CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2022-3073

    Last Modified: 17 Apr 2025

    Quanos "SCHEMA ST4" example web templates in version Bootstrap 2019 v2/2021 v1/2022 v1/2022 SP1 v1 or below are prone to JavaScript injection allowing a remote attacker to hijack existing sessions to e.g. other web services in the same environment or execute scripts in the users browser environment. The affected script is '*-schema.js'.

    Published: 14 Dec 2022
    5.7
    Medium

    CVE-2022-23504

    Last Modified: 21 Apr 2025

    TYPO3 is an open source PHP based web content management system. Versions prior to 9.5.38, 10.4.33, 11.5.20, and 12.1.1 are subject to Sensitive Information Disclosure. Due to the lack of handling user-submitted YAML placeholder expressions in the site configuration backend module, attackers could expose sensitive internal information, such as system configuration or HTTP request messages of other website visitors. A valid backend user account having administrator privileges is needed to exploit this vulnerability. This issue has been patched in versions 9.5.38 ELTS, 10.4.33, 11.5.20, 12.1.1.

    Published: 14 Dec 2022
    7.5
    High

    CVE-2022-23503

    Last Modified: 18 Apr 2025

    TYPO3 is an open source PHP based web content management system. Versions prior to 8.7.49, 9.5.38, 10.4.33, 11.5.20, and 12.1.1 are vulnerable to Code Injection. Due to the lack of separating user-submitted data from the internal configuration in the Form Designer backend module, it is possible to inject code instructions to be processed and executed via TypoScript as PHP code. The existence of individual TypoScript instructions for a particular form item and a valid backend user account with access to the form module are needed to exploit this vulnerability. This issue is patched in versions 8.7.49 ELTS, 9.5.38 ELTS, 10.4.33, 11.5.20, 12.1.1.

    Published: 14 Dec 2022
    5.4
    Medium

    CVE-2022-23502

    Last Modified: 21 Apr 2025

    TYPO3 is an open source PHP based web content management system. In versions prior to 10.4.33, 11.5.20, and 12.1.1, When users reset their password using the corresponding password recovery functionality, existing sessions for that particular user account were not revoked. This applied to both frontend user sessions and backend user sessions. This issue is patched in versions 10.4.33, 11.5.20, 12.1.1.

    Published: 14 Dec 2022
    5.9
    Medium

    CVE-2022-23501

    Last Modified: 21 Apr 2025

    TYPO3 is an open source PHP based web content management system. In versions prior to 8.7.49, 9.5.38, 10.4.33, 11.5.20, and 12.1.1 TYPO3 is vulnerable to Improper Authentication. Restricting frontend login to specific users, organized in different storage folders (partitions), can be bypassed. A potential attacker might use this ambiguity in usernames to get access to a different account - however, credentials must be known to the adversary. This issue is patched in versions 8.7.49 ELTS, 9.5.38 ELTS, 10.4.33, 11.5.20, 12.1.1.

    Published: 14 Dec 2022
    5.9
    Medium

    CVE-2022-23500

    Last Modified: 21 Apr 2025

    TYPO3 is an open source PHP based web content management system. In versions prior to 9.5.38, 10.4.33, 11.5.20, and 12.1.1, requesting invalid or non-existing resources via HTTP triggers the page error handler, which again could retrieve content to be shown as an error message from another page. This leads to a scenario in which the application is calling itself recursively - amplifying the impact of the initial attack until the limits of the web server are exceeded. This vulnerability is very similar, but not identical, to the one described in CVE-2021-21359. This issue is patched in versions 9.5.38 ELTS, 10.4.33, 11.5.20 or 12.1.1.

    Published: 14 Dec 2022
    8.4
    High

    CVE-2022-22063

    Last Modified: 18 Apr 2025

    Memory corruption in Core due to improper configuration in boot remapper.

    Published: 14 Dec 2022
    7.4
    High

    CVE-2022-24377

    Last Modified: 17 Apr 2025

    The package cycle-import-check before 1.3.2 are vulnerable to Command Injection via the writeFileToTmpDirAndOpenIt function due to improper user-input sanitization.

    Published: 14 Dec 2022
    —
    Unknown

    CVE-2022-4463

    Last Modified: 7 Nov 2023

    This candidate is unused by its CNA.

    Published: 14 Dec 2022
    9
    Critical

    CVE-2022-31358

    Last Modified: 5 Jul 2026

    A reflected cross-site scripting (XSS) vulnerability in Proxmox Virtual Environment prior to v7.2-3 allows remote attackers to execute arbitrary web scripts or HTML via non-existent endpoints under path /api2/html/.

    Published: 14 Dec 2022
    5.5
    Medium

    CVE-2023-32611

    Last Modified: 23 Jun 2026

    A flaw was found in GLib. GVariant deserialization is vulnerable to a slowdown issue where a crafted GVariant can cause excessive processing, leading to denial of service.

    Published: 14 Dec 2022
    4.7
    Medium

    CVE-2022-23527

    Last Modified: 18 Apr 2025

    mod_auth_openidc is an OpenID Certified™ authentication and authorization module for the Apache 2.x HTTP server. Versions prior to 2.4.12.2 are vulnerable to Open Redirect. When providing a logout parameter to the redirect URI, the existing code in oidc_validate_redirect_url() does not properly check for URLs that start with /\t, leading to an open redirect. This issue has been patched in version 2.4.12.2. Users unable to upgrade can mitigate the issue by configuring mod_auth_openidc to only allow redirection when the destination matches a given regular expression with OIDCRedirectURLsAllowed.

    Published: 14 Dec 2022
    3.5
    Low

    CVE-2022-4495

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as problematic, has been found in collective.dms.basecontent up to 1.6. This issue affects the function renderCell of the file src/collective/dms/basecontent/browser/column.py. The manipulation leads to cross site scripting. The attack may be initiated remotely. Upgrading to version 1.7 is able to address this issue. The name of the patch is 6c4d616fcc771822a14ebae5e23f3f6d96d134bd. It is recommended to upgrade the affected component. The identifier VDB-215813 was assigned to this vulnerability.

    Published: 14 Dec 2022
    6.3
    Medium

    CVE-2022-4494

    Last Modified: 15 Apr 2025

    A vulnerability, which was classified as critical, has been found in bspkrs MCPMappingViewer. Affected by this issue is the function extractZip of the file src/main/java/bspkrs/mmv/RemoteZipHandler.java of the component ZIP File Handler. The manipulation leads to path traversal. The attack may be launched remotely. The name of the patch is 6e602746c96b4756c271d080dae7d22ad804a1bd. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-215804.

    Published: 14 Dec 2022
    9.8
    Critical

    CVE-2022-46255

    Last Modified: 22 Apr 2025

    An improper limitation of a pathname to a restricted directory vulnerability was identified in GitHub Enterprise Server that enabled remote code execution. A check was added within Pages to ensure the working directory is clean before unpacking new content to prevent an arbitrary file overwrite bug. This vulnerability affected only version 3.7.0 of GitHub Enterprise Server and was fixed in version 3.7.1. This vulnerability was reported via the GitHub Bug Bounty program.

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-4437

    Last Modified: 21 Nov 2024

    Use after free in Mojo IPC in Google Chrome prior to 108.0.5359.124 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-4438

    Last Modified: 21 Nov 2024

    Use after free in Blink Frames in Google Chrome prior to 108.0.5359.124 allowed a remote attacker who convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-4440

    Last Modified: 21 Nov 2024

    Use after free in Profiles in Google Chrome prior to 108.0.5359.124 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

    Published: 14 Dec 2022
    7.8
    High

    CVE-2022-4283

    Last Modified: 29 Aug 2025

    A vulnerability was found in X.Org. This security flaw occurs because the XkbCopyNames function left a dangling pointer to freed memory, resulting in out-of-bounds memory access on subsequent XkbGetKbdByName requests.. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions.

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-46340

    Last Modified: 22 Apr 2025

    A vulnerability was found in X.Org. This security flaw occurs becuase the swap handler for the XTestFakeInput request of the XTest extension may corrupt the stack if GenericEvents with lengths larger than 32 bytes are sent through a the XTestFakeInput request. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions. This issue does not affect systems where client and server use the same byte order.

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-46342

    Last Modified: 22 Apr 2025

    A vulnerability was found in X.Org. This security flaw occurs because the handler for the XvdiSelectVideoNotify request may write to memory after it has been freed. This issue can lead to local privileges elevation on systems where the X se

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-46343

    Last Modified: 22 Apr 2025

    A vulnerability was found in X.Org. This security flaw occurs because the handler for the ScreenSaverSetAttributes request may write to memory after it has been freed. This issue can lead to local privileges elevation on systems where the X server is running privileged and remote code execution for ssh X forwarding sessions.

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-4439

    Last Modified: 21 Nov 2024

    Use after free in Aura in Google Chrome on Windows prior to 108.0.5359.124 allowed a remote attacker who convinced the user to engage in specific UI interactions to potentially exploit heap corruption via specific UI interactions. (Chromium security severity: High)

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-4436

    Last Modified: 21 Nov 2024

    Use after free in Blink Media in Google Chrome prior to 108.0.5359.124 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 14 Dec 2022
    7.8
    High

    CVE-2022-44898

    Last Modified: 22 Apr 2025

    The MsIo64.sys component in Asus Aura Sync through v1.07.79 does not properly validate input to IOCTL 0x80102040, 0x80102044, 0x80102050, and 0x80102054, allowing attackers to trigger a memory corruption and cause a Denial of Service (DoS) or escalate privileges via crafted IOCTL requests.

    Published: 14 Dec 2022
    9.8
    Critical

    CVE-2022-46609

    Last Modified: 22 Apr 2025

    Python3-RESTfulAPI commit d9907f14e9e25dcdb54f5b22252b0e9452e3970e and e772e0beee284c50946e94c54a1d43071ca78b74 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

    Published: 14 Dec 2022
    9.1
    Critical

    CVE-2022-47409

    Last Modified: 21 Apr 2025

    An issue was discovered in the fp_newsletter (aka Newsletter subscriber management) extension before 1.1.1, 1.2.0, 2.x before 2.1.2, 2.2.1 through 2.4.0, and 3.x before 3.2.6 for TYPO3. Attackers can unsubscribe everyone via a series of modified subscription UIDs in deleteAction operations.

    Published: 14 Dec 2022
    7.2
    High

    CVE-2022-46117

    Last Modified: 22 Apr 2025

    Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/?page=view_product&id=.

    Published: 14 Dec 2022
    5.4
    Medium

    CVE-2022-47406

    Last Modified: 21 Apr 2025

    An issue was discovered in the fe_change_pwd (aka Change password for frontend users) extension before 2.0.5, and 3.x before 3.0.3, for TYPO3. The extension fails to revoke existing sessions for the current user when the password has been changed.

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-46443

    Last Modified: 22 Apr 2025

    mesinkasir Bangresto 1.0 is vulnberable to SQL Injection via the itemqty%5B%5D parameter.

    Published: 14 Dec 2022
    5.4
    Medium

    CVE-2020-9419

    Last Modified: 22 Apr 2025

    Multiple stored cross-site scripting (XSS) vulnerabilities in Arcadyan Wifi routers VRV9506JAC23 allow remote attackers to inject arbitrary web script or HTML via the hostName and domain_name parameters present in the LAN configuration section of the administrative dashboard.

    Published: 14 Dec 2022
    6.5
    Medium

    CVE-2020-9420

    Last Modified: 22 Apr 2025

    The login password of the web administrative dashboard in Arcadyan Wifi routers VRV9506JAC23 is sent in cleartext, allowing an attacker to sniff and intercept traffic to learn the administrative credentials to the router.

    Published: 14 Dec 2022
    7.8
    High

    CVE-2022-44910

    Last Modified: 22 Apr 2025

    Binbloom 2.0 was discovered to contain a heap buffer overflow via the read_pointer function at /binbloom-master/src/helpers.c.

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-42856

    Last Modified: 23 Oct 2025

    A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.1.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.1..

    Published: 14 Dec 2022
    7.2
    High

    CVE-2022-31700

    Last Modified: 22 Apr 2025

    VMware Workspace ONE Access and Identity Manager contain an authenticated remote code execution vulnerability. VMware has evaluated the severity of this issue to be in the Important severity range with a maximum CVSSv3 base score of 7.2.

    Published: 14 Dec 2022
    5.3
    Medium

    CVE-2022-31701

    Last Modified: 22 Apr 2025

    VMware Workspace ONE Access and Identity Manager contain a broken authentication vulnerability. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVSSv3 base score of 5.3.

    Published: 14 Dec 2022
    9.8
    Critical

    CVE-2022-31702

    Last Modified: 22 Apr 2025

    vRealize Network Insight (vRNI) contains a command injection vulnerability present in the vRNI REST API. A malicious actor with network access to the vRNI REST API can execute commands without authentication.

    Published: 14 Dec 2022
    7.5
    High

    CVE-2022-31703

    Last Modified: 22 Apr 2025

    The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.

    Published: 14 Dec 2022
    7.2
    High

    CVE-2022-46119

    Last Modified: 22 Apr 2025

    Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/?page=categories&c=.

    Published: 14 Dec 2022
    7.2
    High

    CVE-2022-46126

    Last Modified: 21 Apr 2025

    Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/admin/brands/manage_brand.php?id=.

    Published: 14 Dec 2022
    7.2
    High

    CVE-2022-46127

    Last Modified: 21 Apr 2025

    Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/classes/Master.php?f=delete_product.

    Published: 14 Dec 2022
    9.8
    Critical

    CVE-2022-38488

    Last Modified: 22 Apr 2025

    logrocket-oauth2-example through 2020-05-27 allows SQL injection via the /auth/register username parameter.

    Published: 14 Dec 2022
    8.2
    High

    CVE-2022-31705

    Last Modified: 18 Apr 2025

    VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write vulnerability in the USB 2.0 controller (EHCI). A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. On ESXi, the exploitation is contained within the VMX sandbox whereas, on Workstation and Fusion, this may lead to code execution on the machine where Workstation or Fusion is installed.

    Published: 14 Dec 2022
    7.2
    High

    CVE-2022-23741

    Last Modified: 22 Apr 2025

    An incorrect authorization vulnerability was identified in GitHub Enterprise Server that allowed a scoped user-to-server token to escalate to full admin/owner privileges. An attacker would require an account with admin access to install a malicious GitHub App. This vulnerability was fixed in versions 3.3.17, 3.4.12, 3.5.9, and 3.6.5. This vulnerability was reported via the GitHub Bug Bounty program.

    Published: 14 Dec 2022
    9.8
    Critical

    CVE-2022-46071

    Last Modified: 22 Apr 2025

    There is SQL Injection vulnerability at Helmet Store Showroom v1.0 Login Page. This vulnerability can be exploited to bypass admin access.

    Published: 14 Dec 2022
    9.8
    Critical

    CVE-2022-46072

    Last Modified: 22 Apr 2025

    Helmet Store Showroom v1.0 vulnerable to unauthenticated SQL Injection.

    Published: 14 Dec 2022
    6.1
    Medium

    CVE-2022-46073

    Last Modified: 22 Apr 2025

    Helmet Store Showroom 1.0 is vulnerable to Cross Site Scripting (XSS).

    Published: 14 Dec 2022
    8.8
    High

    CVE-2022-46074

    Last Modified: 22 Apr 2025

    Helmet Store Showroom 1.0 is vulnerable to Cross Site Request Forgery (CSRF). An unauthenticated user can add an admin account due to missing CSRF protection.

    Published: 14 Dec 2022
    7.2
    High

    CVE-2022-46118

    Last Modified: 22 Apr 2025

    Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/?page=product_per_brand&bid=.

    Published: 14 Dec 2022
    7.2
    High

    CVE-2022-46120

    Last Modified: 22 Apr 2025

    Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/admin/?page=products/view_product&id=.

    Published: 14 Dec 2022