Latest CVE Feed
-
7.5
HIGHCVE-2022-38977
The HwAirlink module has a heap overflow vulnerability.Successful exploitation of this vulnerability may cause out-of-bounds writes, resulting in modification of sensitive data.... Read more
Affected Products : harmonyos- EPSS Score: %0.12
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
7.8
HIGHCVE-2022-38698
In messaging service, there is a missing permission check. This could lead to elevation of privilege in contacts service with no additional execution privileges needed.... Read more
- EPSS Score: %0.06
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
5.5
MEDIUMCVE-2022-38697
In messaging service, there is a missing permission check. This could lead to access unexpected provider in contacts service with no additional execution privileges needed.... Read more
- EPSS Score: %0.09
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
5.5
MEDIUMCVE-2022-38690
In camera driver, there is a possible memory corruption due to improper locking. This could lead to local denial of service in kernel.... Read more
- EPSS Score: %0.02
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
5.5
MEDIUMCVE-2022-38689
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.... Read more
- EPSS Score: %0.22
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
5.5
MEDIUMCVE-2022-38688
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.... Read more
- EPSS Score: %0.09
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
5.5
MEDIUMCVE-2022-38687
In messaging service, there is a missing permission check. This could lead to local denial of service in messaging service with no additional execution privileges needed.... Read more
- EPSS Score: %0.08
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
5.5
MEDIUMCVE-2022-38679
In music service, there is a missing permission check. This could lead to local denial of service in music service with no additional execution privileges needed.... Read more
- EPSS Score: %0.06
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
5.5
MEDIUMCVE-2022-38677
In cell service, there is a missing permission check. This could lead to local denial of service in cell service with no additional execution privileges needed.... Read more
- EPSS Score: %0.08
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
5.5
MEDIUMCVE-2022-38676
In gpu driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.... Read more
- EPSS Score: %0.03
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
5.5
MEDIUMCVE-2022-38673
In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.... Read more
- EPSS Score: %0.03
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
5.5
MEDIUMCVE-2022-38672
In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.... Read more
- EPSS Score: %0.03
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
7.8
HIGHCVE-2022-38669
In soundrecorder service, there is a missing permission check. This could lead to elevation of privilege in contacts service with no additional execution privileges needed.... Read more
- EPSS Score: %0.13
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
9.8
CRITICALCVE-2022-37614
Prototype pollution vulnerability in function enable in mockery.js in mfncooper mockery commit 822f0566fd6d72af8c943ae5ca2aa92e516aa2cf via the key variable in mockery.js.... Read more
Affected Products : mockery- EPSS Score: %0.15
- Published: Oct. 12, 2022
- Modified: May. 15, 2025
-
9.8
CRITICALCVE-2022-37611
Prototype pollution vulnerability in tschaub gh-pages 3.1.0 via the partial variable in util.js.... Read more
Affected Products : gh-pages- EPSS Score: %0.12
- Published: Oct. 12, 2022
- Modified: May. 15, 2025
-
7.5
HIGHCVE-2022-37603
A Regular expression denial of service (ReDoS) flaw was found in Function interpolateName in interpolateName.js in webpack loader-utils 2.0.0 via the url variable in interpolateName.js.... Read more
Affected Products : loader-utils- EPSS Score: %1.72
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
9.8
CRITICALCVE-2022-37602
Prototype pollution vulnerability in karma-runner grunt-karma 4.0.1 via the key variable in grunt-karma.js.... Read more
Affected Products : grunt-karma- EPSS Score: %0.14
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
6.5
MEDIUMCVE-2022-35059
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6c0414.... Read more
Affected Products : otfcc- EPSS Score: %0.20
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
6.5
MEDIUMCVE-2022-35058
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b05ce.... Read more
Affected Products : otfcc- EPSS Score: %0.20
- Published: Oct. 14, 2022
- Modified: May. 15, 2025
-
6.5
MEDIUMCVE-2022-35056
OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b0478.... Read more
Affected Products : otfcc- EPSS Score: %0.20
- Published: Oct. 14, 2022
- Modified: May. 15, 2025