Vulnerabilities > Fedoraproject > Fedora > 35

DATE CVE VULNERABILITY TITLE RISK
2024-04-16 CVE-2022-24806 net-snmp provides various tools relating to the Simple Network Management Protocol.
network
high complexity
net-snmp fedoraproject debian redhat
5.3
2022-12-08 CVE-2022-4122 A vulnerability was found in buildah.
network
low complexity
podman-project fedoraproject
5.3
2022-12-08 CVE-2022-4123 Path Traversal vulnerability in multiple products
A flaw was found in Buildah.
local
low complexity
podman-project fedoraproject CWE-22
3.3
2022-11-28 CVE-2022-4129 Improper Locking vulnerability in multiple products
A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP).
local
low complexity
linux fedoraproject CWE-667
5.5
2022-11-25 CVE-2022-39346 Nextcloud server is an open source personal cloud server.
network
low complexity
nextcloud fedoraproject
6.5
2022-11-25 CVE-2022-45152 Server-Side Request Forgery (SSRF) vulnerability in multiple products
A blind Server-Side Request Forgery (SSRF) vulnerability was found in Moodle.
network
low complexity
moodle fedoraproject CWE-918
critical
9.1
2022-11-23 CVE-2022-45866 Path Traversal vulnerability in multiple products
qpress before PierreLvx/qpress 20220819 and before version 11.3, as used in Percona XtraBackup and other products, allows directory traversal via ../ in a .qp file.
network
low complexity
qpress-project fedoraproject CWE-22
5.3
2022-11-23 CVE-2022-45149 Cross-Site Request Forgery (CSRF) vulnerability in multiple products
A vulnerability was found in Moodle which exists due to insufficient validation of the HTTP request origin in course redirect URL.
network
low complexity
moodle fedoraproject CWE-352
5.4
2022-11-23 CVE-2022-45150 Cross-site Scripting vulnerability in multiple products
A reflected cross-site scripting vulnerability was discovered in Moodle.
network
low complexity
moodle fedoraproject CWE-79
6.1
2022-11-23 CVE-2022-45151 Cross-site Scripting vulnerability in multiple products
The stored-XSS vulnerability was discovered in Moodle which exists due to insufficient sanitization of user-supplied data in several "social" user profile fields.
network
low complexity
moodle fedoraproject CWE-79
5.4