Vulnerabilities > Origin Validation Error

DATE CVE VULNERABILITY TITLE RISK
2022-02-12 CVE-2022-0111 Origin Validation Error vulnerability in multiple products
Inappropriate implementation in Navigation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to incorrectly set origin via a crafted HTML page.
network
low complexity
google fedoraproject CWE-346
6.5
2022-02-12 CVE-2022-0113 Origin Validation Error vulnerability in multiple products
Inappropriate implementation in Blink in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
network
low complexity
google fedoraproject CWE-346
6.5
2022-02-12 CVE-2022-0120 Origin Validation Error vulnerability in multiple products
Inappropriate implementation in Passwords in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially leak cross-origin data via a malicious website.
network
low complexity
google fedoraproject CWE-346
6.5
2022-01-25 CVE-2022-23032 Origin Validation Error vulnerability in F5 Big-Ip Access Policy Manager
In all versions before 7.2.1.4, when proxy settings are configured in the network access resource of a BIG-IP APM system, connecting BIG-IP Edge Client on Mac and Windows is vulnerable to a DNS rebinding attack.
network
low complexity
f5 CWE-346
5.3
2022-01-10 CVE-2021-44458 Origin Validation Error vulnerability in Mirantis Lens
Linux users running Lens 5.2.6 and earlier could be compromised by visiting a malicious website.
network
low complexity
mirantis CWE-346
critical
9.6
2022-01-10 CVE-2021-45441 Origin Validation Error vulnerability in Trendmicro products
A origin validation error vulnerability in Trend Micro Apex One (on-prem and SaaS) could allow a local attacker drop and manipulate a specially crafted file to issue commands over a certain pipe and elevate to a higher level of privileges.
local
low complexity
trendmicro CWE-346
7.8
2021-12-23 CVE-2021-4024 Origin Validation Error vulnerability in multiple products
A flaw was found in podman.
network
low complexity
podman-project fedoraproject redhat CWE-346
6.5
2021-12-14 CVE-2021-44935 Origin Validation Error vulnerability in Glfusion 1.7.9
glFusion CMS v1.7.9 is affected by an arbitrary user impersonation vulnerability in /public_html/comment.php.
network
low complexity
glfusion CWE-346
critical
9.1
2021-12-13 CVE-2021-39063 Origin Validation Error vulnerability in IBM Spectrum Protect Plus
IBM Spectrum Protect Plus 10.1.0.0 through 10.1.8.x uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information due to a misconfiguration in access control headers.
network
low complexity
ibm CWE-346
critical
9.1
2021-12-08 CVE-2021-38507 Origin Validation Error vulnerability in multiple products
The Opportunistic Encryption feature of HTTP2 (RFC 8164) allows a connection to be transparently upgraded to TLS while retaining the visual properties of an HTTP connection, including being same-origin with unencrypted connections on port 80.
network
low complexity
mozilla debian CWE-346
6.5