2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-45190 | MEDIUM | 5.3 | 0.3% | Feb 8, 2023 | An issue was discovered on Microchip RN4870 1.43 devices. An attacker within BLE radio range can bypass passkey entry in... |
| CVE-2022-40480 | MEDIUM | 6.5 | 0.3% | Feb 8, 2023 | Nordic Semiconductor, Microchip Technology NRF5340-DK DT100112 was discovered to contain an issue which allows attackers... |
| CVE-2022-47418 | MEDIUM | 5.4 | 0.5% | Feb 7, 2023 | LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site script... |
| CVE-2022-47419 | MEDIUM | 5.4 | 0.5% | Feb 7, 2023 | An XSS vulnerability was discovered in the Mayan EDMS DMS. Successful XSS exploitation was observed in the in-product ta... |
| CVE-2022-47417 | MEDIUM | 5.4 | 0.5% | Feb 7, 2023 | LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site script... |
| CVE-2022-47416 | MEDIUM | 5.4 | 0.5% | Feb 7, 2023 | LogicalDOC Enterprise is vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the i... |
| CVE-2022-47415 | MEDIUM | 5.4 | 0.5% | Feb 7, 2023 | LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site script... |
| CVE-2022-47414 | MEDIUM | 5.4 | 0.5% | Feb 7, 2023 | If an attacker has access to the console for OpenKM (and is authenticated), a stored XSS vulnerability is reachable in ... |
| CVE-2022-47413 | MEDIUM | 5.4 | 0.5% | Feb 7, 2023 | Given a malicious document provided by an attacker, the OpenKM DMS is vulnerable to a stored (persistent, or "Type II")... |
| CVE-2022-47412 | MEDIUM | 5.4 | 0.6% | Feb 7, 2023 | Given a malicious document provided by an attacker, the ONLYOFFICE Workspace DMS is vulnerable to a stored (persistent, ... |
| CVE-2022-41313 | MEDIUM | 5.4 | 1.1% | Feb 7, 2023 | A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industri... |
| CVE-2022-41312 | MEDIUM | 5.4 | 1.1% | Feb 7, 2023 | A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industri... |
| CVE-2022-41311 | MEDIUM | 5.4 | 1.0% | Feb 7, 2023 | A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industri... |
| CVE-2022-40691 | MEDIUM | 5.3 | 1.5% | Feb 7, 2023 | An information disclosure vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial E... |
| CVE-2022-43758 | MEDIUM | 6.8 | 1.0% | Feb 7, 2023 | A Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in SUSE Ranch... |
| CVE-2022-21948 | MEDIUM | 6.1 | 0.5% | Feb 7, 2023 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in paste allows re... |
| CVE-2022-42291 | MEDIUM | 5.5 | 0.2% | Feb 7, 2023 | NVIDIA GeForce Experience contains a vulnerability in the installer, where a user installing the NVIDIA GeForce Experie... |
| CVE-2022-45854 | MEDIUM | 4.3 | 0.3% | Feb 7, 2023 | An improper check for unusual conditions in Zyxel NWA110AX firmware verisons prior to 6.50(ABTG.0)C0, which could allow ... |
| CVE-2022-45441 | MEDIUM | 6.1 | 0.4% | Feb 7, 2023 | A cross-site scripting (XSS) vulnerability in Zyxel NBG-418N v2 firmware versions prior to V1.00(AARP.13)C0, which could... |
| CVE-2022-46496 | MEDIUM | 5.9 | 0.9% | Feb 6, 2023 | BTicino Door Entry HOMETOUCH for iOS 1.4.2 was discovered to be missing an SSL certificate. |
| CVE-2022-28923 | MEDIUM | 6.1 | 1.4% | Feb 6, 2023 | Caddy v2.4.6 was discovered to contain an open redirection vulnerability which allows attackers to redirect users to phi... |
| CVE-2022-44268 | MEDIUM | 6.5 | 89.9% | Feb 6, 2023 | ImageMagick 7.1.0-49 is vulnerable to Information Disclosure. When it parses a PNG image (e.g., for resize), the resulti... |
| CVE-2022-44267 | MEDIUM | 6.5 | 76.6% | Feb 6, 2023 | ImageMagick 7.1.0-49 is vulnerable to Denial of Service. When it parses a PNG image (e.g., for resize), the convert proc... |
| CVE-2022-42950 | MEDIUM | 4.9 | 1.0% | Feb 6, 2023 | An issue was discovered in Couchbase Server 7.x before 7.0.5 and 7.1.x before 7.1.2. A crafted HTTP REST request from an... |
| CVE-2022-42439 | MEDIUM | 4.9 | 0.7% | Feb 6, 2023 | IBM App Connect Enterprise 11.0.0.17 through 11.0.0.19 and 12.0.4.0 and 12.0.5.0 contains an unspecified vulnerability ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now