2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-47983 | MEDIUM | 5.4 | 0.4% | Feb 1, 2023 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a... |
| CVE-2022-43922 | MEDIUM | 6.5 | 0.4% | Feb 1, 2023 | IBM App Connect Enterprise Certified Container 4.1, 4.2, 5.0, 5.1, 5.2, 6.0, 6.1, and 6.2 could disclose sensitive infor... |
| CVE-2022-48094 | MEDIUM | 4.9 | 0.7% | Feb 1, 2023 | lmxcms v1.41 was discovered to contain an arbitrary file read vulnerability via TemplateAction.class.php. |
| CVE-2022-47715 | MEDIUM | 5.3 | 0.4% | Feb 1, 2023 | In Last Yard 22.09.8-1, the cookie can be stolen via via unencrypted traffic. |
| CVE-2022-46756 | MEDIUM | 6.7 | 0.2% | Feb 1, 2023 | Dell VxRail, versions prior to 7.0.410, contain a Container Escape Vulnerability. A local high-privileged attacker coul... |
| CVE-2022-45102 | MEDIUM | 6.1 | 0.5% | Feb 1, 2023 | Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote ... |
| CVE-2022-45098 | MEDIUM | 5.5 | 0.1% | Feb 1, 2023 | Dell PowerScale OneFS, 9.0.0.x-9.4.0.x, contain a cleartext storage of sensitive information vulnerability in S3 compon... |
| CVE-2022-32482 | MEDIUM | 5.1 | 0.2% | Feb 1, 2023 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileg... |
| CVE-2022-45096 | MEDIUM | 6.5 | 0.5% | Feb 1, 2023 | Dell PowerScale OneFS, 8.2.0 through 9.3.0, contain an User Interface Security Issue. An unauthenticated remote user co... |
| CVE-2022-45095 | MEDIUM | 6.7 | 0.6% | Feb 1, 2023 | Dell PowerScale OneFS, 8.2.x-9.4.x, contain a command injection vulnerability. An authenticated user having access loca... |
| CVE-2022-34458 | MEDIUM | 5.5 | 0.2% | Feb 1, 2023 | Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.7 contain a Exposure of Sensitive System I... |
| CVE-2022-4206 | MEDIUM | 6.5 | 0.6% | Feb 1, 2023 | A sensitive information leak issue has been discovered in all versions of DAST API scanner from 1.6.50 prior to 2.0.102,... |
| CVE-2022-31902 | MEDIUM | 5.5 | 0.6% | Feb 1, 2023 | Notepad++ v8.4.1 was discovered to contain a stack overflow via the component Finder::add(). |
| CVE-2022-47701 | MEDIUM | 6.1 | 0.4% | Jan 31, 2023 | COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 is vulnerable to Cross... |
| CVE-2022-47698 | MEDIUM | 6.1 | 0.4% | Jan 31, 2023 | COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 is vulnerable to Cross... |
| CVE-2022-45598 | MEDIUM | 6.1 | 0.5% | Jan 31, 2023 | Cross Site Scripting vulnerability in Joplin Desktop App before v2.9.17 allows attacker to execute arbitrary code via im... |
| CVE-2022-25147 | MEDIUM | 6.5 | 1.4% | Jan 31, 2023 | Integer Overflow or Wraparound vulnerability in apr_base64 functions of Apache Portable Runtime Utility (APR-util) allow... |
| CVE-2022-45435 | MEDIUM | 6.5 | 0.4% | Jan 31, 2023 | IdentityIQ 8.3 and all 8.3 patch levels prior to 8.3p2, IdentityIQ 8.2 and all 8.2 patch levels prior to 8.2p5, Identity... |
| CVE-2022-44644 | MEDIUM | 6.5 | 1.2% | Jan 31, 2023 | In Apache Linkis <=1.3.0 when used with the MySQL Connector/J in the data source module, an authenticated attacker could... |
| CVE-2022-39061 | MEDIUM | 6.5 | 0.7% | Jan 31, 2023 | ChangingTech MegaServiSignAdapter component has a vulnerability of Out-of-bounds Read due to insufficient validation for... |
| CVE-2022-25979 | MEDIUM | 6.1 | 0.6% | Jan 31, 2023 | Versions of the package jsuites before 5.0.1 are vulnerable to Cross-site Scripting (XSS) due to improper user-input san... |
| CVE-2022-4898 | MEDIUM | 5.4 | 0.4% | Jan 31, 2023 | In affected versions of Octopus Server the help sidebar can be customized to include a Cross-Site Scripting payload in t... |
| CVE-2022-44897 | MEDIUM | 6.1 | 0.8% | Jan 31, 2023 | A cross-site scripting (XSS) vulnerability in ApolloTheme AP PageBuilder component through 2.4.4 allows attackers to exe... |
| CVE-2022-40258 | MEDIUM | 5.3 | 0.4% | Jan 31, 2023 | AMI Megarac Weak password hashes for Redfish & API |
| CVE-2022-45897 | MEDIUM | 6.5 | 0.4% | Jan 31, 2023 | On Xerox WorkCentre 3550 25.003.03.000 devices, an authenticated attacker can view the SMB server settings and can obtai... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now