CVE Feed

    Dashboard / CVE

    10
    Critical

    CVE-2021-27446

    Last Modified: 16 Apr 2025

    The Weintek cMT product line is vulnerable to code injection, which may allow an unauthenticated remote attacker to execute commands with root privileges on the operation system.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2021-27444

    Last Modified: 16 Apr 2025

    The Weintek cMT product line is vulnerable to various improper access controls, which may allow an unauthenticated attacker to remotely access and download sensitive information and perform administrative actions on behalf of a legitimate administrator.

    Published: 16 May 2022
    9.4
    Critical

    CVE-2021-27442

    Last Modified: 16 Apr 2025

    The Weintek cMT product line is vulnerable to a cross-site scripting vulnerability, which could allow an unauthenticated remote attacker to inject malicious JavaScript code.

    Published: 16 May 2022
    7.6
    High

    CVE-2021-23267

    Last Modified: 21 Nov 2024

    Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via FreeMarker static methods.

    Published: 16 May 2022
    4.3
    Medium

    CVE-2021-23266

    Last Modified: 21 Nov 2024

    An anonymous user can craft a URL with text that ends up in the log viewer as is. The text can then include textual messages to mislead the administrator.

    Published: 16 May 2022
    3.5
    Low

    CVE-2021-23265

    Last Modified: 21 Nov 2024

    A logged-in and authenticated user with a Reviewer Role may lock a content item.

    Published: 16 May 2022
    5.5
    Medium

    CVE-2022-25169

    Last Modified: 21 Nov 2024

    The BPG parser in versions of Apache Tika before 1.28.2 and 2.4.0 may allocate an unreasonable amount of memory on carefully crafted files.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2022-30055

    Last Modified: 21 Nov 2024

    Prime95 30.7 build 9 suffers from a Buffer Overflow vulnerability that could lead to Remote Code Execution.

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-30050

    Last Modified: 21 Nov 2024

    Gnuboard 5.55 and 5.56 is vulnerable to Cross Site Scripting (XSS) via bbs/member_confirm.php.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2021-33318

    Last Modified: 21 Nov 2024

    An Input Validation Vulnerability exists in Joel Christner .NET C# packages WatsonWebserver, IpMatcher 1.0.4.1 and below (IpMatcher) and 4.1.3 and below (WatsonWebserver) due to insufficient validation of input IP addresses and netmasks against the internal Matcher list of IP addresses and subnets.

    Published: 16 May 2022
    5.4
    Medium

    CVE-2022-1726

    Last Modified: 21 Nov 2024

    Bootstrap Tables XSS vulnerability with Table Export plug-in when exportOptions: htmlContent is true in GitHub repository wenzhixin/bootstrap-table prior to 1.20.2. Disclosing session cookies, disclosing secure session data, exfiltrating data to third-parties.

    Published: 16 May 2022
    6.5
    Medium

    CVE-2022-1728

    Last Modified: 21 Nov 2024

    Allowing long password leads to denial of service in polonel/trudesk in GitHub repository polonel/trudesk prior to 1.2.2. This vulnerability can be abused by doing a DDoS attack for which genuine users will not able to access resources/applications.

    Published: 16 May 2022
    7.8
    High

    CVE-2022-30523

    Last Modified: 21 Nov 2024

    Trend Micro Password Manager (Consumer) version 5.0.0.1266 and below is vulnerable to a Link Following Privilege Escalation Vulnerability that could allow a low privileged local attacker to delete the contents of an arbitrary folder as SYSTEM which can then be used for privilege escalation on the affected machine.

    Published: 16 May 2022
    7.5
    High

    CVE-2022-1718

    Last Modified: 21 Nov 2024

    The trudesk application allows large characters to insert in the input field "Full Name" on the signup field which can allow attackers to cause a Denial of Service (DoS) via a crafted HTTP request in GitHub repository polonel/trudesk prior to 1.2.2. This can lead to Denial of service.

    Published: 16 May 2022
    5.4
    Medium

    CVE-2022-1719

    Last Modified: 21 Nov 2024

    Reflected XSS on ticket filter function in GitHub repository polonel/trudesk prior to 1.2.2. This vulnerability is capable of executing a malicious javascript code in web page

    Published: 16 May 2022
    8.8
    High

    CVE-2022-0573

    Last Modified: 21 Nov 2024

    JFrog Artifactory before 7.36.1 and 6.23.41, is vulnerable to Insecure Deserialization of untrusted data which can lead to DoS, Privilege Escalation and Remote Code Execution when a specially crafted request is sent by a low privileged authenticated user due to insufficient validation of a user-provided serialized object.

    Published: 16 May 2022
    4.9
    Medium

    CVE-2022-1553

    Last Modified: 21 Nov 2024

    Leaking password protected articles content due to improper access control in GitHub repository publify/publify prior to 9.2.8. Attackers can leverage this vulnerability to view the contents of any password-protected article present on the publify website, compromising confidentiality and integrity of users.

    Published: 16 May 2022
    7.5
    High

    CVE-2022-1713

    Last Modified: 21 Nov 2024

    SSRF on /proxy in GitHub repository jgraph/drawio prior to 18.0.4. An attacker can make a request as the server and read its contents. This can lead to a leak of sensitive information.

    Published: 16 May 2022
    6.5
    Medium

    CVE-2022-0578

    Last Modified: 21 Nov 2024

    Code Injection in GitHub repository publify/publify prior to 9.2.8.

    Published: 16 May 2022
    6.5
    Medium

    CVE-2022-0574

    Last Modified: 21 Nov 2024

    Improper Access Control in GitHub repository publify/publify prior to 9.2.8.

    Published: 16 May 2022
    7.5
    High

    CVE-2022-1721

    Last Modified: 21 Nov 2024

    Path Traversal in WellKnownServlet in GitHub repository jgraph/drawio prior to 18.0.5. Read local files of the web application.

    Published: 16 May 2022
    3.3
    Low

    CVE-2022-1722

    Last Modified: 21 Nov 2024

    SSRF in editor's proxy via IPv6 link-local address in GitHub repository jgraph/drawio prior to 18.0.5. SSRF to internal link-local IPv6 addresses

    Published: 16 May 2022
    6.5
    Medium

    CVE-2022-1560

    Last Modified: 21 Nov 2024

    The Amministrazione Aperta WordPress plugin before 3.8 does not validate the open parameter before using it in an include statement, leading to a Local File Inclusion issue. The original advisory mentions that unauthenticated users can exploit this, however the affected file generates a fatal error when accessed directly and the affected code is not reached. The issue can be exploited via the dashboard when logged in as an admin, or by making a logged in admin open a malicious link

    Published: 16 May 2022
    4.8
    Medium

    CVE-2022-1559

    Last Modified: 21 Nov 2024

    The Clipr WordPress plugin through 1.2.3 does not sanitise and escape its API Key settings before outputting it in an attribute, leading to a Stored Cross-Site Scripting issue even when the unfiltered_html capability is disallowed

    Published: 16 May 2022
    5.4
    Medium

    CVE-2022-1557

    Last Modified: 21 Nov 2024

    The ULeak Security & Monitoring WordPress plugin through 1.2.3 does not have authorisation and CSRF checks when updating its settings, and is also lacking sanitisation as well as escaping in some of them, which could allow any authenticated users such as subscriber to perform Stored Cross-Site Scripting attacks against admins viewing the settings

    Published: 16 May 2022
    4.8
    Medium

    CVE-2022-1512

    Last Modified: 21 Nov 2024

    The ScrollReveal.js Effects WordPress plugin through 1.2 does not sanitise and escape its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-1465

    Last Modified: 21 Nov 2024

    The WPC Smart Wishlist for WooCommerce WordPress plugin before 2.9.9 does not sanitise and escape a parameter before outputting it back in an attribute via an AJAX action, leading to a Reflected Cross-Site Scripting issue.

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-1455

    Last Modified: 21 Nov 2024

    The Call Now Button WordPress plugin before 1.1.2 does not escape a parameter before outputting it back in an attribute of a hidden input, leading to a Reflected Cross-Site Scripting when the premium is enabled

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-1436

    Last Modified: 21 Nov 2024

    The WPCargo Track & Trace WordPress plugin before 6.9.5 does not sanitise and escape the wpcargo_tracking_number parameter before outputting it back in the page, which could allow attackers to perform reflected Cross-Site Scripting attacks.

    Published: 16 May 2022
    4.8
    Medium

    CVE-2022-1435

    Last Modified: 21 Nov 2024

    The WPCargo Track & Trace WordPress plugin before 6.9.5 does not sanitize and escapes some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed.

    Published: 16 May 2022
    4.3
    Medium

    CVE-2022-1425

    Last Modified: 21 Nov 2024

    The WPQA Builder Plugin WordPress plugin before 5.2, used as a companion plugin for the Discy and Himer , does not validate that the message_id of the wpqa_message_view ajax action belongs to the requesting user, leading to any user being able to read messages for any other users via a Insecure Direct Object Reference (IDOR) vulnerability.

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-1418

    Last Modified: 21 Nov 2024

    The Social Stickers WordPress plugin through 2.2.9 does not have CSRF checks in place when updating its Social Network settings, and does not escape some of these fields, which could allow attackers to make a logged-in admin change them and lead to Stored Cross-Site Scripting issues.

    Published: 16 May 2022
    7.2
    High

    CVE-2022-1409

    Last Modified: 21 Nov 2024

    The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.5.8 does not properly validate images, allowing high privilege users such as administrators to upload PHP files disguised as images and containing malicious PHP code

    Published: 16 May 2022
    4.8
    Medium

    CVE-2022-1408

    Last Modified: 21 Nov 2024

    The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.5.8 does not escape various settings before outputting them in attributes, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

    Published: 16 May 2022
    6.5
    Medium

    CVE-2022-1407

    Last Modified: 21 Nov 2024

    The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.5.8 does not have CSRF check in place when adding a tracking campaign, and does not escape the campaign fields when outputting them In attributes. As a result, attackers could make a logged in admin add tracking campaign with XSS payloads in them via a CSRF attack

    Published: 16 May 2022
    6.5
    Medium

    CVE-2022-1398

    Last Modified: 21 Nov 2024

    The External Media without Import WordPress plugin through 1.1.2 does not have any authorisation and does to ensure that medias added via URLs are external medias, which could allow any authenticated users, such as subscriber to perform blind SSRF attacks

    Published: 16 May 2022
    5.4
    Medium

    CVE-2022-1393

    Last Modified: 21 Nov 2024

    The WP Subtitle WordPress plugin before 3.4.1 adds a subtitle field and provides a shortcode to display it via [wp_subtitle]. The subtitle is stored as a custom post meta with the key: "wps_subtitle", which is sanitized upon post save/update, however is not sanitized when updating it directly from the post meta update button (via AJAX) - and this makes the XSS exploitable by authenticated users with a role as low as contributor.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2022-1386

    Last Modified: 21 Nov 2024

    The Fusion Builder WordPress plugin before 3.6.2, used in the Avada theme, does not validate a parameter in its forms which could be used to initiate arbitrary HTTP requests. The data returned is then reflected back in the application's response. This could be used to interact with hosts on the server's local network bypassing firewalls and access control measures.

    Published: 16 May 2022
    4.3
    Medium

    CVE-2022-1349

    Last Modified: 21 Nov 2024

    The WPQA Builder Plugin WordPress plugin before 5.2, used as a companion plugin for the Discy and Himer , does not validate that the value passed to the image_id parameter of the ajax action wpqa_remove_image belongs to the requesting user, allowing any users (with privileges as low as Subscriber) to delete the profile pictures of any other user.

    Published: 16 May 2022
    4.8
    Medium

    CVE-2022-1334

    Last Modified: 21 Nov 2024

    The WP YouTube Live WordPress plugin before 1.8.3 does not validate, sanitise and escape various of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-1267

    Last Modified: 21 Nov 2024

    The BMI BMR Calculator WordPress plugin through 1.3 does not sanitise and escape arbitrary POST data before outputting it back in the response, leading to a Reflected Cross-Site Scripting

    Published: 16 May 2022
    4.8
    Medium

    CVE-2022-1265

    Last Modified: 21 Nov 2024

    The BulletProof Security WordPress plugin before 6.1 does not sanitize and escape some of its CAPTCHA settings, which could allow high-privileged users to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-1217

    Last Modified: 21 Nov 2024

    The Custom TinyMCE Shortcode Button WordPress plugin through 1.1 does not sanitise and escape the PHP_SELF variable before outputting it back in an attribute in an admin page, leading to Reflected Cross-Site Scripting.

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-1216

    Last Modified: 21 Nov 2024

    The Advanced Image Sitemap WordPress plugin through 1.2 does not sanitise and escape the PHP_SELF PHP variable before outputting it back in an attribute in an admin page, leading to Reflected Cross-Site Scripting.

    Published: 16 May 2022
    8.8
    High

    CVE-2022-1182

    Last Modified: 21 Nov 2024

    The Visual Slide Box Builder WordPress plugin through 3.2.9 does not sanitise and escape various parameters before using them in SQL statements via some of its AJAX actions available to any authenticated users (such as subscriber), leading to SQL Injections

    Published: 16 May 2022
    8.8
    High

    CVE-2022-1103

    Last Modified: 21 Nov 2024

    The Advanced Uploader WordPress plugin through 4.2 allows any authenticated users like subscriber to upload arbitrary files, such as PHP, which could lead to RCE

    Published: 16 May 2022
    4.8
    Medium

    CVE-2022-1089

    Last Modified: 21 Nov 2024

    The Bulk Edit and Create User Profiles WordPress plugin before 1.5.14 does not sanitise and escape the Users Login, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 16 May 2022
    4.8
    Medium

    CVE-2022-1062

    Last Modified: 21 Nov 2024

    The th23 Social WordPress plugin through 1.2.0 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 16 May 2022
    5.4
    Medium

    CVE-2022-1051

    Last Modified: 21 Nov 2024

    The WPQA Builder Plugin WordPress plugin before 5.2, used as a companion plugin for the Discy and Himer , does not sanitise and escape the city, phone or profile credentials fields when outputting it in the profile page, allowing any authenticated user to perform Cross-Site Scripting attacks.

    Published: 16 May 2022
    4.8
    Medium

    CVE-2022-0873

    Last Modified: 21 Nov 2024

    The Gmedia Photo Gallery WordPress plugin before 1.20.0 does not sanitise and escape the Album's name before outputting it in pages/posts with a media embed, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered-html capability is disallowed

    Published: 16 May 2022