CVE Feed

    Dashboard / CVE

    6.7
    Medium

    CVE-2022-26434

    Last Modified: 21 Nov 2024

    In mailbox, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07138450; Issue ID: ALPS07138450.

    Published: 1 Aug 2022
    6.7
    Medium

    CVE-2022-26433

    Last Modified: 21 Nov 2024

    In mailbox, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07138400; Issue ID: ALPS07138400.

    Published: 1 Aug 2022
    6.7
    Medium

    CVE-2022-26432

    Last Modified: 21 Nov 2024

    In mailbox, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07032542; Issue ID: ALPS07032542.

    Published: 1 Aug 2022
    6.7
    Medium

    CVE-2022-26431

    Last Modified: 21 Nov 2024

    In mailbox, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07032553; Issue ID: ALPS07032553.

    Published: 1 Aug 2022
    6.7
    Medium

    CVE-2022-26430

    Last Modified: 21 Nov 2024

    In mailbox, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07032521; Issue ID: ALPS07032521.

    Published: 1 Aug 2022
    6.7
    Medium

    CVE-2022-21788

    Last Modified: 21 Nov 2024

    In scp, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06988728; Issue ID: ALPS06988728.

    Published: 1 Aug 2022
    7.8
    High

    CVE-2022-26429

    Last Modified: 21 Nov 2024

    In cta, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07025415; Issue ID: ALPS07025415.

    Published: 1 Aug 2022
    6.4
    Medium

    CVE-2022-26428

    Last Modified: 21 Nov 2024

    In video codec, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06521260; Issue ID: ALPS06521260.

    Published: 1 Aug 2022
    6.7
    Medium

    CVE-2022-26427

    Last Modified: 21 Nov 2024

    In camera isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07085540; Issue ID: ALPS07085540.

    Published: 1 Aug 2022
    6.7
    Medium

    CVE-2022-26426

    Last Modified: 21 Nov 2024

    In camera isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07085486; Issue ID: ALPS07085486.

    Published: 1 Aug 2022
    6.7
    Medium

    CVE-2022-21792

    Last Modified: 21 Nov 2024

    In camera isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07085410; Issue ID: ALPS07085410.

    Published: 1 Aug 2022
    4.4
    Medium

    CVE-2022-21791

    Last Modified: 21 Nov 2024

    In camera isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06478059; Issue ID: ALPS06478059.

    Published: 1 Aug 2022
    4.4
    Medium

    CVE-2022-21790

    Last Modified: 21 Nov 2024

    In camera isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06479306; Issue ID: ALPS06479306.

    Published: 1 Aug 2022
    6.4
    Medium

    CVE-2022-21789

    Last Modified: 21 Nov 2024

    In audio ipi, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06478101; Issue ID: ALPS06478101.

    Published: 1 Aug 2022
    9.8
    Critical

    CVE-2022-26437

    Last Modified: 21 Nov 2024

    In httpclient, there is a possible out of bounds write due to uninitialized data. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WSAP00103831; Issue ID: WSAP00103831.

    Published: 1 Aug 2022
    7.2
    High

    CVE-2022-34154

    Last Modified: 20 Feb 2025

    Authenticated (author or higher user role) Arbitrary File Upload vulnerability in ideasToCode Enable SVG, WebP & ICO Upload plugin <= 1.0.1 at WordPress.

    Published: 1 Aug 2022
    3.4
    Low

    CVE-2022-36343

    Last Modified: 20 Feb 2025

    Authenticated (author or higher user role) Stored Cross-Site Scripting (XSS) vulnerability in ideasToCode Enable SVG, WebP & ICO Upload plugin <= 1.0.1 at WordPress.

    Published: 1 Aug 2022
    6.5
    Medium

    CVE-2022-2370

    Last Modified: 21 Nov 2024

    The YaySMTP WordPress plugin before 2.2.1 does not have capability check before displaying the Mailer Credentials in JS code for the settings, allowing any authenticated users, such as subscriber to retrieve them

    Published: 1 Aug 2022
    4.3
    Medium

    CVE-2022-2369

    Last Modified: 21 Nov 2024

    The YaySMTP WordPress plugin before 2.2.1 does not have capability check in an AJAX action, allowing any logged in users, such as subscriber to view the Logs of the plugin

    Published: 1 Aug 2022
    4.8
    Medium

    CVE-2022-2328

    Last Modified: 21 Nov 2024

    The Flexi Quote Rotator WordPress plugin through 0.9.4 does not sanitise and escape its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 1 Aug 2022
    4.8
    Medium

    CVE-2022-2325

    Last Modified: 21 Nov 2024

    The Invitation Based Registrations WordPress plugin through 2.2.84 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 1 Aug 2022
    9.8
    Critical

    CVE-2022-2317

    Last Modified: 21 Nov 2024

    The Simple Membership WordPress plugin before 4.1.3 allows user to change their membership at the registration stage due to insufficient checking of a user supplied parameter.

    Published: 1 Aug 2022
    4.8
    Medium

    CVE-2022-2305

    Last Modified: 21 Nov 2024

    The WordPress Popup WordPress plugin through 1.9.3.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 1 Aug 2022
    4.8
    Medium

    CVE-2022-2278

    Last Modified: 21 Nov 2024

    The Featured Image from URL (FIFU) WordPress plugin before 4.0.1 does not validate, sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 1 Aug 2022
    8.8
    High

    CVE-2022-2273

    Last Modified: 21 Nov 2024

    The Simple Membership WordPress plugin before 4.1.3 does not properly validate the membership_level parameter when editing a profile, allowing members to escalate to a higher membership level by using a crafted POST request.

    Published: 1 Aug 2022
    6.5
    Medium

    CVE-2022-2260

    Last Modified: 21 Nov 2024

    The GiveWP WordPress plugin before 2.21.3 does not have CSRF in place when exporting data, and does not validate the exporting parameters such as dates, which could allow attackers to make a logged in admin DoS the web server via a CSRF attack as the plugin will try to retrieve data from the database many times which leads to overwhelm the target's CPU.

    Published: 1 Aug 2022
    8.8
    High

    CVE-2022-2245

    Last Modified: 21 Nov 2024

    The Counter Box WordPress plugin before 1.2.1 is lacking CSRF check when activating and deactivating counters, which could allow attackers to make a logged in admin perform such actions via CSRF attacks

    Published: 1 Aug 2022
    6.1
    Medium

    CVE-2022-2241

    Last Modified: 21 Nov 2024

    The Featured Image from URL (FIFU) WordPress plugin before 4.0.1 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack. Furthermore, due to the lack of validation, sanitisation and escaping in some of them, it could also lead to Stored XSS issues

    Published: 1 Aug 2022
    4.8
    Medium

    CVE-2022-2215

    Last Modified: 21 Nov 2024

    The GiveWP WordPress plugin before 2.21.3 does not properly sanitise and escape the currency settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 1 Aug 2022
    8.8
    High

    CVE-2022-2184

    Last Modified: 21 Nov 2024

    The CAPTCHA 4WP WordPress plugin before 7.1.0 lets user input reach a sensitive require_once call in one of its admin-side templates. This can be abused by attackers, via a Cross-Site Request Forgery attack to run arbitrary code on the server.

    Published: 1 Aug 2022
    6.1
    Medium

    CVE-2022-2181

    Last Modified: 21 Nov 2024

    The Advanced WordPress Reset WordPress plugin before 1.6 does not escape some generated URLs before outputting them back in href attributes of admin dashboard pages, leading to Reflected Cross-Site Scripting

    Published: 1 Aug 2022
    5.4
    Medium

    CVE-2022-2171

    Last Modified: 21 Nov 2024

    The Progressive License WordPress plugin through 1.1.0 is lacking any CSRF check when saving its settings, which could allow attackers to make a logged in admin change them. Furthermore, as the plugin allows arbitrary HTML to be inserted in one of the settings, this could lead to Stored XSS issue which will be triggered in the frontend as well.

    Published: 1 Aug 2022
    4.8
    Medium

    CVE-2022-2170

    Last Modified: 21 Nov 2024

    The Microsoft Advertising Universal Event Tracking (UET) WordPress plugin before 1.0.4 does not sanitise and escape its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed. Due to the nature of this plugin, well crafted XSS can also leak into the frontpage.

    Published: 1 Aug 2022
    9.8
    Critical

    CVE-2022-1950

    Last Modified: 21 Nov 2024

    The Youzify WordPress plugin before 1.2.0 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to an unauthenticated SQL injection

    Published: 1 Aug 2022
    6.1
    Medium

    CVE-2022-1906

    Last Modified: 21 Nov 2024

    The Copyright Proof WordPress plugin through 4.16 does not sanitise and escape a parameter before outputting it back via an AJAX action available to both unauthenticated and authenticated users, leading to a Reflected Cross-Site Scripting when a specific setting is enabled.

    Published: 1 Aug 2022
    5.3
    Medium

    CVE-2022-1600

    Last Modified: 21 Nov 2024

    The YOP Poll WordPress plugin before 6.4.3 prioritizes getting a visitor's IP from certain HTTP headers over PHP's REMOTE_ADDR, which makes it possible to bypass IP-based limitations to vote in certain situations.

    Published: 1 Aug 2022
    7.5
    High

    CVE-2022-1585

    Last Modified: 21 Nov 2024

    The Project Source Code Download WordPress plugin through 1.0.0 does not protect its backup generation and download functionalities, which may allow any visitors on the site to download the entire site, including sensitive files like wp-config.php.

    Published: 1 Aug 2022
    4
    Medium

    CVE-2022-1561

    Last Modified: 21 Nov 2024

    Lura and KrakenD-CE versions older than v2.0.2 and KrakenD-EE versions older than v2.0.0 do not sanitize URL parameters correctly, allowing a malicious user to alter the backend URL defined for a pipe when remote users send crafty URL requests. The vulnerability does not affect KrakenD itself, but the consumed backend might be vulnerable.

    Published: 1 Aug 2022
    4.8
    Medium

    CVE-2022-1324

    Last Modified: 21 Nov 2024

    The Event Timeline WordPress plugin through 1.1.5 does not sanitize and escape Timeline Text, which could allow high-privileged users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

    Published: 1 Aug 2022
    4.8
    Medium

    CVE-2022-0598

    Last Modified: 21 Nov 2024

    The Login with phone number WordPress plugin before 1.3.8 does not sanitise and escape plugin settings which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 1 Aug 2022
    7.3
    High

    CVE-2022-26310

    Last Modified: 21 Nov 2024

    Pandora FMS v7.0NG.760 and below allows an improper authorization in User Management where any authenticated user with access to the User Management module could create, modify or delete any user with full admin privilege. The impact could lead to a vertical privilege escalation to access the privileges of a higher-level user or typically an admin user.

    Published: 1 Aug 2022
    3.7
    Low

    CVE-2022-26309

    Last Modified: 21 Nov 2024

    Pandora FMS v7.0NG.759 allows Cross-Site Request Forgery in Bulk operation (User operation) resulting in elevation of privilege to Administrator group.

    Published: 1 Aug 2022
    3.7
    Low

    CVE-2022-26308

    Last Modified: 21 Nov 2024

    Pandora FMS v7.0NG.760 and below allows an improper access control in Configuration (Credential store) where a user with the role of Operator (Write) could create, delete, view existing keys which are outside the intended role.

    Published: 1 Aug 2022
    7.8
    High

    CVE-2022-20421

    Last Modified: 21 Nov 2024

    In binder_inc_ref_for_node of binder.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-239630375References: Upstream kernel

    Published: 1 Aug 2022
    9.8
    Critical

    CVE-2022-27255

    Last Modified: 21 Nov 2024

    In Realtek eCos RSDK 1.5.7p1 and MSDK 4.9.4p1, the SIP ALG function that rewrites SDP data has a stack-based buffer overflow. This allows an attacker to remotely execute code without authentication via a crafted SIP packet that contains malicious SDP data.

    Published: 1 Aug 2022
    7.2
    High

    CVE-2022-36799

    Last Modified: 21 Nov 2024

    This issue exists to document that a security improvement in the way that Jira Server and Data Center use templates has been implemented. Affected versions of Atlassian Jira Server and Data Center allowed remote attackers with system administrator permissions to execute arbitrary code via Template Injection leading to Remote Code Execution (RCE) in the Email Templates feature. In this case the security improvement was to protect against using the XStream library to be able to execute arbitrary code in velocity templates. The affected versions are before version 8.13.19, from version 8.14.0 before 8.20.7, and from version 8.21.0 before 8.22.1.

    Published: 1 Aug 2022
    5.9
    Medium

    CVE-2022-2596

    Last Modified: 7 Oct 2026

    Inefficient Regular Expression Complexity in GitHub repository node-fetch/node-fetch prior to 3.2.10.

    Published: 1 Aug 2022
    8.6
    High

    CVE-2022-31188

    Last Modified: 20 Feb 2026

    CVAT is an opensource interactive video and image annotation tool for computer vision. Versions prior to 2.0.0 were found to be subject to a Server-side request forgery (SSRF) vulnerability. Validation has been added to urls used in the affected code path in version 2.0.0. Users are advised to upgrade. There are no known workarounds for this issue.

    Published: 1 Aug 2022
    6.5
    Medium

    CVE-2022-30699

    Last Modified: 21 Nov 2024

    NLnet Labs Unbound, up to and including version 1.16.1, is vulnerable to a novel type of the "ghost domain names" attack. The vulnerability works by targeting an Unbound instance. Unbound is queried for a rogue domain name when the cached delegation information is about to expire. The rogue nameserver delays the response so that the cached delegation information is expired. Upon receiving the delayed answer containing the delegation information, Unbound overwrites the now expired entries. This action can be repeated when the delegation information is about to expire making the rogue delegation information ever-updating. From version 1.16.2 on, Unbound stores the start time for a query and uses that to decide if the cached delegation information can be overwritten.

    Published: 1 Aug 2022
    7.8
    High

    CVE-2022-2580

    Last Modified: 21 Nov 2024

    Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0102.

    Published: 1 Aug 2022