2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-43263MEDIUM6.1A cross-site scripting (XSS) vulnerability in Arobas Music Guitar Pro for iPad and iPhone before v1.10.2 allows attacker...
CVE-2022-4022MEDIUM5.4The SVG Support plugin for WordPress defaults to insecure settings in version 2.5 and 2.5.1. SVG files containing malici...
CVE-2022-4021MEDIUM4.3The Permalink Manager Lite plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu...
CVE-2022-4018MEDIUM4.3Missing Authentication for Critical Function in GitHub repository ikus060/rdiffweb prior to 2.5.0a6.
CVE-2022-4014MEDIUM4.3A vulnerability, which was classified as problematic, has been found in FeehiCMS. Affected by this issue is some unknown...
CVE-2022-41917MEDIUM4.3OpenSearch is a community-driven, open source fork of Elasticsearch and Kibana. OpenSearch allows users to specify a loc...
CVE-2022-41918MEDIUM6.3OpenSearch is a community-driven, open source fork of Elasticsearch and Kibana. There is an issue with the implementatio...
CVE-2022-30769MEDIUM4.6Session fixation exists in ZoneMinder through 1.36.12 as an attacker can poison a session cookie to the next logged-in u...
CVE-2022-30768MEDIUM5.4A Stored Cross Site Scripting (XSS) issue in ZoneMinder 1.36.12 allows an attacker to execute HTML or JavaScript code vi...
CVE-2022-40753MEDIUM5.4 IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed ...
CVE-2022-38201MEDIUM6.1An unvalidated redirect vulnerability exists in Esri Portal for ArcGIS Quick Capture Web Designer versions 10.8.1 to 10....
CVE-2022-20950MEDIUM5.3A vulnerability in the interaction of SIP and Snort 3 for Cisco Firepower Threat Defense (FTD) Software could allow an u...
CVE-2022-20949MEDIUM4.9A vulnerability in the management web server of Cisco Firepower Threat Defense (FTD) Software could allow an authenticat...
CVE-2022-20943MEDIUM5.8Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multipl...
CVE-2022-20941MEDIUM5.3A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an...
CVE-2022-20940MEDIUM5.3A vulnerability in the TLS handler of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remo...
CVE-2022-20938MEDIUM4.3A vulnerability in the module import function of the administrative interface of Cisco Firepower Management Center (FMC)...
CVE-2022-20936MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could...
CVE-2022-20935MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could...
CVE-2022-20934MEDIUM6.7A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software and Cisco FXOS Software could allow an authe...
CVE-2022-20932MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could...
CVE-2022-20928MEDIUM5.8A vulnerability in the authentication and authorization flows for VPN connections in Cisco Adaptive Security Appliance (...
CVE-2022-20927MEDIUM6.5A vulnerability in the SSL/TLS client of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Def...
CVE-2022-20924MEDIUM6.5A vulnerability in the Simple Network Management Protocol (SNMP) feature of Cisco Adaptive Security Appliance (ASA) Soft...
CVE-2022-20922MEDIUM6.5Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multipl...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now