CVE List - 2022 / December
Showing 901 - 1000 of 2356 CVEs for December 2022 (Page 10 of 24)
CVE ID | Date | Title |
---|---|---|
CVE-2022-4438 | 2022-12-14 | Use after free in Blink Frames in Google Chrome prior... |
CVE-2022-4439 | 2022-12-14 | Use after free in Aura in Google Chrome on Windows... |
CVE-2022-4440 | 2022-12-14 | Use after free in Profiles in Google Chrome prior to... |
CVE-2022-4495 | 2022-12-14 | collective.dms.basecontent column.py renderCell cross site scripting |
CVE-2020-9419 | 2022-12-14 | Multiple stored cross-site scripting (XSS) vulnerabilities in Arcadyan Wifi routers... |
CVE-2020-9420 | 2022-12-14 | The login password of the web administrative dashboard in Arcadyan... |
CVE-2022-23741 | 2022-12-14 | Incorrect authorization in GitHub Enterprise Server token generation leading to full admin access |
CVE-2022-3104 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-3105 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-3106 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-3107 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-3108 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-3110 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-3111 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-3112 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-3113 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-3114 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-3115 | 2022-12-14 | An issue was discovered in the Linux kernel through 5.16-rc6.... |
CVE-2022-31358 | 2022-12-14 | A reflected cross-site scripting (XSS) vulnerability in Proxmox Virtual Environment... |
CVE-2022-31700 | 2022-12-14 | VMware Workspace ONE Access and Identity Manager contain an authenticated... |
CVE-2022-31701 | 2022-12-14 | VMware Workspace ONE Access and Identity Manager contain a broken... |
CVE-2022-31702 | 2022-12-14 | vRealize Network Insight (vRNI) contains a command injection vulnerability present... |
CVE-2022-31703 | 2022-12-14 | The vRealize Log Insight contains a Directory Traversal Vulnerability. An... |
CVE-2022-31705 | 2022-12-14 | VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write... |
CVE-2022-38488 | 2022-12-14 | logrocket-oauth2-example through 2020-05-27 allows SQL injection via the /auth/register username... |
CVE-2022-4283 | 2022-12-14 | A vulnerability was found in X.Org. This security flaw occurs... |
CVE-2022-44832 | 2022-12-14 | D-Link DIR-3040 device with firmware 120B03 was discovered to contain... |
CVE-2022-44898 | 2022-12-14 | The MsIo64.sys component in Asus Aura Sync through v1.07.79 does... |
CVE-2022-44910 | 2022-12-14 | Binbloom 2.0 was discovered to contain a heap buffer overflow... |
CVE-2022-4493 | 2022-12-14 | scifio ZIP File DefaultSampleFilesService.java downloadAndUnpackResource path traversal |
CVE-2022-4494 | 2022-12-14 | bspkrs MCPMappingViewer ZIP File RemoteZipHandler.java extractZip path traversal |
CVE-2022-46071 | 2022-12-14 | There is SQL Injection vulnerability at Helmet Store Showroom v1.0... |
CVE-2022-46072 | 2022-12-14 | Helmet Store Showroom v1.0 vulnerable to unauthenticated SQL Injection. |
CVE-2022-46073 | 2022-12-14 | Helmet Store Showroom 1.0 is vulnerable to Cross Site Scripting... |
CVE-2022-46074 | 2022-12-14 | Helmet Store Showroom 1.0 is vulnerable to Cross Site Request... |
CVE-2022-46117 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46118 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46119 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46120 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46121 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46122 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46123 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46124 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46125 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46126 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46127 | 2022-12-14 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection... |
CVE-2022-46255 | 2022-12-14 | Improper Limitation of a Pathname to a Restricted Directory in GitHub Enterprise Server leading to RCE |
CVE-2022-46256 | 2022-12-14 | Path traversal in GitHub Enterprise Server leading to remote code execution in GitHub Pages |
CVE-2022-46340 | 2022-12-14 | A vulnerability was found in X.Org. This security flaw occurs... |
CVE-2022-46341 | 2022-12-14 | A vulnerability was found in X.Org. This security flaw occurs... |
CVE-2022-46342 | 2022-12-14 | A vulnerability was found in X.Org. This security flaw occurs... |
CVE-2022-46343 | 2022-12-14 | A vulnerability was found in X.Org. This security flaw occurs... |
CVE-2022-46344 | 2022-12-14 | A vulnerability was found in X.Org. This security flaw occurs... |
CVE-2022-46443 | 2022-12-14 | mesinkasir Bangresto 1.0 is vulnberable to SQL Injection via the... |
CVE-2022-46609 | 2022-12-14 | Python3-RESTfulAPI commit d9907f14e9e25dcdb54f5b22252b0e9452e3970e and e772e0beee284c50946e94c54a1d43071ca78b74 was discovered to contain a... |
CVE-2022-46996 | 2022-12-14 | vSphere_selfuse commit 2a9fe074a64f6a0dd8ac02f21e2f10d66cac5749 was discovered to contain a code execution... |
CVE-2022-46997 | 2022-12-14 | Passhunt commit 54eb987d30ead2b8ebbf1f0b880aa14249323867 was discovered to contain a code execution... |
CVE-2022-47406 | 2022-12-14 | An issue was discovered in the fe_change_pwd (aka Change password... |
CVE-2022-47407 | 2022-12-14 | An issue was discovered in the fp_masterquiz (aka Master-Quiz) extension... |
CVE-2022-47408 | 2022-12-14 | An issue was discovered in the fp_newsletter (aka Newsletter subscriber... |
CVE-2022-47409 | 2022-12-14 | An issue was discovered in the fp_newsletter (aka Newsletter subscriber... |
CVE-2022-47410 | 2022-12-14 | An issue was discovered in the fp_newsletter (aka Newsletter subscriber... |
CVE-2022-47411 | 2022-12-14 | An issue was discovered in the fp_newsletter (aka Newsletter subscriber... |
CVE-2022-22063 | 2022-12-14 | Memory corruption in Core |
CVE-2022-23500 | 2022-12-14 | TYPO3 subject to Uncontrolled Recursion resulting in Denial of Service |
CVE-2022-23501 | 2022-12-14 | TYPO3 vulnerable to Improper Authentication in Frontend Login |
CVE-2022-23502 | 2022-12-14 | TYPO3 contains Insufficient Session Expiration after Password Reset |
CVE-2022-23503 | 2022-12-14 | TYPO3 vulnerable to Arbitrary Code Execution via Form Framework |
CVE-2022-23504 | 2022-12-14 | TYPO3 contains Sensitive Information Disclosure via YAML Placeholder Expressions in Site Configuration |
CVE-2022-3073 | 2022-12-14 | Quaonos Schema ST4 example templates prone to XSS |
CVE-2022-3590 | 2022-12-14 | WP <= 6.1.1 - Unauthenticated Blind SSRF via DNS Rebinding |
CVE-2022-34271 | 2022-12-14 | Apache Atlas: zip path traversal in import functionality |
CVE-2022-23512 | 2022-12-14 | Metersphere is vulnerable to Path Injection. |
CVE-2022-23514 | 2022-12-14 | Inefficient Regular Expression Complexity in Loofah |
CVE-2022-23515 | 2022-12-14 | Improper neutralization of data URIs may allow XSS in Loofah |
CVE-2022-23516 | 2022-12-14 | Uncontrolled Recursion in Loofah |
CVE-2022-23517 | 2022-12-14 | Inefficient Regular Expression Complexity in rails-html-sanitizer |
CVE-2022-23518 | 2022-12-14 | Improper neutralization of data URIs allows XSS in rails-html-sanitizer |
CVE-2022-23519 | 2022-12-14 | Possible XSS vulnerability with certain configurations of rails-html-sanitizer |
CVE-2022-23520 | 2022-12-14 | rails-html-sanitizer contains an incomplete fix for an XSS vulnerability |
CVE-2022-23527 | 2022-12-14 | Open Redirect in oidc_validate_redirect_url() |
CVE-2022-4501 | 2022-12-14 | The Mega Addons plugin for WordPress is vulnerable to authorization... |
CVE-2022-3917 | 2022-12-14 | Improper access control of bootloader function was discovered in Motorola... |
CVE-2022-4410 | 2022-12-14 | The Permalink Manager Lite plugin for WordPress is vulnerable to... |
CVE-2020-4497 | 2022-12-14 | IBM Spectrum Protect Plus information disclosure |
CVE-2021-4245 | 2022-12-15 | chbrown rfc6902 pointer.ts prototype pollution |
CVE-2022-4521 | 2022-12-15 | WSO2 carbon-registry Request Parameter cross site scripting |
CVE-2022-4523 | 2022-12-15 | vexim2 cross site scripting |
CVE-2022-4524 | 2022-12-15 | Roots soil Plugin CleanUpModule.php language_attributes cross site scripting |
CVE-2022-4525 | 2022-12-15 | National Sleep Research Resource sleepdata.org cross site scripting |
CVE-2022-4527 | 2022-12-15 | collective.task table.py AssignedGroupColumn cross site scripting |
CVE-2020-20588 | 2022-12-15 | File upload vulnerability in function upload in action/Core.class.php in zhimengzhe... |
CVE-2020-20589 | 2022-12-15 | Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.0.8 allows remote... |
CVE-2020-21219 | 2022-12-15 | Cross Site Scripting (XSS) vulnerability in Netgate pf Sense 2.4.4-Release-p3... |
CVE-2020-24855 | 2022-12-15 | Directory Traversal vulnerability in easywebpack-cli before 4.5.2 allows attackers to... |
CVE-2020-36607 | 2022-12-15 | Cross Site Scripting (XSS) vulnerability in FeehiCMS 2.0.8 allows remote... |
CVE-2021-33420 | 2022-12-15 | A deserialization issue discovered in inikulin replicator before 1.0.4 allows... |
CVE-2021-36572 | 2022-12-15 | Cross Site Scripting (XSS) vulnerability in Feehi CMS thru 2.1.1... |
CVE-2021-36573 | 2022-12-15 | File Upload vulnerability in Feehi CMS thru 2.1.1 allows attackers... |
CVE-2021-39426 | 2022-12-15 | An issue was discovered in /Upload/admin/admin_notify.php in Seacms 11.4 allows... |