CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2022-0015

    Last Modified: 21 Nov 2024

    A local privilege escalation (PE) vulnerability exists in the Palo Alto Networks Cortex XDR agent that enables an authenticated local user to execute programs with elevated privileges. This issue impacts: Cortex XDR agent 5.0 versions earlier than Cortex XDR agent 5.0.12; Cortex XDR agent 6.1 versions earlier than Cortex XDR agent 6.1.9.

    Published: 12 Jan 2022
    6.7
    Medium

    CVE-2022-0014

    Last Modified: 21 Nov 2024

    An untrusted search path vulnerability exists in the Palo Alto Networks Cortex XDR agent that enables a local attacker with file creation privilege in the Windows root directory (such as C:\) to store a program that can then be unintentionally executed by another local user when that user utilizes a Live Terminal session. This issue impacts: Cortex XDR agent 5.0 versions earlier than Cortex XDR agent 5.0.12; Cortex XDR agent 6.1 versions earlier than Cortex XDR agent 6.1.9; Cortex XDR agent 7.2 versions earlier than Cortex XDR agent 7.2.4; Cortex XDR agent 7.3 versions earlier than Cortex XDR agent 7.3.2.

    Published: 12 Jan 2022
    5
    Medium

    CVE-2022-0013

    Last Modified: 21 Nov 2024

    A file information exposure vulnerability exists in the Palo Alto Networks Cortex XDR agent that enables a local attacker to read the contents of arbitrary files on the system with elevated privileges when generating a support file. This issue impacts: Cortex XDR agent 5.0 versions earlier than Cortex XDR agent 5.0.12; Cortex XDR agent 6.1 versions earlier than Cortex XDR agent 6.1.9; Cortex XDR agent 7.2 versions earlier than Cortex XDR agent 7.2.4; Cortex XDR agent 7.3 versions earlier than Cortex XDR agent 7.3.2.

    Published: 12 Jan 2022
    6.1
    Medium

    CVE-2022-0012

    Last Modified: 21 Nov 2024

    An improper link resolution before file access vulnerability exists in the Palo Alto Networks Cortex XDR agent on Windows platforms that enables a local user to delete arbitrary system files and impact the system integrity or cause a denial of service condition. This issue impacts: Cortex XDR agent 5.0 versions earlier than Cortex XDR agent 5.0.12; Cortex XDR agent 6.1 versions earlier than Cortex XDR agent 6.1.9; Cortex XDR agent 7.2 versions earlier than Cortex XDR agent 7.2.4; Cortex XDR agent 7.3 versions earlier than Cortex XDR agent 7.3.2.

    Published: 12 Jan 2022
    —
    Unknown

    CVE-2021-38892

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 12 Jan 2022
    5.4
    Medium

    CVE-2021-43436

    Last Modified: 21 Nov 2024

    MartDevelopers Inc iResturant v1.0 allows Stored XSS by placing a payload in the username field during a login attempt. When an administrator looks at the log of failed logins, the XSS payload will be executed.

    Published: 12 Jan 2022
    9.8
    Critical

    CVE-2021-45411

    Last Modified: 21 Nov 2024

    In Sourcecodetester Printable Staff ID Card Creator System 1.0 after compromising the database via SQLi, an attacker can log in and leverage an arbitrary file upload vulnerability to obtain remote code execution.

    Published: 12 Jan 2022
    —
    Unknown

    CVE-2021-45388

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-45608. Reason: This candidate is a reservation duplicate of CVE-2021-45608. Notes: All CVE users should reference CVE-2021-45608 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 12 Jan 2022
    7.8
    High

    CVE-2021-44652

    Last Modified: 21 Nov 2024

    Zoho ManageEngine O365 Manager Plus before Build 4416 allows remote code execution via BCP file overwrite through the ChangeDBAPI component.

    Published: 12 Jan 2022
    8.8
    High

    CVE-2021-44651

    Last Modified: 21 Nov 2024

    Zoho ManageEngine CloudSecurityPlus before Build 4117 allows remote code execution through the updatePersonalizeSettings component due to an improper security patch for CVE-2021-40175.

    Published: 12 Jan 2022
    8.8
    High

    CVE-2021-4080

    Last Modified: 21 Nov 2024

    crater is vulnerable to Unrestricted Upload of File with Dangerous Type

    Published: 12 Jan 2022
    7.2
    High

    CVE-2021-44650

    Last Modified: 21 Nov 2024

    Zoho ManageEngine M365 Manager Plus before Build 4419 allows remote command execution when updating proxy settings through the Admin ProxySettings and Tenant ProxySettings components.

    Published: 12 Jan 2022
    5.4
    Medium

    CVE-2021-44649

    Last Modified: 21 Nov 2024

    Django CMS 3.7.3 does not validate the plugin_type parameter while generating error messages for an invalid plugin type, resulting in a Cross Site Scripting (XSS) vulnerability. The vulnerability allows an attacker to execute arbitrary JavaScript code in the web browser of the affected user.

    Published: 12 Jan 2022
    7.5
    High

    CVE-2021-3852

    Last Modified: 21 Nov 2024

    growi is vulnerable to Authorization Bypass Through User-Controlled Key

    Published: 12 Jan 2022
    5.4
    Medium

    CVE-2022-0159

    Last Modified: 21 Nov 2024

    orchardcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

    Published: 12 Jan 2022
    8.8
    High

    CVE-2022-0355

    Last Modified: 24 Feb 2026

    Improper Removal of Sensitive Information Before Storage or Transfer in NPM simple-get prior to 4.0.1.

    Published: 12 Jan 2022
    5.5
    Medium

    CVE-2022-20621

    Last Modified: 21 Nov 2024

    Jenkins Metrics Plugin 4.0.2.8 and earlier stores an access key unencrypted in its global configuration file on the Jenkins controller where it can be viewed by users with access to the Jenkins controller file system.

    Published: 12 Jan 2022
    5.3
    Medium

    CVE-2022-23106

    Last Modified: 21 Nov 2024

    Jenkins Configuration as Code Plugin 1.55 and earlier used a non-constant time comparison function when validating an authentication token allowing attackers to use statistical methods to obtain a valid authentication token.

    Published: 12 Jan 2022
    9.8
    Critical

    CVE-2022-23218

    Last Modified: 5 May 2025

    The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution.

    Published: 12 Jan 2022
    7.8
    High

    CVE-2021-36417

    Last Modified: 21 Nov 2024

    A heap-based buffer overflow vulnerability exists in GPAC v1.0.1 in the gf_isom_dovi_config_get function in MP4Box, which causes a denial of service or execute arbitrary code via a crafted file.

    Published: 12 Jan 2022
    5.5
    Medium

    CVE-2021-40559

    Last Modified: 21 Nov 2024

    A null pointer deference vulnerability exists in gpac through 1.0.1 via the naludmx_parse_nal_avc function in reframe_nalu, which allows a denail of service.

    Published: 12 Jan 2022
    5.5
    Medium

    CVE-2021-40563

    Last Modified: 21 Nov 2024

    A Segmentation fault exists casued by null pointer dereference exists in Gpac through 1.0.1 via the naludmx_create_avc_decoder_config function in reframe_nalu.c when using mp4box, which causes a denial of service.

    Published: 12 Jan 2022
    5.5
    Medium

    CVE-2021-40564

    Last Modified: 21 Nov 2024

    A Segmentation fault caused by null pointer dereference vulnerability eists in Gpac through 1.0.2 via the avc_parse_slice function in av_parsers.c when using mp4box, which causes a denial of service.

    Published: 12 Jan 2022
    5.5
    Medium

    CVE-2021-40565

    Last Modified: 21 Nov 2024

    A Segmentation fault caused by a null pointer dereference vulnerability exists in Gpac through 1.0.1 via the gf_avc_parse_nalu function in av_parsers.c when using mp4box, which causes a denial of service.

    Published: 12 Jan 2022
    5.5
    Medium

    CVE-2021-40566

    Last Modified: 21 Nov 2024

    A Segmentation fault casued by heap use after free vulnerability exists in Gpac through 1.0.1 via the mpgviddmx_process function in reframe_mpgvid.c when using mp4box, which causes a denial of service.

    Published: 12 Jan 2022
    6.6
    Medium

    CVE-2022-0213

    Last Modified: 21 Nov 2024

    vim is vulnerable to Heap-based Buffer Overflow

    Published: 12 Jan 2022
    4.3
    Medium

    CVE-2022-20612

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability in Jenkins 2.329 and earlier, LTS 2.319.1 and earlier allows attackers to trigger build of job without parameters when no security realm is set.

    Published: 12 Jan 2022
    4.3
    Medium

    CVE-2022-20613

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability in Jenkins Mailer Plugin 391.ve4a_38c1b_cf4b_ and earlier allows attackers to use the DNS used by the Jenkins instance to resolve an attacker-specified hostname.

    Published: 12 Jan 2022
    4.3
    Medium

    CVE-2022-20614

    Last Modified: 21 Nov 2024

    A missing permission check in Jenkins Mailer Plugin 391.ve4a_38c1b_cf4b_ and earlier allows attackers with Overall/Read access to use the DNS used by the Jenkins instance to resolve an attacker-specified hostname.

    Published: 12 Jan 2022
    8.8
    High

    CVE-2022-20617

    Last Modified: 21 Nov 2024

    Jenkins Docker Commons Plugin 1.17 and earlier does not sanitize the name of an image or a tag, resulting in an OS command execution vulnerability exploitable by attackers with Item/Configure permission or able to control the contents of a previously configured job's SCM repository.

    Published: 12 Jan 2022
    4.3
    Medium

    CVE-2022-20618

    Last Modified: 21 Nov 2024

    A missing permission check in Jenkins Bitbucket Branch Source Plugin 737.vdf9dc06105be and earlier allows attackers with Overall/Read access to enumerate credentials IDs of credentials stored in Jenkins.

    Published: 12 Jan 2022
    7.1
    High

    CVE-2022-20619

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability in Jenkins Bitbucket Branch Source Plugin 737.vdf9dc06105be and earlier allows attackers to connect to an attacker-specified URL using attacker-specified credentials IDs obtained through another method, capturing credentials stored in Jenkins.

    Published: 12 Jan 2022
    5.5
    Medium

    CVE-2021-40562

    Last Modified: 21 Nov 2024

    A Segmentation fault caused by a floating point exception exists in Gpac through 1.0.1 using mp4box via the naludmx_enqueue_or_dispatch function in reframe_nalu.c, which causes a denial of service.

    Published: 12 Jan 2022
    8.2
    High

    CVE-2021-43860

    Last Modified: 21 Nov 2024

    Flatpak is a Linux application sandboxing and distribution framework. Prior to versions 1.12.3 and 1.10.6, Flatpak doesn't properly validate that the permissions displayed to the user for an app at install time match the actual permissions granted to the app at runtime, in the case that there's a null byte in the metadata file of an app. Therefore apps can grant themselves permissions without the consent of the user. Flatpak shows permissions to the user during install by reading them from the "xa.metadata" key in the commit metadata. This cannot contain a null terminator, because it is an untrusted GVariant. Flatpak compares these permissions to the *actual* metadata, from the "metadata" file to ensure it wasn't lied to. However, the actual metadata contents are loaded in several places where they are read as simple C-style strings. That means that, if the metadata file includes a null terminator, only the content of the file from *before* the terminator gets compared to xa.metadata. Thus, any permissions that appear in the metadata file after a null terminator are applied at runtime but not shown to the user. So maliciously crafted apps can give themselves hidden permissions. Users who have Flatpaks installed from untrusted sources are at risk in case the Flatpak has a maliciously crafted metadata file, either initially or in an update. This issue is patched in versions 1.12.3 and 1.10.6. As a workaround, users can manually check the permissions of installed apps by checking the metadata file or the xa.metadata key on the commit metadata.

    Published: 12 Jan 2022
    5.4
    Medium

    CVE-2022-0179

    Last Modified: 21 Nov 2024

    snipe-it is vulnerable to Missing Authorization

    Published: 12 Jan 2022
    5.4
    Medium

    CVE-2022-20615

    Last Modified: 21 Nov 2024

    Jenkins Matrix Project Plugin 1.19 and earlier does not escape HTML metacharacters in node and label names, and label descriptions, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Agent/Configure permission.

    Published: 12 Jan 2022
    4.3
    Medium

    CVE-2022-20616

    Last Modified: 21 Nov 2024

    Jenkins Credentials Binding Plugin 1.27 and earlier does not perform a permission check in a method implementing form validation, allowing attackers with Overall/Read access to validate if a credential ID refers to a secret file credential and whether it's a zip file.

    Published: 12 Jan 2022
    7.7
    High

    CVE-2022-21682

    Last Modified: 21 Nov 2024

    Flatpak is a Linux application sandboxing and distribution framework. A path traversal vulnerability affects versions of Flatpak prior to 1.12.3 and 1.10.6. flatpak-builder applies `finish-args` last in the build. At this point the build directory will have the full access that is specified in the manifest, so running `flatpak build` against it will gain those permissions. Normally this will not be done, so this is not problem. However, if `--mirror-screenshots-url` is specified, then flatpak-builder will launch `flatpak build --nofilesystem=host appstream-utils mirror-screenshots` after finalization, which can lead to issues even with the `--nofilesystem=host` protection. In normal use, the only issue is that these empty directories can be created wherever the user has write permissions. However, a malicious application could replace the `appstream-util` binary and potentially do something more hostile. This has been resolved in Flatpak 1.12.3 and 1.10.6 by changing the behaviour of `--nofilesystem=home` and `--nofilesystem=host`.

    Published: 12 Jan 2022
    8.8
    High

    CVE-2021-44648

    Last Modified: 21 Nov 2024

    GNOME gdk-pixbuf 2.42.6 is vulnerable to a heap-buffer overflow vulnerability when decoding the lzw compressed stream of image data in GIF files with lzw minimum code size equals to 12.

    Published: 12 Jan 2022
    6.1
    Medium

    CVE-2022-0087

    Last Modified: 21 Nov 2024

    keystone is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

    Published: 11 Jan 2022
    8.8
    High

    CVE-2021-43999

    Last Modified: 21 Nov 2024

    Apache Guacamole 1.2.0 and 1.3.0 do not properly validate responses received from a SAML identity provider. If SAML support is enabled, this may allow a malicious user to assume the identity of another Guacamole user.

    Published: 11 Jan 2022
    6.5
    Medium

    CVE-2021-41767

    Last Modified: 21 Nov 2024

    Apache Guacamole 1.3.0 and older may incorrectly include a private tunnel identifier in the non-private details of some REST responses. This may allow an authenticated user who already has permission to access a particular connection to read from or interact with another user's active use of that same connection.

    Published: 11 Jan 2022
    8.1
    High

    CVE-2022-21646

    Last Modified: 23 Apr 2025

    SpiceDB is a database system for managing security-critical application permissions. Any user making use of a wildcard relationship under the right hand branch of an `exclusion` or within an `intersection` operation will see `Lookup`/`LookupResources` return a resource as "accessible" if it is *not* accessible by virtue of the inclusion of the wildcard in the intersection or the right side of the exclusion. In `v1.3.0`, the wildcard is ignored entirely in lookup's dispatch, resulting in the `banned` wildcard being ignored in the exclusion. Version 1.4.0 contains a patch for this issue. As a workaround, don't make use of wildcards on the right side of intersections or within exclusions.

    Published: 11 Jan 2022
    5.5
    Medium

    CVE-2021-46283

    Last Modified: 21 Nov 2024

    nf_tables_newset in net/netfilter/nf_tables_api.c in the Linux kernel before 5.12.13 allows local users to cause a denial of service (NULL pointer dereference and general protection fault) because of the missing initialization for nft_set_elem_expr_alloc. A local user can set a netfilter table expression in their own namespace.

    Published: 11 Jan 2022
    9
    Critical

    CVE-2022-21969

    Last Modified: 2 Jan 2025

    Microsoft Exchange Server Remote Code Execution Vulnerability

    Published: 11 Jan 2022
    6.1
    Medium

    CVE-2022-21970

    Last Modified: 2 Jan 2025

    Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

    Published: 11 Jan 2022
    5.5
    Medium

    CVE-2022-21964

    Last Modified: 2 Jan 2025

    Remote Desktop Licensing Diagnoser Information Disclosure Vulnerability

    Published: 11 Jan 2022
    6.4
    Medium

    CVE-2022-21963

    Last Modified: 2 Jan 2025

    Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

    Published: 11 Jan 2022
    6.8
    Medium

    CVE-2022-21961

    Last Modified: 2 Jan 2025

    Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

    Published: 11 Jan 2022
    6.8
    Medium

    CVE-2022-21962

    Last Modified: 2 Jan 2025

    Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

    Published: 11 Jan 2022