CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2022-34182

    Last Modified: 21 Nov 2024

    Jenkins Nested View Plugin 1.20 through 1.25 (both inclusive) does not escape search parameters, resulting in a reflected cross-site scripting (XSS) vulnerability.

    Published: 22 Jun 2022
    9.1
    Critical

    CVE-2022-34181

    Last Modified: 21 Nov 2024

    Jenkins xUnit Plugin 3.0.8 and earlier implements an agent-to-controller message that creates a user-specified directory if it doesn't exist, and parsing files inside it as test results, allowing attackers able to control agent processes to create an arbitrary directory on the Jenkins controller or to obtain test results from existing files in an attacker-specified directory.

    Published: 22 Jun 2022
    7.5
    High

    CVE-2022-34180

    Last Modified: 21 Nov 2024

    Jenkins Embeddable Build Status Plugin 2.0.3 and earlier does not correctly perform the ViewStatus permission check in the HTTP endpoint it provides for "unprotected" status badge access, allowing attackers without any permissions to obtain the build status badge icon for any attacker-specified job and/or build.

    Published: 22 Jun 2022
    7.5
    High

    CVE-2022-34179

    Last Modified: 21 Nov 2024

    Jenkins Embeddable Build Status Plugin 2.0.3 and earlier allows specifying a `style` query parameter that is used to choose a different SVG image style without restricting possible values, resulting in a relative path traversal vulnerability that allows attackers without Overall/Read permission to specify paths to other SVG images on the Jenkins controller file system.

    Published: 22 Jun 2022
    6.1
    Medium

    CVE-2022-34178

    Last Modified: 21 Nov 2024

    Jenkins Embeddable Build Status Plugin 2.0.3 allows specifying a 'link' query parameter that build status badges will link to, without restricting possible values, resulting in a reflected cross-site scripting (XSS) vulnerability.

    Published: 22 Jun 2022
    7.5
    High

    CVE-2022-34175

    Last Modified: 21 Nov 2024

    Jenkins 2.335 through 2.355 (both inclusive) allows attackers in some cases to bypass a protection mechanism, thereby directly accessing some view fragments containing sensitive information, bypassing any permission checks in the corresponding view.

    Published: 22 Jun 2022
    9.8
    Critical

    CVE-2022-31787

    Last Modified: 21 Nov 2024

    IdeaTMS 2022 is vulnerable to SQL Injection via the PATH_INFO

    Published: 22 Jun 2022
    8.1
    High

    CVE-2022-34299

    Last Modified: 21 Nov 2024

    There is a heap-based buffer over-read in libdwarf 0.4.0. This issue is related to dwarf_global_formref_b.

    Published: 22 Jun 2022
    9.8
    Critical

    CVE-2022-32554

    Last Modified: 21 Nov 2024

    Pure Storage FlashArray products running Purity//FA 6.2.0 - 6.2.3, 6.1.0 - 6.1.12, 6.0.0 - 6.0.8, 5.3.0 - 5.3.17, 5.2.x and prior Purity//FA releases, and Pure Storage FlashBlade products running Purity//FB 3.3.0, 3.2.0 - 3.2.4, 3.1.0 - 3.1.12, 3.0.x and prior Purity//FB releases are vulnerable to possibly exposed credentials for accessing the product’s management interface. The password may be known outside Pure Storage and could be used on an affected system, if reachable, to execute arbitrary instructions with root privileges. No other Pure Storage products or services are affected. Remediation is available from Pure Storage via a self-serve “opt-in” patch, manual patch application or a software upgrade to an unaffected version of Purity software.

    Published: 22 Jun 2022
    8.8
    High

    CVE-2022-32552

    Last Modified: 21 Nov 2024

    Pure Storage FlashArray products running Purity//FA 6.2.0 - 6.2.3, 6.1.0 - 6.1.12, 6.0.0 - 6.0.8, 5.3.0 - 5.3.17, 5.2.x and prior Purity//FA releases, and Pure Storage FlashBlade products running Purity//FB 3.3.0, 3.2.0 - 3.2.4, 3.1.0 - 3.1.12, 3.0.x and prior Purity//FB releases are vulnerable to a privilege escalation via the manipulation of Python environment variables which can be exploited by a logged-in user to escape a restricted shell to an unrestricted shell with root privileges. No other Pure Storage products or services are affected. Remediation is available from Pure Storage via a self-serve “opt-in” patch, manual patch application or a software upgrade to an unaffected version of Purity software.

    Published: 22 Jun 2022
    8.8
    High

    CVE-2022-32553

    Last Modified: 21 Nov 2024

    Pure Storage FlashArray products running Purity//FA 6.2.0 - 6.2.3, 6.1.0 - 6.1.12, 6.0.0 - 6.0.8, 5.3.0 - 5.3.17, 5.2.x and prior Purity//FA releases, and Pure Storage FlashBlade products running Purity//FB 3.3.0, 3.2.0 - 3.2.4, 3.1.0 - 3.1.12, 3.0.x and prior Purity//FB releases are vulnerable to a privilege escalation via the manipulation of environment variables which can be exploited by a logged-in user to escape a restricted shell to an unrestricted shell with root privileges. No other Pure Storage products or services are affected. Remediation is available from Pure Storage via a self-serve “opt-in” patch, manual patch application or a software upgrade to an unaffected version of Purity software.

    Published: 22 Jun 2022
    7.3
    High

    CVE-2021-26638

    Last Modified: 21 Nov 2024

    Improper Authentication vulnerability in S&D smarthome(smartcare) application can cause authentication bypass and information exposure. Remote attackers can use this vulerability to take control of the home environment including indoor control.

    Published: 22 Jun 2022
    8.8
    High

    CVE-2021-26637

    Last Modified: 21 Nov 2024

    There is no account authentication and permission check logic in the firmware and existing apps of SiHAS's SGW-300, ACM-300, GCM-300, so unauthorized users can remotely control the device.

    Published: 22 Jun 2022
    8.8
    High

    CVE-2021-26636

    Last Modified: 21 Nov 2024

    Stored XSS and SQL injection vulnerability in MaxBoard could lead to occur Remote Code Execution, which could lead to information exposure and privilege escalation.

    Published: 22 Jun 2022
    8.8
    High

    CVE-2022-32536

    Last Modified: 21 Nov 2024

    The user access rights validation in the web server of the Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 was insufficient. This would allow a non-administrator user to obtain administrator user access rights.

    Published: 22 Jun 2022
    8.8
    High

    CVE-2022-32534

    Last Modified: 21 Nov 2024

    The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 and earlier was found to be vulnerable to command injection through its diagnostics web interface. This allows execution of shell commands.

    Published: 22 Jun 2022
    4.8
    Medium

    CVE-2022-32535

    Last Modified: 21 Nov 2024

    The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 runs its web server with root privilege. In combination with CVE-2022-23534 this could give an attacker root access to the switch.

    Published: 22 Jun 2022
    5.5
    Medium

    CVE-2022-20651

    Last Modified: 21 Nov 2024

    A vulnerability in the logging component of Cisco Adaptive Security Device Manager (ASDM) could allow an authenticated, local attacker to view sensitive information in clear text on an affected system. Cisco ADSM must be deployed in a shared workstation environment for this issue to be exploited. This vulnerability is due to the storage of unencrypted credentials in certain logs. An attacker could exploit this vulnerability by accessing the logs on an affected system. A successful exploit could allow the attacker to view the credentials of other users of the shared device.

    Published: 22 Jun 2022
    8.8
    High

    CVE-2022-31395

    Last Modified: 21 Nov 2024

    Algo Communication Products Ltd. 8373 IP Zone Paging Adapter Firmware 1.7.6 allows attackers to perform a directory traversal via a web request sent to /fm-data.lua.

    Published: 22 Jun 2022
    7.8
    High

    CVE-2022-33034

    Last Modified: 21 Nov 2024

    LibreDWG v0.12.4.4608 was discovered to contain a stack overflow via the function copy_bytes at decode_r2007.c.

    Published: 22 Jun 2022
    7.8
    High

    CVE-2022-33033

    Last Modified: 21 Nov 2024

    LibreDWG v0.12.4.4608 was discovered to contain a double-free via the function dwg_read_file at dwg.c.

    Published: 22 Jun 2022
    7.8
    High

    CVE-2022-33032

    Last Modified: 21 Nov 2024

    LibreDWG v0.12.4.4608 was discovered to contain a heap-buffer-overflow via the function decode_preR13_section_hdr at decode_r11.c.

    Published: 22 Jun 2022
    7.8
    High

    CVE-2022-33025

    Last Modified: 21 Nov 2024

    LibreDWG v0.12.4.4608 was discovered to contain a heap-use-after-free via the function decode_preR13_section at decode_r11.c.

    Published: 22 Jun 2022
    7.8
    High

    CVE-2022-33028

    Last Modified: 21 Nov 2024

    LibreDWG v0.12.4.4608 was discovered to contain a heap buffer overflow via the function dwg_add_object at decode.c.

    Published: 22 Jun 2022
    7.8
    High

    CVE-2022-33027

    Last Modified: 21 Nov 2024

    LibreDWG v0.12.4.4608 was discovered to contain a heap-use-after-free via the function dwg_add_handleref at dwg.c.

    Published: 22 Jun 2022
    7.8
    High

    CVE-2022-33026

    Last Modified: 21 Nov 2024

    LibreDWG v0.12.4.4608 was discovered to contain a heap buffer overflow via the function bit_calc_CRC at bits.c.

    Published: 22 Jun 2022
    7.5
    High

    CVE-2022-33024

    Last Modified: 21 Nov 2024

    There is an Assertion `int decode_preR13_entities(BITCODE_RL, BITCODE_RL, unsigned int, BITCODE_RL, BITCODE_RL, Bit_Chain *, Dwg_Data *' failed at dwg2dxf: decode.c:5801 in libredwg v0.12.4.4608.

    Published: 22 Jun 2022
    5.5
    Medium

    CVE-2022-33070

    Last Modified: 21 Nov 2024

    Protobuf-c v1.4.0 was discovered to contain an invalid arithmetic shift via the function parse_tag_and_wiretype in protobuf-c/protobuf-c.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via unspecified vectors.

    Published: 22 Jun 2022
    5.5
    Medium

    CVE-2022-33069

    Last Modified: 21 Nov 2024

    Ethereum Solidity v0.8.14 contains an assertion failure via SMTEncoder::indexOrMemberAssignment() at SMTEncoder.cpp.

    Published: 22 Jun 2022
    5.5
    Medium

    CVE-2022-33068

    Last Modified: 21 Nov 2024

    An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.

    Published: 22 Jun 2022
    5.5
    Medium

    CVE-2022-33067

    Last Modified: 21 Nov 2024

    Lrzip v0.651 was discovered to contain multiple invalid arithmetic shifts via the functions get_magic in lrzip.c and Predictor::init in libzpaq/libzpaq.cpp. These vulnerabilities allow attackers to cause a Denial of Service via unspecified vectors.

    Published: 22 Jun 2022
    5.3
    Medium

    CVE-2022-34298

    Last Modified: 21 Nov 2024

    The NT auth module in OpenAM before 14.6.6 allows a "replace Samba username attack."

    Published: 22 Jun 2022
    7.5
    High

    CVE-2022-33105

    Last Modified: 21 Nov 2024

    Redis v7.0 was discovered to contain a memory leak via the component streamGetEdgeID.

    Published: 22 Jun 2022
    6.8
    Medium

    CVE-2022-23079

    Last Modified: 21 Nov 2024

    In motor-admin versions 0.0.1 through 0.2.56 are vulnerable to host header injection in the password reset functionality where malicious actor can send fake password reset email to arbitrary victim.

    Published: 22 Jun 2022
    7.5
    High

    CVE-2022-34296

    Last Modified: 21 Nov 2024

    In Zalando Skipper before 0.13.218, a query predicate could be bypassed via a prepared request.

    Published: 22 Jun 2022
    6.1
    Medium

    CVE-2022-2174

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.2.18.

    Published: 22 Jun 2022
    5.8
    Medium

    CVE-2022-23078

    Last Modified: 21 Nov 2024

    In habitica versions v4.119.0 through v4.232.2 are vulnerable to open redirect via the login page.

    Published: 22 Jun 2022
    6.1
    Medium

    CVE-2022-23077

    Last Modified: 21 Nov 2024

    In habitica versions v4.119.0 through v4.232.2 are vulnerable to DOM XSS via the login page.

    Published: 22 Jun 2022
    5.3
    Medium

    CVE-2022-31248

    Last Modified: 21 Nov 2024

    A Observable Response Discrepancy vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE Manager Server 4.2 allows remote attackers to discover valid usernames. This issue affects: SUSE Manager Server 4.1 spacewalk-java versions prior to 4.1.46-1. SUSE Manager Server 4.2 spacewalk-java versions prior to 4.2.37-1.

    Published: 22 Jun 2022
    7.5
    High

    CVE-2022-21952

    Last Modified: 21 Nov 2024

    A Missing Authentication for Critical Function vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE Manager Server 4.2 allows remote attackers to easily exhaust available disk resources leading to DoS. This issue affects: SUSE Manager Server 4.1 spacewalk-java versions prior to 4.1.46. SUSE Manager Server 4.2 spacewalk-java versions prior to 4.2.37.

    Published: 22 Jun 2022
    5.5
    Medium

    CVE-2022-23055

    Last Modified: 21 Nov 2024

    In ERPNext, versions v11.0.0-beta through v13.0.2 are vulnerable to Missing Authorization, in the chat rooms functionality. A low privileged attacker can send a direct message or a group message to any member or group, impersonating themselves as the administrator. The attacker can also read chat messages of groups that they do not belong to, and of other users.

    Published: 22 Jun 2022
    3.5
    Low

    CVE-2022-23058

    Last Modified: 21 Nov 2024

    ERPNext in versions v12.0.9-v13.0.3 are affected by a stored XSS vulnerability that allows low privileged users to store malicious scripts in the ‘username’ field in ‘my settings’ which can lead to full account takeover.

    Published: 22 Jun 2022
    3.5
    Low

    CVE-2022-23056

    Last Modified: 21 Nov 2024

    In ERPNext, versions v13.0.0-beta.13 through v13.30.0 are vulnerable to Stored XSS at the Patient History page which allows a low privilege user to conduct an account takeover attack.

    Published: 22 Jun 2022
    5.4
    Medium

    CVE-2022-23057

    Last Modified: 21 Nov 2024

    In ERPNext, versions v12.0.9--v13.0.3 are vulnerable to Stored Cross-Site-Scripting (XSS), due to user input not being validated properly. A low privileged attacker could inject arbitrary code into input fields when editing his profile.

    Published: 22 Jun 2022
    5.3
    Medium

    CVE-2017-20084

    Last Modified: 15 Apr 2025

    A vulnerability has been found in JUNG Smart Visu Server 1.0.804/1.0.830/1.0.832 and classified as critical. Affected by this vulnerability is an unknown functionality of the component KNX Group Address. The manipulation leads to backdoor. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 1.0.900 is able to address this issue. It is recommended to upgrade the affected component.

    Published: 22 Jun 2022
    5.3
    Medium

    CVE-2017-20083

    Last Modified: 15 Apr 2025

    A vulnerability, which was classified as critical, was found in JUNG Smart Visu Server 1.0.804/1.0.830/1.0.832. Affected is an unknown function of the component SSH Server. The manipulation leads to backdoor. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 1.0.900 is able to address this issue. It is recommended to upgrade the affected component.

    Published: 22 Jun 2022
    5.5
    Medium

    CVE-2017-20082

    Last Modified: 15 Apr 2025

    A vulnerability, which was classified as problematic, has been found in JUNG Smart Visu Server 1.0.804/1.0.830/1.0.832. This issue affects some unknown processing. The manipulation leads to backdoor. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 1.0.900 is able to address this issue. It is recommended to upgrade the affected component.

    Published: 22 Jun 2022
    5.4
    Medium

    CVE-2022-34173

    Last Modified: 21 Nov 2024

    In Jenkins 2.340 through 2.355 (both inclusive) the tooltip of the build button in list views supports HTML without escaping the job display name, resulting in a cross-site scripting (XSS) vulnerability exploitable by attackers with Job/Configure permission.

    Published: 22 Jun 2022
    5.4
    Medium

    CVE-2022-34171

    Last Modified: 21 Nov 2024

    In Jenkins 2.321 through 2.355 (both inclusive) and LTS 2.332.1 through LTS 2.332.3 (both inclusive) the HTML output generated for new symbol-based SVG icons includes the 'title' attribute of 'l:ionicon' (until Jenkins 2.334) and 'alt' attribute of 'l:icon' (since Jenkins 2.335) without further escaping, resulting in a cross-site scripting (XSS) vulnerability.

    Published: 22 Jun 2022
    5.4
    Medium

    CVE-2022-34172

    Last Modified: 21 Nov 2024

    In Jenkins 2.340 through 2.355 (both inclusive) symbol-based icons unescape previously escaped values of 'tooltip' parameters, resulting in a cross-site scripting (XSS) vulnerability.

    Published: 22 Jun 2022