2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-43892MEDIUM5.3 IBM Security Verify Privilege On-Premises 11.5 does not validate, or incorrectly validates, a certificate which could d...
CVE-2022-43891MEDIUM5.3 IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information when a det...
CVE-2022-43893MEDIUM4.4 IBM Security Verify Privilege On-Premises 11.5 could allow a privileged user to cause by using a malicious payload. IB...
CVE-2022-43889MEDIUM5.3 IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information through an HTTP request that could ...
CVE-2022-22386MEDIUM5.9 IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information, caused by...
CVE-2022-22385HIGH7.5 IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information to an attacked due to the transmiss...
CVE-2022-22380MEDIUM4.3 IBM Security Verify Privilege On-Premises 11.5 could allow an attacker to spoof a trusted entity due to improperly vali...
CVE-2022-22375HIGH8.8 IBM Security Verify Privilege On-Premises 11.5 could allow a remote authenticated attacker to execute arbitrary command...
CVE-2022-22384MEDIUM4.3 IBM Security Verify Privilege On-Premises 11.5 could allow an attacker to modify messages returned from the server due ...
CVE-2022-22377MEDIUM5.3IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information, caused by ...
CVE-2022-48612MEDIUM6.1A Universal Cross Site Scripting (UXSS) vulnerability in ClassLink OneClick Extension through 10.7 allows remote attacke...
CVE-2022-43868MEDIUM5.3IBM Security Verify Access OIDC Provider could disclose directory information that could aid attackers in further attack...
CVE-2022-43740HIGH7.5IBM Security Verify Access OIDC Provider could allow a remote user to cause a denial of service due to uncontrolled reso...
CVE-2022-33165HIGH7.5IBM Security Directory Server 6.4.0 could allow a remote attacker to traverse directories on the system. An attacker cou...
CVE-2022-33161MEDIUM5.9IBM Security Directory Server 6.4.0 could allow a remote attacker to obtain sensitive information, caused by the failure...
CVE-2022-32755CRITICAL9.1IBM Security Directory Server 6.4.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML d...
CVE-2022-44758MEDIUM5.3BigFix Insights/IVR fixlet uses improper credential handling within certain fixlet content. An attacker can gain access...
CVE-2022-44757HIGH8.2BigFix Insights for Vulnerability Remediation (IVR) uses weak cryptography that can lead to credential exposure. An att...
CVE-2022-42451MEDIUM4.4Certain credentials within the BigFix Patch Management Download Plug-ins are stored insecurely and could be exposed to a...
CVE-2022-22298HIGH7.8A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiIsolator v...
CVE-2022-30527HIGH7.8A vulnerability has been identified in SINEC NMS (All versions < V2.0). The affected application assigns improper access...
CVE-2022-48183MEDIUM6.8 A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism t...
CVE-2022-48182MEDIUM6.8 A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism t...
CVE-2022-3728MEDIUM6.8 A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism t...
CVE-2022-36228MEDIUM6.5Nokelock Smart padlock O1 Version 5.3.0 is vulnerable to Insecure Permissions. By sending a request, you can add any dev...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now