2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-4842MEDIUM5.5A flaw NULL Pointer Dereference in the Linux kernel NTFS3 driver function attr_punch_hole() was found. A local user coul...
CVE-2022-3628MEDIUM6.6A buffer overflow flaw was found in the Linux kernel Broadcom Full MAC Wi-Fi driver. This issue occurs when a user conne...
CVE-2022-3145MEDIUM4.7An open redirect vulnerability exists in Okta OIDC Middleware prior to version 5.0.0 allowing an attacker to redirect a ...
CVE-2022-46371MEDIUM5.3Alotcer - AR7088H-A firmware version 16.10.3 Information disclosure. Unspecified error message contains the default admi...
CVE-2022-46369MEDIUM5.4Rumpus - FTP server version 9.0.7.1 Persistent cross-site scripting (PXSS) – vulnerability may allow inserting scripts i...
CVE-2022-39187MEDIUM6.1Rumpus - FTP server version 9.0.7.1 has a Reflected cross-site scripting (RXSS) vulnerability through unspecified vector...
CVE-2022-39186MEDIUM5.5EXFO - BV-10 Performance Endpoint Unit misconfiguration. System configuration file has misconfigured permissions
CVE-2022-39183MEDIUM6.1Moodle Plugin - SAML Auth may allow Open Redirect through unspecified vectors.
CVE-2022-46503MEDIUM5.4A cross-site scripting (XSS) vulnerability in the component /admin/register.php of Online Student Enrollment System v1.0...
CVE-2022-3592MEDIUM6.5A symlink following vulnerability was found in Samba, where a user can create a symbolic link that will make 'smbd' esca...
CVE-2022-3437MEDIUM6.5A heap-based buffer overflow vulnerability was found in Samba within the GSSAPI unwrap_des() and unwrap_des3() routines ...
CVE-2022-3341MEDIUM5.3A null pointer dereference issue was discovered in 'FFmpeg' in decode_main_header() function of libavformat/nutdec.c fil...
CVE-2022-47927MEDIUM5.5An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1. When ...
CVE-2022-24913MEDIUM5.5Versions of the package com.fasterxml.util:java-merge-sort before 1.1.0 are vulnerable to Insecure Temporary File in the...
CVE-2022-4365MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.8 before 15.5.7, all versions start...
CVE-2022-4345MEDIUM6.5Infinite loops in the BPv6, OpenFlow, and Kafka protocol dissectors in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allow...
CVE-2022-4131MEDIUM5.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.8 before 15.5.7, all versions start...
CVE-2022-3870MEDIUM5.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.0 before 15.5.7, all versions start...
CVE-2022-3573MEDIUM5.4An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 before 15.5.7, all versions start...
CVE-2022-3514MEDIUM5.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 6.6 before 15.5.7, all versions starti...
CVE-2022-4344MEDIUM4.3Memory exhaustion in the Kafka protocol dissector in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of servic...
CVE-2022-46176MEDIUM5.9Cargo is a Rust package manager. The Rust Security Response WG was notified that Cargo did not perform SSH host key veri...
CVE-2022-4885MEDIUM5.9A vulnerability has been found in sviehb jefferson up to 0.3 and classified as critical. This vulnerability affects unkn...
CVE-2022-4457MEDIUM5.5Due to a misconfiguration in the manifest file of the WARP client for Android, it was possible to a perform a task hijac...
CVE-2022-34335MEDIUM6.5 IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.1 could allow an authenticated user to exhaust server res...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now