2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-47983MEDIUM5.4IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a...
CVE-2022-43922MEDIUM6.5IBM App Connect Enterprise Certified Container 4.1, 4.2, 5.0, 5.1, 5.2, 6.0, 6.1, and 6.2 could disclose sensitive infor...
CVE-2022-48094MEDIUM4.9lmxcms v1.41 was discovered to contain an arbitrary file read vulnerability via TemplateAction.class.php.
CVE-2022-47715MEDIUM5.3In Last Yard 22.09.8-1, the cookie can be stolen via via unencrypted traffic.
CVE-2022-46756MEDIUM6.7 Dell VxRail, versions prior to 7.0.410, contain a Container Escape Vulnerability. A local high-privileged attacker coul...
CVE-2022-45102MEDIUM6.1 Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote ...
CVE-2022-45098MEDIUM5.5 Dell PowerScale OneFS, 9.0.0.x-9.4.0.x, contain a cleartext storage of sensitive information vulnerability in S3 compon...
CVE-2022-32482MEDIUM5.1 Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileg...
CVE-2022-45096MEDIUM6.5 Dell PowerScale OneFS, 8.2.0 through 9.3.0, contain an User Interface Security Issue. An unauthenticated remote user co...
CVE-2022-45095MEDIUM6.7 Dell PowerScale OneFS, 8.2.x-9.4.x, contain a command injection vulnerability. An authenticated user having access loca...
CVE-2022-34458MEDIUM5.5 Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.7 contain a Exposure of Sensitive System I...
CVE-2022-4206MEDIUM6.5A sensitive information leak issue has been discovered in all versions of DAST API scanner from 1.6.50 prior to 2.0.102,...
CVE-2022-31902MEDIUM5.5Notepad++ v8.4.1 was discovered to contain a stack overflow via the component Finder::add().
CVE-2022-47701MEDIUM6.1COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 is vulnerable to Cross...
CVE-2022-47698MEDIUM6.1COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 is vulnerable to Cross...
CVE-2022-45598MEDIUM6.1Cross Site Scripting vulnerability in Joplin Desktop App before v2.9.17 allows attacker to execute arbitrary code via im...
CVE-2022-25147MEDIUM6.5Integer Overflow or Wraparound vulnerability in apr_base64 functions of Apache Portable Runtime Utility (APR-util) allow...
CVE-2022-45435MEDIUM6.5IdentityIQ 8.3 and all 8.3 patch levels prior to 8.3p2, IdentityIQ 8.2 and all 8.2 patch levels prior to 8.2p5, Identity...
CVE-2022-44644MEDIUM6.5In Apache Linkis <=1.3.0 when used with the MySQL Connector/J in the data source module, an authenticated attacker could...
CVE-2022-39061MEDIUM6.5ChangingTech MegaServiSignAdapter component has a vulnerability of Out-of-bounds Read due to insufficient validation for...
CVE-2022-25979MEDIUM6.1Versions of the package jsuites before 5.0.1 are vulnerable to Cross-site Scripting (XSS) due to improper user-input san...
CVE-2022-4898MEDIUM5.4In affected versions of Octopus Server the help sidebar can be customized to include a Cross-Site Scripting payload in t...
CVE-2022-44897MEDIUM6.1A cross-site scripting (XSS) vulnerability in ApolloTheme AP PageBuilder component through 2.4.4 allows attackers to exe...
CVE-2022-40258MEDIUM5.3AMI Megarac Weak password hashes for Redfish & API
CVE-2022-45897MEDIUM6.5On Xerox WorkCentre 3550 25.003.03.000 devices, an authenticated attacker can view the SMB server settings and can obtai...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now