• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2022-47908
2023-01-10
N/A
7.8 HIGH
Stack-based buffer overflow vulnerability in V-Server v4.0.12.0 and earlier allows a local attacker to obtain the information and/or execute arbitrary code by having a user to open a specially crafted project file.
CVE-2022-4790
2023-02-01
N/A
5.4 MEDIUM
The WP Google My Business Auto Publish WordPress plugin before 3.4 does not validate and escape one of its shortcode attributes, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attack.
CVE-2022-47896
2022-12-29
N/A
7.8 HIGH
In JetBrains IntelliJ IDEA before 2022.3.1 code Templates were vulnerable to SSTI attacks.
CVE-2022-47895
2022-12-29
N/A
7.5 HIGH
In JetBrains IntelliJ IDEA before 2022.3.1 the "Validate JSP File" action used the HTTP protocol to download required JAR files.
CVE-2022-4789
2023-02-01
N/A
5.4 MEDIUM
The WPZOOM Portfolio WordPress plugin before 1.2.2 does not validate and escape one of its shortcode attributes, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attack.
CVE-2022-47881
2023-01-25
N/A
6.5 MEDIUM
Foxit PDF Reader and PDF Editor 11.2.1.53537 and earlier has an Out-of-Bounds Read vulnerability.
CVE-2022-47873
2023-02-08
N/A
9.8 CRITICAL
Netcad KEOS 1.0 is vulnerable to XML External Entity (XXE) resulting in SSRF with XXE (remote).
CVE-2022-47872
2023-02-08
N/A
8.8 HIGH
maccms10 2021.1000.2000 is vulnerable to Server-side request forgery (SSRF).
CVE-2022-4787
Shortcodes, Themify
Portfolio_post, Post_type_builder_search_addon, Shortcodes, Woocommerce_product_filter
2023-02-06
N/A
5.4 MEDIUM
Themify Shortcodes WordPress plugin before 2.0.8 does not validate and escape one of its shortcode attributes, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attack.
CVE-2022-47866
2023-01-13
N/A
9.8 CRITICAL
Lead management system v1.0 is vulnerable to SQL Injection via the id parameter in removeBrand.php.
« Previous 1 … 8,905 8,906 8,907 8,908 8,909 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE