2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-4812MEDIUM6.5Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4811MEDIUM5.4Authorization Bypass Through User-Controlled Key vulnerability in usememos usememos/memos.This issue affects usememos/me...
CVE-2022-4810MEDIUM4.3Improper Access Control in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4807MEDIUM4.3Improper Access Control in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4806MEDIUM5.3Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4805MEDIUM4.3Incorrect Use of Privileged APIs in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4804MEDIUM5.3Improper Authorization in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4802MEDIUM5.4Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4801MEDIUM5.3Insufficient Granularity of Access Control in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4800MEDIUM6.5Improper Verification of Source of a Communication Channel in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4799MEDIUM6.5Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4798MEDIUM5.3Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4797MEDIUM4.3Improper Restriction of Excessive Authentication Attempts in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-3922MEDIUM4.8The Broken Link Checker WordPress plugin before 1.11.20 does not sanitise and escape some of its settings, which could a...
CVE-2022-46174MEDIUM4.2efs-utils is a set of Utilities for Amazon Elastic File System (EFS). A potential race condition issue exists within the...
CVE-2022-46173MEDIUM6.5Elrond-GO is a go implementation for the Elrond Network protocol. Versions prior to 1.3.50 are subject to a processing i...
CVE-2022-46172MEDIUM6.4authentik is an open-source Identity provider focused on flexibility and versatility. In versions prior to 2022.10.4, an...
CVE-2022-3346MEDIUM6.5DNSSEC validation is not performed correctly. An attacker can cause this package to report successful validation for inv...
CVE-2022-23544MEDIUM6.1MeterSphere is a one-stop open source continuous testing platform, covering test management, interface testing, UI testi...
CVE-2022-2582MEDIUM4.3The AWS S3 Crypto SDK sends an unencrypted hash of the plaintext alongside the ciphertext as a metadata field. This hash...
CVE-2022-47968MEDIUM5.4Heimdall Application Dashboard through 2.5.4 allows reflected and stored XSS via "Application name" to the "Add applicat...
CVE-2022-45434MEDIUM5.9Some Dahua software products have a vulnerability of unauthenticated un-throttled ICMP requests on remote DSS Server. Af...
CVE-2022-45432MEDIUM5.3Some Dahua software products have a vulnerability of unauthenticated search for devices. After bypassing the firewall ac...
CVE-2022-45426MEDIUM6.5Some Dahua software products have a vulnerability of unrestricted download of file. After obtaining the permissions of o...
CVE-2022-45424MEDIUM5.3Some Dahua software products have a vulnerability of unauthenticated request of AES crypto key. An attacker can obtain t...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now