2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-4350MEDIUM6.1A vulnerability, which was classified as problematic, was found in Mingsoft MCMS 5.2.8. Affected is an unknown function ...
CVE-2022-4349MEDIUM6.8A vulnerability classified as problematic has been found in CTF-hacker pwn. This affects an unknown part of the file del...
CVE-2022-4348MEDIUM6.1A vulnerability was found in y_project RuoYi-Cloud. It has been rated as problematic. Affected by this issue is some unk...
CVE-2022-4347MEDIUM5.4A vulnerability was found in xiandafu beetl-bbs. It has been declared as problematic. Affected by this vulnerability is ...
CVE-2022-4261MEDIUM6.5Rapid7 Nexpose and InsightVM versions prior to 6.6.172 failed to reliably validate the authenticity of update contents. ...
CVE-2022-23471MEDIUM6.5containerd is an open source container runtime. A bug was found in containerd's CRI implementation where a user can exha...
CVE-2022-4341MEDIUM6.1A vulnerability has been found in csliuwy coder-chain_gdut and classified as problematic. Affected by this vulnerability...
CVE-2022-44361MEDIUM5.4An issue was discovered in ZZCMS 2022. There is a cross-site scripting (XSS) vulnerability in admin/ad_list.php.
CVE-2022-41735MEDIUM6.1IBM Business Process Manager 21.0.1 through 21.0.3.1, 20.0.0.1 through 20.0.0.2 19.0.0.1 through 19.0.0.3 is vulnerable ...
CVE-2022-45217MEDIUM5.4A cross-site scripting (XSS) vulnerability in Book Store Management System v1.0.0 allows attackers to execute arbitrary ...
CVE-2022-45910MEDIUM5.3Improper neutralization of special elements used in an LDAP query ('LDAP Injection') vulnerability in ActiveDirectory an...
CVE-2022-39044MEDIUM6.8Hidden functionality vulnerability in multiple Buffalo network devices allows a network-adjacent attacker with an admini...
CVE-2022-34840MEDIUM6.5Use of hard-coded credentials vulnerability in multiple Buffalo network devices allows a network-adjacent attacker to al...
CVE-2022-45122MEDIUM6.1Cross-site scripting vulnerability in Movable Type Movable Type 7 r.5301 and earlier (Movable Type 7 Series), Movable Ty...
CVE-2022-45113MEDIUM6.5Improper validation of syntactic correctness of input vulnerability exist in Movable Type series. Having a user to acces...
CVE-2022-43668MEDIUM6.1Typora versions prior to 1.4.4 fails to properly neutralize JavaScript code, which may result in executing JavaScript co...
CVE-2022-42486MEDIUM4.8Stored cross-site scripting vulnerability in User group management of baserCMS versions prior to 4.7.2 allows a remote a...
CVE-2022-41994MEDIUM4.8Stored cross-site scripting vulnerability in Permission Settings of baserCMS versions prior to 4.7.2 allows a remote aut...
CVE-2022-41783MEDIUM5.5tdpServer of TP-Link RE300 V1 improperly processes its input, which may allow an attacker to cause a denial-of-service (...
CVE-2022-37406MEDIUM4.8Cross-site scripting vulnerability in Aficio SP 4210N firmware versions prior to Web Support 1.05 allows a remote authen...
CVE-2022-45008MEDIUM4.8Online Leave Management System v1.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the c...
CVE-2022-44153MEDIUM6.1Rapid Software LLC Rapid SCADA 5.8.4 is vulnerable to Cross Site Scripting (XSS).
CVE-2022-45918MEDIUM6.5ILIAS before 7.16 allows External Control of File Name or Path.
CVE-2022-45917MEDIUM6.1ILIAS before 7.16 has an Open Redirect.
CVE-2022-45916MEDIUM5.4ILIAS before 7.16 allows XSS.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now