CVE Feed

    Dashboard / CVE

    —
    Unknown

    CVE-2022-46243

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2022. Notes: none.

    Published: 28 Nov 2022
    —
    Unknown

    CVE-2022-46244

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2022. Notes: none.

    Published: 28 Nov 2022
    8.8
    High

    CVE-2022-45442

    Last Modified: 4 Nov 2025

    Sinatra is a domain-specific language for creating web applications in Ruby. An issue was discovered in Sinatra 2.0 before 2.2.3 and 3.0 before 3.0.4. An application is vulnerable to a reflected file download (RFD) attack that sets the Content-Disposition header of a response when the filename is derived from user-supplied input. Version 2.2.3 and 3.0.4 contain patches for this issue.

    Published: 28 Nov 2022
    8.8
    High

    CVE-2022-31877

    Last Modified: 25 Apr 2025

    An issue in the component MSI.TerminalServer.exe of MSI Center v1.0.41.0 allows attackers to escalate privileges via a crafted TCP packet.

    Published: 28 Nov 2022
    9.8
    Critical

    CVE-2022-36193

    Last Modified: 25 Apr 2025

    SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent changes to the application's content or behavior by using malicious SQL queries.

    Published: 28 Nov 2022
    5.5
    Medium

    CVE-2022-4104

    Last Modified: 14 Apr 2025

    A loop with an unreachable exit condition can be triggered by passing a crafted JPEG file to the Lepton image compression tool, resulting in a denial-of-service.

    Published: 28 Nov 2022
    9.1
    Critical

    CVE-2022-41912

    Last Modified: 23 Apr 2025

    The crewjam/saml go library prior to version 0.4.9 is vulnerable to an authentication bypass when processing SAML responses containing multiple Assertion elements. This issue has been corrected in version 0.4.9. There are no workarounds other than upgrading to a fixed version.

    Published: 28 Nov 2022
    9.8
    Critical

    CVE-2022-44401

    Last Modified: 29 Apr 2025

    Online Tours & Travels Management System v1.0 contains an arbitrary file upload vulnerability via /tour/admin/file.php.

    Published: 28 Nov 2022
    —
    Unknown

    CVE-2022-45119

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 28 Nov 2022
    4.8
    Medium

    CVE-2022-45221

    Last Modified: 25 Apr 2025

    Web-Based Student Clearance System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in changepassword.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtnew_password parameter.

    Published: 28 Nov 2022
    4.8
    Medium

    CVE-2022-45223

    Last Modified: 28 Apr 2025

    Web-Based Student Clearance System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /Admin/add-student.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtfullname parameter.

    Published: 28 Nov 2022
    4.8
    Medium

    CVE-2022-45224

    Last Modified: 28 Apr 2025

    Web-Based Student Clearance System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in Admin/add-admin.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtfullname parameter.

    Published: 28 Nov 2022
    8.4
    High

    CVE-2022-46147

    Last Modified: 22 Apr 2025

    Drag and Drop XBlock v2 implements a drag-and-drop style problem, where a learner has to drag items to zones on a target image. Versions prior to 3.0.0 are vulnerable to cross-site scripting in multiple XBlock Fields. Any platform that has deployed the XBlock may be impacted. Version 3.0.0 contains a patch for this issue. There are no known workarounds.

    Published: 28 Nov 2022
    9.1
    Critical

    CVE-2022-43705

    Last Modified: 25 Apr 2025

    In Botan before 2.19.3, it is possible to forge OCSP responses due to a certificate verification error. This issue was introduced in Botan 1.11.34 (November 2016).

    Published: 27 Nov 2022
    6.5
    Medium

    CVE-2022-45914

    Last Modified: 29 Apr 2025

    The ESL (Electronic Shelf Label) protocol, as implemented by (for example) the OV80e934802 RF transceiver on the ETAG-2130-V4.3 20190629 board, does not use authentication, which allows attackers to change label values via 433 MHz RF signals, as demonstrated by disrupting the organization of a hospital storage unit, or changing retail pricing.

    Published: 27 Nov 2022
    9.8
    Critical

    CVE-2022-45933

    Last Modified: 29 Apr 2025

    KubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authentication, and retrieves certificate files that can be used for authentication as kube-admin. NOTE: the vendor's position is that KubeView was a "fun side project and a learning exercise," and not "very secure."

    Published: 27 Nov 2022
    7.8
    High

    CVE-2022-45939

    Last Modified: 28 Apr 2025

    GNU Emacs through 28.2 allows attackers to execute commands via shell metacharacters in the name of a source-code file, because lib-src/etags.c uses the system C library function in its implementation of the ctags program. For example, a victim may use the "ctags *" command (suggested in the ctags documentation) in a situation where the current working directory has contents that depend on untrusted input.

    Published: 27 Nov 2022
    9.8
    Critical

    CVE-2022-45907

    Last Modified: 25 Apr 2025

    In PyTorch before trunk/89695, torch.jit.annotations.parse_type_line can cause arbitrary code execution because eval is used unsafely.

    Published: 26 Nov 2022
    9.8
    Critical

    CVE-2022-45908

    Last Modified: 25 Apr 2025

    In PaddlePaddle before 2.4, paddle.audio.functional.get_window is vulnerable to code injection because it calls eval on a user-supplied winstr. This may lead to arbitrary code execution.

    Published: 26 Nov 2022
    9.1
    Critical

    CVE-2022-45909

    Last Modified: 25 Apr 2025

    drachtio-server before 0.8.19 has a heap-based buffer over-read via a long Request-URI in an INVITE request.

    Published: 26 Nov 2022
    7.5
    High

    CVE-2022-24999

    Last Modified: 29 Apr 2025

    qs before 6.10.3, as used in Express before 4.17.3 and other products, allows attackers to cause a Node process hang for an Express application because an __ proto__ key can be used. In many typical Express use cases, an unauthenticated remote attacker can place the attack payload in the query string of the URL that is used to visit the application, such as a[__proto__]=b&a[__proto__]&a[length]=100000000. The fix was backported to qs 6.9.7, 6.8.3, 6.7.3, 6.6.1, 6.5.3, 6.4.1, 6.3.3, and 6.2.4 (and therefore Express 4.17.3, which has "deps: [email protected]" in its release description, is not vulnerable).

    Published: 26 Nov 2022
    4.3
    Medium

    CVE-2022-38377

    Last Modified: 21 Nov 2024

    An improper access control vulnerability [CWE-284] in FortiManager 7.2.0, 7.0.0 through 7.0.3, 6.4.0 through 6.4.7, 6.2.0 through 6.2.9, 6.0.0 through 6.0.11 and FortiAnalyzer 7.2.0, 7.0.0 through 7.0.3, 6.4.0 through 6.4.8, 6.2.0 through 6.2.10, 6.0.0 through 6.0.12 may allow a remote and authenticated admin user assigned to a specific ADOM to access other ADOMs information such as device information and dashboard information.

    Published: 25 Nov 2022
    7.5
    High

    CVE-2022-38767

    Last Modified: 14 Apr 2026

    An issue was discovered in Wind River VxWorks 6.9 and 7, that allows a specifically crafted packet sent by a Radius server, may cause Denial of Service during the IP Radius access procedure.

    Published: 25 Nov 2022
    9.8
    Critical

    CVE-2022-45476

    Last Modified: 31 Dec 2025

    Tiny File Manager version 2.4.8 executes the code of files uploaded by users of the application, instead of just returning them for download. This is possible because the application is vulnerable to insecure file upload.

    Published: 25 Nov 2022
    7.5
    High

    CVE-2022-38166

    Last Modified: 29 Apr 2025

    In F-Secure Endpoint Protection for Windows and macOS before channel with Capricorn database 2022-11-22_07, the aerdl.dll unpacker handler crashes. This can lead to a scanning engine crash, triggerable remotely by an attacker for denial of service.

    Published: 25 Nov 2022
    8.8
    High

    CVE-2022-40282

    Last Modified: 29 Apr 2025

    The web server of Hirschmann BAT-C2 before 09.13.01.00R04 allows authenticated command injection. This allows an authenticated attacker to pass commands to the shell of the system because the dir parameter of the FsCreateDir Ajax function is not sufficiently sanitized. The vendor's ID is BSECV-2022-21.

    Published: 25 Nov 2022
    8.1
    High

    CVE-2022-41157

    Last Modified: 24 Apr 2025

    A specific file on the sERP server if Kyungrinara(ERP solution) has a fixed password with the SYSTEM authority. This vulnerability could allow attackers to leak or steal sensitive information or execute malicious commands.

    Published: 25 Nov 2022
    9.1
    Critical

    CVE-2022-45152

    Last Modified: 29 Apr 2025

    A blind Server-Side Request Forgery (SSRF) vulnerability was found in Moodle. This flaw exists due to insufficient validation of user-supplied input in LTI provider library. The library does not utilise Moodle's inbuilt cURL helper, which resulted in a blind SSRF risk. An attacker can send a specially crafted HTTP request and trick the application to initiate requests to arbitrary systems. This vulnerability allows a remote attacker to perform SSRF attacks.

    Published: 25 Nov 2022
    7.5
    High

    CVE-2022-44411

    Last Modified: 29 Apr 2025

    Web Based Quiz System v1.0 transmits user passwords in plaintext during the authentication process, allowing attackers to obtain users' passwords via a bruteforce attack.

    Published: 25 Nov 2022
    7.5
    High

    CVE-2022-2721

    Last Modified: 25 Apr 2025

    In affected versions of Octopus Server it is possible for target discovery to print certain values marked as sensitive to log files in plaint-text in when verbose logging is enabled.

    Published: 25 Nov 2022
    5.4
    Medium

    CVE-2022-45036

    Last Modified: 25 Apr 2025

    A cross-site scripting (XSS) vulnerability in the Search Settings module of WBCE CMS v1.5.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the No Results field.

    Published: 25 Nov 2022
    5.4
    Medium

    CVE-2022-45037

    Last Modified: 25 Apr 2025

    A cross-site scripting (XSS) vulnerability in /admin/users/index.php of WBCE CMS v1.5.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Display Name field.

    Published: 25 Nov 2022
    5.4
    Medium

    CVE-2022-45038

    Last Modified: 25 Apr 2025

    A cross-site scripting (XSS) vulnerability in /admin/settings/save.php of WBCE CMS v1.5.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Website Footer field.

    Published: 25 Nov 2022
    7.2
    High

    CVE-2022-45039

    Last Modified: 25 Apr 2025

    An arbitrary file upload vulnerability in the Server Settings module of WBCE CMS v1.5.4 allows attackers to execute arbitrary code via a crafted PHP file.

    Published: 25 Nov 2022
    5.4
    Medium

    CVE-2022-45040

    Last Modified: 25 Apr 2025

    A cross-site scripting (XSS) vulnerability in /admin/pages/sections_save.php of WBCE CMS v1.5.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name Section field.

    Published: 25 Nov 2022
    9
    Critical

    CVE-2022-37721

    Last Modified: 25 Apr 2025

    PyroCMS 3.9 is vulnerable to a stored Cross Site Scripting (XSS_ when a low privileged user such as an author, injects a crafted html and javascript payload in a blog post, leading to full admin account takeover or privilege escalation.

    Published: 25 Nov 2022
    4.6
    Medium

    CVE-2022-39325

    Last Modified: 23 Apr 2025

    BaserCMS is a content management system with a japanese language focus. In affected versions there is a cross-site scripting vulnerability on the management system of baserCMS. This is a vulnerability that needs to be addressed when the management system is used by an unspecified number of users. Users of baserCMS are advised to upgrade as soon as possible. There are no known workarounds for this vulnerability.

    Published: 25 Nov 2022
    3.5
    Low

    CVE-2022-39346

    Last Modified: 23 Apr 2025

    Nextcloud server is an open source personal cloud server. Affected versions of nextcloud server did not properly limit user display names which could allow a malicious users to overload the backing database and cause a denial of service. It is recommended that the Nextcloud Server is upgraded to 22.2.10, 23.0.7 or 24.0.3. There are no known workarounds for this issue.

    Published: 25 Nov 2022
    3.5
    Low

    CVE-2022-4091

    Last Modified: 15 Apr 2025

    A vulnerability was found in SourceCodester Canteen Management System. It has been classified as problematic. This affects the function query of the file food.php. The manipulation of the argument product_name leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-214359.

    Published: 25 Nov 2022
    7.8
    High

    CVE-2022-41156

    Last Modified: 23 Apr 2025

    Remote code execution vulnerability due to insufficient verification of URLs, etc. in OndiskPlayerAgent. A remote attacker could exploit the vulnerability to cause remote code execution by causing an arbitrary user to download and execute malicious code.

    Published: 25 Nov 2022
    7.2
    High

    CVE-2022-41158

    Last Modified: 29 Apr 2025

    Remote code execution vulnerability can be achieved by using cookie values as paths to a file by this builder program. A remote attacker could exploit the vulnerability to execute or inject malicious code.

    Published: 25 Nov 2022
    9.8
    Critical

    CVE-2022-41705

    Last Modified: 29 Apr 2025

    Badaso version 2.6.3 allows an unauthenticated remote attacker to execute arbitrary code remotely on the server. This is possible because the application does not properly validate the data uploaded by users.

    Published: 25 Nov 2022
    6.5
    Medium

    CVE-2022-41712

    Last Modified: 29 Apr 2025

    Frappe version 14.10.0 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not correctly validate the information injected by the user in the import_file parameter.

    Published: 25 Nov 2022
    9.6
    Critical

    CVE-2022-4135

    Last Modified: 24 Oct 2025

    Heap buffer overflow in GPU in Google Chrome prior to 107.0.5304.121 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

    Published: 25 Nov 2022
    6.1
    Medium

    CVE-2022-0698

    Last Modified: 25 Apr 2025

    Microweber version 1.3.1 allows an unauthenticated user to perform an account takeover via an XSS on the 'select-file' parameter.

    Published: 25 Nov 2022
    8.8
    High

    CVE-2022-23044

    Last Modified: 31 Dec 2025

    Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to persuade users to perform unintended actions within the application. This is possible because the application is vulnerable to CSRF.

    Published: 25 Nov 2022
    3.3
    Low

    CVE-2022-41926

    Last Modified: 23 Apr 2025

    Nextcould talk android is the android OS implementation of the nextcloud talk chat system. In affected versions the receiver is not protected by broadcastPermission allowing malicious apps to monitor communication. It is recommended that the Nextcloud Talk Android is upgraded to 14.1.0. There are no known workarounds for this issue.

    Published: 25 Nov 2022
    3.3
    Low

    CVE-2022-41954

    Last Modified: 23 Apr 2025

    MPXJ is an open source library to read and write project plans from a variety of file formats and databases. On Unix-like operating systems (not Windows or macos), MPXJ's use of `File.createTempFile(..)` results in temporary files being created with the permissions `-rw-r--r--`. This means that any other user on the system can read the contents of this file. When MPXJ is reading a schedule file which requires the creation of a temporary file or directory, a knowledgeable local user could locate these transient files while they are in use and would then be able to read the schedule being processed by MPXJ. The problem has been patched, MPXJ version 10.14.1 and later includes the necessary changes. Users unable to upgrade may set `java.io.tmpdir` to a directory to which only the user running the application has access will prevent other users from accessing these temporary files.

    Published: 25 Nov 2022
    7.8
    High

    CVE-2022-4141

    Last Modified: 24 Sept 2026

    Heap based buffer overflow in vim/vim 9.0.0946 and below by allowing an attacker to CTRL-W gf in the expression used in the RHS of the substitute command.

    Published: 25 Nov 2022
    4.6
    Medium

    CVE-2022-39331

    Last Modified: 3 Nov 2025

    Nexcloud desktop is the Desktop sync client for Nextcloud. An attacker can inject arbitrary HyperText Markup Language into the Desktop Client application in the notifications. It is recommended that the Nextcloud Desktop client is upgraded to 3.6.1. There are no known workarounds for this issue.

    Published: 25 Nov 2022