6.1
    Medium

    CVE-2022-27913

    Last Modified: 21 Nov 2024

    An issue was discovered in Joomla! 4.2.0 through 4.2.3. Inadequate filtering of potentially malicious user input leads to reflected XSS vulnerabilities in various components.

    Published:25 Oct 2022
    7.8
    High

    CVE-2022-27772

    Last Modified: 21 Nov 2024

    spring-boot versions prior to version v2.2.11.RELEASE was vulnerable to temporary directory hijacking. This vulnerability impacted the org.springframework.boot.web.server.AbstractConfigurableWebServerFactory.createTempDir method. NOTE: This vulnerability only affects products and/or versions that are no longer supported by the maintainer

    Published:30 Mar 2022
    7.8
    High

    CVE-2022-27666

    Last Modified: 1 Sept 2026

    A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with a normal user privilege to overwrite kernel heap objects and may cause a local privilege escalation threat.

    Published:11 Mar 2022
    6.1
    Medium

    CVE-2022-27665

    Last Modified: 27 Nov 2024

    Reflected XSS (via AngularJS sandbox escape expressions) exists in Progress Ipswitch WS_FTP Server 8.6.0. This can lead to execution of malicious code and commands on the client due to improper handling of user-provided input. By inputting malicious payloads in the subdirectory searchbar or Add folder filename boxes, it is possible to execute client-side commands. For example, there is Client-Side Template Injection via subFolderPath to the ThinClient/WtmApiService.asmx/GetFileSubTree URI.

    Published:3 Apr 2023
    8.8
    High

    CVE-2022-27646

    Last Modified: 18 Feb 2025

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the circled daemon. A crafted circleinfo.txt file can trigger an overflow of a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-15879.

    Published:29 Mar 2023
    9.8
    Critical

    CVE-2022-27518

    Last Modified: 25 Feb 2026

    Unauthenticated remote arbitrary code execution

    Published:13 Dec 2022
    7.8
    High

    CVE-2022-27502

    Last Modified: 21 Nov 2024

    RealVNC VNC Server 6.9.0 through 5.1.0 for Windows allows local privilege escalation because an installer repair operation executes %TEMP% files as SYSTEM.

    Published:10 Jun 2022
    2.5
    Low

    CVE-2022-27499

    Last Modified: 5 Feb 2025

    Premature release of resource during expected lifetime in the Intel(R) SGX SDK software may allow a privileged user to potentially enable information disclosure via local access.

    Published:11 Nov 2022
    8.1
    High

    CVE-2022-27438

    Last Modified: 21 Nov 2024

    Caphyon Ltd Advanced Installer 19.3 and earlier and many products that use the updater from Advanced Installer (Advanced Updater) are affected by a remote code execution vulnerability via the CustomDetection parameter in the update check function. To exploit this vulnerability, a user must start an affected installation to trigger the update check.

    Published:6 Jun 2022
    9.8
    Critical

    CVE-2022-27434

    Last Modified: 21 Nov 2024

    UNIT4 TETA Mobile Edition (ME) before 29.5.HF17 was discovered to contain a SQL injection vulnerability via the ProfileName parameter in the errorReporting page.

    Published:17 Jul 2022
    Unknown

    CVE-2022-27414

    https://github.com/lus33rr/CVE-2022-27414

    9.8
    Critical

    CVE-2022-27413

    Last Modified: 21 Nov 2024

    Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the adminname parameter in admin.php.

    Published:3 May 2022
    9.8
    Critical

    CVE-2022-27412

    Last Modified: 11 May 2022

    Explore CMS v1.0 was discovered to contain a SQL injection vulnerability via a /page.php?id= request.

    Source:Sajibe Kanti
    Published:9 May 2022
    5.4
    Medium

    CVE-2022-27308

    Last Modified: 11 May 2022

    A stored cross-site scripting (XSS) vulnerability in PHProjekt PhpSimplyGest v1.3.0 allows attackers to execute arbitrary web scripts or HTML via a project title.

    Source:Andrea Intilangelo
    Published:9 May 2022
    9.8
    Critical

    CVE-2022-27255

    Last Modified: 21 Nov 2024

    In Realtek eCos RSDK 1.5.7p1 and MSDK 4.9.4p1, the SIP ALG function that rewrites SDP data has a stack-based buffer overflow. This allows an attacker to remotely execute code without authentication via a crafted SIP packet that contains malicious SDP data.

    Published:1 Aug 2022
    5.3
    Medium

    CVE-2022-27254

    Last Modified: 21 Nov 2024

    The remote keyless system on Honda Civic 2018 vehicles sends the same RF signal for each door-open request, which allows for a replay attack, a related issue to CVE-2019-20626.

    Published:23 Mar 2022
    Unknown

    CVE-2022-27251

    https://github.com/TheCyberGeek/CVE-2022-27251

    8.8
    High

    CVE-2022-27226

    Last Modified: 22 Mar 2022

    A CSRF issue in /api/crontab on iRZ Mobile Routers through 2022-03-16 allows a threat actor to create a crontab entry in the router administration panel. The cronjob will consequently execute the entry on the threat actor's defined interval, leading to remote code execution, allowing the threat actor to gain filesystem access. In addition, if the router's default credentials aren't rotated or a threat actor discovers valid credentials, remote code execution can be achieved without user interaction.

    Source:John Jackson
    Published:19 Mar 2022
    7.5
    High

    CVE-2022-27134

    Last Modified: 21 Nov 2024

    EOSIO batdappboomx v327c04cf has an Access-control vulnerability in the `transfer` function of the smart contract which allows remote attackers to win the cryptocurrency without paying ticket fee via the `std::string memo` parameter.

    Published:12 May 2022
    7.2
    High

    CVE-2022-26986

    Last Modified: 25 Mar 2023

    SQL Injection in ImpressCMS 1.4.3 and earlier allows remote attackers to inject into the code in unintended way, this allows an attacker to read and modify the sensitive information from the database used by the application. If misconfigured, an attacker can even upload a malicious web shell to compromise the entire system.

    Source:Sarang Tumne
    Published:5 Apr 2022
    7.2
    High

    CVE-2022-26982

    Last Modified: 23 Jun 2023

    SimpleMachinesForum 2.1.1 and earlier allows remote authenticated administrators to execute arbitrary code by inserting a vulnerable php code because the themes can be modified by an administrator. NOTE: the vendor's position is that administrators are intended to have the ability to modify themes, and can thus choose any PHP code that they wish to have executed on the server.

    Source:Sarang Tumne
    Published:5 Apr 2022
    7.2
    High

    CVE-2022-26965

    Last Modified: 16 Mar 2022

    In Pluck 4.7.16, an admin user can use the theme upload functionality at /admin.php?action=themeinstall to perform remote code execution.

    Source:Ashish Koli
    Published:18 Mar 2022
    9.8
    Critical

    CVE-2022-26937

    Last Modified: 2 Jan 2025

    Windows Network File System Remote Code Execution Vulnerability

    Published:10 May 2022
    8.8
    High

    CVE-2022-26927

    Last Modified: 2 Jan 2025

    Windows Graphics Component Remote Code Execution Vulnerability

    Published:10 May 2022
    8.8
    High

    CVE-2022-26923

    Last Modified: 30 Oct 2025

    Active Directory Domain Services Elevation of Privilege Vulnerability

    Published:10 May 2022
    6.5
    Medium

    CVE-2022-26884

    Last Modified: 7 May 2025

    Users can read any files by log server, Apache DolphinScheduler users should upgrade to version 2.0.6 or higher.

    Published:28 Oct 2022
    7.8
    High

    CVE-2022-26810

    Last Modified: 2 Jan 2025

    Windows File Server Resource Management Service Elevation of Privilege Vulnerability

    Published:15 Apr 2022
    9.8
    Critical

    CVE-2022-26809

    Last Modified: 2 Jan 2025

    Remote Procedure Call Runtime Remote Code Execution Vulnerability

    Published:15 Apr 2022
    5.5
    Medium

    CVE-2022-26766

    Last Modified: 30 May 2025

    A certificate parsing issue was addressed with improved checks. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, Security Update 2022-004 Catalina, watchOS 8.6, macOS Big Sur 11.6.6, macOS Monterey 12.4. A malicious app may be able to bypass signature validation.

    Published:26 May 2022
    7.8
    High

    CVE-2022-26763

    Last Modified: 30 May 2025

    An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, Security Update 2022-004 Catalina, watchOS 8.6, macOS Big Sur 11.6.6, macOS Monterey 12.4. A malicious application may be able to execute arbitrary code with system privileges.

    Published:26 May 2022
    7.8
    High

    CVE-2022-26757

    Last Modified: 21 Nov 2024

    A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, Security Update 2022-004 Catalina, watchOS 8.6, macOS Big Sur 11.6.6, macOS Monterey 12.4. An application may be able to execute arbitrary code with kernel privileges.

    Published:26 May 2022
    6.5
    Medium

    CVE-2022-26726

    Last Modified: 21 Nov 2024

    This issue was addressed with improved checks. This issue is fixed in Security Update 2022-004 Catalina, watchOS 8.6, macOS Monterey 12.4, macOS Big Sur 11.6.6. An app may be able to capture a user's screen.

    Published:26 May 2022
    8.8
    High

    CVE-2022-26717

    Last Modified: 6 May 2025

    A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.5, watchOS 8.6, iOS 15.5 and iPadOS 15.5, macOS Monterey 12.4, Safari 15.5, iTunes 12.12.4 for Windows. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published:17 May 2022
    9.8
    Critical

    CVE-2022-26711

    Last Modified: 21 Nov 2024

    An integer overflow issue was addressed with improved input validation. This issue is fixed in tvOS 15.5, iTunes 12.12.4 for Windows, iOS 15.5 and iPadOS 15.5, watchOS 8.6, macOS Monterey 12.4. A remote attacker may be able to cause unexpected application termination or arbitrary code execution.

    Published:26 May 2022
    7.3
    High

    CVE-2022-26671

    Last Modified: 21 Nov 2024

    Taiwan Secom Dr.ID Access Control system’s login page has a hard-coded credential in the source code. An unauthenticated remote attacker can use the hard-coded credential to acquire partial system information and modify system setting to cause partial disrupt of service.

    Published:7 Apr 2022
    9.1
    Critical

    CVE-2022-26629

    Last Modified: 21 Nov 2024

    An Access Control vulnerability exists in SoroushPlus+ Messenger 1.0.30 in the Lock Screen Security Feature function due to insufficient permissions and privileges, which allows a malicious attacker bypass the lock screen function.

    Published:24 Mar 2022
    7.2
    High

    CVE-2022-26521

    Last Modified: 23 Jun 2023

    Abantecart through 1.3.2 allows remote authenticated administrators to execute arbitrary code by uploading an executable file, because the Catalog>Media Manager>Images settings can be changed by an administrator (e.g., by configuring .php to be a valid image file type).

    Source:Sarang Tumne
    Published:7 Mar 2022
    7.8
    High

    CVE-2022-26503

    Last Modified: 21 Nov 2024

    Deserialization of untrusted data in Veeam Agent for Windows 2.0, 2.1, 2.2, 3.0.2, 4.x, and 5.x allows local users to run arbitrary code with local system privileges.

    Published:17 Mar 2022
    7
    High

    CVE-2022-26488

    Last Modified: 21 Nov 2024

    In Python before 3.10.3 on Windows, local users can gain privileges because the search path is inadequately secured. The installer may allow a local attacker to add user-writable directories to the system search path. To exploit, an administrator must have installed Python for all users and enabled PATH entries. A non-administrative user can trigger a repair that incorrectly adds user-writable paths into PATH, enabling search-path hijacking of other users and system services. This affects Python (CPython) through 3.7.12, 3.8.x through 3.8.12, 3.9.x through 3.9.10, and 3.10.x through 3.10.2.

    Published:7 Mar 2022
    8.8
    High

    CVE-2022-26485

    Last Modified: 19 Aug 2026

    Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for Android < 97.3.0, Thunderbird < 91.6.2, and Focus < 97.3.0.

    Published:5 Mar 2022
    7.5
    High

    CVE-2022-26377

    Last Modified: 1 May 2025

    Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in mod_proxy_ajp of Apache HTTP Server allows an attacker to smuggle requests to the AJP server it forwards requests to. This issue affects Apache HTTP Server Apache HTTP Server 2.4 version 2.4.53 and prior versions.

    Published:8 Jun 2022
    9.8
    Critical

    CVE-2022-26318

    Last Modified: 13 Nov 2025

    On WatchGuard Firebox and XTM appliances, an unauthenticated user can execute arbitrary code, aka FBX-22786. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.

    Published:4 Mar 2022
    4.6
    Medium

    CVE-2022-26269

    Last Modified: 21 Nov 2024

    Suzuki Connect v1.0.15 allows attackers to tamper with displayed messages via spoofed CAN messages.

    Published:29 Mar 2022
    9.8
    Critical

    CVE-2022-26265

    Last Modified: 21 Nov 2024

    Contao Managed Edition v1.5.0 was discovered to contain a remote command execution (RCE) vulnerability via the component php_cli parameter.

    Published:18 Mar 2022
    8.8
    High

    CVE-2022-26180

    Last Modified: 7 Apr 2022

    qdPM 9.2 allows Cross-Site Request Forgery (CSRF) via the index.php/myAccount/update URI.

    Source:Chetanya Sharma
    Published:8 Apr 2022
    5.3
    Medium

    CVE-2022-26159

    Last Modified: 21 Nov 2024

    The auto-completion plugin in Ametys CMS before 4.5.0 allows a remote unauthenticated attacker to read documents such as plugins/web/service/search/auto-completion/<domain>/en.xml (and similar pathnames for other languages), which contain all characters typed by all users, including the content of private pages. For example, a private page may contain usernames, e-mail addresses, and possibly passwords.

    Published:28 Feb 2022
    7.2
    High

    CVE-2022-26149

    Last Modified: 22 Jun 2023

    MODX Revolution through 2.8.3-pl allows remote authenticated administrators to execute arbitrary code by uploading an executable file, because the Uploadable File Types setting can be changed by an administrator.

    Source:Sarang Tumne
    Published:26 Feb 2022
    9.8
    Critical

    CVE-2022-26138

    Last Modified: 14 Jan 2026

    The Atlassian Questions For Confluence app for Confluence Server and Data Center creates a Confluence user account in the confluence-users group with the username disabledsystemuser and a hardcoded password. A remote, unauthenticated attacker with knowledge of the hardcoded password could exploit this to log into Confluence and access all content accessible to users in the confluence-users group. This user account is created when installing versions 2.7.34, 2.7.35, and 3.0.2 of the app.

    Published:20 Jul 2022
    6.5
    Medium

    CVE-2022-26135

    Last Modified: 21 Nov 2024

    A vulnerability in Mobile Plugin for Jira Data Center and Server allows a remote, authenticated user (including a user who joined via the sign-up feature) to perform a full read server-side request forgery via a batch endpoint. This affects Atlassian Jira Server and Data Center from version 8.0.0 before version 8.13.22, from version 8.14.0 before 8.20.10, from version 8.21.0 before 8.22.4. This also affects Jira Management Server and Data Center versions from version 4.0.0 before 4.13.22, from version 4.14.0 before 4.20.10 and from version 4.21.0 before 4.22.4.

    Published:30 Jun 2022
    9.8
    Critical

    CVE-2022-26134

    Last Modified: 10 Jun 2022

    In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an unauthenticated attacker to execute arbitrary code on a Confluence Server or Data Center instance. The affected versions are from 1.3.0 before 7.4.17, from 7.13.0 before 7.13.7, from 7.14.0 before 7.14.3, from 7.15.0 before 7.15.2, from 7.16.0 before 7.16.4, from 7.17.0 before 7.17.4, and from 7.18.0 before 7.18.1.

    Source:Fellipe Oliveira
    Published:3 Jun 2022