2022 CVE Vulnerabilities

27,554 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-22733MEDIUM6.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache ShardingSphere ElasticJob-UI allows a...
CVE-2022-0281HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-0278MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-0277MEDIUM6.5Incorrect Permission Assignment for Critical Resource in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-21704MEDIUM5.5log4js-node is a port of log4js to node.js. In affected versions default file permissions for log files created by the f...
CVE-2022-21701HIGH8.8Istio is an open platform to connect, manage, and secure microservices. In versions 1.12.0 and 1.12.1 Istio is vulnerabl...
CVE-2022-21699HIGH8.8IPython (Interactive Python) is a command shell for interactive computing in multiple programming languages, originally ...
CVE-2022-21679CRITICAL9.8Istio is an open platform to connect, manage, and secure microservices. In Istio 1.12.0 and 1.12.1 The authorization pol...
CVE-2022-23046HIGH7.2PhpIPAM v1.4.4 allows an authenticated admin user to inject SQL sentences in the "subnet" parameter while searching a su...
CVE-2022-23045MEDIUM4.8PhpIPAM v1.4.4 allows an authenticated admin user to inject persistent JavaScript code inside the "Site title" parameter...
CVE-2022-22769CRITICAL9The Web server component of TIBCO Software Inc.'s TIBCO EBX, TIBCO EBX, TIBCO EBX, TIBCO EBX Add-ons, TIBCO EBX Add-ons,...
CVE-2022-0243MEDIUM5.4Cross-site Scripting (XSS) - Stored in NuGet OrchardCore.Application.Cms.Targets prior to 1.2.2.
CVE-2022-0274MEDIUM5.4Cross-site Scripting (XSS) - Stored in NuGet OrchardCore.Application.Cms.Targets prior to 1.2.2.
CVE-2022-23221CRITICAL9.8H2 Console before 2.1.210 allows remote attackers to execute arbitrary code via a jdbc:h2:mem JDBC URL containing the IG...
CVE-2022-22310MEDIUM6.5IBM WebSphere Application Server Liberty 21.0.0.10 through 21.0.0.12 could provide weaker than expected security. A remo...
CVE-2022-21403MEDIUM6.6Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...
CVE-2022-21402MEDIUM4.8Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...
CVE-2022-21401MEDIUM6.6Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...
CVE-2022-21400MEDIUM5.4Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...
CVE-2022-21399MEDIUM6.6Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...
CVE-2022-21398MEDIUM5.4Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...
CVE-2022-21397MEDIUM5.4Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...
CVE-2022-21396MEDIUM5.4Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...
CVE-2022-21395HIGH7.2Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...
CVE-2022-21394MEDIUM6.5Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now