2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26841 | MEDIUM | 5.5 | 0.2% | Feb 16, 2023 | Insufficient control flow management for the Intel(R) SGX SDK software for Linux before version 2.16.100.1 may allow an ... |
| CVE-2022-26509 | MEDIUM | 5.5 | 0.2% | Feb 16, 2023 | Improper conditions check in the Intel(R) SGX SDK software may allow a privileged user to potentially enable information... |
| CVE-2022-26343 | MEDIUM | 6.7 | 0.2% | Feb 16, 2023 | Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially ena... |
| CVE-2022-21216 | MEDIUM | 6.8 | 0.5% | Feb 16, 2023 | Insufficient granularity of access control in out-of-band management in some Intel(R) Atom and Intel Xeon Scalable Proce... |
| CVE-2022-43954 | MEDIUM | 6.5 | 0.7% | Feb 16, 2023 | An insertion of sensitive information into log file vulnerability [CWE-532] in the FortiPortal management interface 7.0.... |
| CVE-2022-42472 | MEDIUM | 5.4 | 0.5% | Feb 16, 2023 | A improper neutralization of crlf sequences in http headers ('http response splitting') in Fortinet FortiOS versions 7.2... |
| CVE-2022-41334 | MEDIUM | 6.1 | 0.7% | Feb 16, 2023 | An improper neutralization of input during web page generation [CWE-79] vulnerability in FortiOS versions 7.0.0 to 7.0.7... |
| CVE-2022-38378 | MEDIUM | 6 | 0.2% | Feb 16, 2023 | An improper privilege management vulnerability [CWE-269] in Fortinet FortiOS version 7.2.0 and before 7.0.7 and FortiPro... |
| CVE-2022-38376 | MEDIUM | 6.1 | 0.6% | Feb 16, 2023 | Multiple improper neutralization of input during web page generation ('Cross-site Scripting') vulnerabilities [CWE-79] i... |
| CVE-2022-30304 | MEDIUM | 6.1 | 0.7% | Feb 16, 2023 | An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiAnalyzer versions prior to... |
| CVE-2022-30300 | MEDIUM | 6.5 | 0.8% | Feb 16, 2023 | A relative path traversal vulnerability [CWE-23] in FortiWeb 7.0.0 through 7.0.1, 6.3.6 through 6.3.18, 6.4 all versions... |
| CVE-2022-30299 | MEDIUM | 4.3 | 0.5% | Feb 16, 2023 | A path traversal vulnerability [CWE-23] in the API of FortiWeb 7.0.0 through 7.0.1, 6.3.0 through 6.3.19, 6.4 all versio... |
| CVE-2022-48306 | MEDIUM | 6.8 | 0.3% | Feb 16, 2023 | Improper Validation of Certificate with Host Mismatch vulnerability in Gotham Chat IRC helper of Palantir Gotham allows ... |
| CVE-2022-27891 | MEDIUM | 5.3 | 0.4% | Feb 16, 2023 | Palantir Gotham included an unauthenticated endpoint that listed all active usernames on the stack with an active sessio... |
| CVE-2022-38731 | MEDIUM | 4.3 | 0.7% | Feb 16, 2023 | Qaelum DOSE 18.08 through 21.1 before 21.2 allows Directory Traversal via the loadimages name parameter. It allows a use... |
| CVE-2022-45543 | MEDIUM | 6.1 | 0.5% | Feb 15, 2023 | Cross site scripting (XSS) vulnerability in DiscuzX 3.4 allows attackers to execute arbitrary code via the datetline, ti... |
| CVE-2022-45587 | MEDIUM | 5.5 | 0.3% | Feb 15, 2023 | Stack overflow vulnerability in function gmalloc in goo/gmem.cc in xpdf 4.04, allows local attackers to cause a denial o... |
| CVE-2022-45586 | MEDIUM | 5.5 | 0.3% | Feb 15, 2023 | Stack overflow vulnerability in function Dict::find in xpdf/Dict.cc in xpdf 4.04, allows local attackers to cause a deni... |
| CVE-2022-45154 | MEDIUM | 5.5 | 0.2% | Feb 15, 2023 | A Cleartext Storage of Sensitive Information vulnerability in suppportutils of SUSE Linux Enterprise Server 12, SUSE Lin... |
| CVE-2022-25978 | MEDIUM | 6.1 | 0.5% | Feb 15, 2023 | All versions of the package github.com/usememos/memos/server are vulnerable to Cross-site Scripting (XSS) due to insuffi... |
| CVE-2022-47373 | MEDIUM | 6.1 | 0.3% | Feb 15, 2023 | Reflected Cross Site Scripting in Search Functionality of Module Library in Pandora FMS Console v766 and lower. This vul... |
| CVE-2022-47372 | MEDIUM | 5.4 | 0.2% | Feb 15, 2023 | Stored cross-site scripting vulnerability in the Create event section in Pandora FMS Console v766 and lower. An attacker... |
| CVE-2022-45437 | MEDIUM | 4.8 | 0.4% | Feb 15, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Artica PFMS Pandor... |
| CVE-2022-45436 | MEDIUM | 4.8 | 0.6% | Feb 15, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Artica PFMS Pandor... |
| CVE-2022-41564 | MEDIUM | 6.5 | 0.5% | Feb 14, 2023 | The Hawk Console component of TIBCO Software Inc.'s TIBCO Hawk and TIBCO Operational Intelligence Hawk RedTail contains ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now