Vulnerabilities > Authentication Bypass by Spoofing

DATE CVE VULNERABILITY TITLE RISK
2022-07-25 CVE-2022-1306 Authentication Bypass by Spoofing vulnerability in Google Chrome
Inappropriate implementation in compositing in Google Chrome prior to 100.0.4896.88 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google CWE-290
4.3
2022-07-25 CVE-2022-1307 Authentication Bypass by Spoofing vulnerability in Google Chrome
Inappropriate implementation in full screen in Google Chrome on Android prior to 100.0.4896.88 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google CWE-290
4.3
2022-07-23 CVE-2022-1129 Authentication Bypass by Spoofing vulnerability in Google Chrome
Inappropriate implementation in Full Screen Mode in Google Chrome on Android prior to 100.0.4896.60 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google CWE-290
6.5
2022-07-11 CVE-2022-2368 Authentication Bypass by Spoofing vulnerability in Microweber
Authentication Bypass by Spoofing in GitHub repository microweber/microweber prior to 1.2.20.
network
low complexity
microweber CWE-290
critical
9.8
2022-07-08 CVE-2022-22476 Authentication Bypass by Spoofing vulnerability in IBM Open Liberty and Websphere Application Server
IBM WebSphere Application Server Liberty 17.0.0.3 through 22.0.0.7 and Open Liberty are vulnerable to identity spoofing by an authenticated user using a specially crafted request.
network
low complexity
ibm CWE-290
8.8
2022-06-24 CVE-2022-1745 Authentication Bypass by Spoofing vulnerability in Dominionvoting Imagecast X 5.5.10.30/5.5.10.32
The authentication mechanism used by technicians on the tested version of Dominion Voting Systems ImageCast X is susceptible to forgery.
low complexity
dominionvoting CWE-290
6.8
2022-06-20 CVE-2022-32983 Authentication Bypass by Spoofing vulnerability in NIC Knot Resolver
Knot Resolver through 5.5.1 may allow DNS cache poisoning when there is an attempt to limit forwarding actions by filters.
network
low complexity
nic CWE-290
5.3
2022-05-20 CVE-2022-29165 Authentication Bypass by Spoofing vulnerability in Argoproj Argo CD
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes.
network
low complexity
argoproj CWE-290
critical
10.0
2022-05-13 CVE-2022-29218 Authentication Bypass by Spoofing vulnerability in Rubygems Rubygems.Org
RubyGems is a package registry used to supply software for the Ruby language ecosystem.
network
low complexity
rubygems CWE-290
7.5
2022-05-05 CVE-2022-25989 Authentication Bypass by Spoofing vulnerability in Anker Eufy Homebase 2 Firmware 2.1.8.5H
An authentication bypass vulnerability exists in the libxm_av.so getpeermac() functionality of Anker Eufy Homebase 2 2.1.8.5h.
low complexity
anker CWE-290
8.8