CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2022-38690

    Last Modified: 15 May 2025

    In camera driver, there is a possible memory corruption due to improper locking. This could lead to local denial of service in kernel.

    Published: 14 Oct 2022
    9.8
    Critical

    CVE-2022-38980

    Last Modified: 15 May 2025

    The HwAirlink module has a heap overflow vulnerability in processing data packets of the proprietary protocol.Successful exploitation of this vulnerability may allow attackers to obtain process control permissions.

    Published: 14 Oct 2022
    9.8
    Critical

    CVE-2022-38983

    Last Modified: 15 May 2025

    The BT Hfp Client module has a Use-After-Free (UAF) vulnerability.Successful exploitation of this vulnerability may result in arbitrary code execution.

    Published: 14 Oct 2022
    7.5
    High

    CVE-2022-38985

    Last Modified: 15 May 2025

    The facial recognition module has a vulnerability in input validation.Successful exploitation of this vulnerability may affect data confidentiality.

    Published: 14 Oct 2022
    8.1
    High

    CVE-2022-39064

    Last Modified: 15 May 2025

    An attacker sending a single malformed IEEE 802.15.4 (Zigbee) frame makes the TRÅDFRI bulb blink, and if they replay (i.e. resend) the same frame multiple times, the bulb performs a factory reset. This causes the bulb to lose configuration information about the Zigbee network and current brightness level. After this attack, all lights are on with full brightness, and a user cannot control the bulbs with either the IKEA Home Smart app or the TRÅDFRI remote control. The malformed Zigbee frame is an unauthenticated broadcast message, which means all vulnerable devices within radio range are affected. CVSS 3.1 Base Score 7.1 vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

    Published: 14 Oct 2022
    5.5
    Medium

    CVE-2022-39103

    Last Modified: 15 May 2025

    In Gallery service, there is a missing permission check. This could lead to local denial of service in Gallery service with no additional execution privileges needed.

    Published: 14 Oct 2022
    7.8
    High

    CVE-2022-39109

    Last Modified: 15 May 2025

    In Music service, there is a missing permission check. This could lead to elevation of privilege in Music service with no additional execution privileges needed.

    Published: 14 Oct 2022
    5.5
    Medium

    CVE-2022-39113

    Last Modified: 15 May 2025

    In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed.

    Published: 14 Oct 2022
    5.5
    Medium

    CVE-2022-39114

    Last Modified: 15 May 2025

    In Music service, there is a missing permission check. This could lead to local denial of service in Music service with no additional execution privileges needed.

    Published: 14 Oct 2022
    6.5
    Medium

    CVE-2022-39308

    Last Modified: 23 Apr 2025

    GoCD is a continuous delivery server. GoCD helps you automate and streamline the build-test-release cycle for continuous delivery of your product. GoCD versions from 19.2.0 to 19.10.0 (inclusive) are subject to a timing attack in validation of access tokens due to use of regular string comparison for validation of the token rather than a constant time algorithm. This could allow a brute force attack on GoCD server API calls to observe timing differences in validations in order to guess an access token generated by a user for API access. This issue is fixed in GoCD version 19.11.0. As a workaround, users can apply rate limiting or insert random delays to API calls made to GoCD Server via a reverse proxy or other fronting web server. Another workaround, users may disallow use of access tokens by users by having an administrator revoke all access tokens through the "Access Token Management" admin function.

    Published: 14 Oct 2022
    4.9
    Medium

    CVE-2022-39309

    Last Modified: 23 Apr 2025

    GoCD is a continuous delivery server. GoCD helps you automate and streamline the build-test-release cycle for continuous delivery of your product. GoCD versions prior to 21.1.0 leak the symmetric key used to encrypt/decrypt any secure variables/secrets in GoCD configuration to authenticated agents. A malicious/compromised agent may then expose that key from memory, and potentially allow an attacker the ability to decrypt secrets intended for other agents/environments if they also are able to obtain access to encrypted configuration values from the GoCD server. This issue is fixed in GoCD version 21.1.0. There are currently no known workarounds.

    Published: 14 Oct 2022
    4.9
    Medium

    CVE-2022-39310

    Last Modified: 23 Apr 2025

    GoCD is a continuous delivery server. GoCD helps you automate and streamline the build-test-release cycle for continuous delivery of your product. GoCD versions prior to 21.1.0 can allow one authenticated agent to impersonate another agent, and thus receive work packages for other agents due to broken access control and incorrect validation of agent tokens within the GoCD server. Since work packages can contain sensitive information such as credentials intended only for a given job running against a specific agent environment, this can cause accidental information disclosure. Exploitation requires knowledge of agent identifiers and ability to authenticate as an existing agent with the GoCD server. This issue is fixed in GoCD version 21.1.0. There are currently no known workarounds.

    Published: 14 Oct 2022
    7.5
    High

    CVE-2022-40303

    Last Modified: 29 Apr 2025

    An issue was discovered in libxml2 before 2.10.3. When parsing a multi-gigabyte XML document with the XML_PARSE_HUGE parser option enabled, several integer counters can overflow. This results in an attempt to access an array at a negative 2GB offset, typically leading to a segmentation fault.

    Published: 14 Oct 2022
    7.8
    High

    CVE-2022-40304

    Last Modified: 28 Apr 2025

    An issue was discovered in libxml2 before 2.10.3. Certain invalid XML entity definitions can corrupt a hash table key, potentially leading to subsequent logic errors. In one case, a double-free can be provoked.

    Published: 14 Oct 2022
    7.8
    High

    CVE-2022-41303

    Last Modified: 14 May 2025

    A user may be tricked into opening a malicious FBX file which may exploit a use-after-free vulnerability in Autodesk FBX SDK 2020 version causing the application to reference a memory location controlled by an unauthorized third party, thereby running arbitrary code on the system.

    Published: 14 Oct 2022
    7.1
    High

    CVE-2022-41577

    Last Modified: 14 May 2025

    The kernel server has a vulnerability of not verifying the length of the data transferred in the user space.Successful exploitation of this vulnerability may cause out-of-bounds read in the kernel, which affects the device confidentiality and availability.

    Published: 14 Oct 2022
    5.1
    Medium

    CVE-2022-3534

    Last Modified: 26 Aug 2026

    A vulnerability has been found in Linux Kernel up to 5.10.162/5.15.85/6.0.15/6.1.1. The impacted element is the function btf_dump_name_dups of the file tools/lib/bpf/btf_dump.c of the component libbpf. The manipulation leads to use after free. Upgrading to version 5.10.163, 5.15.86, 6.0.16, 6.1.2 and 6.2 is sufficient to resolve this issue. The identifier of the patch is c61650b869e0b6fb0c0a28ed42d928eea969afc8/fbe08093fb2334549859829ef81d42570812597d/8c64a8e76eb85d422af5ec60ccbf26e3ead8c333/a733bf10198eb5bb927890940de8ab457491ed3b/93c660ca40b5d2f7c1b1626e955a8e9fa30e0749. You should upgrade the affected component.

    Published: 13 Oct 2022
    6.1
    Medium

    CVE-2022-31123

    Last Modified: 28 Jan 2026

    Grafana is an open source observability and data visualization platform. Versions prior to 9.1.8 and 8.5.14 are vulnerable to a bypass in the plugin signature verification. An attacker can convince a server admin to download and successfully run a malicious plugin even though unsigned plugins are not allowed. Versions 9.1.8 and 8.5.14 contain a patch for this issue. As a workaround, do not install plugins downloaded from untrusted sources.

    Published: 13 Oct 2022
    6.1
    Medium

    CVE-2022-39295

    Last Modified: 22 Apr 2025

    Knowage is an open source suite for modern business analytics alternative over big data systems. KnowageLabs / Knowage-Server starting with the 6.x branch and prior to versions 7.4.22, 8.0.9, and 8.1.0 is vulnerable to cross-site scripting because the `XSSRequestWrapper::stripXSS` method can be bypassed. Versions 7.4.22, 8.0.9, and 8.1.0 contain patches for this issue. There are no known workarounds.

    Published: 13 Oct 2022
    8.1
    High

    CVE-2022-39303

    Last Modified: 23 Apr 2025

    Ree6 is a moderation bot. This vulnerability allows manipulation of SQL queries. This issue has been patched in version 1.7.0 by using Javas PreparedStatements, which allow object setting without the risk of SQL injection. There are currently no known workarounds.

    Published: 13 Oct 2022
    8.1
    High

    CVE-2022-41489

    Last Modified: 15 May 2025

    WAYOS LQ_09 22.03.17V was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to send crafted requests to the server from the affected device. This vulnerability is exploitable due to a lack of authentication in the component Usb_upload.htm.

    Published: 13 Oct 2022
    8.1
    High

    CVE-2022-41674

    Last Modified: 15 May 2025

    An issue was discovered in the Linux kernel before 5.19.16. Attackers able to inject WLAN frames could cause a buffer overflow in the ieee80211_bss_info_update function in net/mac80211/scan.c.

    Published: 13 Oct 2022
    7.8
    High

    CVE-2022-42899

    Last Modified: 15 May 2025

    Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds read and stack overflow issues when opening crafted SKP files. Exploiting these issues could lead to information disclosure and code execution. The fixed versions are 10.17.01.58* for MicroStation and 10.17.01.19* for Bentley View.

    Published: 13 Oct 2022
    7.8
    High

    CVE-2022-42900

    Last Modified: 15 May 2025

    Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds read issues when opening crafted FBX files. Exploiting these issues could lead to information disclosure and code execution. The fixed versions are 10.17.01.58* for MicroStation and 10.17.01.19* for Bentley View.

    Published: 13 Oct 2022
    7.8
    High

    CVE-2022-42901

    Last Modified: 15 May 2025

    Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds and stack overflow issues when opening crafted XMT files. Exploiting these issues could lead to information disclosure and code execution. The fixed versions are 10.17.01.58* for MicroStation and 10.17.01.19* for Bentley View.

    Published: 13 Oct 2022
    7.5
    High

    CVE-2021-20030

    Last Modified: 16 May 2025

    SonicWall GMS is vulnerable to file path manipulation resulting that an unauthenticated attacker can gain access to web directory containing application's binaries and configuration files.

    Published: 13 Oct 2022
    8.8
    High

    CVE-2022-42156

    Last Modified: 15 May 2025

    D-Link COVR 1200,1203 v1.08 was discovered to contain a command injection vulnerability via the tomography_ping_number parameter at function SetNetworkTomographySettings.

    Published: 13 Oct 2022
    4.3
    Medium

    CVE-2022-42159

    Last Modified: 16 May 2025

    D-Link COVR 1200,1202,1203 v1.08 was discovered to have a predictable seed in a Pseudo-Random Number Generator.

    Published: 13 Oct 2022
    8.8
    High

    CVE-2022-42160

    Last Modified: 16 May 2025

    D-Link COVR 1200,1202,1203 v1.08 was discovered to contain a command injection vulnerability via the system_time_timezone parameter at function SetNTPServerSettings.

    Published: 13 Oct 2022
    8.8
    High

    CVE-2022-42161

    Last Modified: 15 May 2025

    D-Link COVR 1200,1202,1203 v1.08 was discovered to contain a command injection vulnerability via the /SetTriggerWPS/PIN parameter at function SetTriggerWPS.

    Published: 13 Oct 2022
    9.8
    Critical

    CVE-2022-24697

    Last Modified: 16 May 2025

    Kylin's cube designer function has a command injection vulnerability when overwriting system parameters in the configuration overwrites menu. RCE can be implemented by closing the single quotation marks around the parameter value of “-- conf=” to inject any operating system command into the command line parameters. This vulnerability affects Kylin 2 version 2.6.5 and earlier, Kylin 3 version 3.1.2 and earlier, and Kylin 4 version 4.0.1 and earlier.

    Published: 13 Oct 2022
    6.5
    Medium

    CVE-2022-2828

    Last Modified: 15 May 2025

    In affected versions of Octopus Server it is possible to reveal information about teams via the API due to an Insecure Direct Object Reference (IDOR) vulnerability

    Published: 13 Oct 2022
    8.8
    High

    CVE-2022-42719

    Last Modified: 15 May 2025

    A use-after-free in the mac80211 stack when parsing a multi-BSSID element in the Linux kernel 5.2 through 5.19.x before 5.19.16 could be used by attackers (able to inject WLAN frames) to crash the kernel and potentially execute code.

    Published: 13 Oct 2022
    7.8
    High

    CVE-2022-42720

    Last Modified: 15 May 2025

    Various refcounting bugs in the multi-BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (able to inject WLAN frames) to trigger use-after-free conditions to potentially execute code.

    Published: 13 Oct 2022
    5.5
    Medium

    CVE-2022-42721

    Last Modified: 15 May 2025

    A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (able to inject WLAN frames) to corrupt a linked list and, in turn, potentially execute code.

    Published: 13 Oct 2022
    5.5
    Medium

    CVE-2022-42722

    Last Modified: 21 Nov 2024

    In the Linux kernel 5.8 through 5.19.x before 5.19.16, local attackers able to inject WLAN frames into the mac80211 stack could cause a NULL pointer dereference denial-of-service attack against the beacon protection of P2P devices.

    Published: 13 Oct 2022
    8.8
    High

    CVE-2022-34020

    Last Modified: 16 May 2025

    Cross Site Request Forgery (CSRF) vulnerability in ResIOT ResIOT IOT Platform + LoRaWAN Network Server through 4.1.1000114 allows attackers to add new admin users to the platform or other unspecified impacts.

    Published: 13 Oct 2022
    5.4
    Medium

    CVE-2022-34021

    Last Modified: 16 May 2025

    Multiple Cross Site Scripting (XSS) vulnerabilities in ResIOT IOT Platform + LoRaWAN Network Server through 4.1.1000114 via the form fields.

    Published: 13 Oct 2022
    7.2
    High

    CVE-2022-34022

    Last Modified: 15 May 2025

    SQL injection vulnerability in ResIOT IOT Platform + LoRaWAN Network Server through 4.1.1000114 via a crafted POST request to /ResiotQueryDBActive.

    Published: 13 Oct 2022
    9.8
    Critical

    CVE-2022-3456

    Last Modified: 15 May 2025

    Allocation of Resources Without Limits or Throttling in GitHub repository ikus060/rdiffweb prior to 2.5.0.

    Published: 13 Oct 2022
    9.8
    Critical

    CVE-2022-3457

    Last Modified: 15 May 2025

    Origin Validation Error in GitHub repository ikus060/rdiffweb prior to 2.5.0a5.

    Published: 13 Oct 2022
    —
    Unknown

    CVE-2022-3487

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 13 Oct 2022
    5.5
    Medium

    CVE-2022-35080

    Last Modified: 15 May 2025

    SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_load at /lib/png.c.

    Published: 13 Oct 2022
    5.5
    Medium

    CVE-2022-35081

    Last Modified: 15 May 2025

    SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_read_header at /src/png2swf.c.

    Published: 13 Oct 2022
    5.4
    Medium

    CVE-2022-35134

    Last Modified: 15 May 2025

    Boodskap IoT Platform v4.4.9-02 contains a cross-site scripting (XSS) vulnerability.

    Published: 13 Oct 2022
    8.8
    High

    CVE-2022-35135

    Last Modified: 15 May 2025

    Boodskap IoT Platform v4.4.9-02 allows attackers to escalate privileges via a crafted request sent to /api/user/upsert/<uuid>.

    Published: 13 Oct 2022
    6.5
    Medium

    CVE-2022-35136

    Last Modified: 15 May 2025

    Boodskap IoT Platform v4.4.9-02 allows attackers to make unauthenticated API requests.

    Published: 13 Oct 2022
    2.6
    Low

    CVE-2022-3521

    Last Modified: 15 Apr 2025

    A vulnerability has been found in Linux Kernel and classified as problematic. This vulnerability affects the function kcm_tx_work of the file net/kcm/kcmsock.c of the component kcm. The manipulation leads to race condition. It is recommended to apply a patch to fix this issue. VDB-211018 is the identifier assigned to this vulnerability.

    Published: 13 Oct 2022
    4.3
    Medium

    CVE-2022-35611

    Last Modified: 15 May 2025

    A Cross-Site Request Forgery (CSRF) in MQTTRoute v3.3 and below allows attackers to create and remove dashboards.

    Published: 13 Oct 2022
    5.4
    Medium

    CVE-2022-35612

    Last Modified: 15 May 2025

    A cross-site scripting (XSS) vulnerability in MQTTRoute v3.3 and below allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the dashboard name text field.

    Published: 13 Oct 2022