CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2021-44839

    Last Modified: 21 Nov 2024

    An issue was discovered in Delta RM 1.2. It is possible to request a new password for any other account using the account ID. Using the /listes/DTsendmaildata/adm_utilisateur/send-mail.json endpoint, a user can send a JSON array with user IDs that will have their passwords reset (and new ones sent to their respective e-mail addresses).

    Published: 18 Jan 2022
    4.3
    Medium

    CVE-2021-44838

    Last Modified: 21 Nov 2024

    An issue was discovered in Delta RM 1.2. Using the /risque/risque/ajax-details endpoint, with a POST request indicating the risk to access with the id parameter, it is possible for users to access risks of other companies.

    Published: 18 Jan 2022
    8.4
    High

    CVE-2022-0185

    Last Modified: 6 Nov 2025

    A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel verified the supplied parameters length. An unprivileged (in case of unprivileged user namespaces enabled, otherwise needs namespaced CAP_SYS_ADMIN privilege) local user able to open a filesystem that does not support the Filesystem Context API (and thus fallbacks to legacy handling) could use this flaw to escalate their privileges on the system.

    Published: 18 Jan 2022
    2.7
    Low

    CVE-2021-44840

    Last Modified: 21 Nov 2024

    An issue was discovered in Delta RM 1.2. Using an privileged account, it is possible to edit, create, and delete risk labels, such as Criticality and Priority Indication labels. By using the /core/table/query endpoint, and by using a POST request and indicating the affected label with tableUid parameter and the operation with datas[query], it is possible to edit, create, and delete the following labels: Priority Indication, Quality Evaluation, Progress Margin and Priority. Furthermore, it is also possible to export Criticality labels with an unprivileged user.

    Published: 18 Jan 2022
    5.5
    Medium

    CVE-2021-34405

    Last Modified: 21 Nov 2024

    NVIDIA Linux distributions contain a vulnerability in TrustZone’s TEE_Malloc function, where an unchecked return value causing a null pointer dereference may lead to denial of service.

    Published: 18 Jan 2022
    7.1
    High

    CVE-2021-34404

    Last Modified: 21 Nov 2024

    Android images for T210 provided by NVIDIA contain a vulnerability in BROM, where failure to limit access to AHB-DMA when BROM fails may allow an unprivileged attacker with physical access to cause denial of service or impact integrity and confidentiality beyond the security scope of BROM.

    Published: 18 Jan 2022
    9.8
    Critical

    CVE-2021-46013

    Last Modified: 21 Nov 2024

    An unrestricted file upload vulnerability exists in Sourcecodester Free school management software 1.0. An attacker can leverage this vulnerability to enable remote code execution on the affected web server. Once a php webshell containing "<?php system($_GET["cmd"]); ?>" gets uploaded it is saved into /uploads/exam_question/ directory, and is accessible by all users.

    Published: 18 Jan 2022
    —
    Unknown

    CVE-2021-46012

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA

    Published: 18 Jan 2022
    5.4
    Medium

    CVE-2021-46005

    Last Modified: 21 Nov 2024

    Sourcecodester Car Rental Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via vehicalorcview parameter.

    Published: 18 Jan 2022
    3.5
    Low

    CVE-2022-21683

    Last Modified: 23 Apr 2025

    Wagtail is a Django based content management system focused on flexibility and user experience. When notifications for new replies in comment threads are sent, they are sent to all users who have replied or commented anywhere on the site, rather than only in the relevant threads. This means that a user could listen in to new comment replies on pages they have not have editing access to, as long as they have left a comment or reply somewhere on the site. A patched version has been released as Wagtail 2.15.2, which restores the intended behaviour - to send notifications for new replies to the participants in the active thread only (editing permissions are not considered). New comments can be disabled by setting `WAGTAILADMIN_COMMENTS_ENABLED = False` in the Django settings file.

    Published: 18 Jan 2022
    6.1
    Medium

    CVE-2022-23083

    Last Modified: 21 Nov 2024

    NetMaster 12.2 Network Management for TCP/IP and NetMaster File Transfer Management contain a XSS (Cross-Site Scripting) vulnerability in ReportCenter UI due to insufficient input validation that could potentially allow an attacker to execute code on the affected machine.

    Published: 18 Jan 2022
    9.8
    Critical

    CVE-2021-29215

    Last Modified: 21 Nov 2024

    A potential security vulnerability in HPE Ezmeral Data Fabric that may allow a remote access restriction bypass in the TEZ MapR ecosystem component was discovered in version(s): Prior to Tez-0.8: mapr-tez-0.8.201907081100-1.noarch; prior to Tez-0.9: mapr-tez-0.9.201907090334-1.noarch; prior to Tez-0.9.2: mapr-tez-0.9.2.0.201907081043-1.noarch. HPE has provided software updates to resolve the vulnerability in the TEZ MapR ecosystem component in HPE Ezmeral Data Fabric.

    Published: 18 Jan 2022
    8.8
    High

    CVE-2022-0215

    Last Modified: 13 Feb 2025

    The Login/Signup Popup, Waitlist Woocommerce ( Back in stock notifier ), and Side Cart Woocommerce (Ajax) WordPress plugins by XootiX are vulnerable to Cross-Site Request Forgery via the save_settings function found in the ~/includes/xoo-framework/admin/class-xoo-admin-settings.php file which makes it possible for attackers to update arbitrary options on a site that can be used to create an administrative user account and grant full privileged access to a compromised site. This affects versions <= 2.2 in Login/Signup Popup, versions <= 2.5.1 in Waitlist Woocommerce ( Back in stock notifier ), and versions <= 2.0 in Side Cart Woocommerce (Ajax).

    Published: 18 Jan 2022
    4.8
    Medium

    CVE-2022-0210

    Last Modified: 13 Feb 2025

    The Random Banner WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient escaping via the category parameter found in the ~/include/models/model.php file which allowed attackers with administrative user access to inject arbitrary web scripts, in versions up to and including 4.1.4. This affects multi-site installations where unfiltered_html is disabled for administrators, and sites where unfiltered_html is disabled.

    Published: 18 Jan 2022
    6.4
    Medium

    CVE-2022-0233

    Last Modified: 13 Feb 2025

    The ProfileGrid – User Profiles, Memberships, Groups and Communities WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient escaping via the pm_user_avatar and pm_cover_image parameters found in the ~/admin/class-profile-magic-admin.php file which allows attackers with authenticated user access, such as subscribers, to inject arbitrary web scripts into their profile, in versions up to and including 1.2.7.

    Published: 18 Jan 2022
    6.4
    Medium

    CVE-2021-4074

    Last Modified: 14 Feb 2025

    The WHMCS Bridge WordPress plugin is vulnerable to Stored Cross-Site Scripting via the cc_whmcs_bridge_url parameter found in the ~/whmcs-bridge/bridge_cp.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 6.1. Due to missing authorization checks on the cc_whmcs_bridge_add_admin function, low-level authenticated users such as subscribers can exploit this vulnerability.

    Published: 18 Jan 2022
    4.8
    Medium

    CVE-2022-0232

    Last Modified: 31 Jan 2025

    The User Registration, Login & Landing Pages WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient escaping via the loader_text parameter found in the ~/includes/templates/landing-page.php file which allows attackers with administrative user access to inject arbitrary web scripts, in versions up to and including 1.2.7. This affects multi-site installations where unfiltered_html is disabled for administrators, and sites where unfiltered_html is disabled.

    Published: 18 Jan 2022
    8.8
    High

    CVE-2021-43353

    Last Modified: 14 Feb 2025

    The Crisp Live Chat WordPress plugin is vulnerable to Cross-Site Request Forgery due to missing nonce validation via the crisp_plugin_settings_page function found in the ~/crisp.php file, which made it possible for attackers to inject arbitrary web scripts in versions up to, and including 0.31.

    Published: 18 Jan 2022
    7.5
    High

    CVE-2022-0236

    Last Modified: 31 Jan 2025

    The WP Import Export WordPress plugin (both free and premium versions) is vulnerable to unauthenticated sensitive data disclosure due to a missing capability check on the download function wpie_process_file_download found in the ~/includes/classes/class-wpie-general.php file. This made it possible for unauthenticated attackers to download any imported or exported information from a vulnerable site which can contain sensitive information like user data. This affects versions up to, and including, 3.9.15.

    Published: 18 Jan 2022
    8.6
    High

    CVE-2022-22690

    Last Modified: 21 Nov 2024

    Within the Umbraco CMS, a configuration element named "UmbracoApplicationUrl" (or just "ApplicationUrl") is used whenever application code needs to build a URL pointing back to the site. For example, when a user resets their password and the application builds a password reset URL or when the administrator invites users to the site. For Umbraco versions less than 9.2.0, if the Application URL is not specifically configured, the attacker can manipulate this value and store it persistently affecting all users for components where the "UmbracoApplicationUrl" is used. For example, the attacker is able to change the URL users receive when resetting their password so that it points to the attackers server, when the user follows this link the reset token can be intercepted by the attacker resulting in account takeover.

    Published: 18 Jan 2022
    6.8
    Medium

    CVE-2022-22691

    Last Modified: 21 Nov 2024

    The password reset component deployed within Umbraco uses the hostname supplied within the request host header when building a password reset URL. It may be possible to manipulate the URL sent to Umbraco users when so that it points to the attackers server thereby disclosing the password reset token if/when the link is followed. A related vulnerability (CVE-2022-22690) could allow this flaw to become persistent so that all password reset URLs are affected persistently following a successful attack. See the AppCheck advisory for further information and associated caveats.

    Published: 18 Jan 2022
    2.6
    Low

    CVE-2021-37864

    Last Modified: 6 Dec 2024

    Mattermost 6.1 and earlier fails to sufficiently validate permissions while viewing archived channels, which allows authenticated users to view contents of archived channels even when this is denied by system administrators by directly accessing the APIs.

    Published: 18 Jan 2022
    4.3
    Medium

    CVE-2021-37867

    Last Modified: 6 Dec 2024

    Mattermost Boards plugin v0.10.0 and earlier fails to protect email addresses of all users via one of the Boards APIs, which allows authenticated and unauthorized users to access this information resulting in sensitive & private information disclosure.

    Published: 18 Jan 2022
    4.7
    Medium

    CVE-2021-37866

    Last Modified: 6 Dec 2024

    Mattermost Boards plugin v0.10.0 and earlier fails to invalidate a session on the server-side when a user logged out of Boards, which allows an attacker to reuse old session token for authorization.

    Published: 18 Jan 2022
    7.5
    High

    CVE-2020-14107

    Last Modified: 21 Nov 2024

    A stack overflow in the HTTP server of Cast can be exploited to make the app crash in LAN.

    Published: 18 Jan 2022
    4.3
    Medium

    CVE-2021-39892

    Last Modified: 21 Nov 2024

    In all versions of GitLab CE/EE since version 12.0, a lower privileged user can import users from projects that they don't have a maintainer role on and disclose email addresses of those users.

    Published: 18 Jan 2022
    4.3
    Medium

    CVE-2021-39942

    Last Modified: 21 Nov 2024

    A denial of service vulnerability in GitLab CE/EE affecting all versions starting from 12.0 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2, allows low-privileged users to bypass file size limits in the NPM package repository to potentially cause denial of service.

    Published: 18 Jan 2022
    8.7
    High

    CVE-2021-39946

    Last Modified: 21 Nov 2024

    Improper neutralization of user input in GitLab CE/EE versions 14.3 to 14.3.6, 14.4 to 14.4.4, and 14.5 to 14.5.2 allowed an attacker to exploit XSS by abusing the generation of the HTML code related to emojis

    Published: 18 Jan 2022
    6.5
    Medium

    CVE-2022-0090

    Last Modified: 21 Nov 2024

    An issue has been discovered affecting GitLab versions prior to 14.4.5, between 14.5.0 and 14.5.3, and between 14.6.0 and 14.6.1. GitLab is configured in a way that it doesn't ignore replacement references with git sub-commands, allowing a malicious user to spoof the contents of their commits in the UI.

    Published: 18 Jan 2022
    3.5
    Low

    CVE-2022-0093

    Last Modified: 21 Nov 2024

    An issue has been discovered affecting GitLab versions prior to 14.4.5, between 14.5.0 and 14.5.3, and between 14.6.0 and 14.6.1. GitLab allows a user with an expired password to access sensitive information through RSS feeds.

    Published: 18 Jan 2022
    4.3
    Medium

    CVE-2022-0125

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab affecting all versions starting from 12.0 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. GitLab was not verifying that a maintainer of a project had the right access to import members from a target project.

    Published: 18 Jan 2022
    7.5
    High

    CVE-2022-0154

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab affecting all versions starting from 7.7 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. GitLab was vulnerable to a Cross-Site Request Forgery attack that allows a malicious user to have their GitHub project imported on another GitLab user account.

    Published: 18 Jan 2022
    4.3
    Medium

    CVE-2022-0124

    Last Modified: 21 Nov 2024

    An issue has been discovered affecting GitLab versions prior to 14.4.5, between 14.5.0 and 14.5.3, and between 14.6.0 and 14.6.1. Gitlab's Slack integration is incorrectly validating user input and allows to craft malicious URLs that are sent to slack.

    Published: 18 Jan 2022
    8.6
    High

    CVE-2022-0244

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab CE/EE affecting all versions starting with 14.5. Arbitrary file read was possible by importing a group was due to incorrect handling of file.

    Published: 18 Jan 2022
    6.5
    Medium

    CVE-2022-0151

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab affecting all versions starting from 12.10 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. GitLab was not correctly handling requests to delete existing packages which could result in a Denial of Service under specific conditions.

    Published: 18 Jan 2022
    6.5
    Medium

    CVE-2022-0152

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab affecting all versions starting from 13.10 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. GitLab was vulnerable to unauthorized access to some particular fields through the GraphQL API.

    Published: 18 Jan 2022
    3.5
    Low

    CVE-2021-39927

    Last Modified: 21 Nov 2024

    Server side request forgery protections in GitLab CE/EE versions between 8.4 and 14.4.4, between 14.5.0 and 14.5.2, and between 14.6.0 and 14.6.1 would fail to protect against attacks sending requests to localhost on port 80 or 443 if GitLab was configured to run on a port other than 80 or 443

    Published: 18 Jan 2022
    5.3
    Medium

    CVE-2022-0172

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab CE/EE affecting all versions starting with 12.3. Under certain conditions it was possible to bypass the IP restriction for public projects through GraphQL allowing unauthorised users to read titles of issues, merge requests and milestones.

    Published: 18 Jan 2022
    2
    Low

    CVE-2021-41808

    Last Modified: 23 Feb 2026

    In M-Files Server product with versions before 21.11.10775.0, enabling logging of Federated authentication to event log wrote sensitive information to log. Mitigating factors are logging is disabled by default.

    Published: 18 Jan 2022
    7.5
    High

    CVE-2021-41807

    Last Modified: 23 Feb 2026

    Lack of rate limiting in M-Files Server and M-Files Web products with versions before 21.12.10873.0 in certain type of user accounts allows unlimited amount of attempts and therefore makes brute-forcing login accounts easier.

    Published: 18 Jan 2022
    3.5
    Low

    CVE-2021-41809

    Last Modified: 23 Feb 2026

    SSRF vulnerability in M-Files Server products with versions before 22.1.11017.1, in a preview function allowed making queries from the server with certain document types referencing external entities.

    Published: 18 Jan 2022
    4.3
    Medium

    CVE-2021-37865

    Last Modified: 6 Dec 2024

    Mattermost 6.2 and earlier fails to sufficiently process a specifically crafted GIF file when it is uploaded while drafting a post, which allows authenticated users to cause resource exhaustion while processing the file, resulting in server-side Denial of Service.

    Published: 18 Jan 2022
    7.5
    High

    CVE-2021-29632

    Last Modified: 21 Nov 2024

    In FreeBSD 13.0-STABLE before n247428-9352de39c3dc, 12.2-STABLE before r370674, 13.0-RELEASE before p6, and 12.2-RELEASE before p12, certain conditions involving use of the highlight buffer while text is scrolling on the console, console data may overwrite data structures associated with the system console or other kernel memory.

    Published: 18 Jan 2022
    7.8
    High

    CVE-2020-14110

    Last Modified: 21 Nov 2024

    AX3600 router sensitive information leaked.There is an unauthorized interface through luci to obtain sensitive information and log in to the web background.

    Published: 18 Jan 2022
    5.4
    Medium

    CVE-2021-29872

    Last Modified: 21 Nov 2024

    IBM Cloud Pak for Automation 21.0.1 and 21.0.2 - Business Automation Studio Component is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. By sending a specially crafted HTTP request, a remote attacker could exploit this vulnerability to inject HTTP HOST header, which will allow the attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking. IBM X-Force ID: 206228.

    Published: 18 Jan 2022
    7.8
    High

    CVE-2022-0263

    Last Modified: 21 Nov 2024

    Unrestricted Upload of File with Dangerous Type in Packagist pimcore/pimcore prior to 10.2.7.

    Published: 18 Jan 2022
    6.1
    Medium

    CVE-2022-0262

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - Stored in Packagist pimcore/pimcore prior to 10.2.7.

    Published: 18 Jan 2022
    4.3
    Medium

    CVE-2021-4146

    Last Modified: 21 Nov 2024

    Business Logic Errors in GitHub repository pimcore/pimcore prior to 10.2.6.

    Published: 18 Jan 2022
    6.1
    Medium

    CVE-2021-44217

    Last Modified: 21 Nov 2024

    In Ericsson CodeChecker through 6.18.0, a Stored Cross-site scripting (XSS) vulnerability in the comments component of the reports viewer allows remote attackers to inject arbitrary web script or HTML via the POST JSON data of the /CodeCheckerService API.

    Published: 18 Jan 2022
    5.4
    Medium

    CVE-2022-0260

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.2.7.

    Published: 18 Jan 2022