CVE Feed

    Dashboard / CVE

    6.7
    Medium

    CVE-2022-25666

    Last Modified: 9 May 2025

    Memory corruption due to use after free in service while trying to access maps by different threads in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 19 Oct 2022
    7.3
    High

    CVE-2022-25687

    Last Modified: 9 May 2025

    memory corruption in video due to buffer overflow while parsing asf clips in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 19 Oct 2022
    9.1
    Critical

    CVE-2022-25718

    Last Modified: 9 May 2025

    Cryptographic issue in WLAN due to improper check on return value while authentication handshake in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 19 Oct 2022
    8.2
    High

    CVE-2022-25719

    Last Modified: 9 May 2025

    Information disclosure in WLAN due to improper length check while processing authentication handshake in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 19 Oct 2022
    9.8
    Critical

    CVE-2022-25720

    Last Modified: 9 May 2025

    Memory corruption in WLAN due to out of bound array access during connect/roaming in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 19 Oct 2022
    6.5
    Medium

    CVE-2022-43020

    Last Modified: 24 Sept 2025

    OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the tag_id variable in the Tag update function.

    Published: 19 Oct 2022
    6.1
    Medium

    CVE-2022-42466

    Last Modified: 8 May 2025

    Prior to 2.0.0-M9, it was possible for an end-user to set the value of an editable string property of a domain object to a value that would be rendered unchanged when the value was saved. In particular, the end-user could enter javascript or similar and this would be executed. As of this release, the inputted strings are properly escaped when rendered.

    Published: 19 Oct 2022
    6.8
    Medium

    CVE-2022-35860

    Last Modified: 9 May 2025

    Missing AES encryption in Corsair K63 Wireless 3.1.3 allows physically proximate attackers to inject and sniff keystrokes via 2.4 GHz radio transmissions.

    Published: 19 Oct 2022
    8.4
    High

    CVE-2022-3608

    Last Modified: 8 May 2025

    Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.0-alpha.

    Published: 19 Oct 2022
    5.4
    Medium

    CVE-2022-38901

    Last Modified: 9 May 2025

    A Cross-site scripting (XSS) vulnerability in the Document and Media module - file upload functionality in Liferay Digital Experience Platform 7.3.10 SP3 allows remote attackers to inject arbitrary JS script or HTML into the description field of uploaded svg file.

    Published: 19 Oct 2022
    4.3
    Medium

    CVE-2022-39233

    Last Modified: 22 Apr 2025

    Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In versions 12.9.99.228 and above, prior to 14.0.99.24, authorizations are not properly verified when updating the branch prefix used by the GitLab repository integration. Authenticated users can change the branch prefix of any of the GitLab repository integration they can see vie the REST endpoint `PATCH /gitlab_repositories/{id}`. This action should be restricted to Git administrators. This issue is patched in Tuleap Community Edition 14.0.99.24 and Tuleap Enterprise Edition 14.0-3. There are no known workarounds.

    Published: 19 Oct 2022
    8.8
    High

    CVE-2022-39267

    Last Modified: 23 Apr 2025

    Bifrost is a heterogeneous middleware that synchronizes MySQL, MariaDB to Redis, MongoDB, ClickHouse, MySQL and other services for production environments. Versions prior to 1.8.8-release are subject to authentication bypass in the admin and monitor user groups by deleting the X-Requested-With: XMLHttpRequest field in the request header. This issue has been patched in 1.8.8-release. There are no known workarounds.

    Published: 19 Oct 2022
    8.2
    High

    CVE-2022-39301

    Last Modified: 22 Apr 2025

    sra-admin is a background rights management system that separates the front and back end. sra-admin version 1.1.1 has a storage cross-site scripting (XSS) vulnerability. After logging into the sra-admin background, an attacker can upload an html page containing xss attack code in "Personal Center" - "Profile Picture Upload" allowing theft of the user's personal information. This issue has been patched in 1.1.2. There are no known workarounds.

    Published: 19 Oct 2022
    5.5
    Medium

    CVE-2022-40884

    Last Modified: 9 May 2025

    Bento4 1.6.0 has memory leaks via the mp4fragment.

    Published: 19 Oct 2022
    5.5
    Medium

    CVE-2022-40885

    Last Modified: 9 May 2025

    Bento4 v1.6.0-639 has a memory allocation issue that can cause denial of service.

    Published: 19 Oct 2022
    9.8
    Critical

    CVE-2022-41415

    Last Modified: 8 May 2025

    Acer Altos W2000h-W570h F4 R01.03.0018 was discovered to contain a stack overflow in the RevserveMem component. This vulnerability allows attackers to cause a Denial of Service (DoS) via injecting crafted shellcode into the NVRAM variable.

    Published: 19 Oct 2022
    5.5
    Medium

    CVE-2021-3684

    Last Modified: 25 Feb 2025

    A vulnerability was found in OpenShift Assisted Installer. During generation of the Discovery ISO, image pull secrets were leaked as plaintext in the installation logs. An authenticated user could exploit this by re-using the image pull secret to pull container images from the registry as the associated user.

    Published: 19 Oct 2022
    6.5
    Medium

    CVE-2022-41707

    Last Modified: 8 May 2025

    Relatedcode's Messenger version 7bcd20b allows an authenticated external attacker to access sensitive data of any user of the application. This is possible because the application exposes user data to the public.

    Published: 19 Oct 2022
    4.3
    Medium

    CVE-2022-41708

    Last Modified: 8 May 2025

    Relatedcode's Messenger version 7bcd20b allows an authenticated external attacker to access existing chats in the workspaces of any user of the application. This is possible because the application does not validate permissions correctly.

    Published: 19 Oct 2022
    8.1
    High

    CVE-2022-23241

    Last Modified: 9 May 2025

    Clustered Data ONTAP versions 9.11.1 through 9.11.1P2 with SnapLock configured FlexGroups are susceptible to a vulnerability which could allow an authenticated remote attacker to arbitrarily modify or delete WORM data prior to the end of the retention period.

    Published: 19 Oct 2022
    8.8
    High

    CVE-2022-23734

    Last Modified: 9 May 2025

    A deserialization of untrusted data vulnerability was identified in GitHub Enterprise Server that could potentially lead to remote code execution on the SVNBridge. To exploit this vulnerability, an attacker would need to gain access via a server-side request forgery (SSRF) that would let an attacker control the data being deserialized. This vulnerability affected all versions of GitHub Enterprise Server prior to v3.6 and was fixed in versions 3.5.3, 3.4.6, 3.3.11, and 3.2.16. This vulnerability was reported via the GitHub Bug Bounty program.

    Published: 19 Oct 2022
    7.8
    High

    CVE-2022-43042

    Last Modified: 9 May 2025

    GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a heap buffer overflow via the function FixSDTPInTRAF at isomedia/isom_intern.c.

    Published: 19 Oct 2022
    5.5
    Medium

    CVE-2022-43043

    Last Modified: 9 May 2025

    GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a segmentation violation via the function BD_CheckSFTimeOffset at /bifs/field_decode.c.

    Published: 19 Oct 2022
    5.5
    Medium

    CVE-2022-43044

    Last Modified: 9 May 2025

    GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a segmentation violation via the function gf_isom_get_meta_item_info at /isomedia/meta.c.

    Published: 19 Oct 2022
    5.5
    Medium

    CVE-2022-43045

    Last Modified: 9 May 2025

    GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a segmentation violation via the function gf_dump_vrml_sffield at /scene_manager/scene_dump.c.

    Published: 19 Oct 2022
    5.4
    Medium

    CVE-2022-43409

    Last Modified: 8 May 2025

    Jenkins Pipeline: Supporting APIs Plugin 838.va_3a_087b_4055b and earlier does not sanitize or properly encode URLs of hyperlinks sending POST requests in build logs, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to create Pipelines.

    Published: 19 Oct 2022
    5.3
    Medium

    CVE-2022-43410

    Last Modified: 8 May 2025

    Jenkins Mercurial Plugin 1251.va_b_121f184902 and earlier provides information about which jobs were triggered or scheduled for polling through its webhook endpoint, including jobs the user has no permission to access.

    Published: 19 Oct 2022
    5.3
    Medium

    CVE-2022-43411

    Last Modified: 8 May 2025

    Jenkins GitLab Plugin 1.5.35 and earlier uses a non-constant time comparison function when checking whether the provided and expected webhook token are equal, potentially allowing attackers to use statistical methods to obtain a valid webhook token.

    Published: 19 Oct 2022
    7.5
    High

    CVE-2022-25736

    Last Modified: 9 May 2025

    Denial of service in WLAN due to out-of-bound read happens while processing VHT action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 19 Oct 2022
    9.8
    Critical

    CVE-2022-25748

    Last Modified: 22 Apr 2025

    Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 19 Oct 2022
    7.5
    High

    CVE-2022-25749

    Last Modified: 22 Apr 2025

    Transient Denial-of-Service in WLAN due to buffer over-read while parsing MDNS frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 19 Oct 2022
    6.1
    Medium

    CVE-2022-43014

    Last Modified: 24 Sept 2025

    OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the joborderID parameter.

    Published: 19 Oct 2022
    6.1
    Medium

    CVE-2022-43015

    Last Modified: 24 Sept 2025

    OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the entriesPerPage parameter.

    Published: 19 Oct 2022
    6.1
    Medium

    CVE-2022-43016

    Last Modified: 24 Sept 2025

    OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the callback component.

    Published: 19 Oct 2022
    6.1
    Medium

    CVE-2022-43017

    Last Modified: 24 Sept 2025

    OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the indexFile component.

    Published: 19 Oct 2022
    9.8
    Critical

    CVE-2022-43019

    Last Modified: 24 Sept 2025

    OpenCATS v0.9.6 was discovered to contain a remote code execution (RCE) vulnerability via the getDataGridPager's ajax functionality.

    Published: 19 Oct 2022
    6.5
    Medium

    CVE-2022-43021

    Last Modified: 24 Sept 2025

    OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the entriesPerPage variable.

    Published: 19 Oct 2022
    6.5
    Medium

    CVE-2022-43022

    Last Modified: 24 Sept 2025

    OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the tag_id variable in the Tag deletion function.

    Published: 19 Oct 2022
    6.5
    Medium

    CVE-2022-43023

    Last Modified: 24 Sept 2025

    OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the importID parameter in the Import viewerrors function.

    Published: 19 Oct 2022
    9.8
    Critical

    CVE-2022-3327

    Last Modified: 9 May 2025

    Missing Authentication for Critical Function in GitHub repository ikus060/rdiffweb prior to 2.5.0a6.

    Published: 19 Oct 2022
    6
    Medium

    CVE-2022-3607

    Last Modified: 9 May 2025

    Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository octoprint/octoprint prior to 1.8.3.

    Published: 19 Oct 2022
    7
    High

    CVE-2022-41741

    Last Modified: 8 May 2025

    NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_mp4_module that might allow a local attacker to corrupt NGINX worker memory, resulting in its termination or potential other impact using a specially crafted audio or video file. The issue affects only NGINX products that are built with the ngx_http_mp4_module, when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger processing of a specially crafted audio or video file with the module ngx_http_mp4_module.

    Published: 19 Oct 2022
    7.1
    High

    CVE-2022-41742

    Last Modified: 8 May 2025

    NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_mp4_module that might allow a local attacker to cause a worker process crash, or might result in worker process memory disclosure by using a specially crafted audio or video file. The issue affects only NGINX products that are built with the module ngx_http_mp4_module, when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger processing of a specially crafted audio or video file with the module ngx_http_mp4_module.

    Published: 19 Oct 2022
    5.3
    Medium

    CVE-2022-42467

    Last Modified: 21 Nov 2024

    When running in prototype mode, the h2 webconsole module (accessible from the Prototype menu) is automatically made available with the ability to directly query the database. It was felt that it is safer to require the developer to explicitly enable this capability. As of 2.0.0-M8, this can now be done using the 'isis.prototyping.h2-console.web-allow-remote-access' configuration property; the web console will be unavailable without setting this configuration. As an additional safeguard, the new 'isis.prototyping.h2-console.generate-random-web-admin-password' configuration parameter (enabled by default) requires that the administrator use a randomly generated password to use the console. The password is printed to the log, as "webAdminPass: xxx" (where "xxx") is the password. To revert to the original behaviour, the administrator would therefore need to set these configuration parameter: isis.prototyping.h2-console.web-allow-remote-access=true isis.prototyping.h2-console.generate-random-web-admin-password=false Note also that the h2 webconsole is never available in production mode, so these safeguards are only to ensure that the webconsole is secured by default also in prototype mode.

    Published: 19 Oct 2022
    5.5
    Medium

    CVE-2022-4285

    Last Modified: 28 Mar 2025

    An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.

    Published: 19 Oct 2022
    7.8
    High

    CVE-2022-43040

    Last Modified: 9 May 2025

    GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a heap buffer overflow via the function gf_isom_box_dump_start_ex at /isomedia/box_funcs.c.

    Published: 19 Oct 2022
    9.9
    Critical

    CVE-2022-43403

    Last Modified: 21 Nov 2024

    A sandbox bypass vulnerability involving casting an array-like value to an array type in Jenkins Script Security Plugin 1183.v774b_0b_0a_a_451 and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

    Published: 19 Oct 2022
    9.9
    Critical

    CVE-2022-43404

    Last Modified: 21 Nov 2024

    A sandbox bypass vulnerability involving crafted constructor bodies and calls to sandbox-generated synthetic constructors in Jenkins Script Security Plugin 1183.v774b_0b_0a_a_451 and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

    Published: 19 Oct 2022
    9.9
    Critical

    CVE-2022-43405

    Last Modified: 21 Nov 2024

    A sandbox bypass vulnerability in Jenkins Pipeline: Groovy Libraries Plugin 612.v84da_9c54906d and earlier allows attackers with permission to define untrusted Pipeline libraries and to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.

    Published: 19 Oct 2022
    6.5
    Medium

    CVE-2022-43408

    Last Modified: 8 May 2025

    Jenkins Pipeline: Stage View Plugin 2.26 and earlier does not correctly encode the ID of 'input' steps when using it to generate URLs to proceed or abort Pipeline builds, allowing attackers able to configure Pipelines to specify 'input' step IDs resulting in URLs that would bypass the CSRF protection of any target URL in Jenkins.

    Published: 19 Oct 2022