CVE-2022-28739
- EPSS 0.31%
- Veröffentlicht 09.05.2022 18:15:08
- Zuletzt bearbeitet 04.11.2025 16:15:48
There is a buffer over-read in Ruby before 2.6.10, 2.7.x before 2.7.6, 3.x before 3.0.4, and 3.1.x before 3.1.2. It occurs in String-to-Float conversion, including Kernel#Float and String#to_f.
CVE-2022-1620
- EPSS 0.08%
- Veröffentlicht 08.05.2022 11:15:07
- Zuletzt bearbeitet 21.11.2024 06:41:06
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in GitHub repository vim/vim prior to 8.2.4901. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 allows attackers to cause a denial of service (applicati...
CVE-2022-1619
- EPSS 0.5%
- Veröffentlicht 08.05.2022 10:15:07
- Zuletzt bearbeitet 21.11.2024 06:41:06
Heap-based Buffer Overflow in function cmdline_erase_chars in GitHub repository vim/vim prior to 8.2.4899. This vulnerabilities are capable of crashing software, modify memory, and possible remote execution
CVE-2022-1616
- EPSS 0.09%
- Veröffentlicht 07.05.2022 19:15:07
- Zuletzt bearbeitet 03.11.2025 21:15:50
Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution
CVE-2022-1420
- EPSS 0.05%
- Veröffentlicht 21.04.2022 11:15:08
- Zuletzt bearbeitet 21.11.2024 06:40:41
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4774.
CVE-2022-29458
- EPSS 0.04%
- Veröffentlicht 18.04.2022 21:15:07
- Zuletzt bearbeitet 09.06.2025 15:15:27
ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library.
CVE-2022-1381
- EPSS 0.06%
- Veröffentlicht 18.04.2022 01:15:10
- Zuletzt bearbeitet 21.11.2024 06:40:36
global heap buffer overflow in skip_range in GitHub repository vim/vim prior to 8.2.4763. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution
CVE-2022-29046
- EPSS 12.24%
- Veröffentlicht 12.04.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:58:24
Jenkins Subversion Plugin 2.15.3 and earlier does not escape the name and description of List Subversion tags (and more) parameters on views displaying parameters, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attacker...
CVE-2022-29048
- EPSS 0.17%
- Veröffentlicht 12.04.2022 20:15:09
- Zuletzt bearbeitet 21.11.2024 06:58:24
A cross-site request forgery (CSRF) vulnerability in Jenkins Subversion Plugin 2.15.3 and earlier allows attackers to connect to an attacker-specified URL.
CVE-2022-24070
- EPSS 0.99%
- Veröffentlicht 12.04.2022 18:15:09
- Zuletzt bearbeitet 21.11.2024 06:49:45
Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use memory which has already been freed. Affected Subversion mod_dav_svn servers 1.10.0 through 1.14.1 (i...