CVE Feed

    Dashboard / CVE

    7.1
    High

    CVE-2022-22753

    Last Modified: 16 Apr 2025

    A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused to grant Users write access to an arbitrary directory. This could have been used to escalate to SYSTEM access.<br>*This bug only affects Firefox on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6.

    Published: 8 Feb 2022
    6.5
    Medium

    CVE-2022-22754

    Last Modified: 16 Apr 2025

    If a user installed an extension of a particular type, the extension could have auto-updated itself and while doing so, bypass the prompt which grants the new version the new requested permissions. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6.

    Published: 8 Feb 2022
    8.8
    High

    CVE-2022-22756

    Last Modified: 16 Apr 2025

    If a user was convinced to drag and drop an image to their desktop or other folder, the resulting object could have been changed into an executable script which would have run arbitrary code after the user clicked on it. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6.

    Published: 8 Feb 2022
    8.1
    High

    CVE-2022-23623

    Last Modified: 23 Apr 2025

    Frourio is a full stack framework, for TypeScript. Frourio users who uses frourio version prior to v0.26.0 and integration with class-validator through `validators/` folder are subject to a input validation vulnerability. Validators do not work properly for request bodies and queries in specific situations and some input is not validated at all. Users are advised to update frourio to v0.26.0 or later and to install `class-transformer` and `reflect-metadata`.

    Published: 7 Feb 2022
    8.1
    High

    CVE-2022-23624

    Last Modified: 23 Apr 2025

    Frourio-express is a minimal full stack framework, for TypeScript. Frourio-express users who uses frourio-express version prior to v0.26.0 and integration with class-validator through `validators/` folder are subject to a input validation vulnerability. Validators do not work properly for request bodies and queries in specific situations and some input is not validated at all. Users are advised to update frourio to v0.26.0 or later and to install `class-transformer` and `reflect-metadata`.

    Published: 7 Feb 2022
    8.2
    High

    CVE-2021-3861

    Last Modified: 21 Nov 2024

    The RNDIS USB device class includes a buffer overflow vulnerability. Zephyr versions >= v2.6.0 contain Heap-based Buffer Overflow (CWE-122). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-hvfp-w4h8-gxvj

    Published: 7 Feb 2022
    8.2
    High

    CVE-2021-3835

    Last Modified: 21 Nov 2024

    Buffer overflow in usb device class. Zephyr versions >= v2.6.0 contain Heap-based Buffer Overflow (CWE-122). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-fm6v-8625-99jf

    Published: 7 Feb 2022
    7.8
    High

    CVE-2022-23613

    Last Modified: 23 Apr 2025

    xrdp is an open source remote desktop protocol (RDP) server. In affected versions an integer underflow leading to a heap overflow in the sesman server allows any unauthenticated attacker which is able to locally access a sesman server to execute code as root. This vulnerability has been patched in version 0.9.18.1 and above. Users are advised to upgrade. There are no known workarounds.

    Published: 7 Feb 2022
    6.1
    Medium

    CVE-2021-45281

    Last Modified: 21 Nov 2024

    QuickBox Pro v2.4.8 contains a cross-site scripting (XSS) vulnerability at "adminuseredit.php?usertoedit=XSS", as the user supplied input for the value of this parameter is not properly sanitized.

    Published: 7 Feb 2022
    5.5
    Medium

    CVE-2022-21816

    Last Modified: 21 Nov 2024

    NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where a user in the guest OS can cause a GPU interrupt storm on the hypervisor host, leading to a denial of service.

    Published: 7 Feb 2022
    5.5
    Medium

    CVE-2022-21815

    Last Modified: 21 Nov 2024

    NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for private IOCTLs where a NULL pointer dereference in the kernel, created within user mode code, may lead to a denial of service in the form of a system crash.

    Published: 7 Feb 2022
    9.3
    Critical

    CVE-2021-42833

    Last Modified: 21 Nov 2024

    A Use of Hardcoded Credentials vulnerability exists in AquaView versions 1.60, 7.x, and 8.x that could allow an authenticated local attacker to manipulate users and system settings.

    Published: 7 Feb 2022
    4.3
    Medium

    CVE-2022-22931

    Last Modified: 21 Nov 2024

    Fix of CVE-2021-40525 do not prepend delimiters upon valid directory validations. Affected implementations include: - maildir mailbox store - Sieve file repository This enables a user to access other users data stores (limited to user names being prefixed by the value of the username being used).

    Published: 7 Feb 2022
    7.7
    High

    CVE-2022-23263

    Last Modified: 2 Jan 2025

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

    Published: 7 Feb 2022
    6.3
    Medium

    CVE-2022-23262

    Last Modified: 2 Jan 2025

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

    Published: 7 Feb 2022
    5.3
    Medium

    CVE-2022-23261

    Last Modified: 2 Jan 2025

    Microsoft Edge (Chromium-based) Tampering Vulnerability

    Published: 7 Feb 2022
    6.1
    Medium

    CVE-2022-0149

    Last Modified: 21 Nov 2024

    The WooCommerce Stored Exporter WordPress plugin before 2.7.1 was affected by a Reflected Cross-Site Scripting (XSS) vulnerability in the woo_ce admin page.

    Published: 7 Feb 2022
    5.4
    Medium

    CVE-2022-0148

    Last Modified: 21 Nov 2024

    The All-in-one Floating Contact Form, Call, Chat, and 50+ Social Icon Tabs WordPress plugin before 2.0.4 was vulnerable to reflected XSS on the my-sticky-elements-leads admin page.

    Published: 7 Feb 2022
    7.1
    High

    CVE-2021-25108

    Last Modified: 21 Nov 2024

    The IP2Location Country Blocker WordPress plugin before 2.26.6 does not have CSRF check in the ip2location_country_blocker_save_rules AJAX action, allowing attackers to make a logged in admin block arbitrary country, or block all of them at once, preventing users from accessing the frontend.

    Published: 7 Feb 2022
    9.8
    Critical

    CVE-2021-25114

    Last Modified: 21 Nov 2024

    The Paid Memberships Pro WordPress plugin before 2.6.7 does not escape the discount_code in one of its REST route (available to unauthenticated users) before using it in a SQL statement, leading to a SQL injection

    Published: 7 Feb 2022
    5.4
    Medium

    CVE-2021-25106

    Last Modified: 21 Nov 2024

    The Privacy Policy Generator, Terms & Conditions Generator WordPress Plugin : WPLegalPages WordPress plugin before 2.7.1 does not check for authorisation and has a flawed CSRF logic when saving its settings, allowing any authenticated users, such as subscriber, to update them. Furthermore, due to the lack of sanitisation and escaping, it could lead to Stored Cross-Site Scripting

    Published: 7 Feb 2022
    4.8
    Medium

    CVE-2021-25105

    Last Modified: 21 Nov 2024

    The Ivory Search WordPress plugin before 5.4.1 does not escape some of the Form settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 7 Feb 2022
    4.7
    Medium

    CVE-2021-25103

    Last Modified: 21 Nov 2024

    The Translate WordPress with GTranslate WordPress plugin before 2.9.7 does not sanitise and escape the body parameter in the url_addon/gtranslate-email.php file before outputting it back in the page, leading to a Reflected Cross-Site Scripting issue. Note: exploitation of the issue requires knowledge of the NONCE_SALT and NONCE_KEY

    Published: 7 Feb 2022
    6.5
    Medium

    CVE-2021-25096

    Last Modified: 21 Nov 2024

    The IP2Location Country Blocker WordPress plugin before 2.26.5 bans can be bypassed by using a specific parameter in the URL

    Published: 7 Feb 2022
    4.3
    Medium

    CVE-2021-25084

    Last Modified: 21 Nov 2024

    The Advanced Cron Manager WordPress plugin before 2.4.2 and Advanced Cron Manager Pro WordPress plugin before 2.5.3 do not have authorisation checks in some of their AJAX actions, allowing any authenticated users, such as subscriber to call them and add or remove events as well as schedules for example

    Published: 7 Feb 2022
    6.1
    Medium

    CVE-2021-25077

    Last Modified: 21 Nov 2024

    The Store Toolkit for WooCommerce WordPress plugin before 2.3.2 does not sanitise and escape the tab parameter before outputting it back in an admin page in an error message, leading to a Reflected Cross-Site Scripting

    Published: 7 Feb 2022
    4.8
    Medium

    CVE-2021-25029

    Last Modified: 21 Nov 2024

    The CLUEVO LMS, E-Learning Platform WordPress plugin before 1.8.1 does not sanitise and escape Course's module, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 7 Feb 2022
    4.9
    Medium

    CVE-2021-25004

    Last Modified: 21 Nov 2024

    The SEUR Oficial WordPress plugin before 1.7.2 creates a PHP file with a random name when installed, even though it is used for support purposes, it allows to download any file from the web server without restriction after knowing the URL and a password than an administrator can see in the plugin settings page.

    Published: 7 Feb 2022
    6.5
    Medium

    CVE-2021-24947

    Last Modified: 21 Nov 2024

    The RVM WordPress plugin before 6.4.2 does not have proper authorisation, CSRF checks and validation of the rvm_upload_regions_file_path parameter in the rvm_import_regions AJAX action, allowing any authenticated user, such as subscriber, to read arbitrary files on the web server

    Published: 7 Feb 2022
    6.5
    Medium

    CVE-2021-24993

    Last Modified: 21 Nov 2024

    The Ultimate Product Catalog WordPress plugin before 5.0.26 does not have authorisation and CSRF checks in some AJAX actions, which could allow any authenticated users, such as subscriber to call them and add arbitrary products, or change the plugin's settings for example

    Published: 7 Feb 2022
    6.5
    Medium

    CVE-2021-24928

    Last Modified: 21 Nov 2024

    The Rearrange Woocommerce Products WordPress plugin before 3.0.8 does not have proper access controls in the save_all_order AJAX action, nor validation and escaping when inserting user data in SQL statement, leading to an SQL injection, and allowing any authenticated user, such as subscriber, to modify arbitrary post content (for example with an XSS payload), as well as exfiltrate any data by copying it to another post.

    Published: 7 Feb 2022
    5.4
    Medium

    CVE-2021-24880

    Last Modified: 21 Nov 2024

    The SupportCandy WordPress plugin before 2.2.7 does not validate and escape the page attribute of its shortcode, which could allow users with a role as low as Contributor to perform Cross-Site Scripting attacks

    Published: 7 Feb 2022
    8.8
    High

    CVE-2021-24879

    Last Modified: 21 Nov 2024

    The SupportCandy WordPress plugin before 2.2.7 does not have CSRF check in the wpsc_tickets AJAX action, nor has any sanitisation or escaping in some of the filter fields which could allow attackers to make a logged in user having access to the ticket lists dashboard set an arbitrary filter (stored in their cookies) with an XSS payload in it.

    Published: 7 Feb 2022
    6.5
    Medium

    CVE-2021-24843

    Last Modified: 21 Nov 2024

    The SupportCandy WordPress plugin before 2.2.7 does not have CRSF check in its wpsc_tickets AJAX action, which could allow attackers to make a logged in admin call it and delete arbitrary tickets via the set_delete_permanently_bulk_ticket setting_action.

    Published: 7 Feb 2022
    6.1
    Medium

    CVE-2021-24878

    Last Modified: 21 Nov 2024

    The SupportCandy WordPress plugin before 2.2.7 does not sanitise and escape the query string before outputting it back in pages with the [wpsc_create_ticket] shortcode embed, leading to a Reflected Cross-Site Scripting issue

    Published: 7 Feb 2022
    7.5
    High

    CVE-2021-24839

    Last Modified: 21 Nov 2024

    The SupportCandy WordPress plugin before 2.2.5 does not have authorisation and CSRF checks in its wpsc_tickets AJAX action, which could allow unauthenticated users to call it and delete arbitrary tickets via the set_delete_permanently_bulk_ticket setting_action. Other actions may be affected as well.

    Published: 7 Feb 2022
    7.5
    High

    CVE-2021-46389

    Last Modified: 21 Nov 2024

    IIPImage High Resolution Streaming Image Server prior to commit 882925b295a80ec992063deffc2a3b0d803c3195 is affected by an integer overflow in iipsrv.fcgi through malformed HTTP query parameters.

    Published: 7 Feb 2022
    7.5
    High

    CVE-2021-46359

    Last Modified: 21 Nov 2024

    FISCO-BCOS release-3.0.0-rc2 contains a denial of service vulnerability. Some transactions may not be committed successfully, and malicious users may use this to achieve double-spending attacks.

    Published: 7 Feb 2022
    8.8
    High

    CVE-2022-24450

    Last Modified: 30 Mar 2026

    NATS nats-server before 2.7.2 has Incorrect Access Control. Any authenticated user can obtain the privileges of the System account by misusing the "dynamically provisioned sandbox accounts" feature.

    Published: 7 Feb 2022
    7.5
    High

    CVE-2022-23320

    Last Modified: 21 Nov 2024

    XMPie uStore 12.3.7244.0 allows for administrators to generate reports based on raw SQL queries. Since the application ships with default administrative credentials, an attacker may authenticate into the application and exfiltrate sensitive information from the database.

    Published: 7 Feb 2022
    2.4
    Low

    CVE-2022-0474

    Last Modified: 21 Nov 2024

    Full list of recipients from customer users in a contact field could be disclosed in notification emails event when the notification is set to be sent to each recipient individually. This issue affects: OTRS AG OTRSCustomContactFields 8.0.x version: 8.0.11 and prior versions.

    Published: 7 Feb 2022
    3.8
    Low

    CVE-2022-0473

    Last Modified: 21 Nov 2024

    OTRS administrators can configure dynamic field and inject malicious JavaScript code in the error message of the regular expression check. When used in the agent interface, malicious code might be exectued in the browser. This issue affects: OTRS AG OTRS 7.0.x version: 7.0.31 and prior versions.

    Published: 7 Feb 2022
    7.8
    High

    CVE-2022-1679

    Last Modified: 21 Nov 2024

    A use-after-free flaw was found in the Linux kernel’s Atheros wireless adapter driver in the way a user forces the ath9k_htc_wait_for_target function to fail with some input messages. This flaw allows a local user to crash or potentially escalate their privileges on the system.

    Published: 7 Feb 2022
    6.1
    Medium

    CVE-2022-23184

    Last Modified: 21 Nov 2024

    In affected Octopus Server versions when the server HTTP and HTTPS bindings are configured to localhost, Octopus Server will allow open redirects.

    Published: 7 Feb 2022
    6.5
    Medium

    CVE-2022-22679

    Last Modified: 14 Jan 2025

    Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in support service management in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote authenticated users to write arbitrary files via unspecified vectors.

    Published: 7 Feb 2022
    6.5
    Medium

    CVE-2021-43929

    Last Modified: 14 Jan 2025

    Improper neutralization of special elements in output used by a downstream component ('Injection') vulnerability in work flow management in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

    Published: 7 Feb 2022
    9.9
    Critical

    CVE-2021-43928

    Last Modified: 21 Nov 2024

    Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in mail sending and receiving component in Synology Mail Station before 20211105-10315 allows remote authenticated users to execute arbitrary commands via unspecified vectors.

    Published: 7 Feb 2022
    4.7
    Medium

    CVE-2021-43927

    Last Modified: 14 Jan 2025

    Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in Security Management functionality in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote attackers to inject SQL commands via unspecified vectors.

    Published: 7 Feb 2022
    4.7
    Medium

    CVE-2021-43926

    Last Modified: 14 Jan 2025

    Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in Log Management functionality in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote attackers to inject SQL commands via unspecified vectors.

    Published: 7 Feb 2022
    4.7
    Medium

    CVE-2021-43925

    Last Modified: 14 Jan 2025

    Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in Log Management functionality in Synology DiskStation Manager (DSM) before 7.0.1-42218-2 allows remote attackers to inject SQL commands via unspecified vectors.

    Published: 7 Feb 2022