CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2022-39176

    Last Modified: 15 Apr 2026

    BlueZ before 5.59 allows physically proximate attackers to obtain sensitive information because profiles/audio/avrcp.c does not validate params_len.

    Published: 2 Sept 2022
    7.5
    High

    CVE-2022-36622

    Last Modified: 21 Nov 2024

    Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_GetObjectInfo1.

    Published: 1 Sept 2022
    7.5
    High

    CVE-2022-36621

    Last Modified: 21 Nov 2024

    Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_AllocateTransientObject.

    Published: 1 Sept 2022
    —
    Unknown

    CVE-2022-38127

    Last Modified: 13 Feb 2025

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 1 Sept 2022
    —
    Unknown

    CVE-2022-38128

    Last Modified: 13 Feb 2025

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 1 Sept 2022
    —
    Unknown

    CVE-2022-38126

    Last Modified: 13 Feb 2025

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 1 Sept 2022
    7.5
    High

    CVE-2022-36604

    Last Modified: 21 Nov 2024

    An access control issue in Canaan Avalon ASIC Miner 2020.3.30 and below allows unauthenticated attackers to arbitrarily change user passwords via a crafted POST request.

    Published: 1 Sept 2022
    8.8
    High

    CVE-2022-36603

    Last Modified: 21 Nov 2024

    InnoSilicon T3T+ t2t+_soc_20190911_151433.swu was discovered to contain a remote code execution (RCE) vulnerability in the checkUrl function.

    Published: 1 Sept 2022
    9.8
    Critical

    CVE-2022-36601

    Last Modified: 21 Nov 2024

    The Eclipse TCF debug interface in JasMiner-X4-Server-20220621-090907 and below is open on port 1534. This issue allows unauthenticated attackers to gain root privileges on the affected device and access sensitive data or execute arbitrary commands.

    Published: 1 Sept 2022
    8.8
    High

    CVE-2022-36602

    Last Modified: 21 Nov 2024

    InnoSilicon A10 a10_20200924_120556 was discovered to contain a remote code execution (RCE) vulnerability in the setPlatformAPI function.

    Published: 1 Sept 2022
    8.1
    High

    CVE-2022-36773

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 233571.

    Published: 1 Sept 2022
    7.5
    High

    CVE-2022-30614

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to a denial of service via email flooding caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to cause the server to consume all available CPU resources. IBM X-Force ID: 227591.

    Published: 1 Sept 2022
    5.5
    Medium

    CVE-2021-39045

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a local attacker to obtain information due to the autocomplete feature on password input fields. IBM X-Force ID: 214345.

    Published: 1 Sept 2022
    5.5
    Medium

    CVE-2021-39009

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by a local privileged user. IBM X-Force ID: 213554.

    Published: 1 Sept 2022
    6.5
    Medium

    CVE-2021-29823

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 204465.

    Published: 1 Sept 2022
    6.5
    Medium

    CVE-2021-20468

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 196825.

    Published: 1 Sept 2022
    6.5
    Medium

    CVE-2020-4301

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 176609.

    Published: 1 Sept 2022
    9.3
    Critical

    CVE-2022-34380

    Last Modified: 21 Nov 2024

    Dell CloudLink 7.1.3 and all earlier versions contain an Authentication Bypass Using an Alternate Path or Channel Vulnerability. A high privileged local attacker may potentially exploit this vulnerability leading to authentication bypass and access the CloudLink system console. This is critical severity vulnerability as it allows attacker to take control of the system.

    Published: 1 Sept 2022
    9.4
    Critical

    CVE-2022-34379

    Last Modified: 21 Nov 2024

    Dell EMC CloudLink 7.1.2 and all prior versions contain an Authentication Bypass Vulnerability. A remote attacker, with the knowledge of the active directory usernames, could potentially exploit this vulnerability to gain unauthorized access to the system.

    Published: 1 Sept 2022
    9.8
    Critical

    CVE-2022-34372

    Last Modified: 21 Nov 2024

    Dell PowerProtect Cyber Recovery versions before 19.11.0.2 contain an authentication bypass vulnerability. A remote unauthenticated attacker may potentially access and interact with the docker registry API leading to an authentication bypass. The attacker may potentially alter the docker images leading to a loss of integrity and confidentiality

    Published: 1 Sept 2022
    6.1
    Medium

    CVE-2022-36583

    Last Modified: 21 Nov 2024

    DedeCMS V5.7.97 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities at /dede/co_do.php via the dopost, rpok, and aid parameters.

    Published: 1 Sept 2022
    —
    Unknown

    CVE-2020-35529

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none

    Published: 1 Sept 2022
    —
    Unknown

    CVE-2020-35528

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none

    Published: 1 Sept 2022
    —
    Unknown

    CVE-2020-35526

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none

    Published: 1 Sept 2022
    7.5
    High

    CVE-2021-45027

    Last Modified: 21 Nov 2024

    An arbitrary file download vulnerability in Oliver v5 Library Server Versions < 5.00.008.053 via the FileServlet function allows for arbitrary file download by an attacker using unsanitized user supplied input.

    Published: 1 Sept 2022
    6.1
    Medium

    CVE-2022-36796

    Last Modified: 20 Feb 2025

    Cross-Site Request Forgery (CSRF) vulnerability leading to Stored Cross-Site Scripting (XSS) in CallRail, Inc. CallRail Phone Call Tracking plugin <= 0.4.9 at WordPress.

    Published: 1 Sept 2022
    5.4
    Medium

    CVE-2022-36373

    Last Modified: 20 Feb 2025

    Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Simon Ward MP3 jPlayer plugin <= 2.7.3 at WordPress.

    Published: 1 Sept 2022
    5.4
    Medium

    CVE-2022-36355

    Last Modified: 28 Apr 2026

    Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in PluginlySpeaking Easy Org Chart plugin <= 3.1 at WordPress.

    Published: 1 Sept 2022
    8.8
    High

    CVE-2022-37435

    Last Modified: 21 Nov 2024

    Apache ShenYu Admin has insecure permissions, which may allow low-privilege administrators to modify high-privilege administrator's passwords. This issue affects Apache ShenYu 2.4.2 and 2.4.3.

    Published: 1 Sept 2022
    7.8
    High

    CVE-2022-2735

    Last Modified: 21 Nov 2024

    A vulnerability was found in the PCS project. This issue occurs due to incorrect permissions on a Unix socket used for internal communication between PCS daemons. A privilege escalation could happen by obtaining an authentication token for a hacluster user. With the "hacluster" token, this flaw allows an attacker to have complete control over the cluster managed by PCS.

    Published: 1 Sept 2022
    5.4
    Medium

    CVE-2022-38790

    Last Modified: 21 Nov 2024

    Weave GitOps Enterprise before 0.9.0-rc.5 has a cross-site scripting (XSS) bug allowing a malicious user to inject a javascript: link in the UI. When clicked by a victim user, the script will execute with the victim's permission. The exposure appears in Weave GitOps Enterprise UI via a GitopsCluster dashboard link. An annotation can be added to a GitopsCluster custom resource.

    Published: 1 Sept 2022
    6.8
    Medium

    CVE-2022-36054

    Last Modified: 23 Apr 2025

    Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. The 6LoWPAN implementation in the Contiki-NG operating system (file os/net/ipv6/sicslowpan.c) contains an input function that processes incoming packets and copies them into a packet buffer. Because of a missing length check in the input function, it is possible to write outside the packet buffer's boundary. The vulnerability can be exploited by anyone who has the possibility to send 6LoWPAN packets to a Contiki-NG system. In particular, the vulnerability is exposed when sending either of two types of 6LoWPAN packets: an unfragmented packet or the first fragment of a fragmented packet. If the packet is sufficiently large, a subsequent memory copy will cause an out-of-bounds write with data supplied by the attacker.

    Published: 1 Sept 2022
    5.9
    Medium

    CVE-2022-36052

    Last Modified: 23 Apr 2025

    Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. The 6LoWPAN implementation in Contiki-NG may cast a UDP header structure at a certain offset in a packet buffer. The code does not check whether the packet buffer is large enough to fit a full UDP header structure from the offset where the casting is made. Hence, it is possible to cause an out-of-bounds read beyond the packet buffer. The problem affects anyone running devices with Contiki-NG versions previous to 4.8, and which may receive 6LoWPAN packets from external parties. The problem has been patched in Contiki-NG version 4.8.

    Published: 1 Sept 2022
    5.9
    Medium

    CVE-2022-36053

    Last Modified: 23 Apr 2025

    Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. The low-power IPv6 network stack of Contiki-NG has a buffer module (os/net/ipv6/uipbuf.c) that processes IPv6 extension headers in incoming data packets. As part of this processing, the function uipbuf_get_next_header casts a pointer to a uip_ext_hdr structure into the packet buffer at different offsets where extension headers are expected to be found, and then reads from this structure. Because of a lack of bounds checking, the casting can be done so that the structure extends beyond the packet's end. Hence, with a carefully crafted packet, it is possible to cause the Contiki-NG system to read data outside the packet buffer. A patch that fixes the vulnerability is included in Contiki-NG 4.8.

    Published: 1 Sept 2022
    5.4
    Medium

    CVE-2022-3072

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - Stored in GitHub repository francoisjacquet/rosariosis prior to 8.9.3.

    Published: 1 Sept 2022
    5
    Medium

    CVE-2022-3623

    Last Modified: 15 Apr 2025

    A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the function follow_page_pte of the file mm/gup.c of the component BPF. The manipulation leads to race condition. The attack can be launched remotely. It is recommended to apply a patch to fix this issue. The identifier VDB-211921 was assigned to this vulnerability.

    Published: 1 Sept 2022
    6.5
    Medium

    CVE-2022-36449

    Last Modified: 7 Apr 2025

    An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU processing operations to gain access to already freed memory, write a limited amount outside of buffer bounds, or to disclose details of memory mappings. This affects Midgard r4p0 through r32p0, Bifrost r0p0 through r38p0 and r39p0 before r38p1, and Valhall r19p0 through r38p0 and r39p0 before r38p1.

    Published: 1 Sept 2022
    7.2
    High

    CVE-2022-36676

    Last Modified: 21 Nov 2024

    Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /categories/view_category.php.

    Published: 1 Sept 2022
    7.2
    High

    CVE-2022-36675

    Last Modified: 21 Nov 2024

    Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /schedules/manage_schedule.php.

    Published: 1 Sept 2022
    7.2
    High

    CVE-2022-36674

    Last Modified: 21 Nov 2024

    Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /schedules/view_schedule.php.

    Published: 1 Sept 2022
    9.8
    Critical

    CVE-2022-36672

    Last Modified: 21 Nov 2024

    Novel-Plus v3.6.2 was discovered to contain a hard-coded JWT key located in the project config file. This vulnerability allows attackers to create a custom user session.

    Published: 1 Sept 2022
    7.5
    High

    CVE-2022-36671

    Last Modified: 21 Nov 2024

    Novel-Plus v3.6.2 was discovered to contain an arbitrary file download vulnerability via the background file download API.

    Published: 1 Sept 2022
    9.9
    Critical

    CVE-2022-36130

    Last Modified: 21 Nov 2024

    HashiCorp Boundary up to 0.10.1 did not properly perform data integrity checks to ensure the resources were associated with the correct scopes, allowing potential privilege escalation for authorized users of another scope. Fixed in Boundary 0.10.2.

    Published: 1 Sept 2022
    —
    Unknown

    CVE-2022-39159

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 1 Sept 2022
    6.5
    Medium

    CVE-2022-36055

    Last Modified: 23 Apr 2025

    Helm is a tool for managing Charts. Charts are packages of pre-configured Kubernetes resources. Fuzz testing, provided by the CNCF, identified input to functions in the _strvals_ package that can cause an out of memory panic. The _strvals_ package contains a parser that turns strings in to Go structures. The _strvals_ package converts these strings into structures Go can work with. Some string inputs can cause array data structures to be created causing an out of memory panic. Applications that use the _strvals_ package in the Helm SDK to parse user supplied input can suffer a Denial of Service when that input causes a panic that cannot be recovered from. The Helm Client will panic with input to `--set`, `--set-string`, and other value setting flags that causes an out of memory panic. Helm is not a long running service so the panic will not affect future uses of the Helm client. This issue has been resolved in 3.9.4. SDK users can validate strings supplied by users won't create large arrays causing significant memory usage before passing them to the _strvals_ functions.

    Published: 1 Sept 2022
    7.8
    High

    CVE-2022-3176

    Last Modified: 21 Apr 2025

    There exists a use-after-free in io_uring in the Linux kernel. Signalfd_poll() and binder_poll() use a waitqueue whose lifetime is the current task. It will send a POLLFREE notification to all waiters before the queue is freed. Unfortunately, the io_uring poll doesn't handle POLLFREE. This allows a use-after-free to occur if a signalfd or binder fd is polled with io_uring poll, and the waitqueue gets freed. We recommend upgrading past commit fc78b2fc21f10c4c9c4d5d659a685710ffa63659

    Published: 1 Sept 2022
    8.8
    High

    CVE-2022-37123

    Last Modified: 21 Nov 2024

    D-link DIR-816 A2_v1.10CNB04.img is vulnerable to Command injection via /goform/form2userconfig.cgi.

    Published: 31 Aug 2022
    7.5
    High

    CVE-2022-36619

    Last Modified: 21 Nov 2024

    In D-link DIR-816 A2_v1.10CNB04.img,the network can be reset without authentication via /goform/setMAC.

    Published: 31 Aug 2022
    8.8
    High

    CVE-2022-37129

    Last Modified: 21 Nov 2024

    D-Link DIR-816 A2_v1.10CNB04.img is vulnerable to Command Injection via /goform/SystemCommand. After the user passes in the command parameter, it will be spliced into byte_4836B0 by snprintf, and finally doSystem(&byte_4836B0); will be executed, resulting in a command injection.

    Published: 31 Aug 2022
    8.7
    High

    CVE-2022-36051

    Last Modified: 23 Apr 2025

    ZITADEL combines the ease of Auth0 and the versatility of Keycloak.**Actions**, introduced in ZITADEL **1.42.0** on the API and **1.56.0** for Console, is a feature, where users with role.`ORG_OWNER` are able to create Javascript Code, which is invoked by the system at certain points during the login. **Actions**, for example, allow creating authorizations (user grants) on newly created users programmatically. Due to a missing authorization check, **Actions** were able to grant authorizations for projects that belong to other organizations inside the same Instance. Granting authorizations via API and Console is not affected by this vulnerability. There is currently no known workaround, users should update.

    Published: 31 Aug 2022