CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2022-4427

    Last Modified: 14 Apr 2025

    Improper Input Validation vulnerability in OTRS AG OTRS, OTRS AG ((OTRS)) Community Edition allows SQL Injection via TicketSearch Webservice This issue affects OTRS: from 7.0.1 before 7.0.40 Patch 1, from 8.0.1 before 8.0.28 Patch 1; ((OTRS)) Community Edition: from 6.0.1 through 6.0.34.

    Published: 19 Dec 2022
    5.5
    Medium

    CVE-2022-4543

    Last Modified: 8 Apr 2025

    A flaw named "EntryBleed" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems.

    Published: 19 Dec 2022
    7.8
    High

    CVE-2022-4696

    Last Modified: 1 Sept 2026

    There exists a use-after-free vulnerability in the Linux kernel through io_uring and the IORING_OP_SPLICE operation. If IORING_OP_SPLICE is missing the IO_WQ_WORK_FILES flag, which signals that the operation won't use current->nsproxy, so its reference counter is not increased. This assumption is not always true as calling io_splice on specific files will call the get_uts function which will use current->nsproxy leading to invalidly decreasing its reference counter later causing the use-after-free vulnerability. We recommend upgrading to version 5.10.160 or above

    Published: 19 Dec 2022
    6.4
    Medium

    CVE-2022-47549

    Last Modified: 5 Jun 2026

    An unprotected memory-access operation in optee_os in TrustedFirmware Open Portable Trusted Execution Environment (OP-TEE) before 3.20 allows a physically proximate adversary to bypass signature verification and install malicious trusted applications via electromagnetic fault injections.

    Published: 19 Dec 2022
    6.1
    Medium

    CVE-2022-46287

    Last Modified: 17 Apr 2025

    Cross-site scripting vulnerability in DENSHI NYUSATSU CORE SYSTEM v6 R4 and earlier allows a remote unauthenticated attacker to inject an arbitrary script.

    Published: 19 Dec 2022
    4.3
    Medium

    CVE-2022-3876

    Last Modified: 15 Apr 2025

    A vulnerability, which was classified as problematic, has been found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome. This issue affects some unknown processing of the file /api/browserextension/UpdatePassword/ of the component API. The manipulation of the argument PasswordID leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. The identifier VDB-216245 was assigned to this vulnerability.

    Published: 19 Dec 2022
    7.8
    High

    CVE-2022-42945

    Last Modified: 17 Apr 2025

    DWG TrueViewTM 2023 version has a DLL Search Order Hijacking vulnerability. Successful exploitation by a malicious attacker could result in remote code execution on the target system.

    Published: 19 Dec 2022
    7.1
    High

    CVE-2022-42946

    Last Modified: 17 Apr 2025

    Parsing a maliciously crafted X_B and PRT file can force Autodesk Maya 2023 and 2022 to read beyond allocated buffer. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

    Published: 19 Dec 2022
    7.8
    High

    CVE-2022-42947

    Last Modified: 17 Apr 2025

    A maliciously crafted X_B file when parsed through Autodesk Maya 2023 and 2022 can be used to write beyond the allocated buffer. This vulnerability can lead to arbitrary code execution.

    Published: 19 Dec 2022
    7.8
    High

    CVE-2022-43289

    Last Modified: 17 Apr 2025

    Deark v.1.6.2 was discovered to contain a stack overflow via the do_prism_read_palette() function at /modules/atari-img.c.

    Published: 19 Dec 2022
    6.8
    Medium

    CVE-2022-43466

    Last Modified: 17 Apr 2025

    OS command injection vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to execute an arbitrary OS command if a specially crafted request is sent to a specific CGI program.

    Published: 19 Dec 2022
    6.3
    Medium

    CVE-2020-36618

    Last Modified: 15 Apr 2025

    A vulnerability classified as critical has been found in Furqan node-whois. Affected is an unknown function of the file index.coffee. The manipulation leads to improperly controlled modification of object prototype attributes ('prototype pollution'). It is possible to launch the attack remotely. The name of the patch is 46ccc2aee8d063c7b6b4dee2c2834113b7286076. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-216252.

    Published: 19 Dec 2022
    5.4
    Medium

    CVE-2022-46400

    Last Modified: 17 Apr 2025

    The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) allows attackers to bypass passkey entry in legacy pairing.

    Published: 19 Dec 2022
    5.4
    Medium

    CVE-2022-46401

    Last Modified: 17 Apr 2025

    The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) accepts PauseEncReqPlainText before pairing is complete.

    Published: 19 Dec 2022
    6.5
    Medium

    CVE-2022-47551

    Last Modified: 17 Apr 2025

    Apiman 1.5.7 through 2.2.3.Final has insufficient checks for read permissions within the Apiman Manager REST API. The root cause of the issue is the Apiman project's accidental acceptance of a large contribution that was not fully compatible with the security model of Apiman versions before 3.0.0.Final. Because of this, 3.0.0.Final is not affected by the vulnerability.

    Published: 19 Dec 2022
    5
    Medium

    CVE-2022-4613

    Last Modified: 15 Apr 2025

    A vulnerability was found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome and classified as critical. This issue affects some unknown processing of the component Browser Extension Provisioning. The manipulation leads to improper authorization. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-216275.

    Published: 19 Dec 2022
    7.5
    High

    CVE-2022-46399

    Last Modified: 17 Apr 2025

    The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) is unresponsive with ConReqTimeoutZero.

    Published: 19 Dec 2022
    9.8
    Critical

    CVE-2022-44456

    Last Modified: 17 Apr 2025

    CONPROSYS HMI System (CHS) Ver.3.4.4?and earlier allows a remote unauthenticated attacker to execute an arbitrary OS command on the server where the product is running by sending a specially crafted request.

    Published: 19 Dec 2022
    6.3
    Medium

    CVE-2021-4260

    Last Modified: 15 Apr 2025

    A vulnerability was found in oils-js. It has been declared as critical. This vulnerability affects unknown code of the file core/Web.js. The manipulation leads to open redirect. The attack can be initiated remotely. The name of the patch is fad8fbae824a7d367dacb90d56cb02c5cb999d42. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-216268.

    Published: 19 Dec 2022
    6.3
    Medium

    CVE-2021-4261

    Last Modified: 15 Apr 2025

    A vulnerability classified as critical has been found in pacman-canvas up to 1.0.5. Affected is the function addHighscore of the file data/db-handler.php. The manipulation leads to sql injection. It is possible to launch the attack remotely. Upgrading to version 1.0.6 is able to address this issue. The name of the patch is 29522c90ca1cebfce6453a5af5a45281d99b0646. It is recommended to upgrade the affected component. VDB-216270 is the identifier assigned to this vulnerability.

    Published: 19 Dec 2022
    6.1
    Medium

    CVE-2022-41993

    Last Modified: 17 Apr 2025

    Cross-site scripting vulnerability in DENSHI NYUSATSU CORE SYSTEM v6 R4 and earlier allows a remote unauthenticated attacker to inject an arbitrary script.

    Published: 19 Dec 2022
    6.5
    Medium

    CVE-2022-23536

    Last Modified: 16 Apr 2025

    Cortex provides multi-tenant, long term storage for Prometheus. A local file inclusion vulnerability exists in Cortex versions 1.13.0, 1.13.1 and 1.14.0, where a malicious actor could remotely read local files as a result of parsing maliciously crafted Alertmanager configurations when submitted to the Alertmanager Set Configuration API. Only users of the Alertmanager service where `-experimental.alertmanager.enable-api` or `enable_api: true` is configured are affected. Affected Cortex users are advised to upgrade to patched versions 1.13.2 or 1.14.1. However as a workaround, Cortex administrators may reject Alertmanager configurations containing the `api_key_file` setting in the `opsgenie_configs` section before sending to the Set Alertmanager Configuration API.

    Published: 19 Dec 2022
    5.5
    Medium

    CVE-2020-36619

    Last Modified: 15 Apr 2025

    A vulnerability was found in multimon-ng. It has been rated as critical. This issue affects the function add_ch of the file demod_flex.c. The manipulation of the argument ch leads to format string. Upgrading to version 1.2.0 is able to address this issue. The name of the patch is e5a51c508ef952e81a6da25b43034dd1ed023c07. It is recommended to upgrade the affected component. The identifier VDB-216269 was assigned to this vulnerability.

    Published: 19 Dec 2022
    5.4
    Medium

    CVE-2022-31683

    Last Modified: 16 Apr 2025

    Concourse (7.x.y prior to 7.8.3 and 6.x.y prior to 6.7.9) contains an authorization bypass issue. A Concourse user can send a request with body including :team_name=team2 to bypass team scope check to gain access to certain resources belong to any other team.

    Published: 19 Dec 2022
    7.5
    High

    CVE-2022-45041

    Last Modified: 17 Apr 2025

    SQL Injection exits in xinhu < 2.5.0

    Published: 19 Dec 2022
    9.8
    Critical

    CVE-2022-40434

    Last Modified: 17 Apr 2025

    Softr v2.0 was discovered to be vulnerable to HTML injection via the Name field of the Account page.

    Published: 19 Dec 2022
    4.8
    Medium

    CVE-2022-40435

    Last Modified: 17 Apr 2025

    Employee Performance Evaluation System v1.0 was discovered to contain a persistent cross-site scripting (XSS) vulnerability via adding new entries under the Departments and Designations module.

    Published: 19 Dec 2022
    7.2
    High

    CVE-2022-41418

    Last Modified: 17 Apr 2025

    An issue in the component BlogEngine/BlogEngine.NET/AppCode/Api/UploadController.cs of BlogEngine.NET v3.3.8.0 allows attackers to execute arbitrary code via uploading a crafted PNG file.

    Published: 19 Dec 2022
    7.5
    High

    CVE-2016-20018

    Last Modified: 21 Nov 2024

    Knex Knex.js through 2.3.0 has a limited SQL injection vulnerability that can be exploited to ignore the WHERE clause of a SQL query.

    Published: 19 Dec 2022
    9.8
    Critical

    CVE-2022-44109

    Last Modified: 17 Apr 2025

    pdftojson commit 94204bb was discovered to contain a stack overflow via the component Stream::makeFilter(char*, Stream*, Object*, int).

    Published: 19 Dec 2022
    5.4
    Medium

    CVE-2022-4609

    Last Modified: 14 Apr 2025

    Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.9.0.

    Published: 19 Dec 2022
    5.4
    Medium

    CVE-2022-4614

    Last Modified: 14 Apr 2025

    Cross-site Scripting (XSS) - Stored in GitHub repository alagrede/znote-app prior to 1.7.11.

    Published: 19 Dec 2022
    6.1
    Medium

    CVE-2022-4615

    Last Modified: 14 Apr 2025

    Cross-site Scripting (XSS) - Reflected in GitHub repository openemr/openemr prior to 7.0.0.2.

    Published: 19 Dec 2022
    6.1
    Medium

    CVE-2022-46288

    Last Modified: 17 Apr 2025

    Open redirect vulnerability in DENSHI NYUSATSU CORE SYSTEM v6 R4 and earlier allows a remote unauthenticated attacker to redirect a user to an arbitrary web site and conduct a phishing attack by having a user to access a specially crafted URL.

    Published: 19 Dec 2022
    6.5
    Medium

    CVE-2022-46402

    Last Modified: 17 Apr 2025

    The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) accepts PairCon_rmSend with incorrect values.

    Published: 19 Dec 2022
    8.6
    High

    CVE-2022-46403

    Last Modified: 17 Apr 2025

    The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) mishandles reject messages.

    Published: 19 Dec 2022
    5.3
    Medium

    CVE-2022-47547

    Last Modified: 17 Apr 2025

    GossipSub 1.1, as used for Ethereum 2.0, allows a peer to maintain a positive score (and thus not be pruned from the network) even though it continuously misbehaves by never forwarding topic messages.

    Published: 19 Dec 2022
    7.3
    High

    CVE-2022-3875

    Last Modified: 14 Apr 2025

    A vulnerability classified as critical was found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome. This vulnerability affects unknown code of the component API. The manipulation leads to authentication bypass by assumed-immutable data. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-216244.

    Published: 19 Dec 2022
    3.5
    Low

    CVE-2022-3877

    Last Modified: 15 Apr 2025

    A vulnerability, which was classified as problematic, was found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome. Affected is an unknown function of the component URL Field Handler. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. VDB-216246 is the identifier assigned to this vulnerability.

    Published: 19 Dec 2022
    1.9
    Low

    CVE-2022-4610

    Last Modified: 15 Apr 2025

    A vulnerability, which was classified as problematic, has been found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome. Affected by this issue is some unknown functionality. The manipulation leads to risky cryptographic algorithm. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-216272.

    Published: 19 Dec 2022
    4.3
    Medium

    CVE-2022-4611

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as problematic, was found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome. This affects an unknown part. The manipulation leads to hard-coded credentials. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. The identifier VDB-216273 was assigned to this vulnerability.

    Published: 19 Dec 2022
    4.3
    Medium

    CVE-2022-4612

    Last Modified: 15 Apr 2025

    A vulnerability has been found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome and classified as problematic. This vulnerability affects unknown code. The manipulation leads to insufficiently protected credentials. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. VDB-216274 is the identifier assigned to this vulnerability.

    Published: 19 Dec 2022
    8.8
    High

    CVE-2022-43443

    Last Modified: 17 Apr 2025

    OS command injection vulnerability in Buffalo network devices allows an network-adjacent attacker to execute an arbitrary OS command if a specially crafted request is sent to the management page.

    Published: 19 Dec 2022
    6.8
    Medium

    CVE-2022-43486

    Last Modified: 17 Apr 2025

    Hidden functionality vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to enable the debug functionalities and execute an arbitrary command on the affected devices.

    Published: 19 Dec 2022
    9.8
    Critical

    CVE-2022-44108

    Last Modified: 17 Apr 2025

    pdftojson commit 94204bb was discovered to contain a stack overflow via the component Object::copy(Object*):Object.cc.

    Published: 19 Dec 2022
    9.1
    Critical

    CVE-2022-44940

    Last Modified: 17 Apr 2025

    Patchelf v0.9 was discovered to contain an out-of-bounds read via the function modifyRPath at src/patchelf.cc.

    Published: 19 Dec 2022
    7.8
    High

    CVE-2022-4515

    Last Modified: 14 Apr 2025

    A flaw was found in Exuberant Ctags in the way it handles the "-o" option. This option specifies the tag filename. A crafted tag filename specified in the command line or in the configuration file results in arbitrary command execution because the externalSortTags() in sort.c calls the system(3) function in an unsafe way.

    Published: 19 Dec 2022
    3.7
    Low

    CVE-2021-4258

    Last Modified: 15 Apr 2025

    A vulnerability was found in whohas. It has been rated as problematic. This issue affects some unknown processing of the component Package Information Handler. The manipulation leads to cleartext transmission of sensitive information. The attack may be initiated remotely. The real existence of this vulnerability is still doubted at the moment. The name of the patch is 667c3e2e9178f15c23d7918b5db25cd0792c8472. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-216251. NOTE: Most sources redirect to the encrypted site which limits the possibilities of an attack.

    Published: 19 Dec 2022
    5
    Medium

    CVE-2021-4259

    Last Modified: 21 Nov 2024

    A vulnerability was found in phpRedisAdmin up to 1.16.1. It has been classified as problematic. This affects the function authHttpDigest of the file includes/login.inc.php. The manipulation of the argument response leads to use of wrong operator in string comparison. Upgrading to version 1.16.2 is able to address this issue. The name of the patch is 31aa7661e6db6f4dffbf9a635817832a0a11c7d9. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-216267.

    Published: 19 Dec 2022
    5.5
    Medium

    CVE-2021-4262

    Last Modified: 15 Apr 2025

    A vulnerability classified as critical was found in laravel-jqgrid. Affected by this vulnerability is the function getRows of the file src/Mgallegos/LaravelJqgrid/Repositories/EloquentRepositoryAbstract.php. The manipulation leads to sql injection. The name of the patch is fbc2d94f43d0dc772767a5bdb2681133036f935e. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-216271.

    Published: 19 Dec 2022