CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2022-0867

    Last Modified: 21 Nov 2024

    The Pricing Table WordPress plugin before 3.6.1 fails to properly sanitize and escape user supplied POST data before it is being interpolated in an SQL statement and then executed via an AJAX action available to unauthenticated users

    Published: 16 May 2022
    7.2
    High

    CVE-2021-25119

    Last Modified: 21 Nov 2024

    The AGIL WordPress plugin through 1.0 accepts all zip files and automatically extracts the zip file without validating the extracted file type. Allowing high privilege users such as admin to upload an arbitrary file like PHP, leading to RCE

    Published: 16 May 2022
    7.5
    High

    CVE-2021-42870

    Last Modified: 21 Nov 2024

    ACCEL-PPP 1.12.0 has an out-of-bounds read in post_msg when processing a call_clear_request.

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-30777

    Last Modified: 21 Nov 2024

    Parallels H-Sphere 3.6.1713 allows XSS via the index_en.php from parameter.

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-30776

    Last Modified: 21 Nov 2024

    atmail 6.5.0 allows XSS via the index.php/admin/index/ error parameter.

    Published: 16 May 2022
    —
    Unknown

    CVE-2021-42966

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 16 May 2022
    —
    Unknown

    CVE-2021-41927

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 16 May 2022
    9.8
    Critical

    CVE-2021-42897

    Last Modified: 21 Nov 2024

    A remote command execution (RCE) vulnerability was found in FeMiner wms V1.0 in /wms/src/system/datarec.php. The $_POST[r_name] is directly passed into the $mysqlstr and is executed by exec.

    Published: 16 May 2022
    5.4
    Medium

    CVE-2022-30013

    Last Modified: 21 Nov 2024

    A stored cross-site scripting (XSS) vulnerability in the upload function of totaljs CMS 3.4.5 allows attackers to execute arbitrary web scripts via a JavaScript embedded PDF file.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2022-29351

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability in the file upload module of Tiddlywiki5 v5.2.2 allows attackers to execute arbitrary code via a crafted SVG file. Note: The vendor argues that this is not a legitimate issue and there is no vulnerability here.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2022-29353

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability in the file upload module of Graphql-upload v13.0.0 allows attackers to execute arbitrary code via a crafted filename.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2022-29354

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability in the file upload module of Keystone v4.2.1 allows attackers to execute arbitrary code via a crafted file.

    Published: 16 May 2022
    7.8
    High

    CVE-2022-29623

    Last Modified: 20 May 2025

    An arbitrary file upload vulnerability in the file upload module of Express Connect-Multiparty 2.2.0 allows attackers to execute arbitrary code via a crafted PDF file. NOTE: the Supplier has not verified this vulnerability report.

    Published: 16 May 2022
    5.5
    Medium

    CVE-2022-29017

    Last Modified: 21 Nov 2024

    Bento4 v1.6.0.0 was discovered to contain a segmentation fault via the component /x86_64/multiarch/strlen-avx2.S.

    Published: 16 May 2022
    7.5
    High

    CVE-2022-30012

    Last Modified: 21 Nov 2024

    In the POST request of the appointment.php page of HMS v.0, there are SQL injection vulnerabilities in multiple parameters, and database information can be obtained through injection.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2022-30011

    Last Modified: 21 Nov 2024

    In HMS 1.0 when requesting appointment.php through POST, multiple parameters can lead to a SQL injection vulnerability.

    Published: 16 May 2022
    7.1
    High

    CVE-2023-1838

    Last Modified: 21 Nov 2024

    A use-after-free flaw was found in vhost_net_set_backend in drivers/vhost/net.c in virtio network subcomponent in the Linux kernel due to a double fget. This flaw could allow a local attacker to crash the system, and could even lead to a kernel information leak problem.

    Published: 16 May 2022
    7.4
    High

    CVE-2022-29586

    Last Modified: 21 Nov 2024

    Konica Minolta bizhub MFP devices before 2022-04-14 allow a Sandbox Escape. An attacker must attach a keyboard to a USB port, press F12, and then escape from the kiosk mode.

    Published: 16 May 2022
    4
    Medium

    CVE-2022-29587

    Last Modified: 21 Nov 2024

    Konica Minolta bizhub MFP devices before 2022-04-14 have an internal Chromium browser that executes with root (aka superuser) access privileges.

    Published: 16 May 2022
    7.5
    High

    CVE-2022-29588

    Last Modified: 21 Nov 2024

    Konica Minolta bizhub MFP devices before 2022-04-14 use cleartext password storage for the /var/log/nginx/html/ADMINPASS and /etc/shadow files.

    Published: 16 May 2022
    7.5
    High

    CVE-2022-30782

    Last Modified: 21 Nov 2024

    Openmoney API through 2020-06-29 uses the JavaScript Math.random function, which does not provide cryptographically secure random numbers.

    Published: 16 May 2022
    —
    Unknown

    CVE-2022-30779

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 16 May 2022
    —
    Unknown

    CVE-2022-30778

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 16 May 2022
    5.5
    Medium

    CVE-2022-30775

    Last Modified: 21 Nov 2024

    xpdf 4.04 allocates excessive memory when presented with crafted input. This can be triggered by (for example) sending a crafted PDF document to the pdftoppm binary. It is most easily reproduced with the DCMAKE_CXX_COMPILER=afl-clang-fast++ option.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2022-30767

    Last Modified: 3 Nov 2025

    nfs_lookup_reply in net/nfs.c in Das U-Boot through 2022.04 (and through 2022.07-rc2) has an unbounded memcpy with a failed length check, leading to a buffer overflow. NOTE: this issue exists because of an incorrect fix for CVE-2019-14196.

    Published: 16 May 2022
    7.5
    High

    CVE-2022-30763

    Last Modified: 21 Nov 2024

    Janet before 1.22.0 mishandles arrays.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2022-30765

    Last Modified: 21 Nov 2024

    Calibre-Web before 0.6.18 allows user table SQL Injection.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2022-29622

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability in formidable v3.1.4 allows attackers to execute arbitrary code via a crafted filename. NOTE: some third parties dispute this issue because the product has common use cases in which uploading arbitrary files is the desired behavior. Also, there are configuration options in all versions that can change the default behavior of how files are handled. Strapi does not consider this to be a valid vulnerability.

    Published: 16 May 2022
    5.5
    Medium

    CVE-2022-1725

    Last Modified: 21 Nov 2024

    NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.4959.

    Published: 16 May 2022
    6.1
    Medium

    CVE-2022-30770

    Last Modified: 21 Nov 2024

    Terminalfour versions 8.3.7, 8.3.x versions prior to version 8.3.8 and r 8.2.x versions prior to version 8.2.18.5 or 8.2.18.2.1 are vulnerable to (XSS) vulnerability that could be exploited by an attacker to mislead an administrator and steal their credentials.

    Published: 16 May 2022
    7.5
    High

    CVE-2022-30781

    Last Modified: 21 Nov 2024

    Gitea before 1.16.7 does not escape git fetch remote.

    Published: 16 May 2022
    7.5
    High

    CVE-2022-31626

    Last Modified: 21 Nov 2024

    In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when pdo_mysql extension with mysqlnd driver, if the third party is allowed to supply host to connect to and the password for the connection, password of excessive length can trigger a buffer overflow in PHP, which can lead to a remote code execution vulnerability.

    Published: 16 May 2022
    9.8
    Critical

    CVE-2022-22978

    Last Modified: 21 Nov 2024

    In spring security versions prior to 5.4.11+, 5.5.7+ , 5.6.4+ and older unsupported versions, RegexRequestMatcher can easily be misconfigured to be bypassed on some servlet containers. Applications using RegexRequestMatcher with `.` in the regular expression are possibly vulnerable to an authorization bypass.

    Published: 16 May 2022
    5.5
    Medium

    CVE-2022-30126

    Last Modified: 21 Nov 2024

    In Apache Tika, a regular expression in our StandardsText class, used by the StandardsExtractingContentHandler could lead to a denial of service caused by backtracking on a specially crafted file. This only affects users who are running the StandardsExtractingContentHandler, which is a non-standard handler. This is fixed in 1.28.2 and 2.4.0

    Published: 16 May 2022
    8.1
    High

    CVE-2022-31625

    Last Modified: 21 Nov 2024

    In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vulnerability or denial of service.

    Published: 16 May 2022
    7.5
    High

    CVE-2022-30049

    Last Modified: 21 Nov 2024

    A Server-Side Request Forgery (SSRF) in Rebuild v2.8.3 allows attackers to obtain the real IP address and scan Intranet information via the fileurl parameter.

    Published: 15 May 2022
    9.8
    Critical

    CVE-2022-28930

    Last Modified: 21 Nov 2024

    ERP-Pro v3.7.5 was discovered to contain a SQL injection vulnerability via the component /base/SysEveMenuAuthPointMapper.xml..

    Published: 15 May 2022
    7.5
    High

    CVE-2022-28937

    Last Modified: 21 Nov 2024

    FISCO-BCOS release-3.0.0-rc2 was discovered to contain an issue where a malicious node, via an invalid proposal with an invalid header, will cause normal nodes to stop producing new blocks and processing new clients' requests.

    Published: 15 May 2022
    7.5
    High

    CVE-2022-28936

    Last Modified: 21 Nov 2024

    FISCO-BCOS release-3.0.0-rc2 was discovered to contain an issue where a malicious node can trigger an integer overflow and cause a Denial of Service (DoS) via an unusually large viewchange message packet.

    Published: 15 May 2022
    9.8
    Critical

    CVE-2022-28929

    Last Modified: 21 Nov 2024

    Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the delid parameter at viewtreatmentrecord.php.

    Published: 15 May 2022
    8.8
    High

    CVE-2021-41965

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability exists in ChurchCRM version 2.0.0 to 4.4.5 that allows an authenticated attacker to issue an arbitrary SQL command to the database through the unsanitized EN_tyid, theID and EID fields used when an Edit action on an existing record is being performed.

    Published: 15 May 2022
    8.8
    High

    CVE-2022-30708

    Last Modified: 21 Nov 2024

    Webmin through 1.991, when the Authentic theme is used, allows remote code execution when a user has been manually created (i.e., not created in Virtualmin or Cloudmin). This occurs because settings-editor_write.cgi does not properly restrict the file parameter.

    Published: 15 May 2022
    9.1
    Critical

    CVE-2022-1379

    Last Modified: 21 Nov 2024

    URL Restriction Bypass in GitHub repository plantuml/plantuml prior to V1.2022.5. An attacker can abuse this to bypass URL restrictions that are imposed by the different security profiles and achieve server side request forgery (SSRF). This allows accessing restricted internal resources/servers or sending requests to third party servers.

    Published: 14 May 2022
    8.3
    High

    CVE-2022-24831

    Last Modified: 23 Apr 2025

    OpenClinica is an open source software for Electronic Data Capture (EDC) and Clinical Data Management (CDM). Versions prior to 3.16.1 are vulnerable to SQL injection due to the use of string concatenation to create SQL queries instead of prepared statements. No known workarounds exist. This issue has been patched in 3.16.1, 3.15.9, 3.14.1, and 3.13.1 and users are advised to upgrade.

    Published: 14 May 2022
    5.5
    Medium

    CVE-2023-4459

    Last Modified: 15 Nov 2025

    A NULL pointer dereference flaw was found in vmxnet3_rq_cleanup in drivers/net/vmxnet3/vmxnet3_drv.c in the networking sub-component in vmxnet3 in the Linux Kernel. This issue may allow a local attacker with normal user privilege to cause a denial of service due to a missing sanity check during cleanup.

    Published: 14 May 2022
    7.1
    High

    CVE-2023-4387

    Last Modified: 6 Nov 2025

    A use-after-free flaw was found in vmxnet3_rq_alloc_rx_buf in drivers/net/vmxnet3/vmxnet3_drv.c in VMware's vmxnet3 ethernet NIC driver in the Linux Kernel. This issue could allow a local attacker to crash the system due to a double-free while cleaning up vmxnet3_rq_cleanup_all, which could also lead to a kernel information leak problem.

    Published: 14 May 2022
    6.5
    Medium

    CVE-2022-24830

    Last Modified: 22 Apr 2025

    OpenClinica is an open source software for Electronic Data Capture (EDC) and Clinical Data Management (CDM). OpenClinica prior to version 3.16 is vulnerable to path traversal in multiple endpoints, leading to arbitrary file read/write, and potential remote code execution. There are no known workarounds. This issue has been patched and users are recommended to upgrade.

    Published: 13 May 2022
    4
    Medium

    CVE-2022-25862

    Last Modified: 21 Nov 2024

    This affects the package sds from 0.0.0. The library could be tricked into adding or modifying properties of the Object.prototype by abusing the set function located in js/set.js. **Note:** This vulnerability derives from an incomplete fix to [CVE-2020-7618](https://security.snyk.io/vuln/SNYK-JS-SDS-564123)

    Published: 13 May 2022
    8.1
    High

    CVE-2022-25865

    Last Modified: 21 Nov 2024

    The package workspace-tools before 0.18.4 are vulnerable to Command Injection via git argument injection. When calling the fetchRemoteBranch(remote: string, remoteBranch: string, cwd: string) function, both the remote and remoteBranch parameters are passed to the git fetch subcommand in a way that additional flags can be set. The additional flags can be used to perform a command injection.

    Published: 13 May 2022
    9.8
    Critical

    CVE-2022-22282

    Last Modified: 21 Nov 2024

    SonicWall SMA1000 series firmware 12.4.0, 12.4.1-02965 and earlier versions incorrectly restricts access to a resource using HTTP connections from an unauthorized actor leading to Improper Access Control vulnerability.

    Published: 13 May 2022