CVE Feed

    Dashboard / CVE

    4.6
    Medium

    CVE-2022-39332

    Last Modified: 3 Nov 2025

    Nexcloud desktop is the Desktop sync client for Nextcloud. An attacker can inject arbitrary HyperText Markup Language into the Desktop Client application via user status and information. It is recommended that the Nextcloud Desktop client is upgraded to 3.6.1. There are no known workarounds for this issue.

    Published: 25 Nov 2022
    4.6
    Medium

    CVE-2022-39333

    Last Modified: 3 Nov 2025

    Nexcloud desktop is the Desktop sync client for Nextcloud. An attacker can inject arbitrary HyperText Markup Language into the Desktop Client application. It is recommended that the Nextcloud Desktop client is upgraded to 3.6.1. There are no known workarounds for this issue.

    Published: 25 Nov 2022
    3.9
    Low

    CVE-2022-39334

    Last Modified: 3 Nov 2025

    Nextcloud also ships a CLI utility called nextcloudcmd which is sometimes used for automated scripting and headless servers. Versions of nextcloudcmd prior to 3.6.1 would incorrectly trust invalid TLS certificates, which may enable a Man-in-the-middle attack that exposes sensitive data or credentials to a network attacker. This affects the CLI only. It does not affect the standard GUI desktop Nextcloud clients, and it does not affect the Nextcloud server.

    Published: 25 Nov 2022
    9.1
    Critical

    CVE-2022-36133

    Last Modified: 25 Apr 2025

    The WebConfig functionality of Epson TM-C3500 and TM-C7500 devices with firmware version WAM31500 allows authentication bypass.

    Published: 25 Nov 2022
    9
    Critical

    CVE-2022-37720

    Last Modified: 25 Apr 2025

    Orchardproject Orchard CMS 1.10.3 is vulnerable to Cross Site Scripting (XSS). When a low privileged user such as an author or publisher, injects a crafted html and javascript payload in a blog post, leading to full admin account takeover or privilege escalation when the malicious blog post is loaded in the victim's browser.

    Published: 25 Nov 2022
    8.1
    High

    CVE-2022-38813

    Last Modified: 25 Apr 2025

    PHPGurukul Blood Donor Management System 1.0 does not properly restrict access to admin/dashboard.php, which allows attackers to access all data of users, delete the users, add and manage Blood Group, and Submit Report.

    Published: 25 Nov 2022
    3.5
    Low

    CVE-2022-39338

    Last Modified: 23 Apr 2025

    user_oidc is an OpenID Connect user backend for Nextcloud. Versions prior to 1.2.1 did not properly validate discovery urls which may lead to a stored cross site scripting attack vector. The impact is limited due to the restrictive CSP that is applied on this endpoint. Additionally this vulnerability has only been shown to be exploitable in the Safari web browser. This issue has been addressed in version 1.2.1. Users are advised to upgrade. Users unable to upgrade should urge their users to avoid using the Safari web browser.

    Published: 25 Nov 2022
    4.3
    Medium

    CVE-2022-39339

    Last Modified: 23 Apr 2025

    user_oidc is an OpenID Connect user backend for Nextcloud. In versions prior to 1.2.1 sensitive information such as the OIDC client credentials and tokens are sent in plain text of HTTP without TLS. Any malicious actor with access to monitor user traffic may have been able to compromise account security. This issue has been addressed in in user_oidc v1.2.1. Users are advised to upgrade. Users unable to upgrade may use https to access Nextcloud. Set an HTTPS discovery URL in the provider settings (in Nextcloud OIDC admin settings).

    Published: 25 Nov 2022
    6.5
    Medium

    CVE-2022-4144

    Last Modified: 14 Apr 2025

    An out-of-bounds read flaw was found in the QXL display device emulation in QEMU. The qxl_phys2virt() function does not check the size of the structure pointed to by the guest physical address, potentially reading past the end of the bar space into adjacent pages. A malicious guest user could use this flaw to crash the QEMU process on the host causing a denial of service condition.

    Published: 25 Nov 2022
    7.3
    High

    CVE-2022-41958

    Last Modified: 22 Apr 2025

    super-xray is a web vulnerability scanning tool. Versions prior to 0.7 assumed trusted input for the program config which is stored in a yaml file. An attacker with local access to the file could exploit this and compromise the program. This issue has been addressed in commit `4d0d5966` and will be included in future releases. Users are advised to upgrade. There are no known workarounds for this issue.

    Published: 25 Nov 2022
    8.2
    High

    CVE-2022-43984

    Last Modified: 3 Dec 2025

    Browsershot version 3.57.3 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not validate that the JS content imported from an external source passed to the Browsershot::html method does not contain URLs that use the file:// protocol.

    Published: 25 Nov 2022
    9.8
    Critical

    CVE-2022-44843

    Last Modified: 29 Apr 2025

    TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the port parameter in the setting/setOpenVpnClientCfg function.

    Published: 25 Nov 2022
    9.8
    Critical

    CVE-2022-44844

    Last Modified: 29 Apr 2025

    TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the pass parameter in the setting/setOpenVpnCfg function.

    Published: 25 Nov 2022
    7.2
    High

    CVE-2022-44858

    Last Modified: 29 Apr 2025

    Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /asms/products/view_product.php.

    Published: 25 Nov 2022
    7.2
    High

    CVE-2022-44859

    Last Modified: 29 Apr 2025

    Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /asms/admin/products/manage_product.php.

    Published: 25 Nov 2022
    7.2
    High

    CVE-2022-44860

    Last Modified: 29 Apr 2025

    Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/transactions/update_status.php.

    Published: 25 Nov 2022
    5.3
    Medium

    CVE-2022-45205

    Last Modified: 29 Apr 2025

    Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/dict/queryTableData.

    Published: 25 Nov 2022
    9.8
    Critical

    CVE-2022-45206

    Last Modified: 29 Apr 2025

    Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/duplicate/check.

    Published: 25 Nov 2022
    9.8
    Critical

    CVE-2022-45207

    Last Modified: 29 Apr 2025

    Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component updateNullByEmptyString.

    Published: 25 Nov 2022
    4.3
    Medium

    CVE-2022-45208

    Last Modified: 29 Apr 2025

    Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/user/putRecycleBin.

    Published: 25 Nov 2022
    4.3
    Medium

    CVE-2022-45210

    Last Modified: 29 Apr 2025

    Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/user/deleteRecycleBin.

    Published: 25 Nov 2022
    6.1
    Medium

    CVE-2022-45218

    Last Modified: 21 Nov 2024

    Human Resource Management System v1.0.0 was discovered to contain a cross-site scripting (XSS) vulnerability. This vulnerability is triggered via a crafted payload injected into an authentication error message.

    Published: 25 Nov 2022
    6.1
    Medium

    CVE-2022-45225

    Last Modified: 29 Apr 2025

    Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index.php/book. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the book_title parameter.

    Published: 25 Nov 2022
    8.2
    High

    CVE-2022-41706

    Last Modified: 3 Dec 2025

    Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not validate the URL protocol passed to the Browsershot::url method.

    Published: 25 Nov 2022
    8.2
    High

    CVE-2022-43983

    Last Modified: 3 Dec 2025

    Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files. This is possible because the application does not validate that the HTML content passed to the Browsershot::html method does not contain URL's that use the file:// protocol.

    Published: 25 Nov 2022
    6.5
    Medium

    CVE-2022-45475

    Last Modified: 31 Dec 2025

    Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to access the application's internal files. This is possible because the application is vulnerable to broken access control.

    Published: 25 Nov 2022
    6.8
    Medium

    CVE-2022-29833

    Last Modified: 25 Apr 2025

    Insufficiently Protected Credentials vulnerability in Mitsubishi Electric Corporation GX Works3 versions 1.015R and later allows a remote unauthenticated attacker to disclose sensitive information. As a result, unauthenticated users could access to MELSEC safety CPU modules illgally.

    Published: 24 Nov 2022
    3.7
    Low

    CVE-2022-29832

    Last Modified: 25 Apr 2025

    Cleartext Storage of Sensitive Information in Memory vulnerability in Mitsubishi Electric Corporation GX Works3 versions 1.015R and later, GX Works2 all versions and GX Developer versions 8.40S and later allows a remote unauthenticated attacker to disclose sensitive information. As a result, unauthenticated users could obtain information about the project file for MELSEC safety CPU modules or project file for MELSEC Q/FX/L series with security setting.

    Published: 24 Nov 2022
    7.5
    High

    CVE-2022-29831

    Last Modified: 25 Apr 2025

    Use of Hard-coded Password vulnerability in Mitsubishi Electric Corporation GX Works3 versions from 1.015R to 1.095Z allows a remote unauthenticated attacker to obtain information about the project file for MELSEC safety CPU modules.

    Published: 24 Nov 2022
    9.1
    Critical

    CVE-2022-29830

    Last Modified: 7 Nov 2025

    Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z, and Motion Control Setting(GX Works3 related software) versions from 1.000A to 1.065T allows a remote unauthenticated attacker to disclose or tamper with sensitive information. As a result, unauthenticated attackers may obtain information about project files illegally.

    Published: 24 Nov 2022
    6.8
    Medium

    CVE-2022-29829

    Last Modified: 7 Nov 2025

    Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U, GT Designer3 Version1 (GOT2000) versions from 1.122C to 1.290C, Motion Control Setting(GX Works3 related software) versions from 1.035M to 1.042U, and MT Works2 versions from 1.100E to 1.200J allows a remote unauthenticated attacker to disclose sensitive information. As a result, unauthenticated users may view programs and project files or execute programs illegally.

    Published: 24 Nov 2022
    6.8
    Medium

    CVE-2022-29828

    Last Modified: 25 Apr 2025

    Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A and later allows a remote unauthenticated attacker to disclose sensitive information. As a result, unauthenticated attackers may view programs and project file or execute programs illegally.

    Published: 24 Nov 2022
    6.8
    Medium

    CVE-2022-29827

    Last Modified: 25 Apr 2025

    Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A and later allows a remote unauthenticated attacker to disclose sensitive information. As a result, unauthenticated attackers may view programs and project files or execute programs illegally.

    Published: 24 Nov 2022
    6.8
    Medium

    CVE-2022-29826

    Last Modified: 25 Apr 2025

    Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.087R and Motion Control Setting(GX Works3 related software) versions from 1.000A to 1.042U allows a remote unauthenticated attacker to disclose sensitive information. As a result, unauthenticated users may view programs and project files or execute programs illegally.

    Published: 24 Nov 2022
    5.6
    Medium

    CVE-2022-29825

    Last Modified: 7 Nov 2025

    Use of Hard-coded Password vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U, GT Designer3 Version1 (GOT2000) versions from 1.122C to 1.290C, and MT Works2 versions from 1.100E to 1.200J allows an unauthenticated attacker to disclose sensitive information. As a result, unauthenticated users may view programs and project files or execute programs illegally.

    Published: 24 Nov 2022
    8.6
    High

    CVE-2022-25164

    Last Modified: 25 Apr 2025

    Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z and Mitsubishi Electric MX OPC UA Module Configurator-R versions 1.08J and prior allows a remote unauthenticated attacker to disclose sensitive information. As a result, unauthenticated attackers can gain unauthorized access to the MELSEC CPU module and the MELSEC OPC UA server module.

    Published: 24 Nov 2022
    7.5
    High

    CVE-2022-40977

    Last Modified: 24 Apr 2025

    A path traversal vulnerability was discovered in Pilz PASvisu Server before 1.12.0. An unauthenticated remote attacker could use a zipped, malicious configuration file to trigger arbitrary file writes ('zip-slip'). File writes do not affect confidentiality or availability.

    Published: 24 Nov 2022
    5.5
    Medium

    CVE-2022-40976

    Last Modified: 25 Apr 2025

    A path traversal vulnerability was discovered in multiple Pilz products. An unauthenticated local attacker could use a zipped, malicious configuration file to trigger arbitrary file writes ('zip-slip'). File writes do not affect confidentiality or availability.

    Published: 24 Nov 2022
    5.3
    Medium

    CVE-2022-40266

    Last Modified: 25 Apr 2025

    Improper Input Validation vulnerability in Mitsubishi Electric GOT2000 Series GT27 model FTP server versions 01.39.000 and prior, Mitsubishi Electric GOT2000 Series GT25 model FTP server versions 01.39.000 and prior and Mitsubishi Electric GOT2000 Series GT23 model FTP server versions 01.39.000 and prior allows a remote authenticated attacker to cause a Denial of Service condition by sending specially crafted command.

    Published: 24 Nov 2022
    5.5
    Medium

    CVE-2022-44749

    Last Modified: 24 Apr 2025

    A directory traversal vulnerability in the ZIP archive extraction routines of KNIME Analytics Platform 3.2.0 and above can result in arbitrary files being overwritten on the user's system. This vulnerability is also known as 'Zip-Slip'. An attacker can create a KNIME workflow that, when being opened by a user, can overwrite arbitrary files that the user has write access to. It's not necessary to execute the workflow, opening the workflow is sufficient. The user will notice that something is wrong because an error is being reported but only after the files have already been written. This can impact data integrity (file contents are changed) or cause errors in other software (vital files being corrupted). It can even lead to remote code execution if executable files are being replaced and subsequently executed by the user. In all cases the attacker has to know the location of files on the user's system, though.

    Published: 24 Nov 2022
    7.1
    High

    CVE-2022-44748

    Last Modified: 25 Apr 2025

    A directory traversal vulnerability in the ZIP archive extraction routines of KNIME Server since 4.3.0 can result in arbitrary files being overwritten on the server's file system. This vulnerability is also known as 'Zip-Slip'. An attacker can create a KNIME workflow that, when being uploaded, can overwrite arbitrary files that the operating system user running the KNIME Server process has write access to. The user must be authenticated and have permissions to upload files to KNIME Server. This can impact data integrity (file contents are changed) or cause errors in other software (vital files being corrupted). It can even lead to remote code execution if executable files are being replaced and subsequently executed by the KNIME Server process user. In all cases the attacker has to know the location of files on the server's file system, though. Note that users that have permissions to upload workflows usually also have permissions to run them on the KNIME Server and can therefore already execute arbitrary code in the context of the KNIME Executor's operating system user. There is no workaround to prevent this vulnerability from being exploited. Updates to fixed versions 4.13.6, 4.14.3, or 4.15.3 are advised.

    Published: 24 Nov 2022
    7.3
    High

    CVE-2022-4088

    Last Modified: 14 Apr 2025

    A vulnerability was found in rickxy Stock Management System and classified as critical. Affected by this issue is some unknown functionality of the file /pages/processlogin.php. The manipulation of the argument user/password leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-214322 is the identifier assigned to this vulnerability.

    Published: 24 Nov 2022
    7.5
    High

    CVE-2022-26885

    Last Modified: 25 Apr 2025

    When using tasks to read config files, there is a risk of database password disclosure. We recommend you upgrade to version 2.0.6 or higher.

    Published: 24 Nov 2022
    4.3
    Medium

    CVE-2022-4090

    Last Modified: 15 Apr 2025

    A vulnerability was found in rickxy Stock Management System and classified as problematic. This issue affects some unknown processing of the file us_transac.php?action=add. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-214331.

    Published: 24 Nov 2022
    —
    Unknown

    CVE-2022-45883

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 24 Nov 2022
    4.3
    Medium

    CVE-2022-4089

    Last Modified: 15 Apr 2025

    A vulnerability was found in rickxy Stock Management System. It has been declared as problematic. This vulnerability affects unknown code of the file /pages/processlogin.php. The manipulation of the argument user leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-214324.

    Published: 24 Nov 2022
    9.8
    Critical

    CVE-2022-4136

    Last Modified: 14 Apr 2025

    Dangerous method exposed which can lead to RCE in qmpass/leadshop v1.4.15 allows an attacker to control the target host by calling any function in leadshop.php via the GET method.

    Published: 24 Nov 2022
    9.8
    Critical

    CVE-2022-2650

    Last Modified: 25 Apr 2025

    Improper Restriction of Excessive Authentication Attempts in GitHub repository wger-project/wger prior to 2.2.

    Published: 24 Nov 2022
    5.3
    Medium

    CVE-2021-35246

    Last Modified: 25 Apr 2025

    The application fails to prevent users from connecting to it over unencrypted connections. An attacker able to modify a legitimate user's network traffic could bypass the application's use of SSL/TLS encryption and use the application as a platform for attacks against its users.

    Published: 23 Nov 2022
    —
    Unknown

    CVE-2022-45865

    Last Modified: 17 Mar 2025

    Not used

    Published: 23 Nov 2022