Skip to main content

Vendor/product archive

oracle / mysql_enterprise_monitor CVEs

Beta · best-effort

52 CVEs tagged to oracle / mysql_enterprise_monitor10 Critical, 28 High, 13 Medium, 1 Low, 0 Unrated.

CVE-2022-22963

Published Apr 1, 2022

In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user to provide a specially crafted SpEL as a…

CVSS 9.8 · Critical
evidence mentions
17
Buzz score
77.3
KEV listedPublic PoC observed

CVE-2022-21824

Published Feb 24, 2022

Due to the formatting logic of the "console.table()" function it was not safe to allow user controlled input to be passed to the "properties" parameter while simultaneously passin…

CVSS 8.2 · High

CVE-2021-44533

Published Feb 24, 2022

Node.js < 12.22.9, < 14.18.3, < 16.13.2, and < 17.3.1 did not handle multi-value Relative Distinguished Names correctly. Attackers could craft certificate subjects containing a si…

CVSS 5.3 · Medium

CVE-2021-44532

Published Feb 24, 2022

Node.js < 12.22.9, < 14.18.3, < 16.13.2, and < 17.3.1 converts SANs (Subject Alternative Names) to a string format. It uses this string to check peer certificates against hostname…

CVSS 5.3 · Medium

CVE-2022-23181

Published Jan 27, 2022

The fix for bug CVE-2020-9484 introduced a time of check, time of use vulnerability into Apache Tomcat 10.1.0-M1 to 10.1.0-M8, 10.0.0-M5 to 10.0.14, 9.0.35 to 9.0.56 and 8.5.55 to…

CVSS 7.0 · High

CVE-2021-22112

Published Feb 23, 2021

Spring Security 5.4.x prior to 5.4.4, 5.3.x prior to 5.3.8.RELEASE, 5.2.x prior to 5.2.9.RELEASE, and older unsupported versions can fail to save the SecurityContext if it is chan…

CVSS 8.8 · High

CVE-2020-17530

Published Dec 11, 2020

Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution. Affected software : Apache Struts 2.0.0 - Struts 2.5.25.

CVSS 9.8 · Critical
evidence mentions
7
Buzz score
60.3
KEV listed
Showing 1-25 of 52 CVEsPage 1 of 3