CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2021-42390

    Last Modified: 25 Jun 2025

    Divide-by-zero in Clickhouse's DeltaDouble compression codec when parsing a malicious query. The first byte of the compressed buffer is used in a modulo operation without being checked for 0.

    Published: 14 Mar 2022
    6.5
    Medium

    CVE-2021-42389

    Last Modified: 25 Jun 2025

    Divide-by-zero in Clickhouse's Delta compression codec when parsing a malicious query. The first byte of the compressed buffer is used in a modulo operation without being checked for 0.

    Published: 14 Mar 2022
    5
    Medium

    CVE-2022-24740

    Last Modified: 23 Apr 2025

    Volto is a ReactJS-based frontend for the Plone Content Management System. Between versions 14.0.0-alpha.5 and 15.0.0-alpha.0, a user could have their authentication cookie replaced with an authentication cookie from another user, effectively giving them control of the other user's account and privileges. This occurs when using an outdated version of the `react-cookie` library and a server is under high load. A proof of concept does not currently exist, but it is possible for this issue to occur in the wild. The patch and fix is present in Volto 15.0.0-alpha.0. As a workaround, one may manually upgrade the `react-cookie` package to 4.1.1 and then override all Volto components that use this library.

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-24749

    Last Modified: 22 Apr 2025

    Sylius is an open source eCommerce platform. In versions prior to 1.9.10, 1.10.11, and 1.11.2, it is possible to upload an SVG file containing cross-site scripting (XSS) code in the admin panel. In order to perform a XSS attack, the file itself has to be open in a new card or loaded outside of the IMG tag. The problem applies both to the files opened on the admin panel and shop pages. The issue is fixed in versions 1.9.10, 1.10.11, and 1.11.2. As a workaround, require a library that adds on-upload file sanitization and overwrite the service before writing the file to the filesystem. The GitHub Security Advisory contains more specific information about the workaround.

    Published: 14 Mar 2022
    7.1
    High

    CVE-2022-24743

    Last Modified: 22 Apr 2025

    Sylius is an open source eCommerce platform. Prior to versions 1.10.11 and 1.11.2, the reset password token was not set to null after the password was changed. The same token could be used several times, which could result in leak of the existing token and unauthorized password change. The issue is fixed in versions 1.10.11 and 1.11.2. As a workaround, overwrite the `Sylius\Bundle\ApiBundle\CommandHandler\ResetPasswordHandler` class with code provided by the maintainers and register it in a container. More information about this workaround is available in the GitHub Security Advisory.

    Published: 14 Mar 2022
    5
    Medium

    CVE-2022-24742

    Last Modified: 23 Apr 2025

    Sylius is an open source eCommerce platform. Prior to versions 1.9.10, 1.10.11, and 1.11.2, any other user can view the data if browser tab remains unclosed after log out. The issue is fixed in versions 1.9.10, 1.10.11, and 1.11.2. A workaround is available. The application must strictly redirect to login page even browser back button is pressed. Another possibility is to set more strict cache policies for restricted content.

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-24733

    Last Modified: 23 Apr 2025

    Sylius is an open source eCommerce platform. Prior to versions 1.9.10, 1.10.11, and 1.11.2, it is possible for a page controlled by an attacker to load the website within an iframe. This will enable a clickjacking attack, in which the attacker's page overlays the target application's interface with a different interface provided by the attacker. The issue is fixed in versions 1.9.10, 1.10.11, and 1.11.2. A workaround is available. Every response from app should have an X-Frame-Options header set to: ``sameorigin``. To achieve that, add a new `subscriber` in the app.

    Published: 14 Mar 2022
    9.1
    Critical

    CVE-2022-26320

    Last Modified: 21 Nov 2024

    The Rambus SafeZone Basic Crypto Module before 10.4.0, as used in certain Fujifilm (formerly Fuji Xerox) devices before 2022-03-01, Canon imagePROGRAF and imageRUNNER devices through 2022-03-14, and potentially many other devices, generates RSA keys that can be broken with Fermat's factorization method. This allows efficient calculation of private RSA keys from the public key of a TLS certificate.

    Published: 14 Mar 2022
    —
    Unknown

    CVE-2022-26351

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-26320. Reason: This candidate is a reservation duplicate of CVE-2022-26320. Notes: All CVE users should reference CVE-2022-26320 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 14 Mar 2022
    8.1
    High

    CVE-2022-21187

    Last Modified: 21 Nov 2024

    The package libvcs before 0.11.1 are vulnerable to Command Injection via argument injection. When calling the update_repo function (when using hg), the url parameter is passed to the hg clone command. By injecting some hg options it was possible to get arbitrary command execution.

    Published: 14 Mar 2022
    6.5
    Medium

    CVE-2022-22353

    Last Modified: 21 Nov 2024

    IBM Big SQL on IBM Cloud Pak for Data 7.1.0, 7.1.1, 7.2.0, and 7.2.3 could allow an authenticated user with appropriate permissions to obtain sensitive information by bypassing data masking rules using a CREATE TABLE SELECT statement. IBM X-Force ID: 220480.

    Published: 14 Mar 2022
    2.4
    Low

    CVE-2022-22348

    Last Modified: 21 Nov 2024

    IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.13.xxx is vulnerable to reverse tabnabbing where it could allow a page linked to from within Operations Center to rewrite it. An administrator could enter a link to a malicious URL that another administrator could then click. Once clicked, that malicious URL could then rewrite the original page with a phishing page. IBM X-Force ID: 220139.

    Published: 14 Mar 2022
    8.8
    High

    CVE-2022-22346

    Last Modified: 21 Nov 2024

    IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.13.xxx is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 220048.

    Published: 14 Mar 2022
    4.9
    Medium

    CVE-2021-38971

    Last Modified: 21 Nov 2024

    IBM Data Virtualization on Cloud Pak for Data 1.3.0, 1.4.1, 1.5.0, 1.7.1 and 1.7.3 could allow an authorized user to bypass data masking rules and obtain sensitve information. IBM X-Force ID: 212620.

    Published: 14 Mar 2022
    7.5
    High

    CVE-2022-22354

    Last Modified: 21 Nov 2024

    IBM Spectrum Protect Plus 10.1.0.0 through 10.1.9.2 and IBM Spectrum Copy Data Management 2.2.0.0 through 2.2.14.3 do not limit the length of a connection which could allow for a Slowloris HTTP denial of service attack to take place. This can cause the Admin Console to become unresponsive. IBM X-Force ID: 220485.

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-22344

    Last Modified: 21 Nov 2024

    IBM Spectrum Copy Data Management 2.2.0.0 through 2.2.14.3 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking. IBM X-Force ID: 220038

    Published: 14 Mar 2022
    5.4
    Medium

    CVE-2021-39055

    Last Modified: 21 Nov 2024

    IBM Spectrum Copy Data Management 2.2.0.0 through 2.2.14.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 214534.

    Published: 14 Mar 2022
    6.5
    Medium

    CVE-2021-39051

    Last Modified: 21 Nov 2024

    IBM Spectrum Copy Data Management 2.2.0.0 through 2.2.14.3 is vulnerable to server-side request forgery, caused by improper input of application server registration function. A remote attacker could exploit this vulnerability using the host address and port fields of the application server registration form in the portal UI to enumerate and attack services that are running on those hosts. IBM X-Force ID: 214441.

    Published: 14 Mar 2022
    5.4
    Medium

    CVE-2022-0962

    Last Modified: 21 Nov 2024

    Stored XSS viva .webma file upload in GitHub repository star7th/showdoc prior to 2.10.4.

    Published: 14 Mar 2022
    4.8
    Medium

    CVE-2021-41952

    Last Modified: 21 Nov 2024

    Zenario CMS 9.0.54156 is vulnerable to Cross Site Scripting (XSS) via upload file to *.SVG. An attacker can send malicious files to victims and steals victim's cookie leads to account takeover. The person viewing the image of a contact can be victim of XSS.

    Published: 14 Mar 2022
    7.2
    High

    CVE-2021-42171

    Last Modified: 21 Nov 2024

    Zenario CMS 9.0.54156 is vulnerable to File Upload. The web server can be compromised by uploading and executing a web-shell which can run commands, browse system files, browse local resources, attack other servers, and exploit the local vulnerabilities, and so forth.

    Published: 14 Mar 2022
    5.4
    Medium

    CVE-2022-0960

    Last Modified: 21 Nov 2024

    Stored XSS viva .properties file upload in GitHub repository star7th/showdoc prior to 2.10.4.

    Published: 14 Mar 2022
    8.8
    High

    CVE-2022-22735

    Last Modified: 21 Nov 2024

    The Simple Quotation WordPress plugin through 1.3.2 does not have authorisation (and CSRF) checks in various of its AJAX actions and is lacking escaping of user data when using it in SQL statements, allowing any authenticated users, such as subscriber to perform SQL injection attacks

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-22734

    Last Modified: 21 Nov 2024

    The Simple Quotation WordPress plugin through 1.3.2 does not have CSRF check when creating or editing a quote and does not sanitise and escape Quotes. As a result, attacker could make a logged in admin create or edit arbitrary quote, and put Cross-Site Scripting payloads in them

    Published: 14 Mar 2022
    4.8
    Medium

    CVE-2022-0703

    Last Modified: 21 Nov 2024

    The GD Mylist WordPress plugin through 1.1.1 does not sanitise and escape some of its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 14 Mar 2022
    4.8
    Medium

    CVE-2022-0702

    Last Modified: 21 Nov 2024

    The Petfinder Listings WordPress plugin through 1.0.18 does not escape its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 14 Mar 2022
    4.8
    Medium

    CVE-2022-0701

    Last Modified: 21 Nov 2024

    The SEO 301 Meta WordPress plugin through 1.9.1 does not escape its Request and Destination settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 14 Mar 2022
    4.8
    Medium

    CVE-2022-0700

    Last Modified: 21 Nov 2024

    The Simple Tracking WordPress plugin before 1.7 does not sanitise and escape its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 14 Mar 2022
    4.8
    Medium

    CVE-2022-0684

    Last Modified: 21 Nov 2024

    The WP Home Page Menu WordPress plugin before 3.1 does not sanitise and escape its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 14 Mar 2022
    4.8
    Medium

    CVE-2022-0674

    Last Modified: 21 Nov 2024

    The Kunze Law WordPress plugin before 2.1 does not escape its 'E-Mail Error "From" Address' settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 14 Mar 2022
    4.8
    Medium

    CVE-2022-0659

    Last Modified: 21 Nov 2024

    The Sync QCloud COS WordPress plugin before 2.0.1 does not escape some of its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 14 Mar 2022
    9.8
    Critical

    CVE-2022-0658

    Last Modified: 21 Nov 2024

    The CommonsBooking WordPress plugin before 2.6.8 does not sanitise and escape the location parameter of the calendar_data AJAX action (available to unauthenticated users) before it is used in dynamically constructed SQL queries, leading to an unauthenticated SQL injection

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0648

    Last Modified: 21 Nov 2024

    The Team Circle Image Slider With Lightbox WordPress plugin before 1.0.16 does not sanitize and escape the order_pos parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting.

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0601

    Last Modified: 21 Nov 2024

    The Countdown, Coming Soon, Maintenance WordPress plugin before 2.2.9 does not sanitize and escape the post parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting.

    Published: 14 Mar 2022
    6.5
    Medium

    CVE-2022-0593

    Last Modified: 21 Nov 2024

    The Login with phone number WordPress plugin before 1.3.7 includes a file delete.php with no form of authentication or authorization checks placed in the plugin directory, allowing unauthenticated user to remotely delete the plugin files leading to a potential Denial of Service situation.

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0503

    Last Modified: 21 Nov 2024

    The WordPress Multisite Content Copier/Updater WordPress plugin before 2.1.2 does not sanitise and escape the s parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting issue in the network dashboard

    Published: 14 Mar 2022
    8.8
    High

    CVE-2022-0478

    Last Modified: 21 Nov 2024

    The Event Manager and Tickets Selling for WooCommerce WordPress plugin before 3.5.8 does not validate and escape the post_author_gutenberg parameter before using it in a SQL statement when creating/editing events, which could allow users with a role as low as contributor to perform SQL Injection attacks

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0449

    Last Modified: 21 Nov 2024

    The Flexi WordPress plugin before 4.20 does not sanitise and escape various parameters before outputting them back in some pages such as the user dashboard, leading to a Reflected Cross-Site Scripting

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0399

    Last Modified: 21 Nov 2024

    The Advanced Product Labels for WooCommerce WordPress plugin before 1.2.3.7 does not sanitise and escape the tax_color_set_type parameter before outputting it back in the berocket_apl_color_listener AJAX action's response, leading to a Reflected Cross-Site Scripting

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0327

    Last Modified: 21 Nov 2024

    The Master Addons for Elementor WordPress plugin before 1.8.5 does not sanitise and escape the error_message parameter before outputting it back in the response of the jltma_restrict_content AJAX action, available to unauthenticated and authenticated users, leading to a Reflected Cross-Site Scripting

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0321

    Last Modified: 21 Nov 2024

    The WP Voting Contest WordPress plugin before 3.0 does not sanitise and escape the post_id parameter before outputting it back in the response via the wpvc_social_share_icons AJAX action (available to both unauthenticated and authenticated users), leading to a Reflected Cross-Site Scripting issue

    Published: 14 Mar 2022
    9.8
    Critical

    CVE-2022-0254

    Last Modified: 21 Nov 2024

    The WordPress Zero Spam WordPress plugin before 5.2.11 does not properly sanitise and escape the order and orderby parameters before using them in a SQL statement in the admin dashboard, leading to a SQL injection

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0248

    Last Modified: 21 Nov 2024

    The Contact Form Submissions WordPress plugin before 1.7.3 does not sanitise and escape additional fields in contact form requests before outputting them in the related submission. As a result, unauthenticated attacker could perform Cross-Site Scripting attacks against admins viewing the malicious submission

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0230

    Last Modified: 21 Nov 2024

    The Better WordPress Google XML Sitemaps WordPress plugin through 1.4.1 does not sanitise and escape its logs when outputting them in the admin dashboard, which could allow unauthenticated users to perform Stored Cross-Site Scripting attacks against admins

    Published: 14 Mar 2022
    9.8
    Critical

    CVE-2022-0169

    Last Modified: 21 Nov 2024

    The Photo Gallery by 10Web WordPress plugin before 1.6.0 does not validate and escape the bwg_tag_id_bwg_thumbnails_0 parameter before using it in a SQL statement via the bwg_frontend_data AJAX action (available to unauthenticated and authenticated users), leading to an unauthenticated SQL injection

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0165

    Last Modified: 21 Nov 2024

    The Page Builder KingComposer WordPress plugin through 2.9.6 does not validate the id parameter before redirecting the user to it via the kc_get_thumbn AJAX action available to both unauthenticated and authenticated users

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0161

    Last Modified: 21 Nov 2024

    The ARI Fancy Lightbox WordPress plugin before 1.3.9 does not sanitise and escape the msg parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting

    Published: 14 Mar 2022
    6.1
    Medium

    CVE-2022-0147

    Last Modified: 21 Nov 2024

    The Cookie Information | Free GDPR Consent Solution WordPress plugin before 2.0.8 does not escape user data before outputting it back in attributes in the admin dashboard, leading to a Reflected Cross-Site Scripting issue

    Published: 14 Mar 2022
    5.5
    Medium

    CVE-2021-25026

    Last Modified: 21 Nov 2024

    The Patreon WordPress plugin before 1.8.2 does not sanitise and escape the field "Custom Patreon Page name", which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 14 Mar 2022
    9.8
    Critical

    CVE-2021-25007

    Last Modified: 21 Nov 2024

    The MOLIE WordPress plugin through 0.5 does not validate and escape a post parameter before using in a SQL statement, leading to an SQL Injection

    Published: 14 Mar 2022