2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-43263 | MEDIUM | 6.1 | 0.5% | Nov 16, 2022 | A cross-site scripting (XSS) vulnerability in Arobas Music Guitar Pro for iPad and iPhone before v1.10.2 allows attacker... |
| CVE-2022-4022 | MEDIUM | 5.4 | 0.4% | Nov 16, 2022 | The SVG Support plugin for WordPress defaults to insecure settings in version 2.5 and 2.5.1. SVG files containing malici... |
| CVE-2022-4021 | MEDIUM | 4.3 | 0.4% | Nov 16, 2022 | The Permalink Manager Lite plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu... |
| CVE-2022-4018 | MEDIUM | 4.3 | 0.8% | Nov 16, 2022 | Missing Authentication for Critical Function in GitHub repository ikus060/rdiffweb prior to 2.5.0a6. |
| CVE-2022-4014 | MEDIUM | 4.3 | 0.2% | Nov 16, 2022 | A vulnerability, which was classified as problematic, has been found in FeehiCMS. Affected by this issue is some unknown... |
| CVE-2022-41917 | MEDIUM | 4.3 | 0.5% | Nov 16, 2022 | OpenSearch is a community-driven, open source fork of Elasticsearch and Kibana. OpenSearch allows users to specify a loc... |
| CVE-2022-41918 | MEDIUM | 6.3 | 0.4% | Nov 15, 2022 | OpenSearch is a community-driven, open source fork of Elasticsearch and Kibana. There is an issue with the implementatio... |
| CVE-2022-30769 | MEDIUM | 4.6 | 0.5% | Nov 15, 2022 | Session fixation exists in ZoneMinder through 1.36.12 as an attacker can poison a session cookie to the next logged-in u... |
| CVE-2022-30768 | MEDIUM | 5.4 | 0.6% | Nov 15, 2022 | A Stored Cross Site Scripting (XSS) issue in ZoneMinder 1.36.12 allows an attacker to execute HTML or JavaScript code vi... |
| CVE-2022-40753 | MEDIUM | 5.4 | 0.4% | Nov 15, 2022 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed ... |
| CVE-2022-38201 | MEDIUM | 6.1 | 0.5% | Nov 15, 2022 | An unvalidated redirect vulnerability exists in Esri Portal for ArcGIS Quick Capture Web Designer versions 10.8.1 to 10.... |
| CVE-2022-20950 | MEDIUM | 5.3 | 0.8% | Nov 15, 2022 | A vulnerability in the interaction of SIP and Snort 3 for Cisco Firepower Threat Defense (FTD) Software could allow an u... |
| CVE-2022-20949 | MEDIUM | 4.9 | 0.7% | Nov 15, 2022 | A vulnerability in the management web server of Cisco Firepower Threat Defense (FTD) Software could allow an authenticat... |
| CVE-2022-20943 | MEDIUM | 5.8 | 0.9% | Nov 15, 2022 | Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multipl... |
| CVE-2022-20941 | MEDIUM | 5.3 | 0.7% | Nov 15, 2022 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an... |
| CVE-2022-20940 | MEDIUM | 5.3 | 0.6% | Nov 15, 2022 | A vulnerability in the TLS handler of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remo... |
| CVE-2022-20938 | MEDIUM | 4.3 | 0.5% | Nov 15, 2022 | A vulnerability in the module import function of the administrative interface of Cisco Firepower Management Center (FMC)... |
| CVE-2022-20936 | MEDIUM | 4.8 | 0.4% | Nov 15, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could... |
| CVE-2022-20935 | MEDIUM | 4.8 | 0.4% | Nov 15, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could... |
| CVE-2022-20934 | MEDIUM | 6.7 | 0.3% | Nov 15, 2022 | A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software and Cisco FXOS Software could allow an authe... |
| CVE-2022-20932 | MEDIUM | 4.8 | 0.5% | Nov 15, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could... |
| CVE-2022-20928 | MEDIUM | 5.8 | 0.7% | Nov 15, 2022 | A vulnerability in the authentication and authorization flows for VPN connections in Cisco Adaptive Security Appliance (... |
| CVE-2022-20927 | MEDIUM | 6.5 | 0.5% | Nov 15, 2022 | A vulnerability in the SSL/TLS client of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Def... |
| CVE-2022-20924 | MEDIUM | 6.5 | 0.8% | Nov 15, 2022 | A vulnerability in the Simple Network Management Protocol (SNMP) feature of Cisco Adaptive Security Appliance (ASA) Soft... |
| CVE-2022-20922 | MEDIUM | 6.5 | 0.8% | Nov 15, 2022 | Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multipl... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now