Weekly digest
Week 51, 2022 (19–25 Dec)
9 new CVEs this week, in line with the recent average. Severity skewed high: 2 critical and 4 high, 67% of the total. 2 arrived with exploitation evidence or public exploit code already attached. No new KEV entries. mozilla was the most-affected vendor with 4.
New this week, ranked by depth score
The 9 that matter most of the 9 published.
CVE-2022-26486Critical· 9.6CISA KEV0dayAn unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape
An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.…
CVE-2022-26485High· 8.8CISA KEV0dayPoCRemoving an XSLT parameter during processing could have lead to an exploitable use-after-free
Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for A…
CVE-2022-44940Critical· 9.1Patchelf out-of-bounds read
Patchelf out-of-bounds read
CVE-2022-47633High· 8.1kyverno verifyImages rule bypass possible with malicious proxy/registry
kyverno verifyImages rule bypass possible with malicious proxy/registry
CVE-2022-38060High· 7.8OpenStack Kolla sudo privilege escalation vulnerability
OpenStack Kolla sudo privilege escalation vulnerability
CVE-2022-40897High· 7.5pypa/setuptools vulnerable to Regular Expression Denial of Service (ReDoS)
pypa/setuptools vulnerable to Regular Expression Denial of Service (ReDoS)
CVE-2022-31746Medium· 6.5Internal URLs are protected by a secret UUID key, which could have been leaked to web page through the Referrer header
Internal URLs are protected by a secret UUID key, which could have been leaked to web page through the Referrer header. This vulnerability affects Firefox for iOS < 102.
CVE-2022-47928Medium· 6.1In MISP before 2.4.167, there is XSS in the template file uploads in app/View/Templates/upload_file.ctp.
In MISP before 2.4.167, there is XSS in the template file uploads in app/View/Templates/upload_file.ctp.
CVE-2022-38474Medium· 4.3A website that had permission to access the microphone could record audio without the audio notification being shown
A website that had permission to access the microphone could record audio without the audio notification being shown. This bug does not allow the attacker to bypass the permission prompt - it only affects the notification shown once perm…
Most-affected vendors
By CVEs published in the period.