2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-43241 | MEDIUM | 6.5 | 0.8% | Nov 2, 2022 | Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc_put_hevc_qpel_v_3_8_sse in sse-motion.cc. This vu... |
| CVE-2022-43240 | MEDIUM | 6.5 | 0.8% | Nov 2, 2022 | Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_hevc_qpel_h_2_v_1_sse in ... |
| CVE-2022-43239 | MEDIUM | 6.5 | 0.8% | Nov 2, 2022 | Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via mc_chroma<unsigned short> in motion.c... |
| CVE-2022-43238 | MEDIUM | 6.5 | 0.9% | Nov 2, 2022 | Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc_put_hevc_qpel_h_3_v_3_sse in sse-motion.cc. This ... |
| CVE-2022-43237 | MEDIUM | 6.5 | 0.9% | Nov 2, 2022 | Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via void put_epel_hv_fallback<unsigned s... |
| CVE-2022-43236 | MEDIUM | 6.5 | 0.9% | Nov 2, 2022 | Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in... |
| CVE-2022-43235 | MEDIUM | 6.5 | 0.8% | Nov 2, 2022 | Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_hevc_epel_pixels_8_sse in... |
| CVE-2022-43670 | MEDIUM | 5.4 | 1.4% | Nov 2, 2022 | An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in Sling ... |
| CVE-2022-40840 | MEDIUM | 6.1 | 0.5% | Nov 2, 2022 | ndk design NdkAdvancedCustomizationFields 3.5.0 is vulnerable to Cross Site Scripting (XSS) via createPdf.php. |
| CVE-2022-3826 | MEDIUM | 6.5 | 0.6% | Nov 2, 2022 | A vulnerability was found in Huaxia ERP. It has been classified as problematic. This affects an unknown part of the file... |
| CVE-2022-3825 | MEDIUM | 6.5 | 0.5% | Nov 2, 2022 | A vulnerability was found in Huaxia ERP 2.3 and classified as critical. Affected by this issue is some unknown functiona... |
| CVE-2022-3810 | MEDIUM | 6.5 | 0.8% | Nov 2, 2022 | A vulnerability was found in Axiomatic Bento4. It has been classified as problematic. This affects the function AP4_File... |
| CVE-2022-3809 | MEDIUM | 6.5 | 0.8% | Nov 2, 2022 | A vulnerability was found in Axiomatic Bento4 and classified as problematic. Affected by this issue is the function Pars... |
| CVE-2022-43985 | MEDIUM | 6.1 | 1.5% | Nov 2, 2022 | In Apache Airflow versions prior to 2.4.2, there was an open redirect in the webserver's `/confirm` endpoint. |
| CVE-2022-43982 | MEDIUM | 6.1 | 1.4% | Nov 2, 2022 | In Apache Airflow versions prior to 2.4.2, the "Trigger DAG with config" screen was susceptible to XSS attacks via the `... |
| CVE-2022-42473 | MEDIUM | 5.5 | 0.2% | Nov 2, 2022 | A missing authentication for a critical function vulnerability in Fortinet FortiSOAR 6.4.0 - 6.4.4 and 7.0.0 - 7.0.3 and... |
| CVE-2022-39950 | MEDIUM | 5.4 | 0.7% | Nov 2, 2022 | An improper neutralization of input during web page generation vulnerability [CWE-79] exists in FortiManager and FortiAn... |
| CVE-2022-39949 | MEDIUM | 5.5 | 0.2% | Nov 2, 2022 | An improper control of a resource through its lifetime vulnerability [CWE-664] in FortiEDR CollectorWindows 4.0.0 throug... |
| CVE-2022-39945 | MEDIUM | 6.5 | 0.3% | Nov 2, 2022 | An improper access control vulnerability [CWE-284] in FortiMail 7.2.0, 7.0.0 through 7.0.3, 6.4 all versions, 6.2 all ve... |
| CVE-2022-38380 | MEDIUM | 4.3 | 23.0% | Nov 2, 2022 | An improper access control [CWE-284] vulnerability in FortiOS version 7.2.0 and versions 7.0.0 through 7.0.7 may allow a... |
| CVE-2022-38374 | MEDIUM | 6.1 | 1.7% | Nov 2, 2022 | A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiADC 7.0.0 - 7.0.... |
| CVE-2022-38373 | MEDIUM | 5.4 | 0.4% | Nov 2, 2022 | An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiDeceptor management interf... |
| CVE-2022-38372 | MEDIUM | 6.7 | 0.2% | Nov 2, 2022 | A hidden functionality vulnerability [CWE-1242] in FortiTester CLI 2.3.0 through 3.9.1, 4.0.0 through 4.2.0, 7.0.0 throu... |
| CVE-2022-35851 | MEDIUM | 5.4 | 0.4% | Nov 2, 2022 | An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiADC management interface 7... |
| CVE-2022-33878 | MEDIUM | 5.5 | 0.1% | Nov 2, 2022 | An exposure of sensitive information to an unauthorized actor vulnerabiltiy [CWE-200] in FortiClient for Mac versions 7.... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now