CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2022-36034

    Last Modified: 23 Apr 2025

    nitrado.js is a type safe wrapper for the Nitrado API. Possible ReDoS with lib input of `{{` and with many repetitions of `{{|`. This issue has been patched in all versions above `0.2.5`. There are currently no known workarounds.

    Published: 29 Aug 2022
    5.9
    Medium

    CVE-2022-27558

    Last Modified: 21 Nov 2024

    HCL iNotes is susceptible to a Broken Password Strength Checks vulnerability. Custom password policies are not enforced on certain iNotes forms which could allow users to set weak passwords, leading to easier cracking.

    Published: 29 Aug 2022
    6.1
    Medium

    CVE-2022-27547

    Last Modified: 21 Nov 2024

    HCL iNotes is susceptible to a link to non-existent domain vulnerability. An attacker could use this vulnerability to trick a user into supplying sensitive information such as username, password, credit card number, etc.

    Published: 29 Aug 2022
    8.3
    High

    CVE-2022-27546

    Last Modified: 21 Nov 2024

    HCL iNotes is susceptible to a Reflected Cross-site Scripting (XSS) vulnerability caused by improper validation of user-supplied input supplied with a form POST request. A remote attacker could exploit this vulnerability using a specially-crafted URL to execute script in a victim's web browser within the security context of the hosting web site and/or steal the victim's cookie-based authentication credentials.

    Published: 29 Aug 2022
    8
    High

    CVE-2022-35962

    Last Modified: 23 Apr 2025

    Zulip is an open source team chat and Zulip Mobile is an app for iOS and Andriod users. In Zulip Mobile through version 27.189, a crafted link in a message sent by an authenticated user could lead to credential disclosure if a user follows the link. A patch was released in version 27.190.

    Published: 29 Aug 2022
    4.3
    Medium

    CVE-2022-2080

    Last Modified: 21 Nov 2024

    The Sensei LMS WordPress plugin before 4.5.2 does not ensure that the sender of a private message is either the teacher or the original sender, allowing any authenticated user to send messages to arbitrary private conversation via a IDOR attack. Note: Attackers are not able to see responses/messages between the teacher and student

    Published: 29 Aug 2022
    5.3
    Medium

    CVE-2022-2034

    Last Modified: 21 Nov 2024

    The Sensei LMS WordPress plugin before 4.5.0 does not have proper permissions set in one of its REST endpoint, allowing unauthenticated users to access private messages sent to teachers

    Published: 29 Aug 2022
    6.5
    Medium

    CVE-2022-1663

    Last Modified: 21 Nov 2024

    The Stop Spam Comments WordPress plugin through 0.2.1.2 does not properly generate the Javascript access token for preventing abuse of comment section, allowing threat authors to easily collect the value and add it to the request.

    Published: 29 Aug 2022
    7.2
    High

    CVE-2022-1123

    Last Modified: 21 Nov 2024

    The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) WordPress plugin before 3.12.5 does not properly sanitize some parameters before inserting them into SQL queries. As a result, high privilege users could perform SQL injection attacks.

    Published: 29 Aug 2022
    7.5
    High

    CVE-2022-36200

    Last Modified: 21 Nov 2024

    In FiberHome VDSL2 Modem HG150-Ub_V3.0, Credentials of Admin are submitted in URL, which can be logged/sniffed.

    Published: 29 Aug 2022
    —
    Unknown

    CVE-2022-1024

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 29 Aug 2022
    7.8
    High

    CVE-2022-0367

    Last Modified: 3 Nov 2025

    A heap-based buffer overflow flaw was found in libmodbus in function modbus_reply() in src/modbus.c.

    Published: 29 Aug 2022
    5.5
    Medium

    CVE-2022-0496

    Last Modified: 21 Nov 2024

    A vulnerbiility was found in Openscad, where a DXF-format drawing with particular (not necessarily malformed!) properties may cause an out-of-bounds memory access when imported using import().

    Published: 29 Aug 2022
    7.1
    High

    CVE-2022-0497

    Last Modified: 21 Nov 2024

    A vulnerbiility was found in Openscad, where a .scad file with no trailing newline could cause an out-of-bounds read during parsing of annotations.

    Published: 29 Aug 2022
    5.4
    Medium

    CVE-2022-31677

    Last Modified: 21 Nov 2024

    An Insufficient Session Expiration issue was discovered in the Pinniped Supervisor (before v0.19.0). A user authenticating to Kubernetes clusters via the Pinniped Supervisor could potentially use their access token to continue their session beyond what proper use of their refresh token might allow.

    Published: 29 Aug 2022
    8.8
    High

    CVE-2022-36690

    Last Modified: 21 Nov 2024

    Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=user/manage_user&id=.

    Published: 29 Aug 2022
    8.8
    High

    CVE-2022-36689

    Last Modified: 21 Nov 2024

    Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the month parameter at /admin/?page=reports/waste&month=.

    Published: 29 Aug 2022
    8.8
    High

    CVE-2022-36688

    Last Modified: 21 Nov 2024

    Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the month parameter at /admin/?page=reports/stockout&month=.

    Published: 29 Aug 2022
    6.5
    Medium

    CVE-2022-36687

    Last Modified: 21 Nov 2024

    Ingredients Stock Management System v1.0 was discovered to contain an arbitrary file deletion vulnerability via the component /classes/Master.php?f=delete_img.

    Published: 29 Aug 2022
    8.8
    High

    CVE-2022-36686

    Last Modified: 21 Nov 2024

    Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the month parameter at /admin/?page=reports/stockin&month=.

    Published: 29 Aug 2022
    7.5
    High

    CVE-2022-37680

    Last Modified: 13 Feb 2025

    An improper authentication for critical function issue in Hitachi Kokusai Electric Network products for monitoring system (Camera, Decoder and Encoder) and bellow allows attckers to remotely reboot the device via a crafted POST request to the endpoint /ptipupgrade.cgi. Security information ID hitachi-sec-2022-001 contains fixes for the issue.

    Published: 29 Aug 2022
    7.5
    High

    CVE-2022-37681

    Last Modified: 13 Feb 2025

    Hitachi Kokusai Electric Newtork products for monitoring system (Camera, Decoder and Encoder) and below allows attckers to perform a directory traversal via a crafted GET request to the endpoint /ptippage.cgi. Security information ID hitachi-sec-2022-001 contains fixes for the issue.

    Published: 29 Aug 2022
    4.8
    Medium

    CVE-2022-37059

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) in Admin Panel of Subrion CMS 4.2.1 allows attacker to inject arbitrary code via Login Field

    Published: 29 Aug 2022
    5.4
    Medium

    CVE-2022-36194

    Last Modified: 21 Nov 2024

    Centreon 22.04.0 is vulnerable to Cross Site Scripting (XSS) from the function Pollers > Broker Configuration by adding a crafted payload into the name parameter.

    Published: 29 Aug 2022
    10
    Critical

    CVE-2022-32548

    Last Modified: 21 Nov 2024

    An issue was discovered on certain DrayTek Vigor routers before July 2022 such as the Vigor3910 before 4.3.1.1. /cgi-bin/wlogin.cgi has a buffer overflow via the username or password to the aa or ab field.

    Published: 29 Aug 2022
    8.8
    High

    CVE-2022-3019

    Last Modified: 21 Nov 2024

    The forgot password token basically just makes us capable of taking over the account of whoever comment in an app that we can see (bruteforcing comment id's might also be an option but I wouldn't count on it, since it would take a long time to find a valid one).

    Published: 29 Aug 2022
    8.1
    High

    CVE-2022-25921

    Last Modified: 21 Nov 2024

    All versions of package morgan-json are vulnerable to Arbitrary Code Execution due to missing sanitization of input passed to the Function constructor.

    Published: 29 Aug 2022
    9.8
    Critical

    CVE-2022-25644

    Last Modified: 21 Nov 2024

    All versions of package @pendo324/get-process-by-name are vulnerable to Arbitrary Code Execution due to improper sanitization of getProcessByName function.

    Published: 29 Aug 2022
    9.8
    Critical

    CVE-2022-21165

    Last Modified: 21 Nov 2024

    All versions of package font-converter are vulnerable to Arbitrary Command Injection due to missing sanitization of input that potentially flows into the child_process.exec() function.

    Published: 29 Aug 2022
    5.5
    Medium

    CVE-2021-40326

    Last Modified: 21 Nov 2024

    Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, mishandle hidden and incremental data in signed documents. An attacker can write to an arbitrary file, and display controlled contents, during signature verification.

    Published: 29 Aug 2022
    7.8
    High

    CVE-2021-41780

    Last Modified: 21 Nov 2024

    Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.

    Published: 29 Aug 2022
    7.8
    High

    CVE-2021-41781

    Last Modified: 21 Nov 2024

    Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.

    Published: 29 Aug 2022
    7.8
    High

    CVE-2021-41782

    Last Modified: 21 Nov 2024

    Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.

    Published: 29 Aug 2022
    7.8
    High

    CVE-2021-41783

    Last Modified: 21 Nov 2024

    Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.

    Published: 29 Aug 2022
    7.8
    High

    CVE-2021-41784

    Last Modified: 21 Nov 2024

    Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.

    Published: 29 Aug 2022
    7.8
    High

    CVE-2021-41785

    Last Modified: 21 Nov 2024

    Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.

    Published: 29 Aug 2022
    5.5
    Medium

    CVE-2022-25641

    Last Modified: 21 Nov 2024

    Foxit PDF Reader before 11.2.2 and PDF Editor before 11.2.2, and PhantomPDF before 10.1.8, mishandle cross-reference information during compressed-object parsing within signed documents. This leads to delivery of incorrect signature information via an Incremental Saving Attack and a Shadow Attack.

    Published: 29 Aug 2022
    7.5
    High

    CVE-2022-37177

    Last Modified: 21 Nov 2024

    HireVue Hiring Platform V1.0 suffers from Use of a Broken or Risky Cryptographic Algorithm. NOTE: this is disputed by the vendor for multiple reasons, e.g., it is inconsistent with CVE ID assignment rules for cloud services, and no product with version V1.0 exists. Furthermore, the rail-fence cipher has been removed, and TLS 1.2 is now used for encryption.

    Published: 29 Aug 2022
    9.8
    Critical

    CVE-2022-22897

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability in the product_all_one_img and image_product parameters of the ApolloTheme AP PageBuilder component through 2.4.4 for PrestaShop allows unauthenticated attackers to exfiltrate database data.

    Published: 29 Aug 2022
    9.8
    Critical

    CVE-2022-34668

    Last Modified: 21 Nov 2024

    NVFLARE, versions prior to 2.1.4, contains a vulnerability that deserialization of Untrusted Data due to Pickle usage may allow an unprivileged network attacker to cause Remote Code Execution, Denial Of Service, and Impact to both Confidentiality and Integrity.

    Published: 29 Aug 2022
    5.5
    Medium

    CVE-2022-35016

    Last Modified: 21 Nov 2024

    Advancecomp v2.3 was discovered to contain a heap buffer overflow.

    Published: 29 Aug 2022
    5.5
    Medium

    CVE-2022-35017

    Last Modified: 21 Nov 2024

    Advancecomp v2.3 was discovered to contain a heap buffer overflow.

    Published: 29 Aug 2022
    5.5
    Medium

    CVE-2022-35018

    Last Modified: 21 Nov 2024

    Advancecomp v2.3 was discovered to contain a segmentation fault.

    Published: 29 Aug 2022
    5.5
    Medium

    CVE-2022-35019

    Last Modified: 21 Nov 2024

    Advancecomp v2.3 was discovered to contain a segmentation fault.

    Published: 29 Aug 2022
    5.5
    Medium

    CVE-2022-35020

    Last Modified: 21 Nov 2024

    Advancecomp v2.3 was discovered to contain a heap buffer overflow via the component __interceptor_memcpy at /sanitizer_common/sanitizer_common_interceptors.inc.

    Published: 29 Aug 2022
    7.5
    High

    CVE-2022-3064

    Last Modified: 14 Apr 2025

    Parsing malicious or large YAML documents can consume excessive amounts of CPU or memory.

    Published: 29 Aug 2022
    6.5
    Medium

    CVE-2022-3277

    Last Modified: 7 Mar 2025

    An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security groups for an invalid project. This issue creates resources that are unconstrained by the user's quota. If a malicious user were to submit a significant number of requests, this could lead to a denial of service.

    Published: 29 Aug 2022
    5.5
    Medium

    CVE-2022-35014

    Last Modified: 21 Nov 2024

    Advancecomp v2.3 contains a segmentation fault.

    Published: 29 Aug 2022
    5.5
    Medium

    CVE-2022-35015

    Last Modified: 21 Nov 2024

    Advancecomp v2.3 was discovered to contain a heap buffer overflow via le_uint32_read at /lib/endianrw.h.

    Published: 29 Aug 2022
    6.1
    Medium

    CVE-2022-36033

    Last Modified: 22 Apr 2025

    jsoup is a Java HTML parser, built for HTML editing, cleaning, scraping, and cross-site scripting (XSS) safety. jsoup may incorrectly sanitize HTML including `javascript:` URL expressions, which could allow XSS attacks when a reader subsequently clicks that link. If the non-default `SafeList.preserveRelativeLinks` option is enabled, HTML including `javascript:` URLs that have been crafted with control characters will not be sanitized. If the site that this HTML is published on does not set a Content Security Policy, an XSS attack is then possible. This issue is patched in jsoup 1.15.3. Users should upgrade to this version. Additionally, as the unsanitized input may have been persisted, old content should be cleaned again using the updated version. To remediate this issue without immediately upgrading: - disable `SafeList.preserveRelativeLinks`, which will rewrite input URLs as absolute URLs - ensure an appropriate [Content Security Policy](https://developer.mozilla.org/en-US/docs/Web/HTTP/CSP) is defined. (This should be used regardless of upgrading, as a defence-in-depth best practice.)

    Published: 29 Aug 2022