Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2022-08-03 CVE-2022-27621 Unspecified vulnerability in Synology USB Copy
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Synology USB Copy before 2.2.0-1086 allows remote authenticated users to read or write arbitrary files via unspecified vectors.
network
low complexity
synology
3.8
2022-08-01 CVE-2022-35919 Unspecified vulnerability in Minio
MinIO is a High Performance Object Storage released under GNU Affero General Public License v3.0.
network
low complexity
minio
2.7
2022-08-01 CVE-2022-31186 Unspecified vulnerability in Next-Auth Nextauth.Js
NextAuth.js is a complete open source authentication solution for Next.js applications.
local
low complexity
next-auth
3.3
2022-08-01 CVE-2022-31177 Unspecified vulnerability in Flask-Appbuilder Project Flask-Appbuilder
Flask-AppBuilder is an application development framework built on top of Flask python framework.
network
low complexity
flask-appbuilder-project
2.7
2022-08-01 CVE-2022-22326 Incorrect Authorization vulnerability in IBM products
IBM Datapower Gateway 10.0.2.0 through 10.0.4.0, 10.0.1.0 through 10.0.1.5, and 2018.4.1.0 through 2018.4.1.18 could allow unauthorized viewing of logs and files due to insufficient authorization checks.
local
low complexity
ibm CWE-863
3.3
2022-07-30 CVE-2022-33994 Cross-site Scripting vulnerability in Gutenberg Project Gutenberg
The Gutenberg plugin through 13.7.3 for WordPress allows stored XSS by the Contributor role via an SVG document to the "Insert from URL" feature.
network
high complexity
gutenberg-project CWE-79
3.0
2022-07-28 CVE-2022-37010 Improper Input Validation vulnerability in Jetbrains Intellij Idea
In JetBrains IntelliJ IDEA before 2022.2 email address validation in the "Git User Name Is Not Defined" dialog was missed
local
low complexity
jetbrains CWE-20
3.3
2022-07-19 CVE-2022-2394 Information Exposure Through Log Files vulnerability in Perforce Puppet Bolt
Puppet Bolt prior to version 3.24.0 will print sensitive parameters when planning a run resulting in them potentially being logged when run programmatically, such as via Puppet Enterprise.
network
low complexity
perforce CWE-532
3.5
2022-07-18 CVE-2022-34873 Unspecified vulnerability in Foxit PDF Editor and PDF Reader
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader 11.2.1.53537.
local
low complexity
foxit
3.3
2022-07-18 CVE-2022-34874 Unspecified vulnerability in Foxit PDF Editor and PDF Reader
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader 11.2.2.53575.
local
low complexity
foxit
3.3