CVE Feed

    Dashboard / CVE

    8.1
    High

    CVE-2022-27568

    Last Modified: 21 Nov 2024

    Heap-based buffer overflow vulnerability in parser_iloc function in libsimba library prior to SMR Apr-2022 Release 1 allows code execution by remote attacker.

    Published: 11 Apr 2022
    8.1
    High

    CVE-2022-27569

    Last Modified: 21 Nov 2024

    Heap-based buffer overflow vulnerability in parser_infe function in libsimba library prior to SMR Apr-2022 Release 1 allows code execution by remote attacker.

    Published: 11 Apr 2022
    5.9
    Medium

    CVE-2022-27567

    Last Modified: 21 Nov 2024

    Null pointer dereference vulnerability in parser_hvcC function of libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attackers.

    Published: 11 Apr 2022
    5.9
    Medium

    CVE-2022-26099

    Last Modified: 21 Nov 2024

    Null pointer dereference vulnerability in parser_infe function of libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds read by remote attackers.

    Published: 11 Apr 2022
    5.9
    Medium

    CVE-2022-26097

    Last Modified: 21 Nov 2024

    Null pointer dereference vulnerability in parser_unknown_property function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker.

    Published: 11 Apr 2022
    8.1
    High

    CVE-2022-26098

    Last Modified: 21 Nov 2024

    Heap-based buffer overflow vulnerability in sheifd_create function of libsimba library prior to SMR Apr-2022 Release 1 allows code execution by remote attackers.

    Published: 11 Apr 2022
    5.9
    Medium

    CVE-2022-26096

    Last Modified: 21 Nov 2024

    Null pointer dereference vulnerability in parser_ispe function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker.

    Published: 11 Apr 2022
    5.9
    Medium

    CVE-2022-26095

    Last Modified: 21 Nov 2024

    Null pointer dereference vulnerability in parser_colr function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker.

    Published: 11 Apr 2022
    5.9
    Medium

    CVE-2022-26094

    Last Modified: 21 Nov 2024

    Null pointer dereference vulnerability in parser_auxC function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker.

    Published: 11 Apr 2022
    5.9
    Medium

    CVE-2022-26093

    Last Modified: 21 Nov 2024

    Null pointer dereference vulnerability in parser_irot function in libsimba library prior to SMR Apr-2022 Release 1 allows out of bounds write by remote attacker.

    Published: 11 Apr 2022
    7.4
    High

    CVE-2022-26092

    Last Modified: 21 Nov 2024

    Improper boundary check in Quram Agif library prior to SMR Apr-2022 Release 1 allows arbitrary code execution.

    Published: 11 Apr 2022
    5.7
    Medium

    CVE-2022-26091

    Last Modified: 21 Nov 2024

    Improper access control vulnerability in Knox Manage prior to SMR Apr-2022 Release 1 allows that physical attackers can bypass Knox Manage using a function key of hardware keyboard.

    Published: 11 Apr 2022
    5.3
    Medium

    CVE-2022-26090

    Last Modified: 21 Nov 2024

    Improper access control vulnerability in SamsungContacts prior to SMR Apr-2022 Release 1 allows that attackers can access contact information without permission.

    Published: 11 Apr 2022
    3.3
    Low

    CVE-2022-25833

    Last Modified: 21 Nov 2024

    Improper authentication in ImsService prior to SMR Apr-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission.

    Published: 11 Apr 2022
    4
    Medium

    CVE-2022-25832

    Last Modified: 21 Nov 2024

    Improper authentication vulnerability in S Secure prior to SMR Apr-2022 Release 1 allows physical attackers to use locked Myfiles app without authentication.

    Published: 11 Apr 2022
    4.8
    Medium

    CVE-2021-36896

    Last Modified: 20 Feb 2025

    Authenticated (author or higher user role) Stored Cross-Site Scripting (XSS) vulnerability in Pricing Table (WordPress plugin) versions <= 1.5.2

    Published: 11 Apr 2022
    2
    Low

    CVE-2022-25831

    Last Modified: 21 Nov 2024

    Improper access control vulnerability in S Secure prior to SMR Apr-2022 Release 1 allows physical attackers to access secured data in certain conditions.

    Published: 11 Apr 2022
    3.4
    Low

    CVE-2021-36848

    Last Modified: 20 Feb 2025

    Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Social Media Feather (WordPress plugin) versions <= 2.0.4

    Published: 11 Apr 2022
    3.4
    Low

    CVE-2021-36910

    Last Modified: 20 Feb 2025

    Authenticated (admin user role) Stored Cross-Site Scripting (XSS) in WP-Appbox (WordPress plugin) <= 4.3.20.

    Published: 11 Apr 2022
    8.1
    High

    CVE-2022-24815

    Last Modified: 22 Apr 2025

    JHipster is a development platform to quickly generate, develop, & deploy modern web applications & microservice architectures. SQL Injection vulnerability in entities for applications generated with the option "reactive with Spring WebFlux" enabled and an SQL database using r2dbc. Applications created without "reactive with Spring WebFlux" and applications with NoSQL databases are not affected. Users who have generated a microservice Gateway using the affected version may be impacted as Gateways are reactive by default. Currently, SQL injection is possible in the findAllBy(Pageable pageable, Criteria criteria) method of an entity repository class generated in these applications as the where clause using Criteria for queries are not sanitized and user input is passed on as it is by the criteria. This issue has been patched in v7.8.1. Users unable to upgrade should be careful when combining criterias and conditions as the root of the issue lies in the `EntityManager.java` class when creating the where clause via `Conditions.just(criteria.toString())`. `just` accepts the literal string provided. Criteria's `toString` method returns a plain string and this combination is vulnerable to sql injection as the string is not sanitized and will contain whatever used passed as input using any plain SQL.

    Published: 11 Apr 2022
    5.3
    Medium

    CVE-2022-24804

    Last Modified: 23 Apr 2025

    Discourse is an open source platform for community discussion. In stable versions prior to 2.8.3 and beta versions prior 2.9.0.beta4 erroneously expose groups. When a group with restricted visibility has been used to set the permissions of a category, the name of the group is leaked to any user that is able to see the category. To workaround the problem, a site administrator can remove groups with restricted visibility from any category's permissions setting.

    Published: 11 Apr 2022
    8.1
    High

    CVE-2021-43442

    Last Modified: 21 Nov 2024

    A Logic Flaw vulnerability exists in i3 International Inc Annexxus Camera V5.2.0 build 150317 (Ax46), V5.0.9 build 151106 (Ax68), and V5.0.9 build 150615 (Ax78) due to a failure to allow the creation of more than one administrator account; however, this can be bypassed by parameter maniulation using PUT and DELETE and by calling the 'UserPermission' endpoint with the ID of created account and set it to 'admin' userType, successfully adding a second administrative account.

    Published: 11 Apr 2022
    5.4
    Medium

    CVE-2021-39068

    Last Modified: 21 Nov 2024

    IBM Curam Social Program Management 8.0.1 and 7.0.11 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 215306.

    Published: 11 Apr 2022
    7.5
    High

    CVE-2021-38930

    Last Modified: 21 Nov 2024

    IBM System Storage DS8000 Management Console (HMC) R8.5 88.5x.x.x, R9.1 89.1x.0.0, and R9.2 89.2x.0.0 could allow a remote attacker to obtain sensitive information through unpublished URLs. IBM X-Force ID: 210331.

    Published: 11 Apr 2022
    7.5
    High

    CVE-2021-38929

    Last Modified: 21 Nov 2024

    IBM System Storage DS8000 Management Console (HMC) R8.5 88.5x.x.x, R9.1 89.1x.0.0, and R9.2 89.2x.0.0 could allow a remote attacker to obtain sensitive information through unpublished URLs. IBM X-Force ID: 210330.

    Published: 11 Apr 2022
    7.2
    High

    CVE-2021-37292

    Last Modified: 21 Nov 2024

    An Access Control vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 due to an undocumented backdoor account. A malicious user can log in using the backdor account with admin highest privileges and obtain system control.

    Published: 11 Apr 2022
    3.3
    Low

    CVE-2022-29035

    Last Modified: 21 Nov 2024

    In JetBrains Ktor Native before version 2.0.0 random values used for nonce generation weren't using SecureRandom implementations

    Published: 11 Apr 2022
    6.5
    Medium

    CVE-2021-37293

    Last Modified: 21 Nov 2024

    A Directory Traversal vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 via the page GET parameter in index.php.

    Published: 11 Apr 2022
    9.8
    Critical

    CVE-2021-37291

    Last Modified: 21 Nov 2024

    An SQL Injection vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 ivia the input_id POST parameter in index.php.

    Published: 11 Apr 2022
    8.8
    High

    CVE-2021-40219

    Last Modified: 21 Nov 2024

    Bolt CMS <= 4.2 is vulnerable to Remote Code Execution. Unsafe theme rendering allows an authenticated attacker to edit theme to inject server-side template injection that leads to remote code execution.

    Published: 11 Apr 2022
    5.4
    Medium

    CVE-2022-27111

    Last Modified: 21 Nov 2024

    Jfinal_CMS 5.1.0 allows attackers to use the feedback function to send malicious XSS code to the administrator backend and execute it.

    Published: 11 Apr 2022
    7.2
    High

    CVE-2022-1023

    Last Modified: 21 Nov 2024

    The Podcast Importer SecondLine WordPress plugin before 1.3.8 does not sanitise and properly escape some imported data, which could allow SQL injection attacks to be performed by imported a malicious podcast file

    Published: 11 Apr 2022
    7.2
    High

    CVE-2022-1008

    Last Modified: 21 Nov 2024

    The One Click Demo Import WordPress plugin before 3.1.0 does not validate the imported file, allowing high privilege users such as admin to upload arbitrary files (such as PHP) even when FILE_MODS and FILE_EDIT are disallowed

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2022-1007

    Last Modified: 21 Nov 2024

    The Advanced Booking Calendar WordPress plugin before 1.7.1 does not sanitise and escape the room parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting issue

    Published: 11 Apr 2022
    7.2
    High

    CVE-2022-1006

    Last Modified: 21 Nov 2024

    The Advanced Booking Calendar WordPress plugin before 1.7.1 does not sanitise and escape the id parameter when editing Calendars, which could allow high privilege users such as admin to perform SQL injection attacks

    Published: 11 Apr 2022
    7.5
    High

    CVE-2022-0989

    Last Modified: 21 Nov 2024

    An unprivileged user could use the functionality of the NS WooCommerce Watermark WordPress plugin through 2.11.3 to load images that hide malware for example from passing malicious domains to hide their trace, by making them pass through the vulnerable domain.

    Published: 11 Apr 2022
    4.8
    Medium

    CVE-2022-0969

    Last Modified: 21 Nov 2024

    The Image optimization & Lazy Load by Optimole WordPress plugin before 3.3.2 does not sanitise and escape its "Lazyload background images for selectors" settings, which could allow high privilege users such as admin to perform Cross-Site scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 11 Apr 2022
    9.8
    Critical

    CVE-2022-0949

    Last Modified: 21 Nov 2024

    The Block Bad Bots and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection WordPress plugin before 6.930 does not properly sanitise and escape the fingerprint parameter before using it in a SQL statement via the stopbadbots_grava_fingerprint AJAX action, available to unauthenticated users, leading to a SQL injection

    Published: 11 Apr 2022
    7.5
    High

    CVE-2022-0920

    Last Modified: 21 Nov 2024

    The Salon booking system Free and Pro WordPress plugins before 7.6.3 do not have proper authorisation in some of its endpoints, which could allow customers to access all bookings and other customer's data

    Published: 11 Apr 2022
    5.3
    Medium

    CVE-2022-0919

    Last Modified: 21 Nov 2024

    The Salon booking system Free and pro WordPress plugins before 7.6.3 do not have proper authorisation when searching bookings, allowing any unauthenticated users to search other's booking, as well as retrieve sensitive information about the bookings, such as the full name, email and phone number of the person who booked it.

    Published: 11 Apr 2022
    6.5
    Medium

    CVE-2022-0914

    Last Modified: 21 Nov 2024

    The Export All URLs WordPress plugin before 4.3 does not have CSRF in place when exporting data, which could allow attackers to make a logged in admin export all posts and pages (including private and draft) into an arbitrary CSV file, which the attacker can then download and retrieve the list of titles for example

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2022-0892

    Last Modified: 21 Nov 2024

    The Export All URLs WordPress plugin before 4.2 does not sanitise and escape the CSV filename before outputting it back in the page, leading to a Reflected Cross-Site Scripting

    Published: 11 Apr 2022
    4.8
    Medium

    CVE-2022-0840

    Last Modified: 21 Nov 2024

    The Easy Social Icons WordPress plugin before 3.2.1 does not properly escape the image_file field when adding a new social icon, allowing high privileged users to inject arbitrary javascript even when the unfiltered_html capability is disallowed.

    Published: 11 Apr 2022
    7.5
    High

    CVE-2022-0828

    Last Modified: 21 Mar 2025

    The Download Manager WordPress plugin before 3.2.34 uses the uniqid php function to generate the master key for a download, allowing an attacker to brute force the key with reasonable resources giving direct download access regardless of role based restrictions or password protections set for the download.

    Published: 11 Apr 2022
    4.8
    Medium

    CVE-2022-0728

    Last Modified: 21 Nov 2024

    The Easy Smooth Scroll Links WordPress plugin before 2.23.1 does not sanitise and escape its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2022-0531

    Last Modified: 21 Nov 2024

    The Migration, Backup, Staging WordPress plugin before 0.9.70 does not sanitise and escape the sub_page parameter before outputting it back in the page, leading to a reflected Cross-Site Scripting

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2022-0471

    Last Modified: 21 Nov 2024

    The Favicon by RealFaviconGenerator WordPress plugin before 1.3.23 does not properly sanitise and escape the json_result_url parameter before outputting it back in the Favicon admin dashboard, leading to a Reflected Cross-Site Scripting issue

    Published: 11 Apr 2022
    6.4
    Medium

    CVE-2022-0447

    Last Modified: 21 Nov 2024

    The Post Grid WordPress plugin before 2.1.16 does not sanitise and escape the post_types parameter before outputting it back in the response of the post_grid_update_taxonomies_terms_by_posttypes AJAX action, available to any authenticated users, leading to a Reflected Cross-Site Scripting

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2022-0314

    Last Modified: 21 Nov 2024

    The Nimble Page Builder WordPress plugin before 3.2.2 does not sanitise and escape the preview-level-guid parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2022-0271

    Last Modified: 21 Nov 2024

    The LearnPress WordPress plugin before 4.1.6 does not sanitise and escape the lp-dismiss-notice before outputting it back via the lp_background_single_email AJAX action, leading to a Reflected Cross-Site Scripting

    Published: 11 Apr 2022