Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In June 2022
Server-Side Request Forgery (SSRF) in GitHub repository ionicabizau/parse-url prior to 7.0.0.
CVSS Score
9.4
EPSS Score
0.002
Published
2022-06-27
A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in scaffold-helper v1.2.0 when copying crafted invalid files.
CVSS Score
7.5
EPSS Score
0.003
Published
2022-06-27
A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in repo-git-downloader v0.1.1 when downloading crafted invalid git repositories.
CVSS Score
7.5
EPSS Score
0.003
Published
2022-06-27
Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository ionicabizau/parse-url prior to 7.0.0.
CVSS Score
4.8
EPSS Score
0.001
Published
2022-06-27
Cross-site Scripting (XSS) - Generic in GitHub repository ionicabizau/parse-url prior to 7.0.0.
CVSS Score
9.1
EPSS Score
0.003
Published
2022-06-27
A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in todo-regex v0.1.1 when matching crafted invalid TODO statements.
CVSS Score
7.5
EPSS Score
0.003
Published
2022-06-27
A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in that-value v0.1.3 when validating crafted invalid emails.
CVSS Score
7.5
EPSS Score
0.003
Published
2022-06-27
A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in split-html-to-chars v1.0.5 when splitting crafted invalid htmls.
CVSS Score
7.5
EPSS Score
0.003
Published
2022-06-27
The Cimy Header Image Rotator WordPress plugin through 6.1.1 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack
CVSS Score
4.3
EPSS Score
0.001
Published
2022-06-27
The ARMember WordPress plugin before 3.4.8 is vulnerable to account takeover (even the administrator) due to missing nonce and authorization checks in an AJAX action available to unauthenticated users, allowing them to change the password of arbitrary users by knowing their username
CVSS Score
8.1
EPSS Score
0.826
Published
2022-06-27


Contact Us

Shodan ® - All rights reserved