CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2021-30287

    Last Modified: 21 Nov 2024

    Possible assertion due to improper validation of symbols configured for PDCCH monitoring in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

    Published: 13 Jan 2022
    9.3
    Critical

    CVE-2021-30285

    Last Modified: 21 Nov 2024

    Improper validation of memory region in Hypervisor can lead to incorrect region mapping in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking

    Published: 13 Jan 2022
    8.8
    High

    CVE-2022-22113

    Last Modified: 21 Nov 2024

    In DayByDay CRM, versions 2.2.0 through 2.2.1 (latest) are vulnerable to Insufficient Session Expiration. When a password has been changed by the user or by an administrator, a user that was already logged in, will still have access to the application even after the password was changed.

    Published: 13 Jan 2022
    5.4
    Medium

    CVE-2022-22112

    Last Modified: 21 Nov 2024

    In DayByDay CRM, versions 1.1 through 2.2.1 (latest) suffer from an application-wide Client-Side Template Injection (CSTI). A low privileged attacker can input template injection payloads in the application at various locations to execute JavaScript on the client browser.

    Published: 13 Jan 2022
    7.1
    High

    CVE-2022-0198

    Last Modified: 21 Nov 2024

    corenlp is vulnerable to Improper Restriction of XML External Entity Reference

    Published: 13 Jan 2022
    8.8
    High

    CVE-2022-0196

    Last Modified: 21 Nov 2024

    phoronix-test-suite is vulnerable to Cross-Site Request Forgery (CSRF)

    Published: 13 Jan 2022
    8.8
    High

    CVE-2022-0197

    Last Modified: 21 Nov 2024

    phoronix-test-suite is vulnerable to Cross-Site Request Forgery (CSRF)

    Published: 13 Jan 2022
    5.5
    Medium

    CVE-2021-45760

    Last Modified: 21 Nov 2024

    GPAC v1.1.0 was discovered to contain an invalid memory address dereference via the function gf_list_last(). This vulnerability allows attackers to cause a Denial of Service (DoS).

    Published: 13 Jan 2022
    5.5
    Medium

    CVE-2021-40567

    Last Modified: 21 Nov 2024

    Segmentation fault vulnerability exists in Gpac through 1.0.1 via the gf_odf_size_descriptor function in desc_private.c when using mp4box, which causes a denial of service.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-40568

    Last Modified: 21 Nov 2024

    A buffer overflow vulnerability exists in Gpac through 1.0.1 via a malformed MP4 file in the svc_parse_slice function in av_parsers.c, which allows attackers to cause a denial of service, even code execution and escalation of privileges.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-40570

    Last Modified: 21 Nov 2024

    The binary MP4Box in Gpac 1.0.1 has a double-free vulnerability in the avc_compute_poc function in av_parsers.c, which allows attackers to cause a denial of service, even code execution and escalation of privileges.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-40571

    Last Modified: 21 Nov 2024

    The binary MP4Box in Gpac 1.0.1 has a double-free vulnerability in the ilst_box_read function in box_code_apple.c, which allows attackers to cause a denial of service, even code execution and escalation of privileges.

    Published: 13 Jan 2022
    5.5
    Medium

    CVE-2021-40572

    Last Modified: 21 Nov 2024

    The binary MP4Box in Gpac 1.0.1 has a double-free bug in the av1dmx_finalize function in reframe_av1.c, which allows attackers to cause a denial of service.

    Published: 13 Jan 2022
    7.8
    High

    CVE-2021-40574

    Last Modified: 5 Mar 2025

    The binary MP4Box in Gpac from 0.9.0-preview to 1.0.1 has a double-free vulnerability in the gf_text_get_utf8_line function in load_text.c, which allows attackers to cause a denial of service, even code execution and escalation of privileges.

    Published: 13 Jan 2022
    5.5
    Medium

    CVE-2021-40575

    Last Modified: 21 Nov 2024

    The binary MP4Box in Gpac 1.0.1 has a null pointer dereference vulnerability in the mpgviddmx_process function in reframe_mpgvid.c, which allows attackers to cause a denial of service. This vulnerability is possibly due to an incomplete fix for CVE-2021-40566.

    Published: 13 Jan 2022
    5.5
    Medium

    CVE-2021-40569

    Last Modified: 21 Nov 2024

    The binary MP4Box in Gpac through 1.0.1 has a double-free vulnerability in the iloc_entry_del funciton in box_code_meta.c, which allows attackers to cause a denial of service.

    Published: 13 Jan 2022
    5.5
    Medium

    CVE-2021-40576

    Last Modified: 21 Nov 2024

    The binary MP4Box in Gpac 1.0.1 has a null pointer dereference vulnerability in the gf_isom_get_payt_count function in hint_track.c, which allows attackers to cause a denial of service.

    Published: 13 Jan 2022
    4.3
    Medium

    CVE-2021-4122

    Last Modified: 21 Nov 2024

    It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device. An attacker with physical access to the medium, such as a flash disk, could use this flaw to force a user into permanently disabling the encryption layer of that medium.

    Published: 13 Jan 2022
    5.4
    Medium

    CVE-2022-0225

    Last Modified: 21 Nov 2024

    A flaw was found in Keycloak. This flaw allows a privileged attacker to use the malicious payload as the group name while creating a new group from the admin console, leading to a stored Cross-site scripting (XSS) attack.

    Published: 13 Jan 2022
    5.5
    Medium

    CVE-2021-37530

    Last Modified: 21 Nov 2024

    A denial of service vulnerabiity exists in fig2dev through 3.28a due to a segfault in the open_stream function in readpics.c.

    Published: 12 Jan 2022
    5.5
    Medium

    CVE-2021-37529

    Last Modified: 21 Nov 2024

    A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).

    Published: 12 Jan 2022
    6.5
    Medium

    CVE-2021-46225

    Last Modified: 21 Nov 2024

    A buffer overflow in the GmfOpenMesh() function of libMeshb v7.61 allows attackers to cause a Denial of Service (DoS) via a crafted MESH file.

    Published: 12 Jan 2022
    5.5
    Medium

    CVE-2021-45449

    Last Modified: 21 Nov 2024

    Docker Desktop version 4.3.0 and 4.3.1 has a bug that may log sensitive information (access token or password) on the user's machine during login. This only affects users if they are on Docker Desktop 4.3.0, 4.3.1 and the user has logged in while on 4.3.0, 4.3.1. Gaining access to this data would require having access to the user’s local files.

    Published: 12 Jan 2022
    8.8
    High

    CVE-2021-41597

    Last Modified: 21 Nov 2024

    SuiteCRM through 7.11.21 is vulnerable to CSRF, with resultant remote code execution, via the UpgradeWizard functionality, if a PHP file is included in a ZIP archive.

    Published: 12 Jan 2022
    8.8
    High

    CVE-2021-42559

    Last Modified: 21 Nov 2024

    An issue was discovered in CALDERA 2.8.1. It contains multiple startup "requirements" that execute commands when starting the server. Because these commands can be changed via the REST API, an authenticated user can insert arbitrary commands that will execute when the server is restarted.

    Published: 12 Jan 2022
    6.1
    Medium

    CVE-2021-42558

    Last Modified: 21 Nov 2024

    An issue was discovered in CALDERA 2.8.1. It contains multiple reflected, stored, and self XSS vulnerabilities that may be exploited by authenticated and unauthenticated attackers.

    Published: 12 Jan 2022
    8.8
    High

    CVE-2022-23118

    Last Modified: 21 Nov 2024

    Jenkins Debian Package Builder Plugin 1.6.11 and earlier implements functionality that allows agents to invoke command-line `git` at an attacker-specified path on the controller, allowing attackers able to control agent processes to invoke arbitrary OS commands on the controller.

    Published: 12 Jan 2022
    7.5
    High

    CVE-2022-23117

    Last Modified: 21 Nov 2024

    Jenkins Conjur Secrets Plugin 1.0.9 and earlier implements functionality that allows attackers able to control agent processes to retrieve all username/password credentials stored on the Jenkins controller.

    Published: 12 Jan 2022
    7.5
    High

    CVE-2022-23116

    Last Modified: 21 Nov 2024

    Jenkins Conjur Secrets Plugin 1.0.9 and earlier implements functionality that allows attackers able to control agent processes to decrypt secrets stored in Jenkins obtained through another method.

    Published: 12 Jan 2022
    5.4
    Medium

    CVE-2022-23115

    Last Modified: 21 Nov 2024

    Cross-site request forgery (CSRF) vulnerabilities in Jenkins batch task Plugin 1.19 and earlier allows attackers with Overall/Read access to retrieve logs, build or delete a batch task.

    Published: 12 Jan 2022
    3.3
    Low

    CVE-2022-23114

    Last Modified: 21 Nov 2024

    Jenkins Publish Over SSH Plugin 1.22 and earlier stores password unencrypted in its global configuration file on the Jenkins controller where it can be viewed by users with access to the Jenkins controller file system.

    Published: 12 Jan 2022
    4.3
    Medium

    CVE-2022-23113

    Last Modified: 21 Nov 2024

    Jenkins Publish Over SSH Plugin 1.22 and earlier performs a validation of the file name specifying whether it is present or not, resulting in a path traversal vulnerability allowing attackers with Item/Configure permission to discover the name of the Jenkins controller files.

    Published: 12 Jan 2022
    6.5
    Medium

    CVE-2022-23112

    Last Modified: 21 Nov 2024

    A missing permission check in Jenkins Publish Over SSH Plugin 1.22 and earlier allows attackers with Overall/Read access to connect to an attacker-specified SSH server using attacker-specified credentials.

    Published: 12 Jan 2022
    4.3
    Medium

    CVE-2022-23111

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability in Jenkins Publish Over SSH Plugin 1.22 and earlier allows attackers to connect to an attacker-specified SSH server using attacker-specified credentials.

    Published: 12 Jan 2022
    4.8
    Medium

    CVE-2022-23110

    Last Modified: 21 Nov 2024

    Jenkins Publish Over SSH Plugin 1.22 and earlier does not escape the SSH server name, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Overall/Administer permission.

    Published: 12 Jan 2022
    6.5
    Medium

    CVE-2022-23109

    Last Modified: 21 Nov 2024

    Jenkins HashiCorp Vault Plugin 3.7.0 and earlier does not mask Vault credentials in Pipeline build logs or in Pipeline step descriptions when Pipeline: Groovy Plugin 2.85 or later is installed.

    Published: 12 Jan 2022
    5.4
    Medium

    CVE-2022-23108

    Last Modified: 21 Nov 2024

    Jenkins Badge Plugin 1.9 and earlier does not escape the description and does not check for allowed protocols when creating a badge, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Item/Configure permission.

    Published: 12 Jan 2022
    8.1
    High

    CVE-2022-23107

    Last Modified: 21 Nov 2024

    Jenkins Warnings Next Generation Plugin 9.10.2 and earlier does not restrict the name of a file when configuring custom ID, allowing attackers with Item/Configure permission to write and read specific files with a hard-coded suffix on the Jenkins controller file system.

    Published: 12 Jan 2022
    6.5
    Medium

    CVE-2022-23105

    Last Modified: 21 Nov 2024

    Jenkins Active Directory Plugin 2.25 and earlier does not encrypt the transmission of data between the Jenkins controller and Active Directory servers in most configurations.

    Published: 12 Jan 2022
    4.3
    Medium

    CVE-2022-20620

    Last Modified: 21 Nov 2024

    Missing permission checks in Jenkins SSH Agent Plugin 1.23 and earlier allows attackers with Overall/Read access to enumerate credentials IDs of credentials stored in Jenkins.

    Published: 12 Jan 2022
    8.8
    High

    CVE-2021-42560

    Last Modified: 21 Nov 2024

    An issue was discovered in CALDERA 2.9.0. The Debrief plugin receives base64 encoded "SVG" parameters when generating a PDF document. These SVG documents are parsed in an unsafe manner and can be leveraged for XXE attacks (e.g., File Exfiltration, Server Side Request Forgery, Out of Band Exfiltration, etc.).

    Published: 12 Jan 2022
    8.8
    High

    CVE-2021-42561

    Last Modified: 21 Nov 2024

    An issue was discovered in CALDERA 2.8.1. When activated, the Human plugin passes the unsanitized name parameter to a python "os.system" function. This allows attackers to use shell metacharacters (e.g., backticks "``" or dollar parenthesis "$()" ) in order to escape the current command and execute arbitrary shell commands.

    Published: 12 Jan 2022
    8.1
    High

    CVE-2021-42562

    Last Modified: 21 Nov 2024

    An issue was discovered in CALDERA 2.8.1. It does not properly segregate user privileges, resulting in non-admin users having access to read and modify configuration or other components that should only be accessible by admin users.

    Published: 12 Jan 2022
    6.3
    Medium

    CVE-2021-35500

    Last Modified: 21 Nov 2024

    The Data Virtualization Server component of TIBCO Software Inc.'s TIBCO Data Virtualization, TIBCO Data Virtualization, TIBCO Data Virtualization, and TIBCO Data Virtualization for AWS Marketplace contains a difficult to exploit vulnerability that allows a low privileged attacker with local access to download arbitrary files outside of the scope of the user's permissions on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO Data Virtualization: versions 8.3.0 and below, TIBCO Data Virtualization: version 8.4.0, TIBCO Data Virtualization: version 8.5.0, and TIBCO Data Virtualization for AWS Marketplace: versions 8.5.0 and below.

    Published: 12 Jan 2022
    7.5
    High

    CVE-2022-21676

    Last Modified: 23 Apr 2025

    Engine.IO is the implementation of transport-based cross-browser/cross-device bi-directional communication layer for Socket.IO. A specially crafted HTTP request can trigger an uncaught exception on the Engine.IO server, thus killing the Node.js process. This impacts all the users of the `engine.io` package starting from version `4.0.0`, including those who uses depending packages like `socket.io`. Versions prior to `4.0.0` are not impacted. A fix has been released for each major branch, namely `4.1.2` for the `4.x.x` branch, `5.2.1` for the `5.x.x` branch, and `6.1.1` for the `6.x.x` branch. There is no known workaround except upgrading to a safe version.

    Published: 12 Jan 2022
    9.9
    Critical

    CVE-2022-21675

    Last Modified: 23 Apr 2025

    Bytecode Viewer (BCV) is a Java/Android reverse engineering suite. Versions of the package prior to 2.11.0 are vulnerable to Arbitrary File Write via Archive Extraction (AKA "Zip Slip"). The vulnerability is exploited using a specially crafted archive that holds directory traversal filenames (e.g. ../../evil.exe). The Zip Slip vulnerability can affect numerous archive formats, including zip, jar, tar, war, cpio, apk, rar and 7z. The attacker can then overwrite executable files and either invoke them remotely or wait for the system or user to call them, thus achieving remote command execution on the victim’s machine. The impact of a Zip Slip vulnerability would allow an attacker to create or overwrite existing files on the filesystem. In the context of a web application, a web shell could be placed within the application directory to achieve code execution. All users should upgrade to BCV v2.11.0 when possible to receive a patch. There are no recommended workarounds aside from upgrading.

    Published: 12 Jan 2022
    4.8
    Medium

    CVE-2021-43960

    Last Modified: 21 Nov 2024

    Lorensbergs Connect2 3.13.7647.20190 is affected by an XSS vulnerability. Exploitation requires administrator privileges and is performed through the Wizard editor of the application. The attack requires an administrator to go into the Wizard editor and enter an XSS payload within the Page title, Page Instructions, Text before, Text after, or Text on side box. Once this has been done, the administrator must click save and finally wait until any user of the application performs a booking for rental items in the booking area of the application, where the XSS triggers. NOTE: another perspective is that the administrator may require JavaScript to customize any aspect of the page rendering. There is no effective way for the product to defend users in the face of a malicious administrator

    Published: 12 Jan 2022
    2.7
    Low

    CVE-2021-28376

    Last Modified: 21 Nov 2024

    ChronoForms 7.0.7 allows fname Directory Traversal to read arbitrary files.

    Published: 12 Jan 2022
    5.3
    Medium

    CVE-2021-28377

    Last Modified: 21 Nov 2024

    ChronoForums 2.0.11 allows av Directory Traversal to read arbitrary files.

    Published: 12 Jan 2022
    7.5
    High

    CVE-2021-45445

    Last Modified: 21 Nov 2024

    Unisys ClearPath MCP TCP/IP Networking Services 59.1, 60.0, and 62.0 has an Infinite Loop.

    Published: 12 Jan 2022