2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-48435LOW3.3In JetBrains PhpStorm before 2023.1 source code could be logged in the local idea.log file
CVE-2022-47870MEDIUM6.1A Cross Site Scripting (XSS) vulnerability in the web SQL monitor login page in Redgate SQL Monitor 12.1.31.893 allows r...
CVE-2022-41633HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in PeepSo Community by PeepSo – Social Network, Membership, Registration...
CVE-2022-4934HIGH7.2A post-auth command injection vulnerability in the exception wizard of Sophos Web Appliance older than version 4.3.10.4 ...
CVE-2022-4771MEDIUM6.1 Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2, including 8.3.x allow a malici...
CVE-2022-4770MEDIUM4.3 Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.0 and 9.3.0.2, including 8.3.x display the fu...
CVE-2022-4769MEDIUM4.3 Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.0 and 9.3.0.2, including 8.3.x display the ta...
CVE-2022-43941MEDIUM6.5 Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.2, including 8.3.x do not correctly...
CVE-2022-43940HIGH8.8 Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.2, including 8.3.x do not correctly...
CVE-2022-43939CRITICAL9.8Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.1 and 9.3.0.2, including 8.3.x contain security ...
CVE-2022-43938HIGH8.8 Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2, including 8.3.x cannot allow a...
CVE-2022-43772MEDIUM6.5 Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.0 and 9.3.0.1, including 8.3.x with the Big Dat...
CVE-2022-43771MEDIUM6.5 Hitachi Vantara Pentaho Business Analytics Server versions before 9.4.0.0 and 9.3.0.1, including 8.3.x, using the Penta...
CVE-2022-3960MEDIUM6.3 Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2, including 8.3.x cannot allow a...
CVE-2022-43773HIGH8.8 Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2, including 8.3.x is installed w...
CVE-2022-43769HIGH7.2Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2, including 8.3.x allow certain w...
CVE-2022-38072HIGH8.8An improper array index validation vulnerability exists in the stl_fix_normal_directions functionality of ADMesh Master ...
CVE-2022-36440HIGH7.5A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability function. Attackers can malic...
CVE-2022-38923CRITICAL9.8BluePage CMS thru v3.9 processes an insufficiently sanitized HTTP Header allowing MySQL Injection in the 'User-Agent' fi...
CVE-2022-38922CRITICAL9.8BluePage CMS thru 3.9 processes an insufficiently sanitized HTTP Header Cookie value allowing MySQL Injection in the 'us...
CVE-2022-27665MEDIUM6.1Reflected XSS (via AngularJS sandbox escape expressions) exists in Progress Ipswitch WS_FTP Server 8.6.0. This can lead ...
CVE-2022-42452MEDIUM5.4HCL Launch is vulnerable to HTML injection.  HTML code is stored and included without being sanitized. This can lead to ...
CVE-2022-42447HIGH8.8HCL Compass is vulnerable to Cross-Origin Resource Sharing (CORS). This vulnerability can allow an unprivileged remote a...
CVE-2022-3487Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2022-47192HIGH8.8Generex UPS CS141 below 2.06 version, could allow a remote attacker to upload a backup file containing a modified "users...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now