2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-2508MEDIUM5.3In affected versions of Octopus Server it is possible to reveal the existence of resources in a space that the user does...
CVE-2022-40703MEDIUM6.1CWE-302 Authentication Bypass by Assumed-Immutable Data in AliveCor Kardia App version 5.17.1-754993421 and prior on A...
CVE-2022-3704MEDIUM5.4A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file acti...
CVE-2022-39348MEDIUM5.4Twisted is an event-based framework for internet applications. Started with version 0.9.4, when the host header does not...
CVE-2022-3669MEDIUM5.5A vulnerability was found in Axiomatic Bento4 and classified as problematic. This issue affects the function AP4_AvccAto...
CVE-2022-3668MEDIUM5.5A vulnerability has been found in Axiomatic Bento4 and classified as problematic. This vulnerability affects the functio...
CVE-2022-3663MEDIUM5.5A vulnerability was found in Axiomatic Bento4. It has been rated as problematic. This issue affects the function AP4_Sts...
CVE-2022-3474MEDIUM4.3A bad credential handling in the remote assets API for Bazel versions prior to 5.3.2 and 4.2.3 sends all user-provided c...
CVE-2022-39360MEDIUM6.5Metabase is data visualization software. Prior to versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, 1.42.6, 0.41.9, and 1...
CVE-2022-39359MEDIUM6.5Metabase is data visualization software. Prior to versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, 1.42.6, 0.41.9, and 1...
CVE-2022-39358MEDIUM6.5Metabase is data visualization software. Prior to versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, and 1.42.6, it was po...
CVE-2022-43776MEDIUM6.5The url parameter of the /api/geojson endpoint in Metabase versions <44.5 can be used to perform Server Side Request For...
CVE-2022-3673MEDIUM6.1A vulnerability, which was classified as problematic, was found in SourceCodester Sanitization Management System 1.0. Af...
CVE-2022-3672MEDIUM6.1A vulnerability, which was classified as problematic, has been found in SourceCodester Sanitization Management System 1....
CVE-2022-20959MEDIUM5.4A vulnerability in the External RESTful Services (ERS) API of Cisco Identity Services Engine (ISE) Software could allow ...
CVE-2022-20953MEDIUM5.5Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allo...
CVE-2022-20776MEDIUM6.7Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allo...
CVE-2022-25849MEDIUM6.1The package joyqi/hyper-down from 0.0.0 are vulnerable to Cross-site Scripting (XSS) because the module of parse markdow...
CVE-2022-43750MEDIUM6.7drivers/usb/mon/mon_bin.c in usbmon in the Linux kernel before 5.19.15 and 6.x before 6.0.1 allows a user-space client t...
CVE-2022-33181MEDIUM5.5An information disclosure vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0c...
CVE-2022-33180MEDIUM5.5A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5 could allow a local ...
CVE-2022-28170MEDIUM6.5Brocade Fabric OS Web Application services before Brocade Fabric v9.1.0, v9.0.1e, v8.2.3c, v7.4.2j store server and user...
CVE-2022-38162MEDIUM6.1Reflected cross-site scripting (XSS) vulnerabilities in WithSecure through 2022-08-10) exists within the F-Secure Policy...
CVE-2022-31468MEDIUM6.1OX App Suite through 8.2 allows XSS via an attachment or OX Drive content when a client uses the len or off parameter.
CVE-2022-27913MEDIUM6.1An issue was discovered in Joomla! 4.2.0 through 4.2.3. Inadequate filtering of potentially malicious user input leads t...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now