A vulnerability has been found in Mozilla Firefox, Firefox ESR and Thunderbird and classified as critical. This vulnerability affects unknown code of the component PDF Reader. The manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability was named CVE-2021-23953. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Oracle Java SE 7u241/8u231/11.0.5/13.0.1. This vulnerability affects unknown code of the component Security. The manipulation leads to information disclosure.
This vulnerability was named CVE-2020-2601. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in Mozilla Firefox up to 83.x. This affects an unknown part of the component Service Worker. The manipulation leads to Remote Code Execution.
This vulnerability is uniquely identified as CVE-2020-26976. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in runc up to 1.0.0-rc94. This issue affects some unknown processing of the component Configuration Handler. The manipulation leads to pathname traversal.
The identification of this vulnerability is CVE-2021-30465. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Mozilla Thunderbird up to 78.6. Affected is an unknown function of the component STARTTLS Handler. The manipulation leads to missing encryption of sensitive data.
This vulnerability is traded as CVE-2020-15685. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Java SE 7u241/8u231/11.0.5/13.0.1. It has been classified as problematic. This affects an unknown part of the component Security. The manipulation leads to an unknown weakness.
This vulnerability is uniquely identified as CVE-2020-2590. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Java SE 7u261/8u251/11.0.7/14.0.1 and classified as critical. Affected by this issue is some unknown functionality of the component Libraries. The manipulation leads to Remote Code Execution.
This vulnerability is handled as CVE-2020-14583. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Java SE 7u261/8u251/11.0.7/14.0.1. It has been classified as critical. This affects an unknown part of the component 2D. The manipulation leads to an unknown weakness.
This vulnerability is uniquely identified as CVE-2020-14593. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Java SE 7u261/8u251/11.0.7/14.0.1. It has been rated as critical. This issue affects some unknown processing of the component JAXP. The manipulation leads to an unknown weakness.
The identification of this vulnerability is CVE-2020-14621. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Oracle GraalVM Enterprise Edition 19.3.2/20.1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Java. The manipulation leads to Remote Code Execution.
This vulnerability is known as CVE-2020-14583. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Oracle Java SE 7u261/8u251. This affects an unknown part of the component Libraries. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2020-14578. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.