Search Results (311531 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-38902 1 Liferay 2 Dxp, Liferay Portal 2025-05-15 5.4 Medium
A Cross-site scripting (XSS) vulnerability in the Blog module - add new topic functionality in Liferay Digital Experience Platform 7.3.10 SP3 allows remote attackers to inject arbitrary JS script or HTML into the name field of newly created topic.
CVE-2022-37208 1 Jflyfox 1 Jfinal Cms 2025-05-15 8.8 High
JFinal CMS 5.1.0 is vulnerable to SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.
CVE-2022-35612 1 Bevywise 1 Mqttroute 2025-05-15 5.4 Medium
A cross-site scripting (XSS) vulnerability in MQTTRoute v3.3 and below allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the dashboard name text field.
CVE-2022-35611 1 Bevywise 1 Mqttroute 2025-05-15 4.3 Medium
A Cross-Site Request Forgery (CSRF) in MQTTRoute v3.3 and below allows attackers to create and remove dashboards.
CVE-2022-35136 1 Boodskap 1 Iot Platform 2025-05-15 6.5 Medium
Boodskap IoT Platform v4.4.9-02 allows attackers to make unauthenticated API requests.
CVE-2022-35135 1 Boodskap 1 Iot Platform 2025-05-15 8.8 High
Boodskap IoT Platform v4.4.9-02 allows attackers to escalate privileges via a crafted request sent to /api/user/upsert/<uuid>.
CVE-2022-35134 1 Boodskap 1 Iot Platform 2025-05-15 5.4 Medium
Boodskap IoT Platform v4.4.9-02 contains a cross-site scripting (XSS) vulnerability.
CVE-2022-35081 1 Swftools 1 Swftools 2025-05-15 5.5 Medium
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_read_header at /src/png2swf.c.
CVE-2022-35080 1 Swftools 1 Swftools 2025-05-15 5.5 Medium
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_load at /lib/png.c.
CVE-2022-35050 1 Otfcc Project 1 Otfcc 2025-05-15 6.5 Medium
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b04de.
CVE-2022-35049 1 Otfcc Project 1 Otfcc 2025-05-15 6.5 Medium
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b03b5.
CVE-2022-35048 1 Otfcc Project 1 Otfcc 2025-05-15 6.5 Medium
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b0b2c.
CVE-2022-35047 1 Otfcc Project 1 Otfcc 2025-05-15 6.5 Medium
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b05aa.
CVE-2022-35046 1 Otfcc Project 1 Otfcc 2025-05-15 6.5 Medium
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b0466.
CVE-2022-35045 1 Otfcc Project 1 Otfcc 2025-05-15 6.5 Medium
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b0d63.
CVE-2022-35044 1 Otfcc Project 1 Otfcc 2025-05-15 6.5 Medium
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x617087.
CVE-2022-35043 1 Otfcc Project 1 Otfcc 2025-05-15 6.5 Medium
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6c08a6.
CVE-2022-35042 1 Otfcc Project 1 Otfcc 2025-05-15 6.5 Medium
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x4adb11.
CVE-2022-35041 1 Otfcc Project 1 Otfcc 2025-05-15 6.5 Medium
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b558f.
CVE-2022-34022 1 Resiot 1 Iot Platform And Lorawan Network Server 2025-05-15 7.2 High
SQL injection vulnerability in ResIOT IOT Platform + LoRaWAN Network Server through 4.1.1000114 via a crafted POST request to /ResiotQueryDBActive.