2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-41441 | MEDIUM | 6.1 | 5.3% | Jan 20, 2023 | Multiple cross-site scripting (XSS) vulnerabilities in ReQlogic v11.3 allow attackers to execute arbitrary web scripts o... |
| CVE-2022-20967 | MEDIUM | 5.4 | 0.5% | Jan 20, 2023 | A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, re... |
| CVE-2022-20966 | MEDIUM | 5.4 | 27.6% | Jan 20, 2023 | A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, re... |
| CVE-2022-20965 | MEDIUM | 5.4 | 0.6% | Jan 20, 2023 | A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, re... |
| CVE-2022-31901 | MEDIUM | 6.5 | 1.3% | Jan 19, 2023 | Buffer overflow in function Notepad_plus::addHotSpot in Notepad++ v8.4.3 and earlier allows attackers to crash the appli... |
| CVE-2022-46890 | MEDIUM | 4.3 | 0.6% | Jan 19, 2023 | Weak access control in NexusPHP before 1.7.33 allows a remote authenticated user to edit any post in the forum (this is ... |
| CVE-2022-46889 | MEDIUM | 5.4 | 60.1% | Jan 19, 2023 | A persistent cross-site scripting (XSS) vulnerability in NexusPHP before 1.7.33 allows remote authenticated attackers to... |
| CVE-2022-46888 | MEDIUM | 6.1 | 1.5% | Jan 19, 2023 | Multiple reflective cross-site scripting (XSS) vulnerabilities in NexusPHP before 1.7.33 allow remote attackers to injec... |
| CVE-2022-47197 | MEDIUM | 5.4 | 1.0% | Jan 19, 2023 | An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default ins... |
| CVE-2022-47196 | MEDIUM | 5.4 | 0.7% | Jan 19, 2023 | An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default ins... |
| CVE-2022-47195 | MEDIUM | 5.4 | 0.7% | Jan 19, 2023 | An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default ins... |
| CVE-2022-47194 | MEDIUM | 5.4 | 0.8% | Jan 19, 2023 | An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default ins... |
| CVE-2022-40697 | MEDIUM | 4.8 | 0.4% | Jan 19, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in 3com – Asesor de Cookies para normativa española plugi... |
| CVE-2022-39167 | MEDIUM | 5.9 | 0.6% | Jan 19, 2023 | IBM Spectrum Virtualize 8.5, 8.4, 8.3, 8.2, and 7.8, under certain configurations, could disclose sensitive information... |
| CVE-2022-3738 | MEDIUM | 5.9 | 0.6% | Jan 19, 2023 | The vulnerability allows a remote unauthenticated attacker to download a backup file, if one exists. That backup file mi... |
| CVE-2022-4892 | MEDIUM | 6.1 | 0.5% | Jan 19, 2023 | A vulnerability was found in MyCMS. It has been classified as problematic. This affects the function build_view of the f... |
| CVE-2022-4235 | MEDIUM | 5.4 | 0.6% | Jan 18, 2023 | RushBet version 2022.23.1-b490616d allows a remote attacker to steal customer accounts via use of a malicious applicatio... |
| CVE-2022-45613 | MEDIUM | 5.4 | 0.5% | Jan 18, 2023 | Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index... |
| CVE-2022-47950 | MEDIUM | 6.5 | 1.0% | Jan 18, 2023 | An issue was discovered in OpenStack Swift before 2.28.1, 2.29.x before 2.29.2, and 2.30.0. By supplying crafted XML fil... |
| CVE-2022-3100 | MEDIUM | 5.9 | 0.4% | Jan 18, 2023 | A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when ... |
| CVE-2022-47881 | MEDIUM | 6.5 | 0.7% | Jan 18, 2023 | Foxit PDF Reader and PDF Editor 11.2.1.53537 and earlier has an Out-of-Bounds Read vulnerability. |
| CVE-2022-45103 | MEDIUM | 6.5 | 0.7% | Jan 18, 2023 | Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain an information ... |
| CVE-2022-34436 | MEDIUM | 4.9 | 0.5% | Jan 18, 2023 | Dell iDRAC8 version 2.83.83.83 and prior contain an improper input validation vulnerability in Racadm when the firmware... |
| CVE-2022-34435 | MEDIUM | 4.9 | 0.5% | Jan 18, 2023 | Dell iDRAC9 version 6.00.02.00 and prior contain an improper input validation vulnerability in Racadm when the firmware... |
| CVE-2022-47917 | MEDIUM | 6.5 | 0.7% | Jan 18, 2023 | Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to imprope... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now