2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4350 | MEDIUM | 6.1 | 0.4% | Dec 8, 2022 | A vulnerability, which was classified as problematic, was found in Mingsoft MCMS 5.2.8. Affected is an unknown function ... |
| CVE-2022-4349 | MEDIUM | 6.8 | 0.2% | Dec 8, 2022 | A vulnerability classified as problematic has been found in CTF-hacker pwn. This affects an unknown part of the file del... |
| CVE-2022-4348 | MEDIUM | 6.1 | 0.4% | Dec 8, 2022 | A vulnerability was found in y_project RuoYi-Cloud. It has been rated as problematic. Affected by this issue is some unk... |
| CVE-2022-4347 | MEDIUM | 5.4 | 0.4% | Dec 8, 2022 | A vulnerability was found in xiandafu beetl-bbs. It has been declared as problematic. Affected by this vulnerability is ... |
| CVE-2022-4261 | MEDIUM | 6.5 | 0.3% | Dec 8, 2022 | Rapid7 Nexpose and InsightVM versions prior to 6.6.172 failed to reliably validate the authenticity of update contents. ... |
| CVE-2022-23471 | MEDIUM | 6.5 | 1.0% | Dec 7, 2022 | containerd is an open source container runtime. A bug was found in containerd's CRI implementation where a user can exha... |
| CVE-2022-4341 | MEDIUM | 6.1 | 0.4% | Dec 7, 2022 | A vulnerability has been found in csliuwy coder-chain_gdut and classified as problematic. Affected by this vulnerability... |
| CVE-2022-44361 | MEDIUM | 5.4 | 0.4% | Dec 7, 2022 | An issue was discovered in ZZCMS 2022. There is a cross-site scripting (XSS) vulnerability in admin/ad_list.php. |
| CVE-2022-41735 | MEDIUM | 6.1 | 0.4% | Dec 7, 2022 | IBM Business Process Manager 21.0.1 through 21.0.3.1, 20.0.0.1 through 20.0.0.2 19.0.0.1 through 19.0.0.3 is vulnerable ... |
| CVE-2022-45217 | MEDIUM | 5.4 | 0.5% | Dec 7, 2022 | A cross-site scripting (XSS) vulnerability in Book Store Management System v1.0.0 allows attackers to execute arbitrary ... |
| CVE-2022-45910 | MEDIUM | 5.3 | 1.5% | Dec 7, 2022 | Improper neutralization of special elements used in an LDAP query ('LDAP Injection') vulnerability in ActiveDirectory an... |
| CVE-2022-39044 | MEDIUM | 6.8 | 0.3% | Dec 7, 2022 | Hidden functionality vulnerability in multiple Buffalo network devices allows a network-adjacent attacker with an admini... |
| CVE-2022-34840 | MEDIUM | 6.5 | 0.2% | Dec 7, 2022 | Use of hard-coded credentials vulnerability in multiple Buffalo network devices allows a network-adjacent attacker to al... |
| CVE-2022-45122 | MEDIUM | 6.1 | 0.5% | Dec 7, 2022 | Cross-site scripting vulnerability in Movable Type Movable Type 7 r.5301 and earlier (Movable Type 7 Series), Movable Ty... |
| CVE-2022-45113 | MEDIUM | 6.5 | 0.6% | Dec 7, 2022 | Improper validation of syntactic correctness of input vulnerability exist in Movable Type series. Having a user to acces... |
| CVE-2022-43668 | MEDIUM | 6.1 | 0.4% | Dec 7, 2022 | Typora versions prior to 1.4.4 fails to properly neutralize JavaScript code, which may result in executing JavaScript co... |
| CVE-2022-42486 | MEDIUM | 4.8 | 0.6% | Dec 7, 2022 | Stored cross-site scripting vulnerability in User group management of baserCMS versions prior to 4.7.2 allows a remote a... |
| CVE-2022-41994 | MEDIUM | 4.8 | 0.6% | Dec 7, 2022 | Stored cross-site scripting vulnerability in Permission Settings of baserCMS versions prior to 4.7.2 allows a remote aut... |
| CVE-2022-41783 | MEDIUM | 5.5 | 0.2% | Dec 7, 2022 | tdpServer of TP-Link RE300 V1 improperly processes its input, which may allow an attacker to cause a denial-of-service (... |
| CVE-2022-37406 | MEDIUM | 4.8 | 0.6% | Dec 7, 2022 | Cross-site scripting vulnerability in Aficio SP 4210N firmware versions prior to Web Support 1.05 allows a remote authen... |
| CVE-2022-45008 | MEDIUM | 4.8 | 0.4% | Dec 7, 2022 | Online Leave Management System v1.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the c... |
| CVE-2022-44153 | MEDIUM | 6.1 | 0.4% | Dec 7, 2022 | Rapid Software LLC Rapid SCADA 5.8.4 is vulnerable to Cross Site Scripting (XSS). |
| CVE-2022-45918 | MEDIUM | 6.5 | 1.2% | Dec 7, 2022 | ILIAS before 7.16 allows External Control of File Name or Path. |
| CVE-2022-45917 | MEDIUM | 6.1 | 2.0% | Dec 7, 2022 | ILIAS before 7.16 has an Open Redirect. |
| CVE-2022-45916 | MEDIUM | 5.4 | 0.9% | Dec 7, 2022 | ILIAS before 7.16 allows XSS. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now