
Look up vulnerabilities by software, product or CVE number.
| CVE | Published | CVSS | ShadowTrackr CVSS | Summary |
|---|---|---|---|---|
CVE: CVE-2022-4142 | Published 2023-01-02 | CVSS: 4.8 | ShadowTrackr CVSS: 0.9 | Summary: The WordPress Filter Gallery Plugin WordPress plugin before 0.1.6 does not properly escape the filters passed in the ufg_gallery_filters ajax action before outputting them on the page, allowing a high privileged user such as an administrator to inject HTML or javascript to the plugin settings page, even when the unfiltered_html capability is disabled. |
CVE: CVE-2022-41429 | Published 2022-10-03 | CVSS: 8.8 | ShadowTrackr CVSS: 4.8 | Summary: Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_Atom::TypeFromString function in mp4tag. |
CVE: CVE-2022-41428 | Published 2022-10-03 | CVSS: 8.8 | ShadowTrackr CVSS: 4.8 | Summary: Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadBits function in mp4mux. |
CVE: CVE-2022-41427 | Published 2022-10-03 | CVSS: 6.5 | ShadowTrackr CVSS: 2.1 | Summary: Bento4 v1.6.0-639 was discovered to contain a memory leak in the AP4_AvcFrameParser::Feed function in mp4mux. |
CVE: CVE-2022-41426 | Published 2022-10-03 | CVSS: 6.5 | ShadowTrackr CVSS: 2.1 | Summary: Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_AtomFactory::CreateAtomFromStream function in mp4split. |
CVE: CVE-2022-41425 | Published 2022-10-03 | CVSS: 6.5 | ShadowTrackr CVSS: 2.1 | Summary: Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_Processor::ProcessFragments function in mp4decrypt. |
CVE: CVE-2022-41423 | Published 2022-10-03 | CVSS: 6.5 | ShadowTrackr CVSS: 2.1 | Summary: Bento4 v1.6.0-639 was discovered to contain a segmentation violation in the mp4fragment component. |
CVE: CVE-2022-41424 | Published 2022-10-03 | CVSS: 6.5 | ShadowTrackr CVSS: 2.1 | Summary: Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_SttsAtom::Create function in mp42hls. |
CVE: CVE-2022-41420 | Published 2022-10-03 | CVSS: 5.5 | ShadowTrackr CVSS: 1.7 | Summary: nasm v2.16 was discovered to contain a stack overflow in the Ndisasm component |