CVE Feed

    Dashboard / CVE

    4.9
    Medium

    CVE-2022-0246

    Last Modified: 21 Nov 2024

    The settings of the iQ Block Country WordPress plugin before 1.2.13 can be exported or imported using its backup functionality. An authorized user can import preconfigured settings of the plugin by uploading a zip file. After the uploading process, files in the uploaded zip file are extracted one by one. During the extraction process, existence of a file is checked. If the file exists, it is deleted without any security control by only considering the name of the extracted file. This behavior leads to "Zip Slip" vulnerability.

    Published: 11 Apr 2022
    5.4
    Medium

    CVE-2021-25090

    Last Modified: 21 Nov 2024

    The Portfolio Gallery, Product Catalog WordPress plugin before 2.1.0 does not have authorisation and CSRF checks in various functions related to AJAX actions, allowing any authenticated users, such as subscriber, to call them. Due to the lack of sanitisation and escaping, it could also allows attackers to perform Cross-Site Scripting attacks on pages where a Portfolio is embed

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2021-24987

    Last Modified: 21 Nov 2024

    The Social Share, Social Login and Social Comments Plugin WordPress plugin before 7.13.30 does not sanitise and escape the urls parameter in its the_champ_sharing_count AJAX action (available to both unauthenticated and authenticated users) before outputting it back in the response, leading to a Reflected Cross-Site Scripting issue.

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2021-24986

    Last Modified: 21 Nov 2024

    The Post Grid WordPress plugin before 2.1.16 does not escape the keyword parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting in pages containing a Post Grid with a search form

    Published: 11 Apr 2022
    5.4
    Medium

    CVE-2022-27156

    Last Modified: 21 Nov 2024

    Daylight Studio Fuel CMS 1.5.1 is vulnerable to HTML Injection.

    Published: 11 Apr 2022
    9.8
    Critical

    CVE-2022-27115

    Last Modified: 21 Nov 2024

    In Studio-42 elFinder 2.1.60, there is a vulnerability that causes remote code execution through file name bypass for file upload.

    Published: 11 Apr 2022
    7.8
    High

    CVE-2022-27088

    Last Modified: 21 Nov 2024

    Ivanti DSM Remote <= 6.3.1.1862 is vulnerable to an unquoted service path allowing local users to launch processes with elevated privileges.

    Published: 11 Apr 2022
    7.8
    High

    CVE-2022-27089

    Last Modified: 21 Nov 2024

    In Fujitsu PlugFree Network <= 7.3.0.3, an Unquoted service path in PFNService.exe software allows a local attacker to potentially escalate privileges to system level.

    Published: 11 Apr 2022
    7.5
    High

    CVE-2022-27041

    Last Modified: 21 Nov 2024

    Due to lack of protection, parameter student_id in OpenSIS Classic 8.0 /modules/eligibility/Student.php can be used to inject SQL queries to extract information from databases.

    Published: 11 Apr 2022
    6
    Medium

    CVE-2022-26414

    Last Modified: 21 Nov 2024

    A potential buffer overflow vulnerability was identified in some internal functions of Zyxel VMG3312-T20A firmware version 5.30(ABFX.5)C0, which could be exploited by a local authenticated attacker to cause a denial of service.

    Published: 11 Apr 2022
    8
    High

    CVE-2022-26413

    Last Modified: 21 Nov 2024

    A command injection vulnerability in the CGI program of Zyxel VMG3312-T20A firmware version 5.30(ABFX.5)C0 could allow a local authenticated attacker to execute arbitrary OS commands on a vulnerable device via a LAN interface.

    Published: 11 Apr 2022
    7.3
    High

    CVE-2022-0556

    Last Modified: 21 Nov 2024

    A local privilege escalation vulnerability caused by incorrect permission assignment in some directories of the Zyxel AP Configurator (ZAC) version 1.1.4, which could allow an attacker to execute arbitrary code as a local administrator.

    Published: 11 Apr 2022
    9.1
    Critical

    CVE-2022-1297

    Last Modified: 21 Nov 2024

    Out-of-bounds Read in r_bin_ne_get_entrypoints function in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability may allow attackers to read sensitive information or cause a crash.

    Published: 11 Apr 2022
    9.1
    Critical

    CVE-2022-1296

    Last Modified: 21 Nov 2024

    Out-of-bounds read in `r_bin_ne_get_relocs` function in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability may allow attackers to read sensitive information or cause a crash.

    Published: 11 Apr 2022
    9.8
    Critical

    CVE-2022-1295

    Last Modified: 21 Nov 2024

    Prototype Pollution in GitHub repository alvarotrigo/fullpage.js prior to 4.0.2.

    Published: 11 Apr 2022
    8.2
    High

    CVE-2022-1252

    Last Modified: 24 Feb 2026

    Use of a Broken or Risky Cryptographic Algorithm in GitHub repository gnuboard/gnuboard5 prior to and including 5.5.5. A vulnerability in gnuboard v5.5.5 and below uses weak encryption algorithms leading to sensitive information exposure. This allows an attacker to derive the email address of any user, including when the 'Let others see my information.' box is ticked off. Or to send emails to any email address, with full control of its contents

    Published: 11 Apr 2022
    9.8
    Critical

    CVE-2022-28346

    Last Modified: 13 Feb 2025

    An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. QuerySet.annotate(), aggregate(), and extra() methods are subject to SQL injection in column aliases via a crafted dictionary (with dictionary expansion) as the passed **kwargs.

    Published: 11 Apr 2022
    9.8
    Critical

    CVE-2022-28347

    Last Modified: 13 Feb 2025

    A SQL injection issue was discovered in QuerySet.explain() in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. This occurs by passing a crafted dictionary (with dictionary expansion) as the **options argument, and placing the injection payload in an option name.

    Published: 11 Apr 2022
    5.4
    Medium

    CVE-2022-1045

    Last Modified: 21 Nov 2024

    Stored XSS viva .svg file upload in GitHub repository polonel/trudesk prior to v1.2.0.

    Published: 11 Apr 2022
    5.4
    Medium

    CVE-2022-0936

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - Stored in GitHub repository autolab/autolab prior to 2.8.0.

    Published: 11 Apr 2022
    8.8
    High

    CVE-2021-32162

    Last Modified: 21 Nov 2024

    A Cross-site request forgery (CSRF) vulnerability exists in Webmin 1.973 through the File Manager feature.

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2021-32161

    Last Modified: 21 Nov 2024

    A Cross-Site Scripting (XSS) vulnerability exists in Webmin 1.973 through the File Manager feature.

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2021-32160

    Last Modified: 21 Nov 2024

    A Cross-Site Scripting (XSS) vulnerability exists in Webmin 1.973 through the Add Users feature.

    Published: 11 Apr 2022
    8.8
    High

    CVE-2021-32159

    Last Modified: 21 Nov 2024

    A Cross-site request forgery (CSRF) vulnerability exists in Webmin 1.973 via the Upload and Download feature.

    Published: 11 Apr 2022
    6.1
    Medium

    CVE-2021-32158

    Last Modified: 21 Nov 2024

    A Cross-Site Scripting (XSS) vulnerability exists in Webmin 1.973 via the Upload and Download feature.

    Published: 11 Apr 2022
    9.6
    Critical

    CVE-2021-32157

    Last Modified: 21 Nov 2024

    A Cross-Site Scripting (XSS) vulnerability exists in Webmin 1.973 via the Scheduled Cron Jobs feature.

    Published: 11 Apr 2022
    8.8
    High

    CVE-2021-32156

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability exists in Webmin 1.973 via the Scheduled Cron Jobs feature.

    Published: 11 Apr 2022
    7.5
    High

    CVE-2022-24836

    Last Modified: 21 Nov 2024

    Nokogiri is an open source XML and HTML library for Ruby. Nokogiri `< v1.13.4` contains an inefficient regular expression that is susceptible to excessive backtracking when attempting to detect encoding in HTML documents. Users are advised to upgrade to Nokogiri `>= 1.13.4`. There are no known workarounds for this issue.

    Published: 11 Apr 2022
    5.5
    Medium

    CVE-2023-4385

    Last Modified: 20 Nov 2025

    A NULL pointer dereference flaw was found in dbFree in fs/jfs/jfs_dmap.c in the journaling file system (JFS) in the Linux Kernel. This issue may allow a local attacker to crash the system due to a missing sanity check.

    Published: 11 Apr 2022
    7.5
    High

    CVE-2022-24839

    Last Modified: 23 Apr 2025

    org.cyberneko.html is an html parser written in Java. The fork of `org.cyberneko.html` used by Nokogiri (Rubygem) raises a `java.lang.OutOfMemoryError` exception when parsing ill-formed HTML markup. Users are advised to upgrade to `>= 1.9.22.noko2`. Note: The upstream library `org.cyberneko.html` is no longer maintained. Nokogiri uses its own fork of this library located at https://github.com/sparklemotion/nekohtml and this CVE applies only to that fork. Other forks of nekohtml may have a similar vulnerability.

    Published: 11 Apr 2022
    7.8
    High

    CVE-2022-25794

    Last Modified: 21 Nov 2024

    An Out-Of-Bounds Read Vulnerability in Autodesk FBX Review version 1.5.2 and prior may lead to code execution through maliciously crafted ActionScript Byte Code 'ABC' files or information disclosure. ABC files are created by the Flash compiler and contain executable code. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.

    Published: 11 Apr 2022
    —
    Unknown

    CVE-2022-28958

    Last Modified: 29 Nov 2023

    DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 11 Apr 2022
    7.5
    High

    CVE-2022-1319

    Last Modified: 21 Nov 2024

    A flaw was found in Undertow. For an AJP 400 response, EAP 7 is improperly sending two response packets, and those packets have the reuse flag set even though JBoss EAP closes the connection. A failure occurs when the connection is reused after a 400 by CPING since it reads in the second SEND_HEADERS response packet instead of a CPONG.

    Published: 11 Apr 2022
    7.8
    High

    CVE-2022-28893

    Last Modified: 21 Nov 2024

    The SUNRPC subsystem in the Linux kernel through 5.17.2 can call xs_xprt_free before ensuring that sockets are in the intended state.

    Published: 11 Apr 2022
    5.4
    Medium

    CVE-2022-27961

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability at /ofcms/company-c-47 in OFCMS v1.1.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Comment text box.

    Published: 10 Apr 2022
    9.8
    Critical

    CVE-2022-27477

    Last Modified: 21 Nov 2024

    Newbee-Mall v1.0.0 was discovered to contain an arbitrary file upload via the Upload function at /admin/goods/edit.

    Published: 10 Apr 2022
    5.4
    Medium

    CVE-2022-27960

    Last Modified: 21 Nov 2024

    Insecure permissions configured in the user_id parameter at SysUserController.java of OFCMS v1.1.4 allows attackers to access and arbitrarily modify users' personal information.

    Published: 10 Apr 2022
    5.4
    Medium

    CVE-2022-27958

    Last Modified: 21 Nov 2024

    Insecure permissions configured in the userid parameter at /user/getuserprofile of FEBS-Security v1.0 allows attackers to access and arbitrarily modify users' personal information.

    Published: 10 Apr 2022
    6.1
    Medium

    CVE-2022-27476

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability at /admin/goods/update in Newbee-Mall v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the goodsName parameter.

    Published: 10 Apr 2022
    6.1
    Medium

    CVE-2022-27125

    Last Modified: 21 Nov 2024

    zbzcms v1.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the neirong parameter at /php/ajax.php.

    Published: 10 Apr 2022
    9.8
    Critical

    CVE-2022-27126

    Last Modified: 21 Nov 2024

    zbzcms v1.0 was discovered to contain a SQL injection vulnerability via the art parameter at /include/make.php.

    Published: 10 Apr 2022
    6.5
    Medium

    CVE-2022-27127

    Last Modified: 21 Nov 2024

    zbzcms v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php/ajax.php.

    Published: 10 Apr 2022
    9.8
    Critical

    CVE-2022-27128

    Last Modified: 21 Nov 2024

    An incorrect access control issue at /admin/run_ajax.php in zbzcms v1.0 allows attackers to arbitrarily add administrator accounts.

    Published: 10 Apr 2022
    9.8
    Critical

    CVE-2022-27129

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability at /admin/ajax.php in zbzcms v1.0 allows attackers to execute arbitrary code via a crafted PHP file.

    Published: 10 Apr 2022
    9.8
    Critical

    CVE-2022-27131

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability at /zbzedit/php/zbz.php in zbzcms v1.0 allows attackers to execute arbitrary code via a crafted PHP file.

    Published: 10 Apr 2022
    9.1
    Critical

    CVE-2022-27133

    Last Modified: 21 Nov 2024

    zbzcms v1.0 was discovered to contain an arbitrary file deletion vulnerability via /include/up.php.

    Published: 10 Apr 2022
    9.8
    Critical

    CVE-2022-27268

    Last Modified: 21 Nov 2024

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component get_cgi_from_memory. This vulnerability is triggered via a crafted packet.

    Published: 10 Apr 2022
    9.8
    Critical

    CVE-2022-27269

    Last Modified: 21 Nov 2024

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component config_ovpn. This vulnerability is triggered via a crafted packet.

    Published: 10 Apr 2022
    9.8
    Critical

    CVE-2022-27271

    Last Modified: 21 Nov 2024

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component python-lib. This vulnerability is triggered via a crafted packet.

    Published: 10 Apr 2022
    9.8
    Critical

    CVE-2022-27270

    Last Modified: 21 Nov 2024

    InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component ipsec_secrets. This vulnerability is triggered via a crafted packet.

    Published: 10 Apr 2022