CVE-2022-25765
- EPSS 88.93%
- Veröffentlicht 09.09.2022 05:15:07
- Zuletzt bearbeitet 21.11.2024 06:52:57
The package pdfkit from 0.0.0 are vulnerable to Command Injection where the URL is not properly sanitized.
CVE-2022-27664
- EPSS 0.11%
- Veröffentlicht 06.09.2022 18:15:12
- Zuletzt bearbeitet 21.11.2024 06:56:07
In net/http in Go before 1.18.6 and 1.19.x before 1.19.1, attackers can cause a denial of service because an HTTP/2 connection can hang during closing if shutdown were preempted by a fatal error.
CVE-2022-3123
- EPSS 0.59%
- Veröffentlicht 05.09.2022 10:15:09
- Zuletzt bearbeitet 21.11.2024 07:18:52
Cross-site Scripting (XSS) - Reflected in GitHub repository splitbrain/dokuwiki prior to 2022-07-31a.
CVE-2022-39831
- EPSS 0.07%
- Veröffentlicht 05.09.2022 05:15:07
- Zuletzt bearbeitet 21.11.2024 07:18:20
An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_bytes_internal in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other ...
CVE-2022-39832
- EPSS 0.17%
- Veröffentlicht 05.09.2022 05:15:07
- Zuletzt bearbeitet 21.11.2024 07:18:20
An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
CVE-2022-3099
- EPSS 0.1%
- Veröffentlicht 03.09.2022 16:15:08
- Zuletzt bearbeitet 03.11.2025 21:15:53
Use After Free in GitHub repository vim/vim prior to 9.0.0360.
CVE-2022-39170
- EPSS 0.48%
- Veröffentlicht 02.09.2022 03:15:07
- Zuletzt bearbeitet 21.11.2024 07:17:42
libdwarf 0.4.1 has a double free in _dwarf_exec_frame_instr in dwarf_frame.c.
CVE-2022-32743
- EPSS 1.11%
- Veröffentlicht 01.09.2022 21:15:10
- Zuletzt bearbeitet 22.08.2025 10:31:41
Samba does not validate the Validated-DNS-Host-Name right for the dNSHostName attribute which could permit unprivileged users to write it.
CVE-2021-3826
- EPSS 0.43%
- Veröffentlicht 01.09.2022 21:15:08
- Zuletzt bearbeitet 21.11.2024 06:22:32
Heap/stack buffer overflow in the dlang_lname function in d-demangle.c in libiberty allows attackers to potentially cause a denial of service (segmentation fault and crash) via a crafted mangled symbol.
CVE-2022-1615
- EPSS 0.14%
- Veröffentlicht 01.09.2022 21:15:08
- Zuletzt bearbeitet 22.08.2025 20:19:52
In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.