CVE-2022-1162 A hardcoded password was set for accounts registered using an OmniAuth provider (e.g
allowing attackers to potentially take over accounts A hardcoded password was set for SSH keys in GitLab EE/CE versions prior to 14.7.7,
CVE-2022-1055 An use-after-free vulnerability exists in the tc_new_tfilter kernel component that could allow a local attacker to gain privilege escalation. The exploit requires unprivileged user namespaces.
Or running a non-vulnerable kernel version. An attacker can trick a user into visiting a malicious webpage by sending him/her a link or
CVE-2022-0751 An attacker can create Snippets with misleading content which could trick unsuspecting users into executing arbitrary commands.
Snippet files are small text files which allow users to define custom commands to be executed in their project. If malformed, these files can contain
CVE-2022-0330 An attacker could run malicious code on the GPU.
This issue may occur while taking screenshots, parsing media files, or other activities that may occur while the system is running in a headless mode.
CVE-2022-27226 An issue was found in iRZ Mobile routers' /api/crontab that allows a threat actor to create a crontab entry.
This issue affects all iRZ router models.
iRZ Mobile routers running firmware up to and including 1.1.8 (released on 2019-01-04) are
Episode
00:00:00
00:00:00