CVE Feed

    Dashboard / CVE

    0
    Low

    CVE-2023-1576

    Last Modified: 7 Nov 2023

    This is a duplicate of an earlier CVE, CVE-2022-47069.

    Published: 9 Dec 2022
    3.5
    Low

    CVE-2022-4377

    Last Modified: 15 Apr 2025

    A vulnerability was found in S-CMS 5.0 Build 20220328. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Contact Information Page. The manipulation of the argument Make a Call leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-215197 was assigned to this vulnerability.

    Published: 9 Dec 2022
    10
    Critical

    CVE-2022-4390

    Last Modified: 14 Apr 2025

    A network misconfiguration is present in versions prior to 1.0.9.90 of the NETGEAR RAX30 AX2400 series of routers. IPv6 is enabled for the WAN interface by default on these devices. While there are firewall restrictions in place that define access restrictions for IPv4 traffic, these restrictions do not appear to be applied to the WAN interface for IPv6. This allows arbitrary access to any services running on the device that may be inadvertently listening via IPv6, such as the SSH and Telnet servers spawned on ports 22 and 23 by default. This misconfiguration could allow an attacker to interact with services only intended to be accessible by clients on the local network.

    Published: 9 Dec 2022
    6.3
    Medium

    CVE-2022-4375

    Last Modified: 15 Apr 2025

    A vulnerability was found in Mingsoft MCMS up to 5.2.9. It has been classified as critical. Affected is an unknown function of the file /cms/category/list. The manipulation of the argument sqlWhere leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 5.2.10 is able to address this issue. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-215196.

    Published: 9 Dec 2022
    5.4
    Medium

    CVE-2022-25629

    Last Modified: 23 Apr 2025

    An authenticated user who has the privilege to add/edit annotations on the Content tab, can craft a malicious annotation that can be executed on the annotations page (Annotation Text Column).

    Published: 9 Dec 2022
    5.4
    Medium

    CVE-2022-25630

    Last Modified: 23 Apr 2025

    An authenticated user can embed malicious content with XSS into the admin group policy page.

    Published: 9 Dec 2022
    4.1
    Medium

    CVE-2022-29839

    Last Modified: 22 Apr 2025

    Insufficiently Protected Credentials vulnerability in the remote backups application on Western Digital My Cloud devices that could allow an attacker who has gained access to a relevant endpoint to use that information to access protected data. This issue affects: Western Digital My Cloud My Cloud versions prior to 5.25.124 on Linux.

    Published: 9 Dec 2022
    5.4
    Medium

    CVE-2022-34297

    Last Modified: 22 Apr 2025

    Yii Yii2 Gii through 2.2.4 allows stored XSS by injecting a payload into any field.

    Published: 9 Dec 2022
    6.2
    Medium

    CVE-2021-33640

    Last Modified: 17 Apr 2025

    After tar_close(), libtar.c releases the memory pointed to by pointer t. After tar_close() is called in the list() function, it continues to use pointer t: free_longlink_longname(t->th_buf) . As a result, the released memory is used (use-after-free).

    Published: 9 Dec 2022
    6.3
    Medium

    CVE-2022-3724

    Last Modified: 22 Apr 2025

    Crash in the USB HID protocol dissector in Wireshark 3.6.0 to 3.6.8 allows denial of service via packet injection or crafted capture file on Windows

    Published: 9 Dec 2022
    7.5
    High

    CVE-2023-0836

    Last Modified: 18 Feb 2025

    An information leak vulnerability was discovered in HAProxy 2.1, 2.2 before 2.2.27, 2.3, 2.4 before 2.4.21, 2.5 before 2.5.11, 2.6 before 2.6.8, 2.7 before 2.7.1. There are 5 bytes left uninitialized in the connection buffer when encoding the FCGI_BEGIN_REQUEST record. Sensitive data may be disclosed to configured FastCGI backends in an unexpected way.

    Published: 9 Dec 2022
    4.8
    Medium

    CVE-2022-44213

    Last Modified: 22 Apr 2025

    ZKTeco Xiamen Information Technology ZKBio ECO ADMS <=3.1-164 is vulnerable to Cross Site Scripting (XSS).

    Published: 9 Dec 2022
    9.1
    Critical

    CVE-2022-45290

    Last Modified: 23 Apr 2025

    Kbase Doc v1.0 was discovered to contain an arbitrary file deletion vulnerability via the component /web/IndexController.java.

    Published: 9 Dec 2022
    4.3
    Medium

    CVE-2022-29838

    Last Modified: 23 Apr 2025

    Improper Authentication vulnerability in the encrypted volumes and auto mount features of Western Digital My Cloud devices allows insecure direct access to the drive information in the case of a device reset. This issue affects: Western Digital My Cloud My Cloud versions prior to 5.25.124 on Linux.

    Published: 9 Dec 2022
    5.4
    Medium

    CVE-2022-4336

    Last Modified: 14 Apr 2025

    In BAOTA linux panel there exists a stored xss vulnerability attackers can use to obtain sensitive information via the log analysis feature.

    Published: 9 Dec 2022
    6.4
    Medium

    CVE-2022-4382

    Last Modified: 9 Apr 2025

    A use-after-free flaw caused by a race among the superblock operations in the gadgetfs Linux driver was found. It could be triggered by yanking out a device that is running the gadgetfs side.

    Published: 9 Dec 2022
    7.5
    High

    CVE-2022-44790

    Last Modified: 23 Apr 2025

    Interspire Email Marketer through 6.5.1 allows SQL Injection via the surveys module. An unauthenticated attacker could successfully perform an attack to extract potentially sensitive information from the database if the survey id exists.

    Published: 9 Dec 2022
    7.2
    High

    CVE-2022-44838

    Last Modified: 23 Apr 2025

    Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /services/view_service.php.

    Published: 9 Dec 2022
    5.3
    Medium

    CVE-2022-45292

    Last Modified: 23 Apr 2025

    User invites for Funkwhale v1.2.8 do not permanently expire after being used for signup and can be used again after an account has been deleted.

    Published: 9 Dec 2022
    5.4
    Medium

    CVE-2022-41947

    Last Modified: 23 Apr 2025

    DHIS 2 is an open source information system for data capture, management, validation, analytics and visualization. Through various features of DHIS2, an authenticated user may be able to upload a file which includes embedded javascript. The user could then potentially trick another authenticated user to open the malicious file in a browser which would trigger the javascript code, resulting in a cross-site scripting (XSS) attack. DHIS2 administrators should upgrade to the following hotfix releases: 2.36.12.1, 2.37.8.1, 2.38.2.1, 2.39.0.1. Users unable to upgrade may add the following simple CSP rule in your web proxy to the vulnerable endpoints: `script-src 'none'`. This workaround will prevent all javascript from running on those endpoints.

    Published: 8 Dec 2022
    6.7
    Medium

    CVE-2022-41948

    Last Modified: 23 Apr 2025

    DHIS 2 is an open source information system for data capture, management, validation, analytics and visualization. Affected versions are subject to a privilege escalation vulnerability. A DHIS2 user with authority to manage users can assign superuser privileges to themself by manually crafting an HTTP PUT request. Only users with the following DHIS2 user role authorities can exploit this vulnerability. Note that in many systems the only users with user admin privileges are also superusers. In these cases, the escalation vulnerability does not exist. The vulnerability is only exploitable by attackers who can authenticate as users with the user admin authority. As this is usually a small and relatively trusted set of users, exploit vectors will often be limited. DHIS2 administrators should upgrade to the following hotfix releases: 2.36.12.1, 2.37.8.1, 2.38.2.1, 2.39.0.1. The only known workaround to this issue is to avoid the assignment of the user management authority to any users until the patch has been applied.

    Published: 8 Dec 2022
    5
    Medium

    CVE-2022-41949

    Last Modified: 23 Apr 2025

    DHIS 2 is an open source information system for data capture, management, validation, analytics and visualization. In affected versions an authenticated DHIS2 user can craft a request to DHIS2 to instruct the server to make requests to external resources (like third party servers). This could allow an attacker, for example, to identify vulnerable services which might not be otherwise exposed to the public internet or to determine whether a specific file is present on the DHIS2 server. DHIS2 administrators should upgrade to the following hotfix releases: 2.36.12.1, 2.37.8.1, 2.38.2.1, 2.39.0.1. At this time, there is no known workaround or mitigation for this vulnerability.

    Published: 8 Dec 2022
    5.3
    Medium

    CVE-2022-46158

    Last Modified: 23 Apr 2025

    PrestaShop is an open-source e-commerce solution. Versions prior to 1.7.8.8 did not properly restrict host filesystem access for users. Users may have been able to view the contents of the upload directory without appropriate permissions. This issue has been addressed and users are advised to upgrade to version 1.7.8.8. There are no known workarounds for this issue.

    Published: 8 Dec 2022
    8.1
    High

    CVE-2022-46153

    Last Modified: 23 Apr 2025

    Traefik is an open source HTTP reverse proxy and load balancer. In affected versions there is a potential vulnerability in Traefik managing TLS connections. A router configured with a not well-formatted TLSOption is exposed with an empty TLSOption. For instance, a route secured using an mTLS connection set with a wrong CA file is exposed without verifying the client certificates. Users are advised to upgrade to version 2.9.6. Users unable to upgrade should check their logs to detect the error messages and fix your TLS options.

    Published: 8 Dec 2022
    3.5
    Low

    CVE-2022-23469

    Last Modified: 22 Apr 2025

    Traefik is an open source HTTP reverse proxy and load balancer. Versions prior to 2.9.6 are subject to a potential vulnerability in Traefik displaying the Authorization header in its debug logs. In certain cases, if the log level is set to DEBUG, credentials provided using the Authorization header are displayed in the debug logs. Attackers must have access to a users logging system in order for credentials to be stolen. This issue has been addressed in version 2.9.6. Users are advised to upgrade. Users unable to upgrade may set the log level to `INFO`, `WARN`, or `ERROR`.

    Published: 8 Dec 2022
    5.4
    Medium

    CVE-2022-23494

    Last Modified: 23 Apr 2025

    tinymce is an open source rich text editor. A cross-site scripting (XSS) vulnerability was discovered in the alert and confirm dialogs when these dialogs were provided with malicious HTML content. This can occur in plugins that use the alert or confirm dialogs, such as in the `image` plugin, which presents these dialogs when certain errors occur. The vulnerability allowed arbitrary JavaScript execution when an alert presented in the TinyMCE UI for the current user. This vulnerability has been patched in TinyMCE 5.10.7 and TinyMCE 6.3.1 by ensuring HTML sanitization was still performed after unwrapping invalid elements. Users are advised to upgrade to either 5.10.7 or 6.3.1. Users unable to upgrade may ensure the the `images_upload_handler` returns a valid value as per the images_upload_handler documentation.

    Published: 8 Dec 2022
    7.5
    High

    CVE-2022-23495

    Last Modified: 23 Apr 2025

    go-merkledag implements the 'DAGService' interface and adds two ipld node types, Protobuf and Raw for the ipfs project. A `ProtoNode` may be modified in such a way as to cause various encode errors which will trigger a panic on common method calls that don't allow for error returns. A `ProtoNode` should only be able to encode to valid DAG-PB, attempting to encode invalid DAG-PB forms will result in an error from the codec. Manipulation of an existing (newly created or decoded) `ProtoNode` using the modifier methods did not account for certain states that would place the `ProtoNode` into an unencodeable form. Due to conformance with the [`github.com/ipfs/go-block-format#Block`](https://pkg.go.dev/github.com/ipfs/go-block-format#Block) and [`github.com/ipfs/go-ipld-format#Node`](https://pkg.go.dev/github.com/ipfs/go-ipld-format#Node) interfaces, certain methods, which internally require a re-encode if state has changed, will panic due to the inability to return an error. This issue has been addressed across a number of pull requests. Users are advised to upgrade to version 0.8.1 for a complete set of fixes. Users unable to upgrade may attempt to mitigate this issue by sanitising inputs when allowing user-input to set a new `CidBuilder` on a `ProtoNode` and by sanitising `Tsize` (`Link#Size`) values such that they are a reasonable byte-size for sub-DAGs where derived from user-input.

    Published: 8 Dec 2022
    7.5
    High

    CVE-2022-23496

    Last Modified: 23 Apr 2025

    Yet Another UserAgent Analyzer (Yauaa) is a java library that tries to parse and analyze the useragent string and extract as many relevant attributes as possible. Applications using the Client Hints analysis feature introduced with 7.0.0 can crash because the Yauaa library throws an ArrayIndexOutOfBoundsException. If uncaught the exception will result in a program crash. Applications that do not use this feature are not affected. Users are advised to upgrade to version 7.9.0. Users unable to upgrade may catch and discard any ArrayIndexOutOfBoundsException thrown by the Yauaa library.

    Published: 8 Dec 2022
    —
    Unknown

    CVE-2022-4367

    Last Modified: 7 Nov 2023

    Duplicate, use CVE-2023-4279 instead.

    Published: 8 Dec 2022
    6.6
    Medium

    CVE-2022-46831

    Last Modified: 22 Apr 2025

    In JetBrains TeamCity between 2022.10 and 2022.10.1 connecting to AWS using the "Default Credential Provider Chain" allowed TeamCity project administrators to access AWS resources normally limited to TeamCity system administrators.

    Published: 8 Dec 2022
    4.1
    Medium

    CVE-2022-46830

    Last Modified: 23 Apr 2025

    In JetBrains TeamCity between 2022.10 and 2022.10.1 a custom STS endpoint allowed internal port scanning.

    Published: 8 Dec 2022
    7.1
    High

    CVE-2022-46829

    Last Modified: 23 Apr 2025

    In JetBrains JetBrains Gateway before 2022.3 a client could connect without a valid token if the host consented.

    Published: 8 Dec 2022
    5.2
    Medium

    CVE-2022-46828

    Last Modified: 22 Apr 2025

    In JetBrains IntelliJ IDEA before 2022.3 a DYLIB injection on macOS was possible.

    Published: 8 Dec 2022
    3.9
    Low

    CVE-2022-46827

    Last Modified: 22 Apr 2025

    In JetBrains IntelliJ IDEA before 2022.3 an XXE attack leading to SSRF via requests to custom plugin repositories was possible.

    Published: 8 Dec 2022
    6.2
    Medium

    CVE-2022-46826

    Last Modified: 23 Apr 2025

    In JetBrains IntelliJ IDEA before 2022.3 the built-in web server allowed an arbitrary file to be read by exploiting a path traversal vulnerability.

    Published: 8 Dec 2022
    4
    Medium

    CVE-2022-46825

    Last Modified: 23 Apr 2025

    In JetBrains IntelliJ IDEA before 2022.3 the built-in web server leaked information about open projects.

    Published: 8 Dec 2022
    5.6
    Medium

    CVE-2022-46824

    Last Modified: 23 Apr 2025

    In JetBrains IntelliJ IDEA before 2022.2.4 a buffer overflow in the fsnotifier daemon on macOS was possible.

    Published: 8 Dec 2022
    8.1
    High

    CVE-2022-20968

    Last Modified: 21 Nov 2024

    A vulnerability in the Cisco Discovery Protocol processing feature of Cisco IP Phone 7800 and 8800 Series firmware could allow an unauthenticated, adjacent attacker to cause a stack overflow on an affected device. This vulnerability is due to insufficient input validation of received Cisco Discovery Protocol packets. An attacker could exploit this vulnerability by sending crafted Cisco Discovery Protocol traffic to an affected device. A successful exploit could allow the attacker to cause a stack overflow, resulting in possible remote code execution or a denial of service (DoS) condition on an affected device.

    Published: 8 Dec 2022
    7.5
    High

    CVE-2022-23492

    Last Modified: 23 Apr 2025

    go-libp2p is the offical libp2p implementation in the Go programming language. Version `0.18.0` and older of go-libp2p are vulnerable to targeted resource exhaustion attacks. These attacks target libp2p’s connection, stream, peer, and memory management. An attacker can cause the allocation of large amounts of memory, ultimately leading to the process getting killed by the host’s operating system. While a connection manager tasked with keeping the number of connections within manageable limits has been part of go-libp2p, this component was designed to handle the regular churn of peers, not a targeted resource exhaustion attack. Users are advised to upgrade their version of go-libp2p to version `0.18.1` or newer. Users unable to upgrade may consult the denial of service (dos) mitigation page for more information on how to incorporate mitigation strategies, monitor your application, and respond to attacks.

    Published: 8 Dec 2022
    9.8
    Critical

    CVE-2022-33186

    Last Modified: 5 Feb 2026

    A vulnerability in Brocade Fabric OS software v9.1.1, v9.0.1e, v8.2.3c, v7.4.2j, and earlier versions could allow a remote unauthenticated attacker to execute on a Brocade Fabric OS switch commands capable of modifying zoning, disabling the switch, disabling ports, and modifying the switch IP address.

    Published: 8 Dec 2022
    7.5
    High

    CVE-2022-45514

    Last Modified: 23 Apr 2025

    Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the page parameter at /goform/webExcptypemanFilter.

    Published: 8 Dec 2022
    7.5
    High

    CVE-2022-45512

    Last Modified: 23 Apr 2025

    Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the page parameter at /goform/SafeEmailFilter.

    Published: 8 Dec 2022
    7.5
    High

    CVE-2022-45511

    Last Modified: 23 Apr 2025

    Tenda W30E V1.0.1.25(633) was discovered to contain a stack overflow via the PPPOEPassword parameter at /goform/QuickIndex.

    Published: 8 Dec 2022
    4.6
    Medium

    CVE-2022-39900

    Last Modified: 23 Apr 2025

    Improper access control vulnerability in Nice Catch prior to SMR Dec-2022 Release 1 allows physical attackers to access contents of all toast generated in the application installed in Secure Folder through Nice Catch.

    Published: 8 Dec 2022
    6.9
    Medium

    CVE-2022-39908

    Last Modified: 22 Apr 2025

    TOCTOU vulnerability in Samsung decoding library for video thumbnails prior to SMR Dec-2022 Release 1 allows local attacker to perform Out-Of-Bounds Write.

    Published: 8 Dec 2022
    4
    Medium

    CVE-2022-39914

    Last Modified: 23 Apr 2025

    Exposure of Sensitive Information from an Unauthorized Actor vulnerability in Samsung DisplayManagerService prior to Android T(13) allows local attacker to access connected DLNA device information.

    Published: 8 Dec 2022
    3.5
    Low

    CVE-2022-4348

    Last Modified: 15 Apr 2025

    A vulnerability was found in y_project RuoYi-Cloud. It has been rated as problematic. Affected by this issue is some unknown functionality of the component JSON Handler. The manipulation leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-215108.

    Published: 8 Dec 2022
    7.5
    High

    CVE-2022-4366

    Last Modified: 14 Apr 2025

    Missing Authorization in GitHub repository lirantal/daloradius prior to master branch.

    Published: 8 Dec 2022
    4.3
    Medium

    CVE-2020-36610

    Last Modified: 15 Apr 2025

    A vulnerability was found in annyshow DuxCMS 2.1. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-215116.

    Published: 8 Dec 2022
    8.8
    High

    CVE-2022-46792

    Last Modified: 23 Apr 2025

    Hasura GraphQL Engine before 2.15.2 mishandles row-level authorization in the Update Many API for Postgres backends. The fixed versions are 2.10.2, 2.11.3, 2.12.1, 2.13.2, 2.14.1, and 2.15.2. (Versions before 2.10.0 are unaffected.)

    Published: 8 Dec 2022