2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-45459 | HIGH | 7.5 | 0.3% | May 18, 2023 | Sensitive information disclosure due to insecure registry permissions. The following products are affected: Acronis Agen... |
| CVE-2022-45458 | HIGH | 7.5 | 0.4% | May 18, 2023 | Sensitive information disclosure and manipulation due to improper certification validation. The following products are a... |
| CVE-2022-45457 | HIGH | 7.5 | 0.4% | May 18, 2023 | Sensitive information disclosure and manipulation due to improper certification validation. The following products are a... |
| CVE-2022-45453 | HIGH | 7.5 | 0.3% | May 18, 2023 | TLS/SSL weak cipher suites enabled. The following products are affected: Acronis Cyber Protect 15 (Windows, Linux) befor... |
| CVE-2022-45452 | HIGH | 7.8 | 0.2% | May 18, 2023 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Agent (Windo... |
| CVE-2022-45450 | HIGH | 7.5 | 0.4% | May 18, 2023 | Sensitive information disclosure and manipulation due to improper authorization. The following products are affected: Ac... |
| CVE-2022-4870 | MEDIUM | 5.3 | 0.4% | May 18, 2023 | In affected versions of Octopus Deploy it is possible to discover network details via error message |
| CVE-2022-45144 | MEDIUM | 6.1 | 0.7% | May 17, 2023 | Algoo Tracim before 4.4.2 allows XSS via HTML file upload. |
| CVE-2022-42336 | LOW | 3.3 | 0.3% | May 17, 2023 | Mishandling of guest SSBD selection on AMD hardware The current logic to set SSBD on AMD Family 17h and Hygon Family 18h... |
| CVE-2022-4774 | CRITICAL | 9.8 | 1.8% | May 15, 2023 | The Bit Form WordPress plugin before 1.9 does not validate the file types uploaded via it's file upload form field, allo... |
| CVE-2022-47393 | MEDIUM | 6.5 | 1.0% | May 15, 2023 | An authenticated, remote attacker may use a Improper Restriction of Operations within the Bounds of a Memory Buffer vuln... |
| CVE-2022-47392 | MEDIUM | 6.5 | 0.9% | May 15, 2023 | An authenticated, remote attacker may use a improper input validation vulnerability in the CmpApp/CmpAppBP/CmpAppForce C... |
| CVE-2022-4048 | HIGH | 7.7 | 0.1% | May 15, 2023 | Inadequate Encryption Strength in CODESYS Development System V3 versions prior to V3.5.18.40 allows an unauthenticated l... |
| CVE-2022-47937 | CRITICAL | 9.8 | 2.2% | May 15, 2023 | Improper input validation in the Apache Sling Commons JSON bundle allows an attacker to trigger unexpected errors by sup... |
| CVE-2022-47391 | HIGH | 7.5 | 1.9% | May 15, 2023 | In multiple CODESYS products in multiple versions an unauthorized, remote attacker may use a improper input validation v... |
| CVE-2022-47390 | HIGH | 8.8 | 1.3% | May 15, 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component o... |
| CVE-2022-47389 | HIGH | 8.8 | 1.3% | May 15, 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component o... |
| CVE-2022-47388 | HIGH | 8.8 | 1.3% | May 15, 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component o... |
| CVE-2022-47387 | HIGH | 8.8 | 1.3% | May 15, 2023 | An authenticated remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of... |
| CVE-2022-47386 | HIGH | 8.8 | 1.4% | May 15, 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component o... |
| CVE-2022-47385 | HIGH | 8.8 | 1.4% | May 15, 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpAppForce Component o... |
| CVE-2022-47384 | HIGH | 8.8 | 1.3% | May 15, 2023 | An authenticated remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of... |
| CVE-2022-47383 | HIGH | 8.8 | 1.3% | May 15, 2023 | An authenticated, remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component o... |
| CVE-2022-47382 | HIGH | 8.8 | 1.3% | May 15, 2023 | An authenticated remote attacker may use a stack based out-of-bounds write vulnerability in the CmpTraceMgr Component of... |
| CVE-2022-47381 | HIGH | 8.8 | 1.3% | May 15, 2023 | An authenticated remote attacker may use a stack based out-of-bounds write vulnerability in multiple CODESYS products in... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now