CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2021-46390

    Last Modified: 21 Nov 2024

    An access control issue in the authentication module of Lexar_F35 v1.0.34 allows attackers to access sensitive data and cause a Denial of Service (DoS). An attacker without access to securely protected data on a secure USB flash drive can bypass user authentication without having any information related to the password of the registered user. The secure USB flash drive transmits the password entered by the user to the authentication module in the drive after the user registers a password, and then the input password is compared with the registered password stored in the authentication module. Subsequently, the module returns the comparison result for the authentication decision. Therefore, an attacker can bypass password authentication by analyzing the functions that return the password verification or comparison results and manipulate the authentication result values. Accordingly, even if attackers enter an incorrect password, they can be authenticated as a legitimate user and can therefore exploit functions of the secure USB flash drive by manipulating the authentication result values.

    Published: 21 Mar 2022
    7.5
    High

    CVE-2022-23345

    Last Modified: 21 Nov 2024

    BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control.

    Published: 21 Mar 2022
    8.8
    High

    CVE-2022-23346

    Last Modified: 21 Nov 2024

    BigAnt Software BigAnt Server v5.6.06 was discovered to contain incorrect access control issues.

    Published: 21 Mar 2022
    7.5
    High

    CVE-2022-23352

    Last Modified: 21 Nov 2024

    An issue in BigAnt Software BigAnt Server v5.6.06 can lead to a Denial of Service (DoS).

    Published: 21 Mar 2022
    5.3
    Medium

    CVE-2022-23348

    Last Modified: 21 Nov 2024

    BigAnt Software BigAnt Server v5.6.06 was discovered to utilize weak password hashes.

    Published: 21 Mar 2022
    5.4
    Medium

    CVE-2022-23350

    Last Modified: 21 Nov 2024

    BigAnt Software BigAnt Server v5.6.06 was discovered to contain a cross-site scripting (XSS) vulnerability.

    Published: 21 Mar 2022
    8.8
    High

    CVE-2022-23349

    Last Modified: 21 Nov 2024

    BigAnt Software BigAnt Server v5.6.06 was discovered to contain a Cross-Site Request Forgery (CSRF).

    Published: 21 Mar 2022
    7.5
    High

    CVE-2022-23347

    Last Modified: 21 Nov 2024

    BigAnt Software BigAnt Server v5.6.06 was discovered to be vulnerable to directory traversal attacks.

    Published: 21 Mar 2022
    7.5
    High

    CVE-2022-24775

    Last Modified: 23 Apr 2025

    guzzlehttp/psr7 is a PSR-7 HTTP message library. Versions prior to 1.8.4 and 2.1.1 are vulnerable to improper header parsing. An attacker could sneak in a new line character and pass untrusted values. The issue is patched in 1.8.4 and 2.1.1. There are currently no known workarounds.

    Published: 21 Mar 2022
    9.8
    Critical

    CVE-2022-0760

    Last Modified: 21 Nov 2024

    The Simple Link Directory WordPress plugin before 7.7.2 does not validate and escape the post_id parameter before using it in a SQL statement via the qcopd_upvote_action AJAX action (available to unauthenticated and authenticated users), leading to an unauthenticated SQL Injection

    Published: 21 Mar 2022
    9.8
    Critical

    CVE-2022-0747

    Last Modified: 21 Nov 2024

    The Infographic Maker WordPress plugin before 4.3.8 does not validate and escape the post_id parameter before using it in a SQL statement via the qcld_upvote_action AJAX action (available to unauthenticated and authenticated users), leading to an unauthenticated SQL Injection

    Published: 21 Mar 2022
    9.8
    Critical

    CVE-2022-0739

    Last Modified: 21 Nov 2024

    The BookingPress WordPress plugin before 1.0.11 fails to properly sanitize user supplied POST data before it is used in a dynamically constructed SQL query via the bookingpress_front_get_category_services AJAX action (available to unauthenticated users), leading to an unauthenticated SQL Injection

    Published: 21 Mar 2022
    9.8
    Critical

    CVE-2022-0694

    Last Modified: 21 Nov 2024

    The Advanced Booking Calendar WordPress plugin before 1.7.0 does not validate and escape the calendar parameter before using it in a SQL statement via the abc_booking_getSingleCalendar AJAX action (available to both unauthenticated and authenticated users), leading to an unauthenticated SQL injection

    Published: 21 Mar 2022
    8.8
    High

    CVE-2022-0687

    Last Modified: 21 Nov 2024

    The Amelia WordPress plugin before 1.0.47 stores image blobs into actual files whose extension is controlled by the user, which may lead to PHP backdoors being uploaded onto the site. This vulnerability can be exploited by logged-in users with the custom "Amelia Manager" role.

    Published: 21 Mar 2022
    6.5
    Medium

    CVE-2022-0681

    Last Modified: 21 Nov 2024

    The Simple Membership WordPress plugin before 4.1.0 does not have CSRF check in place when deleting Transactions, which could allow attackers to make a logged in admin delete arbitrary transactions via a CSRF attack

    Published: 21 Mar 2022
    6.1
    Medium

    CVE-2022-0640

    Last Modified: 21 Nov 2024

    The Pricing Table Builder WordPress plugin before 1.1.5 does not sanitize and escape the postid parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting.

    Published: 21 Mar 2022
    6.1
    Medium

    CVE-2022-0628

    Last Modified: 21 Nov 2024

    The Mega Menu WordPress plugin before 3.0.8 does not sanitize and escape the _wpnonce parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting.

    Published: 21 Mar 2022
    6.1
    Medium

    CVE-2022-0627

    Last Modified: 21 Nov 2024

    The Amelia WordPress plugin before 1.0.47 does not sanitize and escape the code parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting.

    Published: 21 Mar 2022
    4.3
    Medium

    CVE-2022-0616

    Last Modified: 21 Nov 2024

    The Amelia WordPress plugin before 1.0.47 does not have CSRF check in place when deleting customers, which could allow attackers to make a logged in admin delete arbitrary customers via a CSRF attack

    Published: 21 Mar 2022
    9.1
    Critical

    CVE-2022-0591

    Last Modified: 21 Nov 2024

    The FormCraft WordPress plugin before 3.8.28 does not validate the URL parameter in the formcraft3_get AJAX action, leading to SSRF issues exploitable by unauthenticated users

    Published: 21 Mar 2022
    4.8
    Medium

    CVE-2022-0590

    Last Modified: 21 Nov 2024

    The BulletProof Security WordPress plugin before 5.8 does not sanitise and escape some of its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 21 Mar 2022
    5.4
    Medium

    CVE-2022-0423

    Last Modified: 21 Nov 2024

    The 3D FlipBook WordPress plugin before 1.12.1 does not have authorisation and CSRF checks when updating its settings, and does not have any sanitisation/escaping, allowing any authenticated users, such as subscriber to put Cross-Site Scripting payloads in all pages with a 3d flipbook.

    Published: 21 Mar 2022
    5.4
    Medium

    CVE-2022-0364

    Last Modified: 21 Nov 2024

    The Modern Events Calendar Lite WordPress plugin before 6.4.0 does not sanitize and escape some of the Hourly Schedule parameters which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks

    Published: 21 Mar 2022
    8.1
    High

    CVE-2022-0229

    Last Modified: 21 Nov 2024

    The miniOrange's Google Authenticator WordPress plugin before 5.5 does not have proper authorisation and CSRF checks when handling the reconfigureMethod, and does not validate the parameters passed to it properly. As a result, unauthenticated users could delete arbitrary options from the blog, making it unusable.

    Published: 21 Mar 2022
    6.1
    Medium

    CVE-2021-25019

    Last Modified: 21 Nov 2024

    The SEO Plugin by Squirrly SEO WordPress plugin before 11.1.12 does not escape the type parameter before outputting it back in an attribute in an admin page, leading to a Reflected Cross-Site Scripting

    Published: 21 Mar 2022
    8
    High

    CVE-2021-24905

    Last Modified: 21 Nov 2024

    The Advanced Contact form 7 DB WordPress plugin before 1.8.7 does not have authorisation nor CSRF checks in the acf7_db_edit_scr_file_delete AJAX action, and does not validate the file to be deleted, allowing any authenticated user to delete arbitrary files on the web server. For example, removing the wp-config.php allows attackers to trigger WordPress setup again, gain administrator privileges and execute arbitrary code or display arbitrary content to the users.

    Published: 21 Mar 2022
    4.3
    Medium

    CVE-2022-0515

    Last Modified: 21 Nov 2024

    Cross-Site Request Forgery (CSRF) in GitHub repository crater-invoice/crater prior to 6.0.4.

    Published: 21 Mar 2022
    6.5
    Medium

    CVE-2022-0514

    Last Modified: 21 Nov 2024

    Business Logic Errors in GitHub repository crater-invoice/crater prior to 6.0.5.

    Published: 21 Mar 2022
    9.8
    Critical

    CVE-2022-24766

    Last Modified: 23 Apr 2025

    mitmproxy is an interactive, SSL/TLS-capable intercepting proxy. In mitmproxy 7.0.4 and below, a malicious client or server is able to perform HTTP request smuggling attacks through mitmproxy. This means that a malicious client/server could smuggle a request/response through mitmproxy as part of another request/response's HTTP message body. While mitmproxy would only see one request, the target server would see multiple requests. A smuggled request is still captured as part of another request's body, but it does not appear in the request list and does not go through the usual mitmproxy event hooks, where users may have implemented custom access control checks or input sanitization. Unless mitmproxy is used to protect an HTTP/1 service, no action is required. The vulnerability has been fixed in mitmproxy 8.0.0 and above. There are currently no known workarounds.

    Published: 21 Mar 2022
    8.8
    High

    CVE-2022-24235

    Last Modified: 21 Nov 2024

    A Cross-Site Request Forgery (CSRF) in the management portal of Snapt Aria v12.8 allows attackers to escalate privileges and execute arbitrary code via unspecified vectors.

    Published: 21 Mar 2022
    3.5
    Low

    CVE-2022-24236

    Last Modified: 21 Nov 2024

    An insecure permissions vulnerability in Snapt Aria v12.8 allows unauthenticated attackers to send e-mails from spoofed users' accounts.

    Published: 21 Mar 2022
    8.8
    High

    CVE-2022-24237

    Last Modified: 21 Nov 2024

    The snaptPowered2 component of Snapt Aria v12.8 was discovered to contain a command injection vulnerability. This vulnerability allows authenticated attackers to execute arbitrary commands.

    Published: 21 Mar 2022
    8.8
    High

    CVE-2022-25766

    Last Modified: 21 Nov 2024

    The package ungit before 1.5.20 are vulnerable to Remote Code Execution (RCE) via argument injection. The issue occurs when calling the /api/fetch endpoint. User controlled values (remote and ref) are passed to the git fetch command. By injecting some git options it was possible to get arbitrary command execution.

    Published: 21 Mar 2022
    9.1
    Critical

    CVE-2022-26960

    Last Modified: 21 Nov 2024

    connector.minimal.php in std42 elFinder through 2.1.60 is affected by path traversal. This allows unauthenticated remote attackers to read, write, and browse files outside the configured document root. This is due to improper handling of absolute file paths.

    Published: 21 Mar 2022
    8.8
    High

    CVE-2022-22394

    Last Modified: 21 Nov 2024

    The IBM Spectrum Protect 8.1.14.000 server could allow a remote attacker to bypass security restrictions, caused by improper enforcement of access controls. By signing in, an attacker could exploit this vulnerability to bypass security and gain unauthorized administrator or node access to the vulnerable server.

    Published: 21 Mar 2022
    8.8
    High

    CVE-2020-24772

    Last Modified: 21 Nov 2024

    In Dreamacro Clash for Windows v0.11.4, an attacker could embed a malicious iframe in a website with a crafted URL that would launch the Clash Windows client and force it to open a remote SMB share. Windows will perform NTLM authentication when opening the SMB share and that request can be relayed (using a tool like responder) for code execution (or captured for hash cracking).

    Published: 21 Mar 2022
    4.8
    Medium

    CVE-2022-26494

    Last Modified: 21 Nov 2024

    An XSS was identified in the Admin Web interface of PrimeKey SignServer before 5.8.1. JavaScript code must be used in a worker name before a Generate CSR request. Only an administrator can update a worker name.

    Published: 21 Mar 2022
    6.5
    Medium

    CVE-2021-45117

    Last Modified: 21 Nov 2024

    The OPC autogenerated ANSI C stack stubs (in the NodeSets) do not handle all error cases. This can lead to a NULL pointer dereference.

    Published: 21 Mar 2022
    6.5
    Medium

    CVE-2022-25570

    Last Modified: 21 Nov 2024

    In Click Studios (SA) Pty Ltd Passwordstate 9435, users with access to a passwordlist can gain access to additional password lists without permissions. Specifically, an authenticated user who has write permissions to a password list in one folder (with the default permission model) can extend his permissions to all other password lists in the same folder.

    Published: 21 Mar 2022
    6.1
    Medium

    CVE-2022-24656

    Last Modified: 21 Nov 2024

    HexoEditor 1.1.8 is affected by Cross Site Scripting (XSS). By putting a common XSS payload in a markdown file, if opened with the app, will execute several times.

    Published: 21 Mar 2022
    9.1
    Critical

    CVE-2021-45878

    Last Modified: 21 Nov 2024

    Multiple versions of GARO Wallbox GLB/GTB/GTC are affected by incorrect access control. Lack of access control on the web manger pages allows any user to view and modify information.

    Published: 21 Mar 2022
    8.8
    High

    CVE-2022-0415

    Last Modified: 21 Nov 2024

    Remote Command Execution in uploading repository file in GitHub repository gogs/gogs prior to 0.12.6.

    Published: 21 Mar 2022
    9.8
    Critical

    CVE-2021-45877

    Last Modified: 21 Nov 2024

    Multiple versions of GARO Wallbox GLB/GTB/GTC are affected by hard coded credentials. A hardcoded credential exist in /etc/tomcat8/tomcat-user.xml, which allows attackers to gain authorized access and control the tomcat completely on port 8000 in the tomcat manger page.

    Published: 21 Mar 2022
    9.8
    Critical

    CVE-2021-45876

    Last Modified: 21 Nov 2024

    Multiple versions of GARO Wallbox GLB/GTB/GTC are affected by unauthenticated command injection. The url parameter of the function module downloadAndUpdate is vulnerable to an command Injection. Unfiltered user input is used to generate code which then gets executed when downloading new firmware.

    Published: 21 Mar 2022
    4.3
    Medium

    CVE-2022-1004

    Last Modified: 21 Nov 2024

    Accounted time is shown in the Ticket Detail View (External Interface), even if ExternalFrontend::TicketDetailView###AccountedTimeDisplay is disabled.

    Published: 21 Mar 2022
    3.5
    Low

    CVE-2022-0475

    Last Modified: 21 Nov 2024

    Malicious translator is able to inject JavaScript code in few translatable strings (where HTML is allowed). The code could be executed in the Package manager. This issue affects: OTRS AG OTRS 7.0.x version: 7.0.32 and prior versions, 8.0.x version: 8.0.19 and prior versions.

    Published: 21 Mar 2022
    6.4
    Medium

    CVE-2021-36100

    Last Modified: 21 Nov 2024

    Specially crafted string in OTRS system configuration can allow the execution of any system command.

    Published: 21 Mar 2022
    9.8
    Critical

    CVE-2022-25505

    Last Modified: 21 Nov 2024

    Taocms v3.0.2 was discovered to contain a SQL injection vulnerability via the id parameter in \include\Model\Category.php.

    Published: 21 Mar 2022
    6.5
    Medium

    CVE-2022-0996

    Last Modified: 3 Nov 2025

    A vulnerability was found in the 389 Directory Server that allows expired passwords to access the database to cause improper authentication.

    Published: 21 Mar 2022
    5.5
    Medium

    CVE-2022-1035

    Last Modified: 21 Nov 2024

    Segmentation Fault caused by MP4Box -lsr in GitHub repository gpac/gpac prior to 2.1.0-DEV.

    Published: 21 Mar 2022