2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-4053MEDIUM4.8A vulnerability was found in Student Attendance Management System. It has been classified as problematic. Affected is an...
CVE-2022-42892MEDIUM5.3A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hos...
CVE-2022-40751MEDIUM4.9 IBM UrbanCode Deploy (UCD) 6.2.7.0 through 6.2.7.17, 7.0.0.0 through 7.0.5.12, 7.1.0.0 through 7.1.2.8, and 7.2.0.0 thr...
CVE-2022-38390MEDIUM5.4Multiple IBM Business Automation Workflow versions are vulnerable to cross-site scripting. This vulnerability allows use...
CVE-2022-42985MEDIUM4.8The ScratchLogin extension through 1.1 for MediaWiki does not escape verification failure messages, which allows users w...
CVE-2022-42954MEDIUM5.4Keyfactor EJBCA before 7.10.0 allows XSS.
CVE-2022-39834MEDIUM5.4A stored XSS vulnerability was discovered in adminweb/ra/viewendentity.jsp in PrimeKey EJBCA through 7.9.0.2. A low-priv...
CVE-2022-36432MEDIUM5.4The Preview functionality in the Amasty Blog Pro 2.10.3 plugin for Magento 2 uses eval unsafely. This allows attackers t...
CVE-2022-42187MEDIUM6.1Hustoj 22.09.22 has a XSS Vulnerability in /admin/problem_judge.php.
CVE-2022-42960MEDIUM5.4EqualWeb Accessibility Widget 2.0.0, 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.1.10, 3.0.0, 3.0.1, 3.0.2, 4.0.0, and 4.0.1 allows DO...
CVE-2022-44005MEDIUM5.3An issue was discovered in BACKCLICK Professional 5.9.63. Due to the use of consecutive IDs in verification links, the n...
CVE-2022-44002MEDIUM6.1An issue was discovered in BACKCLICK Professional 5.9.63. Due to insufficient output encoding of user-supplied data, the...
CVE-2022-44008MEDIUM6.5An issue was discovered in BACKCLICK Professional 5.9.63. Due to improper validation, arbitrary local files can be retri...
CVE-2022-39319MEDIUM4.6FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input length val...
CVE-2022-39318MEDIUM5.7FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input validation...
CVE-2022-39317MEDIUM4.6FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing a range check fo...
CVE-2022-41877MEDIUM4.6FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input length val...
CVE-2022-39383MEDIUM6.5KubeVela is an open source application delivery platform. Users using the VelaUX APIServer could be affected by this vul...
CVE-2022-39347MEDIUM5.7FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing path canonicaliz...
CVE-2022-39320MEDIUM4.6FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP may attempt integer addition...
CVE-2022-39316MEDIUM5.7FreeRDP is a free remote desktop protocol library and clients. In affected versions there is an out of bound read in ZGF...
CVE-2022-44073MEDIUM5.4Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via svg,Users & Contacts.
CVE-2022-44071MEDIUM5.4Zenario CMS 9.3.57186 is is vulnerable to Cross Site Scripting (XSS) via profile.
CVE-2022-44070MEDIUM5.4Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via News articles.
CVE-2022-44069MEDIUM5.4Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via the Nest library module.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now