Known Vulnerabilities for products from Privoxy

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Privoxy".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-44543 json An XSS vulnerability was found in Privoxy which was fixed in cgi_error_no_template() by encode the template name when Privoxy... 6.1 - MEDIUM 2021-12-23 2023-11-07
CVE-2021-44542 json A memory leak vulnerability was found in Privoxy when handling errors. 7.5 - HIGH 2021-12-23 2023-11-07
CVE-2021-44541 json A vulnerability was found in Privoxy which was fixed in process_encrypted_request_headers() by freeing header memory when fai... 7.5 - HIGH 2021-12-23 2023-11-07
CVE-2021-44540 json A vulnerability was found in Privoxy which was fixed in get_url_spec_param() by freeing memory of compiled pattern spec befor... 7.5 - HIGH 2021-12-23 2023-11-07
CVE-2021-20276 json A flaw was found in privoxy before 3.0.32. Invalid memory access with an invalid pattern passed to pcre_compile() may lead to... 7.5 - HIGH 2021-03-09 2022-08-05
CVE-2021-20275 json A flaw was found in privoxy before 3.0.32. A invalid read of size two may occur in chunked_body_is_complete() leading to deni... 7.5 - HIGH 2021-03-09 2022-08-05
CVE-2021-20274 json A flaw was found in privoxy before 3.0.32. A crash may occur due a NULL-pointer dereference when the socks server misbehaves. 7.5 - HIGH 2021-03-09 2021-12-14
CVE-2021-20273 json A flaw was found in privoxy before 3.0.32. A crash can occur via a crafted CGI request if Privoxy is toggled off. 7.5 - HIGH 2021-03-09 2021-12-08
CVE-2021-20272 json A flaw was found in privoxy before 3.0.32. An assertion failure could be triggered with a crafted CGI request leading to serv... 7.5 - HIGH 2021-03-09 2021-12-07
CVE-2021-20217 json A flaw was found in Privoxy in versions before 3.0.31. An assertion failure triggered by a crafted CGI request may lead to de... 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20216 json A flaw was found in Privoxy in versions before 3.0.31. A memory leak that occurs when decompression fails unexpectedly may le... 7.5 - HIGH 2021-03-25 2022-08-05
CVE-2021-20215 json A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the show-status CGI handler when memory allocations fa... 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20214 json A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the client-tags CGI handler when client tags are confi... 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20213 json A flaw was found in Privoxy in versions before 3.0.29. Dereference of a NULL-pointer that could result in a crash if accept-i... 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20212 json A flaw was found in Privoxy in versions before 3.0.29. Memory leak if multiple filters are executed and the last one is skipp... 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20211 json A flaw was found in Privoxy in versions before 3.0.29. Memory leak when client tags are active can cause a system crash. 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20210 json A flaw was found in Privoxy in versions before 3.0.29. Memory leak in the show-status CGI handler when no filter files are co... 7.5 - HIGH 2021-03-25 2021-12-10
CVE-2021-20209 json A memory leak vulnerability was found in Privoxy before 3.0.29 in the show-status CGI handler when no action files are config... 7.5 - HIGH 2021-05-25 2023-11-07
CVE-2020-35502 json A flaw was found in Privoxy in versions before 3.0.29. Memory leaks when a response is buffered and the buffer limit is reach... 7.5 - HIGH 2021-03-25 2021-12-10
CVE-2019-3699 json UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of privoxy on openSUSE Leap 15.1, Factory allows local ... 7.8 - HIGH 2020-01-24 2021-09-14

Known software with vulnerabilities from Privoxy

Type Vendor Product Version
ApplicationPrivoxyPrivoxy2.9.20
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report