CVE Feed

    Dashboard / CVE

    8
    High

    CVE-2022-39950

    Last Modified: 21 Nov 2024

    An improper neutralization of input during web page generation vulnerability [CWE-79] exists in FortiManager and FortiAnalyzer 6.0.0 all versions, 6.2.0 all versions, 6.4.0 through 6.4.8, and 7.0.0 through 7.0.4. Report templates may allow a low privilege level attacker to perform an XSS attack via posting a crafted CKeditor "protected" comment as described in CVE-2020-9281.

    Published: 2 Nov 2022
    7.3
    High

    CVE-2022-2904

    Last Modified: 2 May 2025

    A cross-site scripting issue has been discovered in GitLab CE/EE affecting all versions starting from 15.2 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1 It was possible to exploit a vulnerability in the external status checks feature which could lead to a stored XSS that allowed attackers to perform arbitrary actions on behalf of victims at client side.

    Published: 2 Nov 2022
    7.2
    High

    CVE-2022-43066

    Last Modified: 2 May 2025

    Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/classes/Master.php?f=delete_message.

    Published: 2 Nov 2022
    7.2
    High

    CVE-2022-43068

    Last Modified: 2 May 2025

    Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_reservation.

    Published: 2 Nov 2022
    7.2
    High

    CVE-2022-43227

    Last Modified: 2 May 2025

    Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/admin/?page=appointments/view_appointment.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43236

    Last Modified: 2 May 2025

    Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43237

    Last Modified: 2 May 2025

    Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via void put_epel_hv_fallback<unsigned short> in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43240

    Last Modified: 5 May 2025

    Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_hevc_qpel_h_2_v_1_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43242

    Last Modified: 5 May 2025

    Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via mc_luma<unsigned char> in motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43243

    Last Modified: 5 May 2025

    Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_weighted_pred_avg_8_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43244

    Last Modified: 5 May 2025

    Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43245

    Last Modified: 5 May 2025

    Libde265 v1.0.8 was discovered to contain a segmentation violation via apply_sao_internal<unsigned short> in sao.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43249

    Last Modified: 2 May 2025

    Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_epel_hv_fallback<unsigned short> in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43250

    Last Modified: 2 May 2025

    Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_qpel_0_0_fallback_16 in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43252

    Last Modified: 2 May 2025

    Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_epel_16_fallback in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43253

    Last Modified: 2 May 2025

    Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_unweighted_pred_16_fallback in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    5.5
    Medium

    CVE-2022-43254

    Last Modified: 2 May 2025

    GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a memory leak via the component gf_list_new at utils/list.c.

    Published: 2 Nov 2022
    5.5
    Medium

    CVE-2022-43255

    Last Modified: 2 May 2025

    GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a memory leak via the component gf_odf_new_iod at odf/odf_code.c.

    Published: 2 Nov 2022
    6.1
    Medium

    CVE-2022-43982

    Last Modified: 2 May 2025

    In Apache Airflow versions prior to 2.4.2, the "Trigger DAG with config" screen was susceptible to XSS attacks via the `origin` query argument.

    Published: 2 Nov 2022
    6.1
    Medium

    CVE-2022-43985

    Last Modified: 2 May 2025

    In Apache Airflow versions prior to 2.4.2, there was an open redirect in the webserver's `/confirm` endpoint.

    Published: 2 Nov 2022
    6.5
    Medium

    CVE-2022-43239

    Last Modified: 5 May 2025

    Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via mc_chroma<unsigned short> in motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

    Published: 2 Nov 2022
    5.4
    Medium

    CVE-2022-43670

    Last Modified: 2 May 2025

    An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in Sling App CMS version 1.1.0 and prior may allow an authenticated remote attacker to perform a reflected cross site scripting (XSS) attack in the taxonomy management feature.

    Published: 2 Nov 2022
    7.8
    High

    CVE-2022-26119

    Last Modified: 21 Nov 2024

    A improper authentication vulnerability in Fortinet FortiSIEM before 6.5.0 allows a local attacker with CLI access to perform operations on the Glassfish server directly via a hardcoded password.

    Published: 2 Nov 2022
    7.8
    High

    CVE-2022-33870

    Last Modified: 21 Nov 2024

    An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the command line interpreter of FortiTester 3.0.0 through 3.9.1, 4.0.0 through 4.2.0, 7.0.0 through 7.1.0 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments to existing commands.

    Published: 2 Nov 2022
    2.2
    Low

    CVE-2022-33878

    Last Modified: 21 Nov 2024

    An exposure of sensitive information to an unauthorized actor vulnerabiltiy [CWE-200] in FortiClient for Mac versions 7.0.0 through 7.0.5 may allow a local authenticated attacker to obtain the SSL-VPN password in cleartext via running a logstream for the FortiTray process in the terminal.

    Published: 2 Nov 2022
    8
    High

    CVE-2022-35851

    Last Modified: 21 Nov 2024

    An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiADC management interface 7.1.0 may allow a remote and authenticated attacker to trigger a stored cross site scripting (XSS) attack via configuring a specially crafted IP Address.

    Published: 2 Nov 2022
    6.7
    Medium

    CVE-2022-38372

    Last Modified: 21 Nov 2024

    A hidden functionality vulnerability [CWE-1242] in FortiTester CLI 2.3.0 through 3.9.1, 4.0.0 through 4.2.0, 7.0.0 through 7.1.0 may allow a local, privileged user to obtain a root shell on the device via an undocumented command.

    Published: 2 Nov 2022
    8
    High

    CVE-2022-38373

    Last Modified: 21 Nov 2024

    An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiDeceptor management interface 4.2.0, 4.1.0 through 4.1.1, 4.0.2 may allow an authenticated user to perform a cross site scripting (XSS) attack via sending requests with specially crafted lure resource ID.

    Published: 2 Nov 2022
    8.8
    High

    CVE-2022-38374

    Last Modified: 21 Nov 2024

    A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiADC 7.0.0 - 7.0.2 and 6.2.0 - 6.2.4 allows an attacker to execute unauthorized code or commands via the URL and User fields observed in the traffic and event logviews.

    Published: 2 Nov 2022
    4.3
    Medium

    CVE-2022-38380

    Last Modified: 21 Nov 2024

    An improper access control [CWE-284] vulnerability in FortiOS version 7.2.0 and versions 7.0.0 through 7.0.7 may allow a remote authenticated read-only user to modify the interface settings via the API.

    Published: 2 Nov 2022
    5.3
    Medium

    CVE-2022-38381

    Last Modified: 21 Nov 2024

    An improper handling of malformed request vulnerability [CWE-228] exists in FortiADC 5.0 all versions, 6.0.0 all versions, 6.1.0 all versions, 6.2.0 through 6.2.3, and 7.0.0 through 7.0.2. This may allow a remote attacker without privileges to bypass some Web Application Firewall (WAF) protection such as the SQL Injection and XSS filters via a malformed HTTP request.

    Published: 2 Nov 2022
    7.8
    High

    CVE-2022-3841

    Last Modified: 9 Apr 2025

    RHACM: unauthenticated SSRF in console API endpoint. A Server-Side Request Forgery (SSRF) vulnerability was found in the console API endpoint from Red Hat Advanced Cluster Management for Kubernetes (RHACM). An attacker could take advantage of this as the console API endpoint is missing an authentication check, allowing unauthenticated users making requests.

    Published: 2 Nov 2022
    3.5
    Low

    CVE-2022-3844

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as problematic, was found in Webmin 2.001. Affected is an unknown function of the file xterm/index.cgi. The manipulation leads to basic cross site scripting. It is possible to launch the attack remotely. Upgrading to version 2.003 is able to address this issue. The patch is identified as d3d33af3c0c3fd3a889c84e287a038b7a457d811. It is recommended to upgrade the affected component. VDB-212862 is the identifier assigned to this vulnerability.

    Published: 2 Nov 2022
    2.4
    Low

    CVE-2022-3845

    Last Modified: 15 Apr 2025

    A vulnerability has been found in phpipam and classified as problematic. Affected by this vulnerability is an unknown functionality of the file app/admin/import-export/import-load-data.php of the component Import Preview Handler. The manipulation leads to cross site scripting. The attack can be launched remotely. Upgrading to version 1.5.0 is able to address this issue. The name of the patch is 22c797c3583001211fe7d31bccd3f1d4aeeb3bbc. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-212863.

    Published: 2 Nov 2022
    9.4
    Critical

    CVE-2022-39353

    Last Modified: 22 Apr 2025

    xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) `DOMParser` and `XMLSerializer` module. xmldom parses XML that is not well-formed because it contains multiple top level elements, and adds all root nodes to the `childNodes` collection of the `Document`, without reporting any error or throwing. This breaks the assumption that there is only a single root node in the tree, which led to issuance of CVE-2022-39299 as it is a potential issue for dependents. Update to @xmldom/xmldom@~0.7.7, @xmldom/xmldom@~0.8.4 (dist-tag latest) or @xmldom/xmldom@>=0.9.0-beta.4 (dist-tag next). As a workaround, please one of the following approaches depending on your use case: instead of searching for elements in the whole DOM, only search in the `documentElement`or reject a document with a document that has more then 1 `childNode`.

    Published: 2 Nov 2022
    8.9
    High

    CVE-2022-39356

    Last Modified: 23 Apr 2025

    Discourse is a platform for community discussion. Users who receive an invitation link that is not scoped to a single email address can enter any non-admin user's email and gain access to their account when accepting the invitation. All users should upgrade to the latest version. A workaround is temporarily disabling invitations with `SiteSetting.max_invites_per_day = 0` or scope them to individual email addresses.

    Published: 2 Nov 2022
    6.1
    Medium

    CVE-2022-40840

    Last Modified: 2 May 2025

    ndk design NdkAdvancedCustomizationFields 3.5.0 is vulnerable to Cross Site Scripting (XSS) via createPdf.php.

    Published: 2 Nov 2022
    7.2
    High

    CVE-2022-41551

    Last Modified: 2 May 2025

    Garage Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /garage/editorder.php.

    Published: 2 Nov 2022
    8.1
    High

    CVE-2021-37789

    Last Modified: 2 May 2025

    stb_image.h 2.27 has a heap-based buffer over in stbi__jpeg_load, leading to Information Disclosure or Denial of Service.

    Published: 2 Nov 2022
    3.9
    Low

    CVE-2022-30307

    Last Modified: 21 Nov 2024

    A key management error vulnerability [CWE-320] affecting the RSA SSH host key in FortiOS 7.2.0 and below, 7.0.6 and below, 6.4.9 and below may allow an unauthenticated attacker to perform a man in the middle attack.

    Published: 2 Nov 2022
    3.5
    Low

    CVE-2020-36608

    Last Modified: 15 Apr 2025

    A vulnerability, which was classified as problematic, has been found in Tribal Systems Zenario CMS. Affected by this issue is some unknown functionality of the file admin_organizer.js of the component Error Log Module. The manipulation leads to cross site scripting. The attack may be launched remotely. The name of the patch is dfd0afacb26c3682a847bea7b49ea440b63f3baa. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-212816.

    Published: 2 Nov 2022
    7.1
    High

    CVE-2022-43995

    Last Modified: 5 May 2025

    Sudo 1.8.0 through 1.9.12, with the crypt() password backend, contains a plugins/sudoers/auth/passwd.c array-out-of-bounds error that can result in a heap-based buffer over-read. This can be triggered by arbitrary local users with access to Sudo by entering a password of seven characters or fewer. The impact could vary depending on the system libraries, compiler, and processor architecture.

    Published: 2 Nov 2022
    4.7
    Medium

    CVE-2022-26122

    Last Modified: 21 Nov 2024

    An insufficient verification of data authenticity vulnerability [CWE-345] in FortiClient, FortiMail and FortiOS AV engines version 6.2.168 and below and version 6.4.274 and below may allow an attacker to bypass the AV engine via manipulating MIME attachment with junk and pad characters in base64.

    Published: 2 Nov 2022
    3.7
    Low

    CVE-2022-35842

    Last Modified: 21 Nov 2024

    An exposure of sensitive information to an unauthorized actor vulnerabiltiy [CWE-200] in FortiOS SSL-VPN versions 7.2.0, versions 7.0.0 through 7.0.6 and versions 6.4.0 through 6.4.9 may allow a remote unauthenticated attacker to gain information about LDAP and SAML settings configured in FortiOS.

    Published: 2 Nov 2022
    6.3
    Medium

    CVE-2022-3825

    Last Modified: 15 Apr 2025

    A vulnerability was found in Huaxia ERP 2.3 and classified as critical. Affected by this issue is some unknown functionality of the component User Management. The manipulation of the argument login leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-212792.

    Published: 2 Nov 2022
    4.3
    Medium

    CVE-2022-3826

    Last Modified: 15 Apr 2025

    A vulnerability was found in Huaxia ERP. It has been classified as problematic. This affects an unknown part of the file /depotHead/list of the component Retail Management. The manipulation of the argument search leads to information disclosure. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-212793 was assigned to this vulnerability.

    Published: 2 Nov 2022
    5.3
    Medium

    CVE-2022-39378

    Last Modified: 23 Apr 2025

    Discourse is a platform for community discussion. Under certain conditions, a user badge may have been awarded based on a user's activity in a topic with restricted access. Before this vulnerability was disclosed, the topic title of the topic associated with the user badge may be viewed by any user. If there are sensitive information in the topic title, it will therefore have been exposed. This issue is patched in the latest stable, beta and tests-passed versions of Discourse. There are currently no known workarounds available.

    Published: 2 Nov 2022
    3.1
    Low

    CVE-2022-39379

    Last Modified: 23 Apr 2025

    Fluentd collects events from various data sources and writes them to files, RDBMS, NoSQL, IaaS, SaaS, Hadoop and so on. A remote code execution (RCE) vulnerability in non-default configurations of Fluentd allows unauthenticated attackers to execute arbitrary code via specially crafted JSON payloads. Fluentd setups are only affected if the environment variable `FLUENT_OJ_OPTION_MODE` is explicitly set to `object`. Please note: The option FLUENT_OJ_OPTION_MODE was introduced in Fluentd version 1.13.2. Earlier versions of Fluentd are not affected by this vulnerability. This issue was patched in version 1.15.3. As a workaround do not use `FLUENT_OJ_OPTION_MODE=object`.

    Published: 2 Nov 2022
    5.4
    Medium

    CVE-2022-39945

    Last Modified: 21 Nov 2024

    An improper access control vulnerability [CWE-284] in FortiMail 7.2.0, 7.0.0 through 7.0.3, 6.4 all versions, 6.2 all versions, 6.0 all versions may allow an authenticated admin user assigned to a specific domain to access and modify other domains information via insecure direct object references (IDOR).

    Published: 2 Nov 2022
    5.3
    Medium

    CVE-2022-42473

    Last Modified: 21 Nov 2024

    A missing authentication for a critical function vulnerability in Fortinet FortiSOAR 6.4.0 - 6.4.4 and 7.0.0 - 7.0.3 and 7.2.0 allows an attacker to disclose information via logging into the database using a privileged account without a password.

    Published: 2 Nov 2022