cwe-22
Safeguard articles tagged "cwe-22" — guides, analysis, and best practices for software supply chain and application security.
94 articles
CVE-2021-40444: Microsoft MSHTML Remote Code Execution Vulnerability
CVE-2021-40444 affects Microsoft MSHTML and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-4430: IBM Data Risk Manager Directory Traversal Vulnerability
CVE-2020-4430 affects IBM Data Risk Manager and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2018-13379: Fortinet FortiOS SSL VPN Path Traversal Vulnerability
CVE-2018-13379 affects Fortinet FortiOS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-5902: F5 BIG-IP Traffic Management User Interface (TMUI) Remote Code Execution Vulnerability
CVE-2020-5902 affects F5 BIG-IP and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2019-19781: Citrix ADC, Gateway, and SD-WAN WANOP Appliance Code Execution Vulnerability
CVE-2019-19781 affects Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2019-3396: Atlassian Confluence Server and Data Center Server-Side Template Injection Vulnerability
CVE-2019-3396 affects Atlassian Confluence Server and Data Server and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2019-3398: Atlassian Confluence Server and Data Center Path Traversal Vulnerability
CVE-2019-3398 affects Atlassian Confluence Server and Data Center and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2021-20090: Arcadyan Buffalo Firmware Path Traversal Vulnerability
CVE-2021-20090 affects Arcadyan Buffalo Firmware and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2021-41773: Apache HTTP Server Path Traversal Vulnerability
CVE-2021-41773 affects Apache HTTP Server and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2021-42013: Apache HTTP Server Path Traversal Vulnerability
CVE-2021-42013 affects Apache HTTP Server and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2018-14847: MikroTik Router OS Directory Traversal Vulnerability
CVE-2018-14847 affects MikroTik RouterOS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-12-01.
CVE-2020-14864: Oracle Business Intelligence Enterprise Edition Path Transversal
CVE-2020-14864 affects Oracle Intelligence Enterprise Edition and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.