CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2022-25176

    Last Modified: 21 Nov 2024

    Jenkins Pipeline: Groovy Plugin 2648.va9433432b33c and earlier follows symbolic links to locations outside of the checkout directory for the configured SCM when reading the script file (typically Jenkinsfile) for Pipelines, allowing attackers able to configure Pipelines to read arbitrary files on the Jenkins controller file system.

    Published: 15 Feb 2022
    4.3
    Medium

    CVE-2022-25180

    Last Modified: 21 Nov 2024

    Jenkins Pipeline: Groovy Plugin 2648.va9433432b33c and earlier includes password parameters from the original build in replayed builds, allowing attackers with Run/Replay permission to obtain the values of password parameters passed to previous builds of a Pipeline.

    Published: 15 Feb 2022
    8.8
    High

    CVE-2022-25181

    Last Modified: 21 Nov 2024

    A sandbox bypass vulnerability in Jenkins Pipeline: Shared Groovy Libraries Plugin 552.vd9cc05b8a2e1 and earlier allows attackers with Item/Configure permission to execute arbitrary code in the context of the Jenkins controller JVM through crafted SCM contents, if a global Pipeline library already exists.

    Published: 15 Feb 2022
    6.5
    Medium

    CVE-2022-25184

    Last Modified: 21 Nov 2024

    Jenkins Pipeline: Build Step Plugin 2.15 and earlier reveals password parameter default values when generating a pipeline script using the Pipeline Snippet Generator, allowing attackers with Item/Read permission to retrieve the default password parameter value from jobs.

    Published: 15 Feb 2022
    7.5
    High

    CVE-2022-21698

    Last Modified: 23 Apr 2025

    client_golang is the instrumentation library for Go applications in Prometheus, and the promhttp package in client_golang provides tooling around HTTP servers and clients. In client_golang prior to version 1.11.1, HTTP server is susceptible to a Denial of Service through unbounded cardinality, and potential memory exhaustion, when handling requests with non-standard HTTP methods. In order to be affected, an instrumented software must use any of `promhttp.InstrumentHandler*` middleware except `RequestsInFlight`; not filter any specific methods (e.g GET) before middleware; pass metric with `method` label name to our middleware; and not have any firewall/LB/proxy that filters away requests with unknown `method`. client_golang version 1.11.1 contains a patch for this issue. Several workarounds are available, including removing the `method` label name from counter/gauge used in the InstrumentHandler; turning off affected promhttp handlers; adding custom middleware before promhttp handler that will sanitize the request method given by Go http.Request; and using a reverse proxy or web application firewall, configured to only allow a limited set of methods.

    Published: 15 Feb 2022
    8.8
    High

    CVE-2022-25173

    Last Modified: 21 Nov 2024

    Jenkins Pipeline: Groovy Plugin 2648.va9433432b33c and earlier uses the same checkout directories for distinct SCMs when reading the script file (typically Jenkinsfile) for Pipelines, allowing attackers with Item/Configure permission to invoke arbitrary OS commands on the controller through crafted SCM contents.

    Published: 15 Feb 2022
    6.5
    Medium

    CVE-2022-25178

    Last Modified: 21 Nov 2024

    Jenkins Pipeline: Shared Groovy Libraries Plugin 552.vd9cc05b8a2e1 and earlier does not restrict the names of resources passed to the libraryResource step, allowing attackers able to configure Pipelines permission to read arbitrary files on the Jenkins controller file system.

    Published: 15 Feb 2022
    8.8
    High

    CVE-2022-25183

    Last Modified: 21 Nov 2024

    Jenkins Pipeline: Shared Groovy Libraries Plugin 552.vd9cc05b8a2e1 and earlier uses the names of Pipeline libraries to create cache directories without any sanitization, allowing attackers with Item/Configure permission to execute arbitrary code in the context of the Jenkins controller JVM using specially crafted library names if a global Pipeline library configured to use caching already exists.

    Published: 15 Feb 2022
    6.5
    Medium

    CVE-2021-44960

    Last Modified: 3 Nov 2025

    In SVGPP SVG++ library 1.3.0, the XMLDocument::getRoot function in the renderDocument function handled the XMLDocument object improperly, returning a null pointer in advance at the second if, resulting in a null pointer reference behind the renderDocument function.

    Published: 15 Feb 2022
    6.5
    Medium

    CVE-2022-25177

    Last Modified: 21 Nov 2024

    Jenkins Pipeline: Shared Groovy Libraries Plugin 552.vd9cc05b8a2e1 and earlier follows symbolic links to locations outside of the expected Pipeline library when reading files using the libraryResource step, allowing attackers able to configure Pipelines to read arbitrary files on the Jenkins controller file system.

    Published: 15 Feb 2022
    5.4
    Medium

    CVE-2022-21818

    Last Modified: 21 Nov 2024

    NVIDIA License System contains a vulnerability in the installation scripts for the DLS virtual appliance, where a user on a network after signing in to the portal can access other users’ credentials, allowing them to gain escalated privileges, resulting in limited impact to both confidentiality and integrity.

    Published: 14 Feb 2022
    7.1
    High

    CVE-2022-0580

    Last Modified: 24 Feb 2026

    Incorrect Authorization in Packagist librenms/librenms prior to 22.2.0.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2021-46463

    Last Modified: 21 Nov 2024

    njs through 0.7.1, used in NGINX, was discovered to contain a control flow hijack caused by a Type Confusion vulnerability in njs_promise_perform_then().

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-25139

    Last Modified: 21 Nov 2024

    njs through 0.7.0, used in NGINX, was discovered to contain a heap use-after-free in njs_await_fulfilled.

    Published: 14 Feb 2022
    7.5
    High

    CVE-2021-46462

    Last Modified: 21 Nov 2024

    njs through 0.7.1, used in NGINX, was discovered to contain a segmentation violation via njs_object_set_prototype in /src/njs_object.c.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2021-46461

    Last Modified: 21 Nov 2024

    njs through 0.7.0, used in NGINX, was discovered to contain an out-of-bounds array access via njs_vmcode_typeof in /src/njs_vmcode.c.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2021-45005

    Last Modified: 21 Nov 2024

    Artifex MuJS v1.1.3 was discovered to contain a heap buffer overflow which is caused by conflicting JumpList of nested try/finally statements.

    Published: 14 Feb 2022
    6.2
    Medium

    CVE-2022-23638

    Last Modified: 23 Apr 2025

    svg-sanitizer is a SVG/XML sanitizer written in PHP. A cross-site scripting vulnerability impacts all users of the `svg-sanitizer` library prior to version 0.15.0. This issue is fixed in version 0.15.0. There is currently no workaround available.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-23992

    Last Modified: 21 Nov 2024

    XCOM Data Transport for Windows, Linux, and UNIX 11.6 releases contain a vulnerability due to insufficient input validation that could potentially allow remote attackers to execute arbitrary commands with elevated privileges.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-24705

    Last Modified: 21 Nov 2024

    The rad_packet_recv function in radius/packet.c suffers from a memcpy buffer overflow, resulting in an overly-large recvfrom into a fixed buffer that causes a buffer overflow and overwrites arbitrary memory. If the server connects with a malicious client, crafted client requests can remotely trigger this vulnerability.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-24704

    Last Modified: 21 Nov 2024

    The rad_packet_recv function in opt/src/accel-pppd/radius/packet.c suffers from a buffer overflow vulnerability, whereby user input len is copied into a fixed buffer &attr->val.integer without any bound checks. If the client connects to the server and sends a large radius packet, a buffer overflow vulnerability will be triggered.

    Published: 14 Feb 2022
    9.6
    Critical

    CVE-2021-4201

    Last Modified: 14 Apr 2025

    Missing access control in ForgeRock Access Management 7.1.0 and earlier versions on all platforms allows remote unauthenticated attackers to hijack sessions, including potentially admin-level sessions. This issue affects: ForgeRock Access Management 7.1 versions prior to 7.1.1; 6.5 versions prior to 6.5.4; all previous versions.

    Published: 14 Feb 2022
    7.8
    High

    CVE-2022-23410

    Last Modified: 21 Nov 2024

    AXIS IP Utility before 4.18.0 allows for remote code execution and local privilege escalation by the means of DLL hijacking. IPUtility.exe would attempt to load DLLs from its current working directory which could allow for remote code execution if a compromised DLL would be placed in the same folder.

    Published: 14 Feb 2022
    6.1
    Medium

    CVE-2022-23391

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Pybbs v6.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload inserted into the Search box.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-23390

    Last Modified: 21 Nov 2024

    An issue in the getType function of BBS Forum v5.3 and below allows attackers to upload arbitrary files.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-23389

    Last Modified: 21 Nov 2024

    PublicCMS v4.0 was discovered to contain a remote code execution (RCE) vulnerability via the cmdarray parameter.

    Published: 14 Feb 2022
    6.1
    Medium

    CVE-2022-23637

    Last Modified: 23 Apr 2025

    K-Box is a web-based application to manage documents, images, videos and geodata. Prior to version 0.33.1, a stored Cross-Site-Scripting (XSS) vulnerability is present in the markdown editor used by the document abstract and markdown file preview. A specifically crafted anchor link can, if clicked, execute untrusted javascript actions, like retrieving user cookies. Version 0.33.1 includes a patch that allows discarding unsafe links.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-24206

    Last Modified: 21 Nov 2024

    Tongda2000 v11.10 was discovered to contain a SQL injection vulnerability in /mobile_seal/get_seal.php via the DEVICE_LIST parameter.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-23902

    Last Modified: 21 Nov 2024

    Tongda2000 v11.10 was discovered to contain a SQL injection vulnerability in export_data.php via the d_name parameter.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-23337

    Last Modified: 21 Nov 2024

    DedeCMS v5.7.87 was discovered to contain a SQL injection vulnerability in article_coonepage_rule.php via the ids parameter.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-23336

    Last Modified: 21 Nov 2024

    S-CMS v5.0 was discovered to contain a SQL injection vulnerability in member_pay.php via the O_id parameter.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-23335

    Last Modified: 21 Nov 2024

    Metinfo v7.5.0 was discovered to contain a SQL injection vulnerability in language_general.class.php via doModifyParameter.

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-22295

    Last Modified: 21 Nov 2024

    Metinfo v7.5.0 was discovered to contain a SQL injection vulnerability in parameter_admin.class.php via the table_para parameter.

    Published: 14 Feb 2022
    5.3
    Medium

    CVE-2021-45310

    Last Modified: 21 Nov 2024

    Sangoma Technologies Corporation Switchvox Version 102409 is affected by an information disclosure vulnerability due to an improper access restriction. Users information such as first name, last name, acount id, server uuid, email address, profile image, number, timestamps, etc can be extracted by sending an unauthenticated HTTP GET request to the https://Switchvox-IP/main?cmd=invalid_browser.

    Published: 14 Feb 2022
    7.5
    High

    CVE-2019-25057

    Last Modified: 21 Nov 2024

    In Corda before 4.1, the meaning of serialized data can be modified via an attacker-controlled CustomSerializer.

    Published: 14 Feb 2022
    8.8
    High

    CVE-2019-16864

    Last Modified: 21 Nov 2024

    CompleteFTPService.exe in the server in EnterpriseDT CompleteFTP before 12.1.4 allows Remote Code Execution by leveraging a Windows user account that has SSH access. The exec command is always run as SYSTEM.

    Published: 14 Feb 2022
    6.1
    Medium

    CVE-2021-43106

    Last Modified: 21 Nov 2024

    A Header Injection vulnerability exists in Compass Plus TranzWare Online FIMI Web Interface Tranzware Online (TWO) 5.3.33.3 F38 and FIMI 4.2.19.4 25.The HTTP host header can be manipulated and cause the application to behave in unexpected ways. Any changes made to the header would just cause the request to be sent to a completely different Domain/IP address. This is due to that the server implicitly trusts the Host header, and fails to validate or escape it properly. An attacker can use this input to redirect target users to a malicious domain/web page. This would result in expanding the potential to further attacks and malicious actions.

    Published: 14 Feb 2022
    7.5
    High

    CVE-2021-45348

    Last Modified: 21 Nov 2024

    An Arbitrary File Deletion vulnerability exists in SourceCodester Attendance Management System v1.0 via the csv parameter in admin/pageUploadCSV.php, which can cause a Denial of Service (crash).

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2022-24988

    Last Modified: 21 Nov 2024

    In galois_2p8 before 0.1.2, PrimitivePolynomialField::new has an off-by-one buffer overflow for a vector.

    Published: 14 Feb 2022
    6.5
    Medium

    CVE-2022-0579

    Last Modified: 24 Feb 2026

    Missing Authorization in Packagist snipe/snipe-it prior to 5.3.9.

    Published: 14 Feb 2022
    7.8
    High

    CVE-2022-25150

    Last Modified: 21 Nov 2024

    In Malwarebytes Binisoft Windows Firewall Control before 6.8.1.0, programs executed from the Tools tab can be used to escalate privileges.

    Published: 14 Feb 2022
    7.5
    High

    CVE-2021-45347

    Last Modified: 21 Nov 2024

    An Incorrect Access Control vulnerability exists in zzcms 8.2, which lets a malicious user bypass authentication by changing the user name in the cookie to use any password.

    Published: 14 Feb 2022
    6.1
    Medium

    CVE-2022-23367

    Last Modified: 21 Nov 2024

    Fulusso v1.1 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability in /BindAccount/SuccessTips.js. This vulnerability allows attackers to inject malicious code into a victim user's device via open redirection.

    Published: 14 Feb 2022
    6.5
    Medium

    CVE-2021-39080

    Last Modified: 21 Nov 2024

    Due to weak obfuscation, IBM Cognos Analytics Mobile for Android application prior to version 1.1.14 , an attacker could be able to reverse engineer the codebase to gain knowledge about the programming technique, interface, class definitions, algorithms and functions used. IBM X-Force ID: 215593.

    Published: 14 Feb 2022
    5.4
    Medium

    CVE-2021-39079

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics Mobile for Android applications prior to version 1.1.14 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 215592.

    Published: 14 Feb 2022
    8.8
    High

    CVE-2022-22854

    Last Modified: 21 Nov 2024

    An access control issue in hprms/admin/?page=user/list of Hospital Patient Record Management System v1.0 allows attackers to escalate privileges via accessing and editing the user list.

    Published: 14 Feb 2022
    7.5
    High

    CVE-2021-45392

    Last Modified: 21 Nov 2024

    A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in page /goform/setIPv6Status via the prefixDelegate parameter, which causes a Denial of Service.

    Published: 14 Feb 2022
    7.5
    High

    CVE-2021-46371

    Last Modified: 21 Nov 2024

    antd-admin 5.5.0 is affected by an incorrect access control vulnerability. Unauthorized access to some interfaces in the foreground leads to leakage of sensitive information.

    Published: 14 Feb 2022
    5.9
    Medium

    CVE-2022-24686

    Last Modified: 21 Nov 2024

    HashiCorp Nomad and Nomad Enterprise 0.3.0 through 1.0.17, 1.1.11, and 1.2.5 artifact download functionality has a race condition such that the Nomad client agent could download the wrong artifact into the wrong destination. Fixed in 1.0.18, 1.1.12, and 1.2.6

    Published: 14 Feb 2022
    9.8
    Critical

    CVE-2021-45420

    Last Modified: 4 Jul 2026

    Emerson Dixell XWEB-500 products are affected by arbitrary file write vulnerability in /cgi-bin/logo_extra_upload.cgi, /cgi-bin/cal_save.cgi, and /cgi-bin/lo_utils.cgi. An attacker will be able to write any file on the target system without any kind of authentication mechanism, and this can lead to denial of service and potentially remote code execution. Note: the product has not been supported since 2018 and should be removed or replaced.

    Published: 14 Feb 2022