CVE-2022-1886
- EPSS 0.1%
- Veröffentlicht 26.05.2022 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:41:40
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVE-2022-1348
- EPSS 0.11%
- Veröffentlicht 25.05.2022 16:15:08
- Zuletzt bearbeitet 09.06.2025 15:15:26
A vulnerability was found in logrotate in how the state file is created. The state file is used to prevent parallel executions of multiple instances of logrotate by acquiring and releasing a file lock. When the state file does not exist, it is create...
CVE-2022-1851
- EPSS 0.22%
- Veröffentlicht 25.05.2022 13:15:07
- Zuletzt bearbeitet 21.11.2024 06:41:36
Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
CVE-2021-42612
- EPSS 0.26%
- Veröffentlicht 24.05.2022 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:27:51
A use after free in cleanup_index in index.c in Halibut 1.2 allows an attacker to cause a segmentation fault or possibly have other unspecified impact via a crafted text document.
CVE-2021-42613
- EPSS 0.2%
- Veröffentlicht 24.05.2022 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:27:52
A double free in cleanup_index in index.c in Halibut 1.2 allows an attacker to cause a denial of service or possibly have other unspecified impact via a crafted text document.
CVE-2021-42614
- EPSS 0.26%
- Veröffentlicht 24.05.2022 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:27:52
A use after free in info_width_internal in bk_info.c in Halibut 1.2 allows an attacker to cause a segmentation fault or possibly have unspecified other impact via a crafted text document.
CVE-2022-29217
- EPSS 0.32%
- Veröffentlicht 24.05.2022 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:58:44
PyJWT is a Python implementation of RFC 7519. PyJWT supports multiple different JWT signing algorithms. With JWT, an attacker submitting the JWT token can choose the used signing algorithm. The PyJWT library requires that the application chooses what...
CVE-2022-29221
- EPSS 24.26%
- Veröffentlicht 24.05.2022 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:58:44
Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic. Prior to versions 3.1.45 and 4.1.1, template authors could inject php code by choosing a malicious {block} name or {include} file name...
CVE-2022-30597
- EPSS 0.53%
- Veröffentlicht 18.05.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:02:59
A flaw was found in moodle where the description user field was not hidden when being set as a hidden user field.
CVE-2022-30598
- EPSS 0.51%
- Veröffentlicht 18.05.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:03:00
A flaw was found in moodle where global search results could include author information on some activities where a user may not otherwise have access to it.