2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-4317MEDIUM6.1An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 1.47 before 3.0.51, which send...
CVE-2022-29056MEDIUM5.3A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiMail version 6.4.0,...
CVE-2022-4315MEDIUM6.5An issue has been discovered in GitLab DAST analyzer affecting all versions starting from 2.0 before 3.0.55, which sends...
CVE-2022-4007MEDIUM6.1A issue has been discovered in GitLab CE/EE affecting all versions from 15.3 prior to 15.7.8, version 15.8 prior to 15.8...
CVE-2022-46752MEDIUM4.6 Dell BIOS contains an Improper Authorization vulnerability. An unauthenticated physical attacker may potentially exploi...
CVE-2022-46257MEDIUM4.3An information disclosure vulnerability was identified in GitHub Enterprise Server that allowed private repositories to ...
CVE-2022-45861MEDIUM6.5An access of uninitialized pointer vulnerability [CWE-824] in the SSL VPN portal of Fortinet FortiOS version 7.2.0 throu...
CVE-2022-41329MEDIUM5.3An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in Fortinet FortiProxy version 7.2...
CVE-2022-40676MEDIUM5.4A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiNAC versions 9.4...
CVE-2022-27490MEDIUM6.5A exposure of sensitive information to an unauthorized actor in Fortinet FortiManager version 6.0.0 through 6.0.4, Forti...
CVE-2022-22297MEDIUM5.5An incomplete filtering of one or more instances of special elements vulnerability [CWE-792] in the command line interpr...
CVE-2022-4932MEDIUM4.3The Total Upkeep plugin for WordPress is vulnerable to information disclosure in versions up to, and including 1.14.13. ...
CVE-2022-4931MEDIUM4.3The BackupWordPress plugin for WordPress is vulnerable to information disclosure in versions up to, and including 3.12. ...
CVE-2022-3854MEDIUM6.5A flaw was found in Ceph, relating to the URL processing on RGW backends. An attacker can exploit the URL processing by ...
CVE-2022-3707MEDIUM5.5A double-free memory flaw was found in the Linux kernel. The Intel GVT-g graphics driver triggers VGA card system resour...
CVE-2022-3277MEDIUM6.5An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user t...
CVE-2022-42248MEDIUM5.4QlikView 12.60.2 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the QvsViewClient functi...
CVE-2022-4930MEDIUM5.4A vulnerability classified as problematic was found in nuxsmin sysPass up to 3.2.4. Affected by this vulnerability is an...
CVE-2022-48364MEDIUM4.3The undo_mark_statuses_as_sensitive method in app/services/approve_appeal_service.rb in Mastodon 3.5.x before 3.5.3 does...
CVE-2022-2178MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Saysis Computer St...
CVE-2022-44875MEDIUM5.4KioWare through 8.33 on Windows sets KioScriptingUrlACL.AclActions.AllowHigh for the about:blank origin, which allows at...
CVE-2022-4929MEDIUM6.1A vulnerability was found in icplayer up to 0.818. It has been rated as problematic. Affected by this issue is some unkn...
CVE-2022-4928MEDIUM6.1A vulnerability was found in icplayer up to 0.819. It has been declared as problematic. Affected by this vulnerability i...
CVE-2022-4927MEDIUM6.1A vulnerability was found in ualbertalib NEOSDiscovery 1.0.70 and classified as problematic. This issue affects some unk...
CVE-2022-4645MEDIUM5.5LibTIFF 4.4.0 has an out-of-bounds read in tiffcp in tools/tiffcp.c:948, allowing attackers to cause a denial-of-service...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now