Vulnerabilities (CVE)

Filtered by vendor Objectcomputing Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-38445 1 Objectcomputing 1 Opendds 2022-05-13 7.5 HIGH 9.8 CRITICAL
OCI OpenDDS versions prior to 3.18.1 do not handle a length parameter consistent with the actual length of the associated data, which may allow an attacker to remotely execute arbitrary code.
CVE-2021-38429 1 Objectcomputing 1 Opendds 2022-05-13 6.4 MEDIUM 9.1 CRITICAL
OCI OpenDDS versions prior to 3.18.1 are vulnerable when an attacker sends a specially crafted packet to flood target devices with unwanted traffic, which may result in a denial-of-service condition and information exposure.
CVE-2020-7611 1 Objectcomputing 1 Micronaut 2020-04-02 7.5 HIGH 9.8 CRITICAL
All versions of io.micronaut:micronaut-http-client before 1.2.11 and all versions from 1.3.0 before 1.3.2 are vulnerable to HTTP Request Header Injection due to not validating request headers passed to the client.