2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-45190MEDIUM5.3An issue was discovered on Microchip RN4870 1.43 devices. An attacker within BLE radio range can bypass passkey entry in...
CVE-2022-40480MEDIUM6.5Nordic Semiconductor, Microchip Technology NRF5340-DK DT100112 was discovered to contain an issue which allows attackers...
CVE-2022-47418MEDIUM5.4LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site script...
CVE-2022-47419MEDIUM5.4An XSS vulnerability was discovered in the Mayan EDMS DMS. Successful XSS exploitation was observed in the in-product ta...
CVE-2022-47417MEDIUM5.4LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site script...
CVE-2022-47416MEDIUM5.4LogicalDOC Enterprise is vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the i...
CVE-2022-47415MEDIUM5.4LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site script...
CVE-2022-47414MEDIUM5.4 If an attacker has access to the console for OpenKM (and is authenticated), a stored XSS vulnerability is reachable in ...
CVE-2022-47413MEDIUM5.4 Given a malicious document provided by an attacker, the OpenKM DMS is vulnerable to a stored (persistent, or "Type II")...
CVE-2022-47412MEDIUM5.4Given a malicious document provided by an attacker, the ONLYOFFICE Workspace DMS is vulnerable to a stored (persistent, ...
CVE-2022-41313MEDIUM5.4A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industri...
CVE-2022-41312MEDIUM5.4A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industri...
CVE-2022-41311MEDIUM5.4A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industri...
CVE-2022-40691MEDIUM5.3An information disclosure vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial E...
CVE-2022-43758MEDIUM6.8A Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in SUSE Ranch...
CVE-2022-21948MEDIUM6.1An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in paste allows re...
CVE-2022-42291MEDIUM5.5 NVIDIA GeForce Experience contains a vulnerability in the installer, where a user installing the NVIDIA GeForce Experie...
CVE-2022-45854MEDIUM4.3An improper check for unusual conditions in Zyxel NWA110AX firmware verisons prior to 6.50(ABTG.0)C0, which could allow ...
CVE-2022-45441MEDIUM6.1A cross-site scripting (XSS) vulnerability in Zyxel NBG-418N v2 firmware versions prior to V1.00(AARP.13)C0, which could...
CVE-2022-46496MEDIUM5.9BTicino Door Entry HOMETOUCH for iOS 1.4.2 was discovered to be missing an SSL certificate.
CVE-2022-28923MEDIUM6.1Caddy v2.4.6 was discovered to contain an open redirection vulnerability which allows attackers to redirect users to phi...
CVE-2022-44268MEDIUM6.5ImageMagick 7.1.0-49 is vulnerable to Information Disclosure. When it parses a PNG image (e.g., for resize), the resulti...
CVE-2022-44267MEDIUM6.5ImageMagick 7.1.0-49 is vulnerable to Denial of Service. When it parses a PNG image (e.g., for resize), the convert proc...
CVE-2022-42950MEDIUM4.9An issue was discovered in Couchbase Server 7.x before 7.0.5 and 7.1.x before 7.1.2. A crafted HTTP REST request from an...
CVE-2022-42439MEDIUM4.9 IBM App Connect Enterprise 11.0.0.17 through 11.0.0.19 and 12.0.4.0 and 12.0.5.0 contains an unspecified vulnerability ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now