2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-32751MEDIUM5.3IBM Security Verify Directory 10.0.0 could disclose sensitive server information that could be used in further attacks a...
CVE-2022-44595MEDIUM5.3Improper Authentication vulnerability in Melapress WP 2FA allows Authentication Bypass.This issue affects WP 2FA: from n...
CVE-2022-4963CRITICAL9.8A vulnerability was found in Folio Spring Module Core up to 1.1.5. It has been rated as critical. Affected by this issue...
CVE-2022-47037HIGH7.5Siklu TG Terragraph devices before 2.1.1 allow attackers to discover valid, randomly generated credentials via GetCreden...
CVE-2022-47036CRITICAL9.8Siklu TG Terragraph devices before approximately 2.1.1 have a hardcoded root password that has been revealed via a brute...
CVE-2022-34321HIGH8.2Improper Authentication vulnerability in Apache Pulsar Proxy allows an attacker to connect to the /proxy-stats endpoint ...
CVE-2022-32257CRITICAL9.8A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2). The affected application cons...
CVE-2022-46070HIGH7.5GV-ASManager V6.0.1.0 contains a Local File Inclusion vulnerability in GeoWebServer via Path.
CVE-2022-43855MEDIUM5.5IBM SPSS Statistics 26.0, 27.0.1, and 28.0 IO Module could allow a local user to create multiple files that could exhaus...
CVE-2022-46499HIGH8.8Hospital Management System 1.0 was discovered to contain a SQL injection vulnerability via the pat_number parameter at h...
CVE-2022-46498LOW2.7Hospital Management System 1.0 was discovered to contain a SQL injection vulnerability via the doc_number parameter at h...
CVE-2022-46497HIGH8.1Hospital Management System 1.0 was discovered to contain a SQL injection vulnerability via the pat_number parameter at h...
CVE-2022-46091MEDIUM4.7Cross Site Scripting (XSS) vulnerability in the feedback form of Online Flight Booking Management System v1.0 allows att...
CVE-2022-46089MEDIUM6.1Cross Site Scripting (XSS) vulnerability in the add-airline form of Online Flight Booking Management System v1.0 allows ...
CVE-2022-22399MEDIUM6.5IBM Aspera Faspex 5.0.0 and 5.0.1 is vulnerable to HTTP header injection, caused by improper validation of input by the ...
CVE-2022-46088MEDIUM6.1Online Flight Booking Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via th...
CVE-2022-48630MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - fix infinite loop on requests no...
CVE-2022-48629MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - ensure buffer for generate is co...
CVE-2022-43890HIGH7.5IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information through an HTTP request that could a...
CVE-2022-43880MEDIUM4.4IBM QRadar WinCollect Agent 10.0 through 10.1.2 could allow a privileged user to cause a denial of service. IBM X-Force...
CVE-2022-48628MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ceph: drop messages from MDS when unmounting When ...
CVE-2022-48627MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: vt: fix memory overlapping when deleting chars in t...
CVE-2022-36677MEDIUM6.1Obsidian Mind Map v1.1.0 allows attackers to execute arbitrary code via a crafted payload injected into an uploaded docu...
CVE-2022-34270CRITICAL9.8An issue was discovered in RWS WorldServer before 11.7.3. Regular users can create users with the Administrator role via...
CVE-2022-34269HIGH8.8An issue was discovered in RWS WorldServer before 11.7.3. An authenticated, remote attacker can perform a ws-legacy/load...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now