vulnerability impacts any Rails applications using `rails_multisite` alongside Rails' s…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2020-14264

Published Oct 25, 2021

"HCL Traveler Companion is vulnerable to an iOS weak cryptographic process vulnerability via the included MobileIron AppConnect SDK"

CVSS 3.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-41168

Published Oct 21, 2021

Snudown is a reddit-specific fork of the Sundown Markdown parser used by GitHub, with Python integration added. In affected versions snudown was found to be vulnerable to denial o…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-41096

Published Sep 27, 2021

Rucky is a USB HID Rubber Ducky Launch Pad for Android. Versions 2.2 and earlier for release builds and versions 425 and earlier for nightly builds suffer from use of a weak crypt…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-40530

Published Sep 6, 2021

The ElGamal implementation in Crypto++ through 8.5 allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of th…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-40528

Published Sep 6, 2021

The ElGamal implementation in Libgcrypt before 1.9.4 allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-31796

Published Sep 2, 2021

An inadequate encryption vulnerability discovered in CyberArk Credential Provider before 12.1 may lead to Information Disclosure. An attacker may realistically have enough informa…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-33003

Published Aug 30, 2021

Delta Electronics DIAEnergie Version 1.7.5 and prior may allow an attacker to retrieve passwords in cleartext due to a weak hashing algorithm.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-27913

Published Aug 30, 2021

The function mt_rand is used to generate session tokens, this function is cryptographically flawed due to its nature being one pseudorandomness, an attacker can take advantage of…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-36363

Published Aug 12, 2021

Amazon AWS CloudFront TLSv1.2_2019 allows TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 and TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384, which some entities consider to be weak ciphers.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-25052

Published Aug 11, 2021

In Linaro OP-TEE before 3.7.0, by using inconsistent or malformed data, it is possible to call update and final cryptographic functions directly, causing a crash that could leak s…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-37546

Published Aug 6, 2021

In JetBrains TeamCity before 2021.1, an insecure key generation mechanism for encrypted properties was used.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 401-425 of 685 CVEsPage 17 of 28