CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2022-34313

    Last Modified: 30 Apr 2025

    IBM CICS TX 11.1 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and the attacker can then obtain the cookie value by snooping the traffic. X-Force ID: 229449.

    Published: 14 Nov 2022
    7.5
    High

    CVE-2022-0137

    Last Modified: 25 Apr 2025

    A heap buffer overflow in image_set_mask function of HTMLDOC before 1.9.15 allows an attacker to write outside the buffer boundaries.

    Published: 14 Nov 2022
    5.1
    Medium

    CVE-2022-35719

    Last Modified: 25 Apr 2025

    IBM MQ Internet Pass-Thru 2.1, 9.2 LTS and 9.2 CD stores potentially sensitive information in trace files that could be read by a local user.

    Published: 14 Nov 2022
    8.1
    High

    CVE-2022-0324

    Last Modified: 30 Apr 2025

    There is a vulnerability in DHCPv6 packet parsing code that could be explored by remote attacker to craft a packet that could cause buffer overflow in a memcpy call, leading to out-of-bounds memory write that would cause dhcp6relay to crash. Dhcp6relay is a critical process and could cause dhcp relay docker to shutdown. Discovered by Eugene Lim of GovTech Singapore.

    Published: 14 Nov 2022
    4.8
    Medium

    CVE-2022-3539

    Last Modified: 7 Jan 2026

    The Testimonials WordPress plugin before 2.7, super-testimonial-pro WordPress plugin before 1.0.8 do not sanitize and escape its settings, allowing high privilege users such as admin to perform cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 14 Nov 2022
    9.8
    Critical

    CVE-2022-3362

    Last Modified: 30 Apr 2025

    Insufficient Session Expiration in GitHub repository ikus060/rdiffweb prior to 2.5.0.

    Published: 14 Nov 2022
    7
    High

    CVE-2022-33905

    Last Modified: 30 Apr 2025

    DMA transactions which are targeted at input buffers used for the AhciBusDxe software SMI handler could cause SMRAM corruption (a TOCTOU attack). DMA transactions which are targeted at input buffers used for the software SMI handler used by the AhciBusDxe driver could cause SMRAM corruption through a TOCTOU attack. This issue was discovered by Insyde engineering based on the general description provided by Intel's iSTARE group, Fixed in kernel 5.2: 05.27.23, kernel 5.3: 05.36.23, kernel 5.4: 05.44.23, kernel 5.5: 05.52.23 https://www.insyde.com/security-pledge/SA-2022047

    Published: 14 Nov 2022
    3.5
    Low

    CVE-2022-3988

    Last Modified: 15 Apr 2025

    A vulnerability was found in Frappe. It has been rated as problematic. Affected by this issue is some unknown functionality of the file frappe/templates/includes/navbar/navbar_search.html of the component Search. The manipulation of the argument q leads to cross site scripting. The attack may be launched remotely. The name of the patch is bfab7191543961c6cb77fe267063877c31b616ce. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-213560.

    Published: 14 Nov 2022
    8.8
    High

    CVE-2022-44387

    Last Modified: 30 Apr 2025

    EyouCMS V1.5.9-UTF8-SP1 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Basic Information component under the Edit Member module.

    Published: 14 Nov 2022
    6.5
    Medium

    CVE-2022-44389

    Last Modified: 30 Apr 2025

    EyouCMS V1.5.9-UTF8-SP1 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Edit Admin Profile module. This vulnerability allows attackers to arbitrarily change Administrator account information.

    Published: 14 Nov 2022
    4.3
    Medium

    CVE-2022-41913

    Last Modified: 23 Apr 2025

    Discourse-calendar is a plugin for the Discourse messaging platform which adds the ability to create a dynamic calendar in the first post of a topic. Members of private groups or public groups with private members can be listed by users, who can create and edit post events. This vulnerability only affects sites which have discourse post events enabled. This issue has been patched in commit `ca5ae3e7e` which will be included in future releases. Users unable to upgrade should disable the `discourse_post_event_enabled` setting to fully mitigate the issue. Also, it's possible to prevent regular users from using this vulnerability by removing all groups from the `discourse_post_event_allowed_on_groups` but note that moderators will still be able to use it.

    Published: 14 Nov 2022
    7.2
    High

    CVE-2022-43146

    Last Modified: 1 May 2025

    An arbitrary file upload vulnerability in the image upload function of Canteen Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.

    Published: 14 Nov 2022
    8.8
    High

    CVE-2022-43288

    Last Modified: 30 Apr 2025

    Rukovoditel v3.2.1 was discovered to contain a SQL injection vulnerability via the order_by parameter at /rukovoditel/index.php?module=logs/view&type=php.

    Published: 14 Nov 2022
    9.8
    Critical

    CVE-2022-43294

    Last Modified: 30 Apr 2025

    Tasmota before commit 066878da4d4762a9b6cb169fdf353e804d735cfd was discovered to contain a stack overflow via the ClientPortPtr parameter at lib/libesp32/rtsp/CRtspSession.cpp.

    Published: 14 Nov 2022
    5.5
    Medium

    CVE-2022-43295

    Last Modified: 13 May 2025

    XPDF v4.04 was discovered to contain a stack overflow via the function FileStream::copy() at xpdf/Stream.cc:795.

    Published: 14 Nov 2022
    5.4
    Medium

    CVE-2022-43342

    Last Modified: 30 Apr 2025

    A stored cross-site scripting (XSS) vulnerability in the Add function of Eramba GRC Software c2.8.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the KPI Title text field.

    Published: 14 Nov 2022
    7.5
    High

    CVE-2022-45199

    Last Modified: 21 Nov 2024

    Pillow before 9.3.0 allows denial of service via SAMPLESPERPIXEL.

    Published: 14 Nov 2022
    6.5
    Medium

    CVE-2022-2449

    Last Modified: 30 Apr 2025

    The reSmush.it : the only free Image Optimizer & compress plugin WordPress plugin before 0.4.4 does not perform CSRF checks for any of its AJAX actions, allowing an attackers to trick logged in users to perform various actions on their behalf on the site.

    Published: 14 Nov 2022
    6.1
    Medium

    CVE-2022-42110

    Last Modified: 13 May 2025

    A Cross-site scripting (XSS) vulnerability in the Announcements module in Liferay Portal 7.1.0 through 7.4.2, and Liferay DXP 7.1 before fix pack 27, 7.2 before fix pack 17, and 7.3 before service pack 3 allows remote attackers to inject arbitrary web script or HTML.

    Published: 14 Nov 2022
    6.1
    Medium

    CVE-2021-40272

    Last Modified: 30 Apr 2025

    OP5 Monitor 8.3.1, 8.3.2, and OP5 8.3.3 are vulnerable to Cross Site Scripting (XSS).

    Published: 14 Nov 2022
    6.3
    Medium

    CVE-2022-43690

    Last Modified: 30 Apr 2025

    Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 did not use strict comparison for the legacy_salt so that limited authentication bypass could occur if using this functionality. Remediate by updating to Concrete CMS 9.1.3+ or 8.5.10+.

    Published: 14 Nov 2022
    5.3
    Medium

    CVE-2022-43691

    Last Modified: 30 Apr 2025

    Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 inadvertently disclose server-side sensitive information (secrets in environment variables and server information) when Debug Mode is left on in production.

    Published: 14 Nov 2022
    6.1
    Medium

    CVE-2022-43692

    Last Modified: 30 Apr 2025

    Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 is vulnerable to Reflected XSS - user can cause an administrator to trigger reflected XSS with a url if the targeted administrator is using an old browser that lacks XSS protection. Remediate by updating to Concrete CMS 9.1.3+ or 8.5.10+.

    Published: 14 Nov 2022
    8.8
    High

    CVE-2022-43693

    Last Modified: 30 Apr 2025

    Concrete CMS is vulnerable to CSRF due to the lack of "State" parameter for external Concrete authentication service for users of Concrete who use the "out of the box" core OAuth.

    Published: 14 Nov 2022
    6.1
    Medium

    CVE-2022-43694

    Last Modified: 30 Apr 2025

    Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 is vulnerable to Reflected XSS in the image manipulation library due to un-sanitized output.

    Published: 14 Nov 2022
    4.8
    Medium

    CVE-2022-43695

    Last Modified: 13 May 2025

    Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 is vulnerable to Stored Cross-Site Scripting (XSS) in dashboard/system/express/entities/associations because Concrete CMS allows association with an entity name that doesn’t exist or, if it does exist, contains XSS since it was not properly sanitized. Remediate by updating to Concrete CMS 9.1.3+ or 8.5.10+.

    Published: 14 Nov 2022
    6.4
    Medium

    CVE-2022-30773

    Last Modified: 30 Apr 2025

    DMA attacks on the parameter buffer used by the IhisiSmm driver could change the contents after parameter values have been checked but before they are used (a TOCTOU attack). DMA attacks on the parameter buffer used by the IhisiSmm driver could change the contents after parameter values have been checked but before they are used (a TOCTOU attack). This issue was discovered by Insyde engineering. This issue is fixed in Kernel 5.4: 05.44.23 and Kernel 5.5: 05.52.23. CWE-367

    Published: 14 Nov 2022
    6.4
    Medium

    CVE-2022-30774

    Last Modified: 30 Apr 2025

    DMA attacks on the parameter buffer used by the PnpSmm driver could change the contents after parameter values have been checked but before they are used (a TOCTOU attack) DMA attacks on the parameter buffer used by the PnpSmm driver could change the contents after parameter values have been checked but before they are used (a TOCTOU attack) . This issue was discovered by Insyde engineering during a security review. This iss was fixed in Kernel 5.2: 05.27.29, Kernel 5.3: 05.36.25, Kernel 5.4: 05.44.25, Kernel 5.5: 05.52.25. CWE-367 https://www.insyde.com/security-pledge/SA-2022043

    Published: 14 Nov 2022
    6.4
    Medium

    CVE-2022-33907

    Last Modified: 30 Apr 2025

    DMA transactions which are targeted at input buffers used for the software SMI handler used by the IdeBusDxe driver could cause SMRAM corruption through a TOCTOU attack... DMA transactions which are targeted at input buffers used for the software SMI handler used by the IdeBusDxe driver could cause SMRAM corruption through a TOCTOU attack. This issue was discovered by Insyde engineering based on the general description provided by Intel's iSTARE group. Fixed in kernel 5.2: 05.27.25, kernel 5.3: 05.36.25, kernel 5.4: 05.44.25 https://www.insyde.com/security-pledge/SA-2022049

    Published: 14 Nov 2022
    7
    High

    CVE-2022-33908

    Last Modified: 30 Apr 2025

    DMA transactions which are targeted at input buffers used for the SdHostDriver software SMI handler could cause SMRAM corruption through a TOCTOU attack. DMA transactions which are targeted at input buffers used for the software SMI handler used by the SdHostDriver driver could cause SMRAM corruption through a TOCTOU attack. This issue was discovered by Insyde engineering based on the general description provided by Intel's iSTARE group. Fixed in kernel 5.2: 05.27.25, kernel 5.3: 05.36.25, kernel 5.4: 05.44.25, kernel 5.5: 05.52.25 https://www.insyde.com/security-pledge/SA-2022050

    Published: 14 Nov 2022
    7
    High

    CVE-2022-33909

    Last Modified: 30 Apr 2025

    DMA transactions which are targeted at input buffers used for the HddPassword software SMI handler could cause SMRAM corruption through a TOCTOU attack. DMA transactions which are targeted at input buffers used for the software SMI handler used by the HddPassword driver could cause SMRAM corruption through a TOCTOU attack..This issue was discovered by Insyde engineering based on the general description provided by Intel's iSTARE group. Fixed in kernel Kernel 5.2: 05.27.23, Kernel 5.3: 05.36.23, Kernel 5.4: 05.44.23, Kernel 5.5: 05.52.23 https://www.insyde.com/security-pledge/SA-2022051

    Published: 14 Nov 2022
    6.4
    Medium

    CVE-2022-33982

    Last Modified: 30 Apr 2025

    DMA attacks on the parameter buffer used by the Int15ServiceSmm software SMI handler could lead to a TOCTOU attack on the SMI handler and lead to corruption of SMRAM. DMA attacks on the parameter buffer used by the software SMI handler used by the driver Int15ServiceSmm could lead to a TOCTOU attack on the SMI handler and lead to corruption of SMRAM. This issue was discovered by Insyde engineering during a security review. This issue is fixed in Kernel 5.2: 05.27.23, Kernel 5.3: 05.36.23, Kernel 5.4: 05.44.23 and Kernel 5.5: 05.52.23 CWE-367

    Published: 14 Nov 2022
    7
    High

    CVE-2022-33985

    Last Modified: 30 Apr 2025

    DMA transactions which are targeted at input buffers used for the NvmExpressDxe software SMI handler could cause SMRAM corruption through a TOCTOU attack. DMA transactions which are targeted at input buffers used for the software SMI handler used by the NvmExpressDxe driver could cause SMRAM corruption through a TOCTOU attack. This issue was discovered by Insyde engineering based on the general description provided by Intel's iSTARE group. This issue was fixed in kernel 5.2: 05.27.25, kernel 5.3: 05.36.25, kernel 5.4: 05.44.25, kernel 5.5: 05.52.25 https://www.insyde.com/security-pledge/SA-2022055

    Published: 14 Nov 2022
    6.4
    Medium

    CVE-2022-33986

    Last Modified: 30 Apr 2025

    DMA attacks on the parameter buffer used by the VariableRuntimeDxe software SMI handler could lead to a TOCTOU attack. DMA attacks on the parameter buffer used by the software SMI handler used by the driver VariableRuntimeDxe could lead to a TOCTOU attack on the SMI handler and lead to corruption of SMRAM. This issue was discovered by Insyde engineering during a security review. This issue is fixed in Kernel 5.4: 05.44.23 and Kernel 5.5: 05.52.23. CWE-367 CWE-367 Report at: https://www.insyde.com/security-pledge/SA-2022056

    Published: 14 Nov 2022
    9.8
    Critical

    CVE-2022-3477

    Last Modified: 30 Apr 2025

    The tagDiv Composer WordPress plugin before 3.5, required by the Newspaper WordPress theme before 12.1 and Newsmag WordPress theme before 5.2.2, does not properly implement the Facebook login feature, allowing unauthenticated attackers to login as any user by just knowing their email address

    Published: 14 Nov 2022
    9.8
    Critical

    CVE-2022-3574

    Last Modified: 30 Apr 2025

    The WPForms Pro WordPress plugin before 1.7.7 does not validate its form data when generating the exported CSV, which could lead to CSV injection.

    Published: 14 Nov 2022
    6.1
    Medium

    CVE-2022-3578

    Last Modified: 30 Apr 2025

    The ProfileGrid WordPress plugin before 5.1.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting

    Published: 14 Nov 2022
    9.8
    Critical

    CVE-2022-37109

    Last Modified: 1 May 2025

    patrickfuller camp up to and including commit bbd53a256ed70e79bd8758080936afbf6d738767 is vulnerable to Incorrect Access Control. Access to the password.txt file is not properly restricted as it is in the root directory served by StaticFileHandler and the Tornado rule to throw a 403 error when password.txt is accessed can be bypassed. Furthermore, it is not necessary to crack the password hash to authenticate with the application because the password hash is also used as the cookie secret, so an attacker can generate his own authentication cookie.

    Published: 14 Nov 2022
    6.1
    Medium

    CVE-2022-38167

    Last Modified: 1 May 2025

    The Nintex Workflow plugin 5.2.2.30 for SharePoint allows XSS.

    Published: 14 Nov 2022
    8.8
    High

    CVE-2022-40127

    Last Modified: 30 Apr 2025

    A vulnerability in Example Dags of Apache Airflow allows an attacker with UI access who can trigger DAGs, to execute arbitrary commands via manually provided run_id parameter. This issue affects Apache Airflow Apache Airflow versions prior to 2.4.0.

    Published: 14 Nov 2022
    6.5
    Medium

    CVE-2022-40903

    Last Modified: 30 Apr 2025

    Aiphone GT-DMB-N 3-in-1 Video Entrance Station with NFC Reader 1.0.3 does not mitigate against repeated failed access attempts, which allows an attacker to gain administrative privileges.

    Published: 14 Nov 2022
    5.3
    Medium

    CVE-2021-38828

    Last Modified: 30 Apr 2025

    Xiongmai Camera XM-JPR2-LX V4.02.R12.A6420987.10002.147502.00000 is vulnerable to plain-text traffic sniffing.

    Published: 14 Nov 2022
    5.3
    Medium

    CVE-2022-43689

    Last Modified: 30 Apr 2025

    Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 is vulnerable to XXE based DNS requests leading to IP disclosure.

    Published: 14 Nov 2022
    8.8
    High

    CVE-2022-43323

    Last Modified: 30 Apr 2025

    EyouCMS V1.5.9-UTF8-SP1 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Top Up Balance component under the Edit Member module.

    Published: 14 Nov 2022
    4.8
    Medium

    CVE-2022-43688

    Last Modified: 21 Nov 2024

    Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 is vulnerable to Stored Cross-Site Scripting (XSS) in icons since the Microsoft application tile color is not sanitized. Remediate by updating to Concrete CMS 9.1.3+ or 8.5.10+.

    Published: 14 Nov 2022
    6.5
    Medium

    CVE-2022-43686

    Last Modified: 30 Apr 2025

    In Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2, the authTypeConcreteCookieMap table can be filled up causing a denial of service (high load).

    Published: 14 Nov 2022
    5.4
    Medium

    CVE-2022-43687

    Last Modified: 30 Apr 2025

    Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 does not issue a new session ID upon successful OAuth authentication. Remediate by updating to Concrete CMS 9.1.3+ or 8.5.10+.

    Published: 14 Nov 2022
    6.1
    Medium

    CVE-2022-43968

    Last Modified: 13 May 2025

    Concrete CMS (formerly concrete5) below 8.5.10 and between 9.0.0 and 9.1.2 is vulnerable to Reflected XSS in the dashboard icons due to un-sanitized output. Remediate by updating to Concrete CMS 9.1.3+ or 8.5.10+.

    Published: 14 Nov 2022
    4.3
    Medium

    CVE-2022-2450

    Last Modified: 30 Apr 2025

    The reSmush.it : the only free Image Optimizer & compress plugin WordPress plugin before 0.4.4 lacks authorization in various AJAX actions, allowing any logged-in users, such as subscribers to call them.

    Published: 14 Nov 2022
    7.5
    High

    CVE-2022-27949

    Last Modified: 30 Apr 2025

    A vulnerability in UI of Apache Airflow allows an attacker to view unmasked secrets in rendered template values for tasks which were not executed (for example when they were depending on past and previous instances of the task failed). This issue affects Apache Airflow prior to 2.3.1.

    Published: 14 Nov 2022