2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-41441MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in ReQlogic v11.3 allow attackers to execute arbitrary web scripts o...
CVE-2022-20967MEDIUM5.4A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, re...
CVE-2022-20966MEDIUM5.4A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, re...
CVE-2022-20965MEDIUM5.4A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, re...
CVE-2022-31901MEDIUM6.5Buffer overflow in function Notepad_plus::addHotSpot in Notepad++ v8.4.3 and earlier allows attackers to crash the appli...
CVE-2022-46890MEDIUM4.3Weak access control in NexusPHP before 1.7.33 allows a remote authenticated user to edit any post in the forum (this is ...
CVE-2022-46889MEDIUM5.4A persistent cross-site scripting (XSS) vulnerability in NexusPHP before 1.7.33 allows remote authenticated attackers to...
CVE-2022-46888MEDIUM6.1Multiple reflective cross-site scripting (XSS) vulnerabilities in NexusPHP before 1.7.33 allow remote attackers to injec...
CVE-2022-47197MEDIUM5.4An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default ins...
CVE-2022-47196MEDIUM5.4An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default ins...
CVE-2022-47195MEDIUM5.4An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default ins...
CVE-2022-47194MEDIUM5.4An insecure default vulnerability exists in the Post Creation functionality of Ghost Foundation Ghost 5.9.4. Default ins...
CVE-2022-40697MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in 3com – Asesor de Cookies para normativa española plugi...
CVE-2022-39167MEDIUM5.9 IBM Spectrum Virtualize 8.5, 8.4, 8.3, 8.2, and 7.8, under certain configurations, could disclose sensitive information...
CVE-2022-3738MEDIUM5.9The vulnerability allows a remote unauthenticated attacker to download a backup file, if one exists. That backup file mi...
CVE-2022-4892MEDIUM6.1A vulnerability was found in MyCMS. It has been classified as problematic. This affects the function build_view of the f...
CVE-2022-4235MEDIUM5.4RushBet version 2022.23.1-b490616d allows a remote attacker to steal customer accounts via use of a malicious applicatio...
CVE-2022-45613MEDIUM5.4Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index...
CVE-2022-47950MEDIUM6.5An issue was discovered in OpenStack Swift before 2.28.1, 2.29.x before 2.29.2, and 2.30.0. By supplying crafted XML fil...
CVE-2022-3100MEDIUM5.9A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when ...
CVE-2022-47881MEDIUM6.5Foxit PDF Reader and PDF Editor 11.2.1.53537 and earlier has an Out-of-Bounds Read vulnerability.
CVE-2022-45103MEDIUM6.5 Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain an information ...
CVE-2022-34436MEDIUM4.9 Dell iDRAC8 version 2.83.83.83 and prior contain an improper input validation vulnerability in Racadm when the firmware...
CVE-2022-34435MEDIUM4.9 Dell iDRAC9 version 6.00.02.00 and prior contain an improper input validation vulnerability in Racadm when the firmware...
CVE-2022-47917MEDIUM6.5Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 is vulnerable to imprope...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now