CVE-2021-29454
- EPSS 0.49%
 - Published 10.01.2022 20:15:08
 - Last modified 21.11.2024 06:01:08
 
Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic. Prior to versions 3.1.42 and 4.0.2, template authors could run arbitrary PHP code by crafting a malicious math string. If a math strin...
CVE-2021-21408
- EPSS 0.32%
 - Published 10.01.2022 20:15:07
 - Last modified 21.11.2024 05:48:17
 
Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic. Prior to versions 3.1.43 and 4.0.3, template authors could run restricted static php methods. Users should upgrade to version 3.1.43 o...
CVE-2022-0156
- EPSS 0.12%
 - Published 10.01.2022 16:15:09
 - Last modified 21.11.2024 06:38:01
 
vim is vulnerable to Use After Free
CVE-2022-0157
- EPSS 0.4%
 - Published 10.01.2022 16:15:09
 - Last modified 21.11.2024 06:38:01
 
phoronix-test-suite is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-0158
- EPSS 0.13%
 - Published 10.01.2022 16:15:09
 - Last modified 21.11.2024 06:38:01
 
vim is vulnerable to Heap-based Buffer Overflow
CVE-2022-21663
- EPSS 0.7%
 - Published 06.01.2022 23:15:08
 - Last modified 21.11.2024 06:45:11
 
WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. On a multisite, users with Super Admin role can bypass explicit/additional hardening under certain conditions through object injection. T...
CVE-2022-21664
- EPSS 2.21%
 - Published 06.01.2022 23:15:08
 - Last modified 21.11.2024 06:45:11
 
WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. Due to lack of proper sanitization in one of the classes, there's potential for unintended SQL queries to be executed. This has been patc...
CVE-2022-21661
- EPSS 90.28%
 - Published 06.01.2022 23:15:07
 - Last modified 19.08.2025 16:35:50
 
WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. Due to improper sanitization in WP_Query, there can be cases where SQL injection is possible through plugins or themes that use it in a c...
CVE-2021-46141
- EPSS 0.09%
 - Published 06.01.2022 04:15:06
 - Last modified 21.11.2024 06:33:40
 
An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriFreeUriMembers and uriMakeOwner.
CVE-2021-46142
- EPSS 0.09%
 - Published 06.01.2022 04:15:06
 - Last modified 21.11.2024 06:33:40
 
An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriNormalizeSyntax.