CVE Database and Vulnerability Search
Search CVE and GHSA vulnerability records by identifier, title, vendor, product, package, or CWE. Filter by severity, CISA KEV, ransomware association, linked artifacts, and Nuclei templates; sort by publication date, CVSS, or EPSS.
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2022-44244MEDIUM | Lin CMS vulnerable to Improper AuthenticationAn authentication bypass in Lin-CMS v0.2.1 allows attackers to escalate privileges to Super Administrator. CWE-287Nov 9, 2022 | CVSS6.6v3.1 | EPSS1.02% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-32430HIGH | Hardcoded JWT Token in Lin CMS Spring BootAn access control issue in Lin CMS Spring Boot v0.2.1 allows attackers to access the backend information and functions within the application. | CVSS7.5v3.1 | EPSS4.65% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |