CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2022-0380

    Last Modified: 10 Feb 2025

    The Fotobook WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to insufficient escaping and the use of $_SERVER['PHP_SELF'] found in the ~/options-fotobook.php file which allows attackers to inject arbitrary web scripts onto the page, in versions up to and including 3.2.3.

    Published: 4 Feb 2022
    6.5
    Medium

    CVE-2021-38130

    Last Modified: 21 Nov 2024

    A potential Information leakage vulnerability has been identified in versions of Micro Focus Voltage SecureMail Mail Relay prior to 7.3.0.1. The vulnerability could be exploited to create an information leakage attack.

    Published: 4 Feb 2022
    8.4
    High

    CVE-2021-22284

    Last Modified: 21 Nov 2024

    Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to execute arbitrary code in the node running the AC800M OPC Server.

    Published: 4 Feb 2022
    8.8
    High

    CVE-2022-0484

    Last Modified: 21 Nov 2024

    Lack of validation of URLs causes Mirantis Container Cloud Lens Extension before v3.1.1 to open external programs other than the default browser to perform sign on to a new cluster. An attacker could host a webserver which serves a malicious Mirantis Container Cloud configuration file and induce the victim to add a new cluster via its URL. This issue affects: Mirantis Mirantis Container Cloud Lens Extension v3 versions prior to v3.1.1.

    Published: 4 Feb 2022
    7.5
    High

    CVE-2021-22285

    Last Modified: 21 Nov 2024

    Improper Handling of Exceptional Conditions, Improper Check for Unusual or Exceptional Conditions vulnerability in the ABB SPIET800 and PNI800 module that allows an attacker to cause the denial of service or make the module unresponsive.

    Published: 4 Feb 2022
    7.5
    High

    CVE-2021-22288

    Last Modified: 21 Nov 2024

    Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive.

    Published: 4 Feb 2022
    7.5
    High

    CVE-2021-22286

    Last Modified: 21 Nov 2024

    Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive.

    Published: 4 Feb 2022
    7.3
    High

    CVE-2021-44779

    Last Modified: 20 Feb 2025

    Unauthenticated SQL Injection (SQLi) vulnerability discovered in [GWA] AutoResponder WordPress plugin (versions <= 2.3), vulnerable at (&listid). No patched version available, plugin closed.

    Published: 4 Feb 2022
    6.7
    Medium

    CVE-2021-29218

    Last Modified: 21 Nov 2024

    A local unquoted search path security vulnerability has been identified in HPE Agentless Management Service for Windows version(s): Prior to 1.44.0.0, 10.96.0.0. This vulnerability could be exploited locally by a user with high privileges to execute malware that may lead to a loss of confidentiality, integrity, and availability. HPE has provided software updates to resolve the vulnerability in HPE Agentless Management Service for Windows.

    Published: 4 Feb 2022
    7.8
    High

    CVE-2021-29219

    Last Modified: 21 Nov 2024

    A potential local buffer overflow vulnerability has been identified in HPE FlexNetwork 5130 EL Switch Series version: Prior to 5130_EI_7.10.R3507P02. HPE has made the following software update to resolve the vulnerability in HPE FlexNetwork 5130 EL Switch Series version 5130_EL_7.10.R3507P02.

    Published: 4 Feb 2022
    4.9
    Medium

    CVE-2022-22939

    Last Modified: 31 Oct 2025

    VMware Cloud Foundation contains an information disclosure vulnerability due to logging of credentials in plain-text within multiple log files on the SDDC Manager. A malicious actor with root access on VMware Cloud Foundation SDDC Manager may be able to view credentials in plaintext within one or more log files.

    Published: 4 Feb 2022
    7.5
    High

    CVE-2020-12965

    Last Modified: 21 Nov 2024

    When combined with specific software sequences, AMD CPUs may transiently execute non-canonical loads and store using only the lower 48 address bits potentially resulting in data leakage.

    Published: 4 Feb 2022
    5.5
    Medium

    CVE-2020-12966

    Last Modified: 21 Nov 2024

    AMD EPYC™ Processors contain an information disclosure vulnerability in the Secure Encrypted Virtualization with Encrypted State (SEV-ES) and Secure Encrypted Virtualization with Secure Nested Paging (SEV-SNP). A local authenticated attacker could potentially exploit this vulnerability leading to leaking guest data by the malicious hypervisor.

    Published: 4 Feb 2022
    7.8
    High

    CVE-2020-12891

    Last Modified: 21 Nov 2024

    AMD Radeon Software may be vulnerable to DLL Hijacking through path variable. An unprivileged user may be able to drop its malicious DLL file in any location which is in path environment variable.

    Published: 4 Feb 2022
    8.1
    High

    CVE-2021-21962

    Last Modified: 15 Apr 2025

    A heap-based buffer overflow vulnerability exists in the OTA Update u-download functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A series of specially-crafted MQTT payloads can lead to remote code execution. An attacker must perform a man-in-the-middle attack in order to trigger this vulnerability.

    Published: 4 Feb 2022
    8.3
    High

    CVE-2021-21968

    Last Modified: 15 Apr 2025

    A file write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to arbitrary file overwrite. An attacker can perform a man-in-the-middle attack to trigger this vulnerability.

    Published: 4 Feb 2022
    8.1
    High

    CVE-2021-21959

    Last Modified: 15 Apr 2025

    A misconfiguration exists in the MQTTS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. This misconfiguration significantly simplifies a man-in-the-middle attack, which directly leads to control of device functionality.

    Published: 4 Feb 2022
    8.8
    High

    CVE-2021-40420

    Last Modified: 15 Apr 2025

    A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.1.0.52543. A specially-crafted PDF document can trigger the reuse of previously freed memory, which can lead to arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially-crafted, malicious site if the browser plugin extension is enabled.

    Published: 4 Feb 2022
    8.8
    High

    CVE-2022-22150

    Last Modified: 15 Apr 2025

    A memory corruption vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.1.0.52543. A specially-crafted PDF document can trigger an exception which is improperly handled, leaving the engine in an invalid state, which can lead to memory corruption and arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially-crafted, malicious site if the browser plugin extension is enabled.

    Published: 4 Feb 2022
    7.4
    High

    CVE-2021-21964

    Last Modified: 15 Apr 2025

    A denial of service vulnerability exists in the Modbus configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.

    Published: 4 Feb 2022
    9.3
    Critical

    CVE-2021-21965

    Last Modified: 15 Apr 2025

    A denial of service vulnerability exists in the SeaMax remote configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.

    Published: 4 Feb 2022
    10
    Critical

    CVE-2021-21961

    Last Modified: 15 Apr 2025

    A stack-based buffer overflow vulnerability exists in the NBNS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted network packet can lead to remote code execution. An attacker can send a malicious packet to trigger this vulnerability.

    Published: 4 Feb 2022
    10
    Critical

    CVE-2021-21960

    Last Modified: 15 Apr 2025

    A stack-based buffer overflow vulnerability exists in both the LLMNR functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted network packet can lead to remote code execution. An attacker can send a malicious packet to trigger this vulnerability.

    Published: 4 Feb 2022
    5.9
    Medium

    CVE-2021-21971

    Last Modified: 15 Apr 2025

    An out-of-bounds write vulnerability exists in the URL_decode functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to an out-of-bounds write. An attacker can perform a man-in-the-middle attack to trigger this vulnerability.

    Published: 4 Feb 2022
    5.9
    Medium

    CVE-2021-21963

    Last Modified: 15 Apr 2025

    An information disclosure vulnerability exists in the Web Server functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted man-in-the-middle attack can lead to a disclosure of sensitive information. An attacker can perform a man-in-the-middle attack to trigger this vulnerability.

    Published: 4 Feb 2022
    8.1
    High

    CVE-2021-21970

    Last Modified: 15 Apr 2025

    An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. The HandleIncomingSeaCloudMessage function uses at [3] the json_object_get_string to populate the p_name global variable. The p_name is only 0x80 bytes long, and the total MQTT message could be up to 0x201 bytes. Because the function json_object_get_string will fill str based on the length of the json’s value and not the actual str size, this would result in a possible out-of-bounds write.

    Published: 4 Feb 2022
    8.1
    High

    CVE-2021-21969

    Last Modified: 15 Apr 2025

    An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. The HandleIncomingSeaCloudMessage function uses at [4] the json_object_get_string to populate the p_payload global variable. The p_payload is only 0x100 bytes long, and the total MQTT message could be up to 0x201 bytes. Because the function json_object_get_string will fill str based on the length of the json’s value and not the actual str size, this would result in a possible out-of-bounds write.

    Published: 4 Feb 2022
    7.8
    High

    CVE-2022-23947

    Last Modified: 15 Apr 2025

    A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon DCodeNumber parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 4 Feb 2022
    7.8
    High

    CVE-2022-23946

    Last Modified: 15 Apr 2025

    A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon GCodeNumber parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 4 Feb 2022
    8.8
    High

    CVE-2022-23614

    Last Modified: 23 Apr 2025

    Twig is an open source template language for PHP. When in a sandbox mode, the `arrow` parameter of the `sort` filter must be a closure to avoid attackers being able to run arbitrary PHP functions. In affected versions this constraint was not properly enforced and could lead to code injection of arbitrary PHP code. Patched versions now disallow calling non Closure in the `sort` filter as is the case for some other filters. Users are advised to upgrade.

    Published: 4 Feb 2022
    9.8
    Critical

    CVE-2022-23379

    Last Modified: 21 Nov 2024

    Emlog v6.0 was discovered to contain a SQL injection vulnerability via the $TagID parameter of getblogidsfromtagid().

    Published: 4 Feb 2022
    7.5
    High

    CVE-2021-32732

    Last Modified: 22 Apr 2025

    ### Impact It's possible to know if a user has or not an account in a wiki related to an email address, and which username(s) is actually tied to that email by forging a request to the Forgot username page. Note that since this page does not have a CSRF check it's quite easy to perform a lot of those requests. ### Patches This issue has been patched in XWiki 12.10.5 and 13.2RC1. Two different patches are provided: - a first one to fix the CSRF problem - a more complex one that now relies on sending an email for the Forgot username process. ### Workarounds It's possible to fix the problem without uprading by editing the ForgotUsername page in version below 13.x, to use the following code: https://github.com/xwiki/xwiki-platform/blob/69548c0320cbd772540cf4668743e69f879812cf/xwiki-platform-core/xwiki-platform-administration/xwiki-platform-administration-ui/src/main/resources/XWiki/ForgotUsername.xml#L39-L123 In version after 13.x it's also possible to edit manually the forgotusername.vm file, but it's really encouraged to upgrade the version here. ### References * https://jira.xwiki.org/browse/XWIKI-18384 * https://jira.xwiki.org/browse/XWIKI-18408 ### For more information If you have any questions or comments about this advisory: * Open an issue in [Jira XWiki](https://jira.xwiki.org) * Email us at [security ML](mailto:[email protected])

    Published: 4 Feb 2022
    8.8
    High

    CVE-2022-23330

    Last Modified: 21 Nov 2024

    A remote code execution (RCE) vulnerability in HelloWorldAddonController.java of jpress v4.2.0 allows attackers to execute arbitrary code via a crafted JAR package.

    Published: 4 Feb 2022
    9.8
    Critical

    CVE-2022-23329

    Last Modified: 21 Nov 2024

    A vulnerability in ${"freemarker.template.utility.Execute"?new() of UJCMS Jspxcms v10.2.0 allows attackers to execute arbitrary commands via uploading malicious files.

    Published: 4 Feb 2022
    5.3
    Medium

    CVE-2021-46671

    Last Modified: 21 Nov 2024

    options.c in atftp before 0.7.5 reads past the end of an array, and consequently discloses server-side /etc/group data to a remote client.

    Published: 4 Feb 2022
    7.5
    High

    CVE-2021-23507

    Last Modified: 21 Nov 2024

    The package object-path-set before 1.0.2 are vulnerable to Prototype Pollution via the setPath method, as it allows an attacker to merge object prototypes into it. *Note:* This vulnerability derives from an incomplete fix in https://security.snyk.io/vuln/SNYK-JS-OBJECTPATHSET-607908

    Published: 4 Feb 2022
    8.2
    High

    CVE-2021-23470

    Last Modified: 21 Nov 2024

    This affects the package putil-merge before 3.8.0. The merge() function does not check the values passed into the argument. An attacker can supply a malicious value by adjusting the value to include the constructor property. Note: This vulnerability derives from an incomplete fix in https://security.snyk.io/vuln/SNYK-JS-PUTILMERGE-1317077

    Published: 4 Feb 2022
    7.5
    High

    CVE-2021-23497

    Last Modified: 21 Nov 2024

    This affects the package @strikeentco/set before 1.0.2. It allows an attacker to cause a denial of service and may lead to remote code execution. **Note:** This vulnerability derives from an incomplete fix in https://security.snyk.io/vuln/SNYK-JS-STRIKEENTCOSET-1038821

    Published: 4 Feb 2022
    6.1
    Medium

    CVE-2021-45408

    Last Modified: 21 Nov 2024

    Open Redirect vulnerability exists in SeedDMS 6.0.15 in out.Login.php, which llows remote malicious users to redirect users to malicious sites using the "referuri" parameter.

    Published: 4 Feb 2022
    8.2
    High

    CVE-2022-24129

    Last Modified: 21 Nov 2024

    The OIDC OP plugin before 3.0.4 for Shibboleth Identity Provider allows server-side request forgery (SSRF) due to insufficient restriction of the request_uri parameter. This allows attackers to interact with arbitrary third-party HTTP services.

    Published: 4 Feb 2022
    5.3
    Medium

    CVE-2021-29398

    Last Modified: 21 Nov 2024

    Directory traversal in /northstar/Common/NorthFileManager/fileManagerObjects.jsp Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to browse and list the directories across the entire filesystem of the host of the web application.

    Published: 4 Feb 2022
    7.5
    High

    CVE-2021-29397

    Last Modified: 21 Nov 2024

    Cleartext Transmission of Sensitive Information in /northstar/Admin/login.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote local user to intercept users credentials transmitted in cleartext over HTTP.

    Published: 4 Feb 2022
    9.8
    Critical

    CVE-2021-29396

    Last Modified: 21 Nov 2024

    Systemic Insecure Permissions in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to use various functionalities without authentication.

    Published: 4 Feb 2022
    7.5
    High

    CVE-2021-29395

    Last Modified: 21 Nov 2024

    Directory travesal in /northstar/filemanager/download.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to download arbitrary files, including JSP source code, across the filesystem of the host of the web application.

    Published: 4 Feb 2022
    6.5
    Medium

    CVE-2021-29394

    Last Modified: 21 Nov 2024

    Account Hijacking in /northstar/Admin/changePassword.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote authenticated users to change the password of any targeted user accounts via lack of proper authorization in the user-controlled "userID" parameter of the HTTP POST request.

    Published: 4 Feb 2022
    9.8
    Critical

    CVE-2021-29393

    Last Modified: 21 Nov 2024

    Remote Code Execution in cominput.jsp and comoutput.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated users to inject and execute arbitrary system commands via the unsanitized user-controlled "command" and "commandvalues" parameters.

    Published: 4 Feb 2022
    5.5
    Medium

    CVE-2022-24249

    Last Modified: 21 Nov 2024

    A Null Pointer Dereference vulnerability exists in GPAC 1.1.0 via the xtra_box_write function in /box_code_base.c, which causes a Denial of Service. This vulnerability was fixed in commit 71f9871.

    Published: 4 Feb 2022
    5.5
    Medium

    CVE-2021-45429

    Last Modified: 27 Mar 2025

    A Buffer Overflow vulnerablity exists in VirusTotal YARA git commit: 605b2edf07ed8eb9a2c61ba22eb2e7c362f47ba7 via yr_set_configuration in yara/libyara/libyara.c, which could cause a Denial of Service.

    Published: 4 Feb 2022
    6.1
    Medium

    CVE-2021-43635

    Last Modified: 20 Jun 2025

    A Cross Site Scripting (XSS) vulnerability exists in Codex before 1.4.0 via Notebook/Page name field, which allows malicious users to execute arbitrary code via a crafted http code in a .json file.

    Published: 4 Feb 2022
    —
    Unknown

    CVE-2022-22147

    Last Modified: 22 Jan 2026

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. The CVE was never used.

    Published: 4 Feb 2022