| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2022-45402 | Apache Airflow: Open redirect during login EPSS 0.82 | Apache Software Foundation | Apache Airflow | 中危 | - | 2022-11-15 00:00:00 | Deep Dive |
| CVE-2022-40127 📌 💣 | Apache Airflow <2.4.0 has an RCE in a bash example EPSS 0.86 | Apache Software Foundation | Apache Airflow | 高危 | - | 2022-11-14 00:00:00 | Deep Dive |
| CVE-2022-43671 | ZOHO ManageEngine Password Manager Pro SQL注入漏洞 EPSS 0.75 | - | - | 超危 | - | 2022-11-12 00:00:00 | Deep Dive |
| CVE-2022-41080 KEV 📌 | Microsoft Exchange Server Elevation of Privilege Vulnerability EPSS 0.77 | Microsoft | Microsoft Exchange Server 2013 Cumulative Update 23 | High | 8.8 | 2022-11-09 00:00:00 | Deep Dive |
| CVE-2022-3265 | GitLab 跨站脚本漏洞 EPSS 0.86 | GitLab | GitLab | High | 7.3 | 2022-11-09 00:00:00 | Deep Dive |
| CVE-2022-3602 📌 | X.509 Email Address 4-byte Buffer Overflow EPSS 0.91 | OpenSSL | OpenSSL | 高危 | - | 2022-11-01 00:00:00 | Deep Dive |
| CVE-2022-3786 📌 | X.509 Email Address Variable Length Buffer Overflow EPSS 0.92 | OpenSSL | OpenSSL | 高危 | - | 2022-11-01 00:00:00 | Deep Dive |
| CVE-2022-36958 | SolarWinds Platform Deserialization of Untrusted Data EPSS 0.83 | SolarWinds | SolarWinds Platform | High | 8.8 | 2022-10-20 20:10:01 | Deep Dive |
| CVE-2016-20016 💣 | MV POWER CCTV DVR 安全漏洞 EPSS 0.86 | - | - | 超危 | - | 2022-10-19 00:00:00 | Deep Dive |
| CVE-2022-40684 KEV 📌 💣 | Fortinet FortiOS 授权问题漏洞 EPSS 1.00 | Fortinet | Fortinet FortiOS, FortiProxy, FortiSwitchManager | Critical | 9.8 | 2022-10-18 00:00:00 | Deep Dive |
| CVE-2022-21587 KEV 📌 💣 | Oracle E-Business Suite 访问控制错误漏洞 EPSS 0.98 | Oracle Corporation | Web Applications Desktop Integrator | Critical | 9.8 | 2022-10-18 00:00:00 | Deep Dive |
| CVE-2022-2884 📌 💣 | GitLab 操作系统命令注入漏洞 EPSS 0.76 | GitLab | GitLab | Critical | 9.9 | 2022-10-17 00:00:00 | Deep Dive |
| CVE-2022-2992 📌 💣 | GitLab 注入漏洞 EPSS 0.86 | GitLab | GitLab | Critical | 9.9 | 2022-10-17 00:00:00 | Deep Dive |
| CVE-2022-38421 | Adobe ColdFusion Application Server Directory Traversal Remote Code Execution Vulnerability EPSS 0.79 | Adobe | ColdFusion | High | 7.2 | 2022-10-14 19:42:57 | Deep Dive |
| CVE-2022-35711 | Adobe ColdFusion ODBC Server Heap-based Buffer Overflow Remote Code Execution Vulnerability EPSS 0.73 | Adobe | ColdFusion | Critical | 9.8 | 2022-10-14 19:42:56 | Deep Dive |
| CVE-2022-35690 | Adobe ColdFusion ODBC Agent Stack-based Buffer Overflow Remote Code Execution Vulnerability EPSS 0.72 | Adobe | ColdFusion | Critical | 9.8 | 2022-10-14 19:42:56 | Deep Dive |
| CVE-2022-38418 | Adobe ColdFusion Application Server Directory Traversal Remote Code Execution Vulnerability EPSS 0.80 | Adobe | ColdFusion | Critical | 9.8 | 2022-10-14 19:42:55 | Deep Dive |
| CVE-2022-42889 📌 💣 | Apache Commons Text prior to 1.10.0 allows RCE when applied to untrusted input due to insecure interpolation defaults EPSS 1.00 | Apache Software Foundation | Apache Commons Text | 超危 | - | 2022-10-13 00:00:00 | Deep Dive |
| CVE-2022-24697 | Apache Kylin prior to 4.0.2 allows command injection when the configuration overwrites function overwrites system parameters EPSS 0.85 | Apache Software Foundation | Apache Kylin | 超危 | - | 2022-10-13 00:00:00 | Deep Dive |
| CVE-2022-38053 | Microsoft SharePoint Server Remote Code Execution Vulnerability EPSS 0.76 | Microsoft | Microsoft SharePoint Enterprise Server 2016 | High | 8.8 | 2022-10-11 00:00:00 | Deep Dive |