2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4842 | MEDIUM | 5.5 | 0.2% | Jan 12, 2023 | A flaw NULL Pointer Dereference in the Linux kernel NTFS3 driver function attr_punch_hole() was found. A local user coul... |
| CVE-2022-3628 | MEDIUM | 6.6 | 0.5% | Jan 12, 2023 | A buffer overflow flaw was found in the Linux kernel Broadcom Full MAC Wi-Fi driver. This issue occurs when a user conne... |
| CVE-2022-3145 | MEDIUM | 4.7 | 0.4% | Jan 12, 2023 | An open redirect vulnerability exists in Okta OIDC Middleware prior to version 5.0.0 allowing an attacker to redirect a ... |
| CVE-2022-46371 | MEDIUM | 5.3 | 0.4% | Jan 12, 2023 | Alotcer - AR7088H-A firmware version 16.10.3 Information disclosure. Unspecified error message contains the default admi... |
| CVE-2022-46369 | MEDIUM | 5.4 | 0.4% | Jan 12, 2023 | Rumpus - FTP server version 9.0.7.1 Persistent cross-site scripting (PXSS) – vulnerability may allow inserting scripts i... |
| CVE-2022-39187 | MEDIUM | 6.1 | 0.4% | Jan 12, 2023 | Rumpus - FTP server version 9.0.7.1 has a Reflected cross-site scripting (RXSS) vulnerability through unspecified vector... |
| CVE-2022-39186 | MEDIUM | 5.5 | 0.2% | Jan 12, 2023 | EXFO - BV-10 Performance Endpoint Unit misconfiguration. System configuration file has misconfigured permissions |
| CVE-2022-39183 | MEDIUM | 6.1 | 0.4% | Jan 12, 2023 | Moodle Plugin - SAML Auth may allow Open Redirect through unspecified vectors. |
| CVE-2022-46503 | MEDIUM | 5.4 | 0.4% | Jan 12, 2023 | A cross-site scripting (XSS) vulnerability in the component /admin/register.php of Online Student Enrollment System v1.0... |
| CVE-2022-3592 | MEDIUM | 6.5 | 2.4% | Jan 12, 2023 | A symlink following vulnerability was found in Samba, where a user can create a symbolic link that will make 'smbd' esca... |
| CVE-2022-3437 | MEDIUM | 6.5 | 3.7% | Jan 12, 2023 | A heap-based buffer overflow vulnerability was found in Samba within the GSSAPI unwrap_des() and unwrap_des3() routines ... |
| CVE-2022-3341 | MEDIUM | 5.3 | 0.8% | Jan 12, 2023 | A null pointer dereference issue was discovered in 'FFmpeg' in decode_main_header() function of libavformat/nutdec.c fil... |
| CVE-2022-47927 | MEDIUM | 5.5 | 0.3% | Jan 12, 2023 | An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1. When ... |
| CVE-2022-24913 | MEDIUM | 5.5 | 0.2% | Jan 12, 2023 | Versions of the package com.fasterxml.util:java-merge-sort before 1.1.0 are vulnerable to Insecure Temporary File in the... |
| CVE-2022-4365 | MEDIUM | 4.3 | 0.7% | Jan 12, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.8 before 15.5.7, all versions start... |
| CVE-2022-4345 | MEDIUM | 6.5 | 0.7% | Jan 12, 2023 | Infinite loops in the BPv6, OpenFlow, and Kafka protocol dissectors in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allow... |
| CVE-2022-4131 | MEDIUM | 5.3 | 0.8% | Jan 12, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.8 before 15.5.7, all versions start... |
| CVE-2022-3870 | MEDIUM | 5.3 | 0.7% | Jan 12, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.0 before 15.5.7, all versions start... |
| CVE-2022-3573 | MEDIUM | 5.4 | 0.6% | Jan 12, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 before 15.5.7, all versions start... |
| CVE-2022-3514 | MEDIUM | 5.3 | 0.8% | Jan 12, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 6.6 before 15.5.7, all versions starti... |
| CVE-2022-4344 | MEDIUM | 4.3 | 0.6% | Jan 12, 2023 | Memory exhaustion in the Kafka protocol dissector in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of servic... |
| CVE-2022-46176 | MEDIUM | 5.9 | 0.6% | Jan 11, 2023 | Cargo is a Rust package manager. The Rust Security Response WG was notified that Cargo did not perform SSH host key veri... |
| CVE-2022-4885 | MEDIUM | 5.9 | 0.7% | Jan 11, 2023 | A vulnerability has been found in sviehb jefferson up to 0.3 and classified as critical. This vulnerability affects unkn... |
| CVE-2022-4457 | MEDIUM | 5.5 | 0.2% | Jan 11, 2023 | Due to a misconfiguration in the manifest file of the WARP client for Android, it was possible to a perform a task hijac... |
| CVE-2022-34335 | MEDIUM | 6.5 | 0.7% | Jan 11, 2023 | IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.1 could allow an authenticated user to exhaust server res... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now