CVE Feed

    Dashboard / CVE

    —
    Unknown

    CVE-2022-40174

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 7 Sept 2022
    —
    Unknown

    CVE-2022-40175

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 7 Sept 2022
    4.7
    Medium

    CVE-2022-40307

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel through 5.19.8. drivers/firmware/efi/capsule-loader.c has a race condition with a resultant use-after-free.

    Published: 7 Sept 2022
    7.5
    High

    CVE-2022-40023

    Last Modified: 3 Dec 2025

    Sqlalchemy mako before 1.2.2 is vulnerable to Regular expression Denial of Service when using the Lexer class to parse. This also affects babelplugin and linguaplugin.

    Published: 7 Sept 2022
    7.3
    High

    CVE-2022-36427

    Last Modified: 20 Feb 2025

    Missing Access Control vulnerability in About Rentals. Inc. About Rentals plugin <= 1.5 at WordPress.

    Published: 6 Sept 2022
    7.6
    High

    CVE-2022-37344

    Last Modified: 20 Feb 2025

    Missing Access Control vulnerability in PHP Crafts Accommodation System plugin <= 1.0.1 at WordPress.

    Published: 6 Sept 2022
    7.6
    High

    CVE-2022-36387

    Last Modified: 28 Apr 2026

    Broken Access Control vulnerability in Alessio Caiazza's About Me plugin <= 1.0.12 at WordPress.

    Published: 6 Sept 2022
    9.8
    Critical

    CVE-2022-1368

    Last Modified: 16 Apr 2025

    The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-306: Missing Authentication for Critical Function, which allows unauthorized users to change the operator account password via webserver commands by monitoring web socket communications from an unauthenticated session. This could allow an attacker to escalate privileges to match those of the compromised account.

    Published: 6 Sept 2022
    5.3
    Medium

    CVE-2022-1522

    Last Modified: 16 Apr 2025

    The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-117: Improper Output Neutralization for Logs, which allows an attacker to create false logs that show the password as having been changed when it is not, complicating forensics.

    Published: 6 Sept 2022
    9.1
    Critical

    CVE-2022-1525

    Last Modified: 16 Apr 2025

    The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-602: Client-Side Enforcement of Server-Side Security, which could allow attackers to bypass web access controls by inspecting and modifying the source code of password protected web elements.

    Published: 6 Sept 2022
    7.8
    High

    CVE-2022-38529

    Last Modified: 21 Nov 2024

    tinyexr commit 0647fb3 was discovered to contain a heap-buffer overflow via the component rleUncompress.

    Published: 6 Sept 2022
    6.5
    Medium

    CVE-2022-38528

    Last Modified: 21 Nov 2024

    Open Asset Import Library (assimp) commit 3c253ca was discovered to contain a segmentation violation via the component Assimp::XFileImporter::CreateMeshes.

    Published: 6 Sept 2022
    7.5
    High

    CVE-2022-36065

    Last Modified: 23 Apr 2025

    GrowthBook is an open-source platform for feature flagging and A/B testing. With some self-hosted configurations in versions prior to 2022-08-29, attackers can register new accounts and upload files to arbitrary directories within the container. If the attacker uploads a Python script to the right location, they can execute arbitrary code within the container. To be affected, ALL of the following must be true: Self-hosted deployment (GrowthBook Cloud is unaffected); using local file uploads (as opposed to S3 or Google Cloud Storage); NODE_ENV set to a non-production value and JWT_SECRET set to an easily guessable string like `dev`. This issue is patched in commit 1a5edff8786d141161bf880c2fd9ccbe2850a264 (2022-08-29). As a workaround, set `JWT_SECRET` environment variable to a long random string. This will stop arbitrary file uploads, but the only way to stop attackers from registering accounts is by updating to the latest build.

    Published: 6 Sept 2022
    4.3
    Medium

    CVE-2022-35913

    Last Modified: 21 Nov 2024

    Samourai Wallet Stonewallx2 0.99.98e allows a denial of service via a P2P coinjoin. The attacker and victim must follow each other's paynym. Then, the victim must try to collaborate with the attacker for a Stonewallx2 transaction. Next, the attacker broadcasts a tx, spending the inputs used in Stonewallx2 before the victim can broadcast the collaborative transaction. The attacker does not signal opt in RBF, and uses the lowest fee rate. This would result in the victim being unable to perform Stonewallx2. (Note that the attacker could use multiple paynyms.)

    Published: 6 Sept 2022
    5.9
    Medium

    CVE-2022-36064

    Last Modified: 22 Apr 2025

    Shescape is a shell escape package for JavaScript. An Inefficient Regular Expression Complexity vulnerability impacts users that use Shescape to escape arguments for the Unix shells `Bash` and `Dash`, or any not-officially-supported Unix shell; and/or using the `escape` or `escapeAll` functions with the `interpolation` option set to `true`. An attacker can cause polynomial backtracking or quadratic runtime in terms of the input string length due to two Regular Expressions in Shescape that are vulnerable to Regular Expression Denial of Service (ReDoS). This bug has been patched in v1.5.10. For `Dash` only, this bug has been patched since v1.5.9. As a workaround, a maximum length can be enforced on input strings to Shescape to reduce the impact of the vulnerability. It is not recommended to try and detect vulnerable input strings, as the logic for this may end up being vulnerable to ReDoS itself.

    Published: 6 Sept 2022
    5.9
    Medium

    CVE-2022-36072

    Last Modified: 23 Apr 2025

    SilverwareGames.io is a social network for users to play video games online. In version 1.1.8 and prior, due to an unobvious feature of PHP, hashes generated by built-in functions and starting with the `0e` symbols were being handled as zero multiplied with the `e` number. Therefore, the hash value was equal to 0. The maintainers fixed this in version 1.1.9 by using `===` instead of `==` in comparisons where it is possible (e.g. on sign in/sign up handlers).

    Published: 6 Sept 2022
    9.8
    Critical

    CVE-2022-36663

    Last Modified: 21 Nov 2024

    Gluu Oxauth before v4.4.1 allows attackers to execute blind SSRF (Server-Side Request Forgery) attacks via a crafted request_uri parameter.

    Published: 6 Sept 2022
    6.5
    Medium

    CVE-2022-36061

    Last Modified: 22 Apr 2025

    Elrond go is the go implementation for the Elrond Network protocol. In versions prior to 1.3.35, read only calls between contracts can generate smart contracts results. For example, if contract A calls in read only mode contract B and the called function will make changes upon the contract's B state, the state will be altered for contract B as if the call was not made in the read-only mode. This can lead to some effects not designed by the original smart contracts programmers. This issue was patched in version 1.3.35. There are no known workarounds.

    Published: 6 Sept 2022
    7.8
    High

    CVE-2022-38176

    Last Modified: 21 Nov 2024

    An issue was discovered in YSoft SAFEQ 6 before 6.0.72. Incorrect privileges were configured as part of the installer package for the Client V3 services, allowing for local user privilege escalation by overwriting the executable file via an alternative data stream. NOTE: this is not the same as CVE-2021-31859.

    Published: 6 Sept 2022
    7.9
    High

    CVE-2022-26861

    Last Modified: 11 Jun 2025

    Dell BIOS versions contain an Insecure Automated Optimization vulnerability. A local authenticated malicious user could exploit this vulnerability by sending malicious input via SMI to obtain arbitrary code execution during SMM.

    Published: 6 Sept 2022
    7.5
    High

    CVE-2022-26860

    Last Modified: 11 Jun 2025

    Dell BIOS versions contain a stack-based buffer overflow vulnerability. A local attacker could exploit this vulnerability by sending malicious input via SMI to bypass security checks resulting in arbitrary code execution in SMM.

    Published: 6 Sept 2022
    6.1
    Medium

    CVE-2022-26859

    Last Modified: 11 Jun 2025

    Dell BIOS contains a race condition vulnerability. A local attacker could exploit this vulnerability by sending malicious input via SMI in order to bypass security checks during SMM.

    Published: 6 Sept 2022
    6.1
    Medium

    CVE-2022-26858

    Last Modified: 11 Jun 2025

    Dell BIOS versions contain an Improper Authentication vulnerability. A locally authenticated malicious user could potentially exploit this vulnerability by sending malicious input to an SMI in order to bypass security controls.

    Published: 6 Sept 2022
    7.5
    High

    CVE-2022-36058

    Last Modified: 22 Apr 2025

    Elrond go is the go implementation for the Elrond Network protocol. In versions prior to 1.3.34, anyone who uses elrond-go to process blocks (historical or actual) could encounter a `MultiESDTNFTTransfer` transaction like this: `MultiESDTNFTTransfer` with a missing function name. Basic functionality like p2p messaging, storage, API requests and such are unaffected. Version 1.3.34 contains a fix for this issue. There are no known workarounds.

    Published: 6 Sept 2022
    5.4
    Medium

    CVE-2022-37253

    Last Modified: 21 Nov 2024

    Persistent cross-site scripting (XSS) in Crime Reporting System 1.0 allows a remote attacker to introduce arbitary Javascript via manipulation of an unsanitized POST parameter

    Published: 6 Sept 2022
    5.4
    Medium

    CVE-2022-36057

    Last Modified: 23 Apr 2025

    Discourse-Chat is an asynchronous messaging plugin for the Discourse open-source discussion platform. Users of Discourse Chat can be affected by admin users inserting HTML into chat titles and descriptions, causing a Cross-Site Scripting (XSS) attack. Version 0.9 contains a patch for this issue.

    Published: 6 Sept 2022
    7.5
    High

    CVE-2022-37185

    Last Modified: 21 Nov 2024

    SQL injection vulnerability exists in the school information query interface (repschoolproj.php) of the EMS 6.2 system of the Office of the Thai Basic Education Commission, which can lead to data leakage.

    Published: 6 Sept 2022
    —
    Unknown

    CVE-2022-36757

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 6 Sept 2022
    7.8
    High

    CVE-2022-36039

    Last Modified: 23 Apr 2025

    Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to out-of-bounds write when parsing DEX files. A user opening a malicious DEX file could be affected by this vulnerability, allowing an attacker to execute code on the user's machine. A patch is available on the `dev` branch of the repository.

    Published: 6 Sept 2022
    8.8
    High

    CVE-2022-36038

    Last Modified: 23 Apr 2025

    CircuitVerse is an open-source platform which allows users to construct digital logic circuits online. A remote code execution (RCE) vulnerability in CircuitVerse allows authenticated attackers to execute arbitrary code via specially crafted JSON payloads. This issue may lead to Remote Code Execution (RCE). A patch is available in commit number 7b3023a99499a7675f10f2c1d9effdf10c35fb6e. There are currently no known workarounds.

    Published: 6 Sept 2022
    7.8
    High

    CVE-2022-31791

    Last Modified: 21 Nov 2024

    WatchGuard Firebox and XTM appliances allow a local attacker (that has already obtained shell access) to elevate their privileges and execute code with root permissions. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.

    Published: 6 Sept 2022
    5.4
    Medium

    CVE-2022-31792

    Last Modified: 21 Nov 2024

    A stored cross-site scripting (XSS) vulnerability exists in the management web interface of WatchGuard Firebox and XTM appliances. A remote attacker can potentially execute arbitrary JavaScript code in the management web interface by sending crafted requests to exposed management ports. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.

    Published: 6 Sept 2022
    5.3
    Medium

    CVE-2022-36032

    Last Modified: 23 Apr 2025

    ReactPHP HTTP is a streaming HTTP client and server implementation for ReactPHP. In ReactPHP's HTTP server component versions starting with 0.7.0 and prior to 1.7.0, when ReactPHP is processing incoming HTTP cookie values, the cookie names are url-decoded. This may lead to cookies with prefixes like `__Host-` and `__Secure-` confused with cookies that decode to such prefix, thus leading to an attacker being able to forge cookie which is supposed to be secure. This issue is fixed in ReactPHP HTTP version 1.7.0. As a workaround, Infrastructure or DevOps can place a reverse proxy in front of the ReactPHP HTTP server to filter out any unexpected `Cookie` request headers.

    Published: 6 Sept 2022
    9.8
    Critical

    CVE-2022-31789

    Last Modified: 21 Nov 2024

    An integer overflow in WatchGuard Firebox and XTM appliances allows an unauthenticated remote attacker to trigger a buffer overflow and potentially execute arbitrary code by sending a malicious request to exposed management ports. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.

    Published: 6 Sept 2022
    2.7
    Low

    CVE-2022-35931

    Last Modified: 23 Apr 2025

    Nextcloud Password Policy is an app that enables a Nextcloud server admin to define certain rules for passwords. Prior to versions 22.2.10, 23.0.7, and 24.0.3 the random password generator may, in very rare cases, generate common passwords that the validator itself would block. Upgrade Nextcloud Server to 22.2.10, 23.0.7 or 24.0.3 to receive a patch for the issue in Password Policy. There are no known workarounds available.

    Published: 6 Sept 2022
    9.8
    Critical

    CVE-2020-21516

    Last Modified: 21 Nov 2024

    There is an arbitrary file upload vulnerability in FeehiCMS 2.0.8 at the head image upload, that allows attackers to execute relevant PHP code.

    Published: 6 Sept 2022
    6.7
    Medium

    CVE-2022-36670

    Last Modified: 21 Nov 2024

    PCProtect Endpoint prior to v5.17.470 for Microsoft Windows lacks tamper protection, allowing authenticated attackers with Administrator privileges to modify processes within the application and escalate privileges to SYSTEM via a crafted executable.

    Published: 6 Sept 2022
    6.7
    Medium

    CVE-2022-37771

    Last Modified: 21 Nov 2024

    IObit Malware Fighter v9.2 for Microsoft Windows lacks tamper protection, allowing authenticated attackers with Administrator privileges to modify processes within the application and escalate privileges to SYSTEM via a crafted executable.

    Published: 6 Sept 2022
    7.5
    High

    CVE-2022-31790

    Last Modified: 21 Nov 2024

    WatchGuard Firebox and XTM appliances allow an unauthenticated remote attacker to retrieve sensitive authentication server settings by sending a malicious request to exposed authentication endpoints. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.

    Published: 6 Sept 2022
    9.8
    Critical

    CVE-2022-31860

    Last Modified: 12 Jun 2025

    An issue was discovered in OpenRemote through 1.0.4 allows attackers to execute arbitrary code via a crafted Groovy rule.

    Published: 6 Sept 2022
    7.5
    High

    CVE-2022-32264

    Last Modified: 17 Jun 2025

    sys/netinet/tcp_timer.h in FreeBSD before 7.0 contains a denial-of-service (DoS) vulnerability due to improper handling of TSopt on TCP connections. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

    Published: 6 Sept 2022
    —
    Unknown

    CVE-2020-8586

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 6 Sept 2022
    —
    Unknown

    CVE-2022-0844

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 6 Sept 2022
    —
    Unknown

    CVE-2022-1260

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 6 Sept 2022
    7.8
    High

    CVE-2022-26469

    Last Modified: 21 Nov 2024

    In MtkEmail, there is a possible escalation of privilege due to fragment injection. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07216598; Issue ID: ALPS07216598.

    Published: 6 Sept 2022
    6.7
    Medium

    CVE-2022-26470

    Last Modified: 21 Nov 2024

    In aie, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07116037; Issue ID: ALPS07116037.

    Published: 6 Sept 2022
    6.6
    Medium

    CVE-2022-26468

    Last Modified: 21 Nov 2024

    In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07168125; Issue ID: ALPS07168125.

    Published: 6 Sept 2022
    6.7
    Medium

    CVE-2022-26464

    Last Modified: 21 Nov 2024

    In vow, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07032699; Issue ID: ALPS07032699.

    Published: 6 Sept 2022
    6.7
    Medium

    CVE-2022-26465

    Last Modified: 21 Nov 2024

    In audio ipi, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06558799; Issue ID: ALPS06558799.

    Published: 6 Sept 2022
    6.7
    Medium

    CVE-2022-26466

    Last Modified: 21 Nov 2024

    In audio ipi, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06558777; Issue ID: ALPS06558777.

    Published: 6 Sept 2022