Fedoraproject
fedoraproject
5,423 CVEs • 20 products
Products (20)
Click to collapseToggle
Products (20)
Click to collapse
CVEs (5,423)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Fedoraproject Pyjwt Project2Fedora PyjwtJun 17, 2026 May 24, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 PyJWT is a Python implementation of RFC 7519. PyJWT supports multiple different JWT signing algorithms. With JWT, an attacker submitting the JWT token can choose the used signing algorithm. The PyJWT library requires tha...Show more |
3Fedoraproject MoodleRedhat3Enterprise Linux FedoraMoodleJun 17, 2026 May 18, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A flaw was found in moodle where logic used to count failed login attempts could result in the account lockout threshold being bypassed. |
3Fedoraproject MoodleRedhat3Enterprise Linux FedoraMoodleJun 17, 2026 May 18, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A flaw was found in moodle where an SQL injection risk was identified in Badges code relating to configuring criteria. |
3Fedoraproject MoodleRedhat3Enterprise Linux FedoraMoodleJun 17, 2026 May 18, 2022 N/A· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 A flaw was found in moodle where global search results could include author information on some activities where a user may not otherwise have access to it. |
3Fedoraproject MoodleRedhat3Enterprise Linux FedoraMoodleJun 17, 2026 May 18, 2022 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A flaw was found in moodle where the description user field was not hidden when being set as a hidden user field. |
3Fedoraproject MoodleRedhat3Enterprise Linux FedoraMoodleJun 17, 2026 May 18, 2022 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 A flaw was found in moodle where ID numbers displayed when bulk allocating markers to assignments required additional sanitizing to prevent a stored XSS risk. |
3Artifex DebianFedoraproject3Debian Linux FedoraMujsJun 17, 2026 May 18, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 In Artifex MuJS through 1.2.0, jsP_dumpsyntax in jsdump.c has a NULL pointer dereference, as demonstrated by mujs-pp. |
3Artifex DebianFedoraproject3Debian Linux FedoraMujsJun 17, 2026 May 18, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 compile in regexp.c in Artifex MuJS through 1.2.0 results in stack consumption because of unlimited recursion, a different issue than CVE-2019-11413. |
2Fedoraproject Linuxfoundation2Fedora RuncJun 17, 2026 May 17, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. A bug was found in runc prior to version 1.1.2 where `runc exec --cap` created processes with non-empty inheritable Linu...Show more |
2Fedoraproject Redhat4Enterprise Linux FedoraIgnition+1 moreJun 17, 2026 May 17, 2022 N/A· v4 6.5 MEDIUM· v3 3.5 LOW· v2 A vulnerability was found in Ignition where ignition configs are accessible from unprivileged containers in VMs running on VMware products. This issue is only relevant in user environments where the Ignition config conta...Show more |
3Apple FedoraprojectVim3Fedora MacosVimJun 17, 2026 May 17, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974. |
3Apple FedoraprojectVim3Fedora MacosVimJun 17, 2026 May 17, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968. |
4Fedoraproject NetappPcre+1 more12Active Iq Unified Manager Enterprise LinuxFedora+9 moreJun 17, 2026 May 16, 2022 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 An out-of-bounds read vulnerability was discovered in the PCRE2 library in the get_recurse_data_length() function of the pcre2_jit_compile.c file. This issue affects recursions in JIT-compiled regular expressions caused...Show more |
5Debian FedoraprojectNetapp+2 more13Active Iq Unified Manager Debian LinuxEnterprise Linux+10 moreJun 17, 2026 May 16, 2022 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pcre2_jit_compile.c file. This involves a unicode property matching issue in JIT-compiled regul...Show more |
2Denx Fedoraproject2Fedora U BootJun 17, 2026 May 16, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 nfs_lookup_reply in net/nfs.c in Das U-Boot through 2022.04 (and through 2022.07-rc2) has an unbounded memcpy with a failed length check, leading to a buffer overflow. NOTE: this issue exists because of an incorrect fix...Show more |
2Fedoraproject Plantuml2Fedora PlantumlJun 17, 2026 May 14, 2022 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 URL Restriction Bypass in GitHub repository plantuml/plantuml prior to V1.2022.5. An attacker can abuse this to bypass URL restrictions that are imposed by the different security profiles and achieve server side request...Show more |
2Dokuwiki Fedoraproject2Dokuwiki FedoraJun 17, 2026 May 12, 2022 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 HTMLCreator release_stable_2020-07-29 was discovered to contain a cross-site scripting (XSS) vulnerability via the function _generateFilename. |
3Apple FedoraprojectVim3Fedora MacosVimJun 17, 2026 May 12, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 in GitHub repository vim/vim prior to 8.2.4938. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 allows attackers to cause...Show more |
4Debian FedoraprojectLibtiff+1 more4Debian Linux FedoraLibtiff+1 moreJun 17, 2026 May 11, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:624, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is avai...Show more |
4Apple FedoraprojectLibtiff+1 more7Fedora Iphone OsLibtiff+4 moreJun 17, 2026 May 11, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is avai...Show more |