2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48219 | MEDIUM | 6.4 | 0.3% | Feb 14, 2024 | Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which ... |
| CVE-2022-48623 | CRITICAL | 9.1 | 0.8% | Feb 13, 2024 | The Cpanel::JSON::XS package before 4.33 for Perl performs out-of-bounds accesses in a way that allows attackers to obta... |
| CVE-2022-22506 | MEDIUM | 4.6 | 0.3% | Feb 12, 2024 | IBM Robotic Process Automation 21.0.2 contains a vulnerability that could allow user ids may be exposed across tenants. ... |
| CVE-2022-34311 | MEDIUM | 4.3 | 0.4% | Feb 12, 2024 | IBM CICS TX Standard and Advanced 11.1 could allow a user with physical access to the web browser to gain access to the ... |
| CVE-2022-34309 | HIGH | 7.5 | 0.5% | Feb 12, 2024 | IBM CICS TX Standard and Advanced 11.1 uses weaker than expected cryptographic algorithms that could allow an attacker t... |
| CVE-2022-38714 | MEDIUM | 4.9 | 0.6% | Feb 12, 2024 | IBM DataStage on Cloud Pak for Data 4.0.6 to 4.5.2 stores sensitive credential information that can be read by a privile... |
| CVE-2022-34310 | HIGH | 7.5 | 0.5% | Feb 12, 2024 | IBM CICS TX Standard and Advanced 11.1 uses weaker than expected cryptographic algorithms that could allow an attacker t... |
| CVE-2022-0931 | — | — | — | Feb 8, 2024 | Rejected reason: Red Hat Product Security does not consider this to be a vulnerability. Upstream has not acknowledged th... |
| CVE-2022-34381 | CRITICAL | 9.8 | 0.8% | Feb 2, 2024 | Dell BSAFE SSL-J version 7.0 and all versions prior to 6.5, and Dell BSAFE Crypto-J versions prior to 6.2.6.1 contain a... |
| CVE-2022-40744 | MEDIUM | 5.4 | 0.3% | Feb 2, 2024 | IBM Aspera Faspex 5.0.6 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary... |
| CVE-2022-47072 | CRITICAL | 9.8 | 0.6% | Jan 31, 2024 | SQL injection vulnerability in Enterprise Architect 16.0.1605 32-bit allows attackers to run arbitrary SQL commands via ... |
| CVE-2022-48622 | HIGH | 7.8 | 0.4% | Jan 26, 2024 | In GNOME GdkPixbuf (aka gdk-pixbuf) through 2.42.10, the ANI (Windows animated cursor) decoder encounters heap memory co... |
| CVE-2022-4964 | MEDIUM | 5.5 | 0.3% | Jan 24, 2024 | Ubuntu's pipewire-pulse in snap grants microphone access even when the snap interface for audio-record is not set. |
| CVE-2022-45795 | — | — | — | Jan 22, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2022-45792 | HIGH | 7.8 | 0.3% | Jan 22, 2024 | Project files may contain malicious contents which the software will use to create files on the filesystem. This allows ... |
| CVE-2022-45791 | — | — | — | Jan 22, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2022-45790 | CRITICAL | 9.1 | 0.7% | Jan 22, 2024 | The Omron FINS protocol has an authenticated feature to prevent access to memory regions. Authentication is susceptible ... |
| CVE-2022-47160 | MEDIUM | 6.5 | 0.6% | Jan 19, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wpmet Wp Social Login and Register Social Co... |
| CVE-2022-45845 | HIGH | 8.8 | 0.5% | Jan 19, 2024 | Deserialization of Untrusted Data vulnerability in Nextend Smart Slider 3.This issue affects Smart Slider 3: from n/a th... |
| CVE-2022-45083 | HIGH | 7.2 | 0.6% | Jan 19, 2024 | Deserialization of Untrusted Data vulnerability in ProfilePress Membership Team Paid Membership Plugin, Ecommerce, User ... |
| CVE-2022-40700 | CRITICAL | 9.8 | 1.0% | Jan 19, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Montonio Montonio for WooCommerce, Wpopal Wpopal Core Features, AMO ... |
| CVE-2022-42884 | HIGH | 8.8 | 0.4% | Jan 17, 2024 | Missing Authorization vulnerability in ThemeinProgress WIP Custom Login.This issue affects WIP Custom Login: from n/a th... |
| CVE-2022-41790 | HIGH | 8.8 | 0.5% | Jan 17, 2024 | Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Fo... |
| CVE-2022-41786 | CRITICAL | 9.8 | 0.5% | Jan 17, 2024 | Missing Authorization vulnerability in WP Job Portal WP Job Portal – A Complete Job Board.This issue affects WP Job Port... |
| CVE-2022-41990 | HIGH | 8.8 | 0.2% | Jan 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Vinoj Cardoza 3D Tag Cloud allows Stored XSS.This issue affects 3D Ta... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now