CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2022-21684

    Last Modified: 23 Apr 2025

    Discourse is an open source discussion platform. Versions prior to 2.7.13 in `stable`, 2.8.0.beta11 in `beta`, and 2.8.0.beta11 in `tests-passed` allow some users to log in to a community before they should be able to do so. A user invited via email to a forum with `must_approve_users` enabled is going to be automatically logged in, bypassing the check that does not allow unapproved users to sign in. They will be able to do everything an approved user can do. If they logout, they cannot log back in. This issue is patched in the `stable` version 2.7.13, `beta` version 2.8.0.beta11, and `tests-passed` version 2.8.0.beta11. One may disable invites as a workaround. Administrators can increase `min_trust_level_to_allow_invite` to reduce the attack surface to more trusted users.

    Published: 13 Jan 2022
    3.3
    Low

    CVE-2021-45059

    Last Modified: 23 Apr 2025

    Adobe InDesign version 16.4 (and earlier) is affected by a use-after-free vulnerability in the processing of a JPEG2000 file that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-45057

    Last Modified: 23 Apr 2025

    Adobe InDesign version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious JPEG2000 file.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-45058

    Last Modified: 23 Apr 2025

    Adobe InDesign version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious JPEG file.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-45055

    Last Modified: 23 Apr 2025

    Adobe InCopy version 16.4 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-45056

    Last Modified: 23 Apr 2025

    Adobe InCopy version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-45053

    Last Modified: 23 Apr 2025

    Adobe InCopy version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 13 Jan 2022
    3.3
    Low

    CVE-2021-45054

    Last Modified: 23 Apr 2025

    Adobe InCopy version 16.4 (and earlier) is affected by a use-after-free vulnerability in the processing of a JPEG2000 file that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 13 Jan 2022
    5.4
    Medium

    CVE-2021-23227

    Last Modified: 20 Feb 2025

    Cross-Site Request Forgery (CSRF) vulnerability in Alexander Fuchs PHP Everywhere plugin <= 2.0.2 versions.

    Published: 13 Jan 2022
    7.7
    High

    CVE-2022-22988

    Last Modified: 24 Feb 2026

    File and directory permissions have been corrected to prevent unintended users from modifying or accessing resources. It would be more difficult for an authenticated attacker to now traverse through the files and directories. This can only be exploited once an attacker has already found a way to get authenticated access to the device.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2022-22990

    Last Modified: 21 Nov 2024

    A limited authentication bypass vulnerability was discovered that could allow an attacker to achieve remote code execution and escalate privileges on the My Cloud devices. Addressed this vulnerability by changing access token validation logic and rewriting rule logic on PHP scripts.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2022-22991

    Last Modified: 21 Nov 2024

    A malicious user on the same LAN could use DNS spoofing followed by a command injection attack to trick a NAS device into loading through an unsecured HTTP call. Addressed this vulnerability by disabling checks for internet connectivity using HTTP.

    Published: 13 Jan 2022
    9.8
    Critical

    CVE-2022-22989

    Last Modified: 24 Feb 2026

    My Cloud OS 5 was vulnerable to a pre-authenticated stack overflow vulnerability on the FTP service that could be exploited by unauthenticated attackers on the network. Addressed the vulnerability by adding defenses against stack overflow issues.

    Published: 13 Jan 2022
    8
    High

    CVE-2021-43764

    Last Modified: 21 Nov 2024

    AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

    Published: 13 Jan 2022
    8.1
    High

    CVE-2021-44176

    Last Modified: 21 Nov 2024

    AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

    Published: 13 Jan 2022
    8
    High

    CVE-2021-43761

    Last Modified: 21 Nov 2024

    AEM's Cloud Service offering, as well as versions 6.5.7.0 (and below), 6.4.8.3 (and below) and 6.3.3.8 (and below) are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

    Published: 13 Jan 2022
    8.1
    High

    CVE-2021-44177

    Last Modified: 21 Nov 2024

    AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

    Published: 13 Jan 2022
    9.8
    Critical

    CVE-2021-40722

    Last Modified: 21 Nov 2024

    AEM Forms Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by an XML External Entity (XXE) injection vulnerability that could be abused by an attacker to achieve RCE.

    Published: 13 Jan 2022
    8.1
    High

    CVE-2021-43765

    Last Modified: 21 Nov 2024

    AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

    Published: 13 Jan 2022
    5.4
    Medium

    CVE-2021-44178

    Last Modified: 21 Nov 2024

    AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a reflected Cross-Site Scripting (XSS) vulnerability via the itemResourceType parameter. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser

    Published: 13 Jan 2022
    6.5
    Medium

    CVE-2021-43762

    Last Modified: 21 Nov 2024

    AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a dispatcher bypass vulnerability that could be abused to evade security controls. Sensitive areas of the web application may be exposed through exploitation of the vulnerability.

    Published: 13 Jan 2022
    9.8
    Critical

    CVE-2021-33046

    Last Modified: 21 Nov 2024

    Some Dahua products have access control vulnerability in the password reset process. Attackers can exploit this vulnerability through specific deployments to reset device passwords.

    Published: 13 Jan 2022
    9.8
    Critical

    CVE-2021-45807

    Last Modified: 21 Nov 2024

    jpress v4.2.0 is vulnerable to command execution via io.jpress.web.admin._AddonController::doUploadAndInstall.

    Published: 13 Jan 2022
    6.1
    Medium

    CVE-2021-45422

    Last Modified: 30 Apr 2025

    Reprise License Manager 14.2 is affected by a reflected cross-site scripting vulnerability in the /goform/activate_process "count" parameter via GET. No authentication is required.

    Published: 13 Jan 2022
    5.5
    Medium

    CVE-2021-40573

    Last Modified: 21 Nov 2024

    The binary MP4Box in Gpac 1.0.1 has a double-free vulnerability in the gf_list_del function in list.c, which allows attackers to cause a denial of service.

    Published: 13 Jan 2022
    6.5
    Medium

    CVE-2021-39056

    Last Modified: 21 Nov 2024

    The IBM i 7.1, 7.2, 7.3, and 7.4 Extended Dynamic Remote SQL server (EDRSQL) could allow a remote authenticated user to send a specially crafted request and cause a denial of service. IBM X-Force ID: 214537.

    Published: 13 Jan 2022
    5.4
    Medium

    CVE-2021-40813

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in the "Zip content" feature in Element-IT HTTP Commander 3.1.9 allows remote authenticated users to inject arbitrary web script or HTML via filenames.

    Published: 13 Jan 2022
    4.3
    Medium

    CVE-2022-21678

    Last Modified: 23 Apr 2025

    Discourse is an open source discussion platform. Prior to version 2.8.0.beta11 in the `tests-passed` branch, version 2.8.0.beta11 in the `beta` branch, and version 2.7.13 in the `stable` branch, the bios of users who made their profiles private were still visible in the `<meta>` tags on their users' pages. The problem is patched in `tests-passed` version 2.8.0.beta11, `beta` version 2.8.0.beta11, and `stable` version 2.7.13 of Discourse.

    Published: 13 Jan 2022
    4.8
    Medium

    CVE-2022-22125

    Last Modified: 21 Nov 2024

    In Halo, versions v1.0.0 to v1.4.17 (latest) are vulnerable to Stored Cross-Site Scripting (XSS) in the article tag. An authenticated admin attacker can inject arbitrary javascript code that will execute on a victim’s server.

    Published: 13 Jan 2022
    5.4
    Medium

    CVE-2022-22124

    Last Modified: 21 Nov 2024

    In Halo, versions v1.0.0 to v1.4.17 (latest) are vulnerable to Stored Cross-Site Scripting (XSS) in the profile image. An authenticated attacker can upload a carefully crafted SVG file that will trigger arbitrary javascript to run on a victim’s browser.

    Published: 13 Jan 2022
    5.4
    Medium

    CVE-2022-22123

    Last Modified: 21 Nov 2024

    In Halo, versions v1.0.0 to v1.4.17 (latest) are vulnerable to Stored Cross-Site Scripting (XSS) in the article title. An authenticated attacker can inject arbitrary javascript code that will execute on a victim’s server.

    Published: 13 Jan 2022
    —
    Unknown

    CVE-2022-22122

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This candidate is a reservation duplicate of [CVE-2021-37866]. Notes: All CVE users should reference [CVE-2021-37866] instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 13 Jan 2022
    3.7
    Low

    CVE-2022-23134

    Last Modified: 30 Oct 2025

    After the initial setup process, some steps of setup.php file are reachable not only by super-administrators, but by unauthenticated users as well. Malicious actor can pass step checks and potentially change the configuration of Zabbix Frontend.

    Published: 13 Jan 2022
    6.3
    Medium

    CVE-2022-23133

    Last Modified: 3 Nov 2025

    An authenticated user can create a hosts group from the configuration with XSS payload, which will be available for other users. When XSS is stored by an authenticated malicious actor and other users try to search for groups during new host creation, the XSS payload will fire and the actor can steal session cookies and perform session hijacking to impersonate users or take over their accounts.

    Published: 13 Jan 2022
    3.3
    Low

    CVE-2022-23132

    Last Modified: 3 Nov 2025

    During Zabbix installation from RPM, DAC_OVERRIDE SELinux capability is in use to access PID files in [/var/run/zabbix] folder. In this case, Zabbix Proxy or Server processes can bypass file read, write and execute permissions check on the file system level

    Published: 13 Jan 2022
    9.1
    Critical

    CVE-2022-23131

    Last Modified: 30 Oct 2025

    In the case of instances where the SAML SSO authentication is enabled (non-default), session data can be modified by a malicious actor, because a user login stored in the session was not verified. Malicious unauthenticated actor may exploit this issue to escalate privileges and gain admin access to Zabbix Frontend. To perform the attack, SAML authentication is required to be enabled and the actor has to know the username of Zabbix user (or use the guest account, which is disabled by default).

    Published: 13 Jan 2022
    5.9
    Medium

    CVE-2021-40327

    Last Modified: 5 Jun 2026

    Trusted Firmware-M (TF-M) 1.4.0, when Profile Small is used, has incorrect access control. NSPE can access a secure key (held by the Crypto service) based solely on knowledge of its key ID. For example, there is no authorization check associated with the relationship between a caller and a key owner.

    Published: 13 Jan 2022
    6.5
    Medium

    CVE-2021-23824

    Last Modified: 21 Nov 2024

    This affects the package Crow before 0.3+4. When using attributes without quotes in the template, an attacker can manipulate the input to introduce additional attributes, potentially executing code. This may lead to a Cross-site Scripting (XSS) vulnerability, assuming an attacker can influence the value entered into the template. If the template is used to render user-generated content, this vulnerability may escalate to a persistent XSS vulnerability.

    Published: 13 Jan 2022
    6.5
    Medium

    CVE-2021-23514

    Last Modified: 21 Nov 2024

    This affects the package Crow before 0.3+4. It is possible to traverse directories to fetch arbitrary files from the server.

    Published: 13 Jan 2022
    8.8
    High

    CVE-2021-45806

    Last Modified: 21 Nov 2024

    jpress v4.2.0 admin panel provides a function through which attackers can modify the template and inject some malicious code.

    Published: 13 Jan 2022
    7.5
    High

    CVE-2021-30353

    Last Modified: 21 Nov 2024

    Improper validation of function pointer type with actual function signature can lead to assertion in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 13 Jan 2022
    7.5
    High

    CVE-2021-30330

    Last Modified: 21 Nov 2024

    Possible null pointer dereference due to improper validation of APE clip in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-30319

    Last Modified: 21 Nov 2024

    Possible integer overflow due to improper validation of command length parameters while processing WMI command in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music

    Published: 13 Jan 2022
    6.2
    Medium

    CVE-2021-30314

    Last Modified: 21 Nov 2024

    Lack of validation for third party application accessing the service can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

    Published: 13 Jan 2022
    6.7
    Medium

    CVE-2021-30313

    Last Modified: 21 Nov 2024

    Use after free condition can occur in wired connectivity due to a race condition while creating and deleting folders in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-30311

    Last Modified: 21 Nov 2024

    Possible heap overflow due to lack of index validation before allocating and writing to heap buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-30308

    Last Modified: 21 Nov 2024

    Possible buffer overflow while printing the HARQ memory partition detail due to improper validation of buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

    Published: 13 Jan 2022
    7.5
    High

    CVE-2021-30307

    Last Modified: 21 Nov 2024

    Possible denial of service due to improper validation of DNS response when DNS client requests with PTR, NAPTR or SRV query type in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT

    Published: 13 Jan 2022
    7.5
    High

    CVE-2021-30301

    Last Modified: 21 Nov 2024

    Possible denial of service due to out of memory while processing RRC and NAS OTA message in Snapdragon Auto, Snapdragon Industrial IOT, Snapdragon Mobile

    Published: 13 Jan 2022
    7.5
    High

    CVE-2021-30300

    Last Modified: 21 Nov 2024

    Possible denial of service due to incorrectly decoding hex data for the SIB2 OTA message and assigning a garbage value to choice when processing the SRS configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 13 Jan 2022