CVE Feed

    Dashboard / CVE

    —
    Unknown

    CVE-2023-22928

    Last Modified: 22 Jan 2026

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.

    Published: 10 Jan 2023
    —
    Unknown

    CVE-2023-22927

    Last Modified: 22 Jan 2026

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.

    Published: 10 Jan 2023
    —
    Unknown

    CVE-2023-22926

    Last Modified: 22 Jan 2026

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.

    Published: 10 Jan 2023
    —
    Unknown

    CVE-2023-22925

    Last Modified: 22 Jan 2026

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.

    Published: 10 Jan 2023
    5.3
    Medium

    CVE-2023-20532

    Last Modified: 7 Apr 2025

    Insufficient input validation in the SMU may allow an attacker to improperly lock resources, potentially resulting in a denial of service.

    Published: 10 Jan 2023
    7.5
    High

    CVE-2023-20531

    Last Modified: 7 Apr 2025

    Insufficient bound checks in the SMU may allow an attacker to update the SRAM from/to address space to an invalid value potentially resulting in a denial of service.

    Published: 10 Jan 2023
    7.5
    High

    CVE-2023-20530

    Last Modified: 7 Apr 2025

    Insufficient input validation of BIOS mailbox messages in SMU may result in out-of-bounds memory reads potentially resulting in a denial of service.

    Published: 10 Jan 2023
    7.5
    High

    CVE-2023-20529

    Last Modified: 7 Apr 2025

    Insufficient bound checks in the SMU may allow an attacker to update the from/to address space to an invalid value potentially resulting in a denial of service.

    Published: 10 Jan 2023
    2.4
    Low

    CVE-2023-20528

    Last Modified: 7 Apr 2025

    Insufficient input validation in the SMU may allow a physical attacker to exfiltrate SMU memory contents over the I2C bus potentially leading to a loss of confidentiality.

    Published: 10 Jan 2023
    6.5
    Medium

    CVE-2023-20527

    Last Modified: 7 Apr 2025

    Improper syscall input validation in the ASP Bootloader may allow a privileged attacker to read memory out-of-bounds, potentially leading to a denial-of-service.

    Published: 10 Jan 2023
    6.5
    Medium

    CVE-2023-20525

    Last Modified: 7 Apr 2025

    Insufficient syscall input validation in the ASP Bootloader may allow a privileged attacker to read memory outside the bounds of a mapped register potentially leading to a denial of service.

    Published: 10 Jan 2023
    5.7
    Medium

    CVE-2023-20523

    Last Modified: 7 Apr 2025

    TOCTOU in the ASP may allow a physical attacker to write beyond the buffer bounds, potentially leading to a loss of integrity or denial of service.

    Published: 10 Jan 2023
    7.5
    High

    CVE-2023-20522

    Last Modified: 7 Apr 2025

    Insufficient input validation in ASP may allow an attacker with a malicious BIOS to potentially cause a denial of service.

    Published: 10 Jan 2023
    5.5
    Medium

    CVE-2021-46791

    Last Modified: 9 Apr 2025

    Insufficient input validation during parsing of the System Management Mode (SMM) binary may allow a maliciously crafted SMM executable binary to corrupt Dynamic Root of Trust for Measurement (DRTM) user application memory that may result in a potential denial of service.

    Published: 10 Jan 2023
    7.1
    High

    CVE-2021-46779

    Last Modified: 9 Apr 2025

    Insufficient input validation in SVC_ECC_PRIMITIVE system call in a compromised user application or ABL may allow an attacker to corrupt ASP (AMD Secure Processor) OS memory which may lead to potential loss of integrity and availability.

    Published: 10 Jan 2023
    5.5
    Medium

    CVE-2021-46768

    Last Modified: 9 Apr 2025

    Insufficient input validation in SEV firmware may allow an attacker to perform out-of-bounds memory reads within the ASP boot loader, potentially leading to a denial of service.

    Published: 10 Jan 2023
    6.1
    Medium

    CVE-2021-46767

    Last Modified: 9 Apr 2025

    Insufficient input validation in the ASP may allow an attacker with physical access, unauthorized write access to memory potentially leading to a loss of integrity or denial of service.

    Published: 10 Jan 2023
    7.8
    High

    CVE-2021-26409

    Last Modified: 9 Apr 2025

    Insufficient bounds checking in SEV-ES may allow an attacker to corrupt Reverse Map table (RMP) memory, potentially resulting in a loss of SNP (Secure Nested Paging) memory integrity.

    Published: 10 Jan 2023
    5.5
    Medium

    CVE-2021-26407

    Last Modified: 8 Apr 2025

    A randomly generated Initialization Vector (IV) may lead to a collision of IVs with the same key potentially resulting in information disclosure.

    Published: 10 Jan 2023
    5.5
    Medium

    CVE-2021-26404

    Last Modified: 8 Apr 2025

    Improper input validation and bounds checking in SEV firmware may leak scratch buffer bytes leading to potential information disclosure.

    Published: 10 Jan 2023
    6.5
    Medium

    CVE-2021-26403

    Last Modified: 8 Apr 2025

    Insufficient checks in SEV may lead to a malicious hypervisor disclosing the launch secret potentially resulting in compromise of VM confidentiality.

    Published: 10 Jan 2023
    7.1
    High

    CVE-2021-26402

    Last Modified: 8 Apr 2025

    Insufficient bounds checking in ASP (AMD Secure Processor) firmware while handling BIOS mailbox commands, may allow an attacker to write partially-controlled data out-of-bounds to SMM or SEV-ES regions which may lead to a potential loss of integrity and availability.

    Published: 10 Jan 2023
    7.8
    High

    CVE-2021-26398

    Last Modified: 9 Apr 2025

    Insufficient input validation in SYS_KEY_DERIVE system call in a compromised user application or ABL may allow an attacker to corrupt ASP (AMD Secure Processor) OS memory which may lead to potential arbitrary code execution.

    Published: 10 Jan 2023
    4.4
    Medium

    CVE-2021-26396

    Last Modified: 9 Apr 2025

    Insufficient validation of address mapping to IO in ASP (AMD Secure Processor) may result in a loss of memory integrity in the SNP guest.

    Published: 10 Jan 2023
    5.5
    Medium

    CVE-2021-26355

    Last Modified: 9 Apr 2025

    Insufficient fencing and checks in System Management Unit (SMU) may result in access to invalid message port registers that could result in a potential denial-of-service.

    Published: 10 Jan 2023
    5.5
    Medium

    CVE-2021-26343

    Last Modified: 9 Apr 2025

    Insufficient validation in ASP BIOS and DRTM commands may allow malicious supervisor x86 software to disclose the contents of sensitive memory which may result in information disclosure.

    Published: 10 Jan 2023
    4.4
    Medium

    CVE-2021-26328

    Last Modified: 9 Apr 2025

    Failure to verify the mode of CPU execution at the time of SNP_INIT may lead to a potential loss of memory integrity for SNP guests.

    Published: 10 Jan 2023
    8.1
    High

    CVE-2022-35401

    Last Modified: 5 Mar 2025

    An authentication bypass vulnerability exists in the get_IFTTTTtoken.cgi functionality of Asus RT-AX82U 3.0.0.4.386_49674-ge182230. A specially-crafted HTTP request can lead to full administrative access to the device. An attacker would need to send a series of HTTP requests to exploit this vulnerability.

    Published: 10 Jan 2023
    7.5
    High

    CVE-2022-38105

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists in the cm_processREQ_NC opcode of Asus RT-AX82U 3.0.0.4.386_49674-ge182230 router's configuration service. A specially-crafted network packets can lead to a disclosure of sensitive information. An attacker can send a network request to trigger this vulnerability.

    Published: 10 Jan 2023
    7.5
    High

    CVE-2022-38393

    Last Modified: 21 Nov 2024

    A denial of service vulnerability exists in the cfg_server cm_processConnDiagPktList opcode of Asus RT-AX82U 3.0.0.4.386_49674-ge182230 router's configuration service. A specially-crafted network packet can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.

    Published: 10 Jan 2023
    7.5
    High

    CVE-2023-22479

    Last Modified: 10 Mar 2025

    KubePi is a modern Kubernetes panel. A session fixation attack allows an attacker to hijack a legitimate user session, versions 1.6.3 and below are susceptible. A patch will be released in version 1.6.4.

    Published: 10 Jan 2023
    5.8
    Medium

    CVE-2023-22469

    Last Modified: 10 Mar 2025

    Deck is a kanban style organization tool aimed at personal planning and project organization for teams integrated with Nextcloud. When getting the reference preview for Deck cards the user has no access to, unauthorized user could eventually get the cached data of a user that has access. There are currently no known workarounds. It is recommended that the Nextcloud app Deck is upgraded to 1.8.2.

    Published: 10 Jan 2023
    7.5
    High

    CVE-2022-46163

    Last Modified: 10 Mar 2025

    Travel support program is a rails app to support the travel support program of openSUSE (TSP). Sensitive user data (bank account details, password Hash) can be extracted via Ransack query injection. Every deployment of travel-support-program below the patched version is affected. The travel-support-program uses the Ransack library to implement search functionality. In its default configuration, Ransack will allow for query conditions based on properties of associated database objects [1]. The `*_start`, `*_end` or `*_cont` search matchers [2] can then be abused to exfiltrate sensitive string values of associated database objects via character-by-character brute-force (A match is indicated by the returned JSON not being empty). A single bank account number can be extracted with <200 requests, a password hash can be extracted with ~1200 requests, all within a few minutes. The problem has been patched in commit d22916275c51500b4004933ff1b0a69bc807b2b7. In order to work around this issue, you can also cherry pick that patch, however it will not work without the Rails 5.0 migration that was done in #150, which in turn had quite a few pull requests it depended on.

    Published: 10 Jan 2023
    7.5
    High

    CVE-2022-4636

    Last Modified: 16 Jan 2025

    Black Box KVM Firmware version 3.4.31307 on models ACR1000A-R-R2, ACR1000A-T-R2, ACR1002A-T, ACR1002A-R, and ACR1020A-T is vulnerable to path traversal, which may allow an attacker to steal user credentials and other sensitive information through local file inclusion.

    Published: 10 Jan 2023
    5.5
    Medium

    CVE-2023-0162

    Last Modified: 8 Apr 2026

    The CPO Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several of its content type settings parameters in versions up to, and including, 1.0.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 10 Jan 2023
    4.3
    Medium

    CVE-2022-4707

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.3.59. This is due to missing nonce validation in the 'wpr_create_mega_menu_template' AJAX function. This allows unauthenticated attackers to create Mega Menu templates, granted they can trick an administrator into performing an action, such as clicking a link.

    Published: 10 Jan 2023
    4.3
    Medium

    CVE-2022-4701

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_activate_required_plugins' AJAX action in versions up to, and including, 1.3.59. This allows any authenticated user, including those with subscriber-level permissions, to activate the 'contact-form-7', 'media-library-assistant', or 'woocommerce' plugins if they are installed on the site.

    Published: 10 Jan 2023
    4.3
    Medium

    CVE-2022-4703

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_reset_previous_import' AJAX action in versions up to, and including, 1.3.59. This allows any authenticated user, including those with subscriber-level permissions, to reset previously imported data.

    Published: 10 Jan 2023
    4.3
    Medium

    CVE-2022-4705

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_final_settings_setup' AJAX action in versions up to, and including, 1.3.59. This allows any authenticated user, including those with subscriber-level permissions, to finalize activation of preset site configuration templates, which can be chosen and imported via a separate action documented in CVE-2022-4704.

    Published: 10 Jan 2023
    5.4
    Medium

    CVE-2022-4704

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_import_templates_kit' AJAX action in versions up to, and including, 1.3.59. This allows any authenticated user, including those with subscriber-level permissions, to import preset site configuration templates including images and settings.

    Published: 10 Jan 2023
    6.1
    Medium

    CVE-2022-4710

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 1.3.59, due to due to insufficient input sanitization and output escaping of the 'wpr_ajax_search_link_target' parameter in the 'data_fetch' function. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link. This is occurring because 'sanitize_text_field' is insufficient to prevent attribute-based Cross-Site Scripting

    Published: 10 Jan 2023
    4.3
    Medium

    CVE-2022-4708

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_save_template_conditions' AJAX action in versions up to, and including, 1.3.59. This allows any authenticated user, including those with subscriber-level permissions, to modify the conditions under which templates are displayed.

    Published: 10 Jan 2023
    4.3
    Medium

    CVE-2022-4711

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_save_mega_menu_settings' AJAX action in versions up to, and including, 1.3.59. This allows any authenticated user, including those with subscriber-level permissions, to enable and modify Mega Menu settings for any menu item.

    Published: 10 Jan 2023
    5.4
    Medium

    CVE-2022-4702

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_fix_royal_compatibility' AJAX action in versions up to, and including, 1.3.59. This allows any authenticated user, including those with subscriber-level permissions, to deactivate every plugin on the site unless it is part of an extremely limited hardcoded selection. This also switches the site to the 'royal-elementor-kit' theme, potentially resulting in availability issues.

    Published: 10 Jan 2023
    5.4
    Medium

    CVE-2022-4700

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_activate_required_theme' AJAX action in versions up to, and including, 1.3.59. This allows any authenticated user, including those with subscriber-level permissions, to activate the 'royal-elementor-kit' theme. If no such theme is installed doing so can also impact site availability as the site attempts to load a nonexistent theme.

    Published: 10 Jan 2023
    4.3
    Medium

    CVE-2022-4709

    Last Modified: 8 Apr 2026

    The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_import_library_template' AJAX action in versions up to, and including, 1.3.59. This allows any authenticated user, including those with subscriber-level permissions, to import and activate templates from the plugin's template library.

    Published: 10 Jan 2023
    5.5
    Medium

    CVE-2014-125073

    Last Modified: 25 Nov 2024

    A vulnerability was found in mapoor voteapp. It has been rated as critical. Affected by this issue is the function create_poll/do_poll/show_poll/show_refresh of the file app.py. The manipulation leads to sql injection. The patch is identified as b290c21a0d8bcdbd55db860afd3cadec97388e72. It is recommended to apply a patch to fix this issue. VDB-217790 is the identifier assigned to this vulnerability.

    Published: 10 Jan 2023
    5.5
    Medium

    CVE-2016-15017

    Last Modified: 21 Nov 2024

    A vulnerability has been found in fabarea media_upload on TYPO3 and classified as critical. This vulnerability affects the function getUploadedFileList of the file Classes/Service/UploadFileService.php. The manipulation leads to pathname traversal. Upgrading to version 0.9.0 is able to address this issue. The patch is identified as b25d42a4981072321c1a363311d8ea2a4ac8763a. It is recommended to upgrade the affected component. VDB-217786 is the identifier assigned to this vulnerability.

    Published: 10 Jan 2023
    7.8
    High

    CVE-2022-47967

    Last Modified: 8 Apr 2025

    A vulnerability has been identified in Solid Edge (All versions < V2023 MP1). The DOCMGMT.DLL contains a memory corruption vulnerability that could be triggered while parsing files in different file formats such as PAR, ASM, DFT. This could allow an attacker to execute code in the context of the current process.

    Published: 10 Jan 2023
    7.8
    High

    CVE-2022-47935

    Last Modified: 8 Apr 2025

    A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Solid Edge (All versions < V2023). The Jt1001.dll contains a memory corruption vulnerability while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-19078)

    Published: 10 Jan 2023