2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-2508 | MEDIUM | 5.3 | 0.5% | Oct 27, 2022 | In affected versions of Octopus Server it is possible to reveal the existence of resources in a space that the user does... |
| CVE-2022-40703 | MEDIUM | 6.1 | 0.3% | Oct 26, 2022 | CWE-302 Authentication Bypass by Assumed-Immutable Data in AliveCor Kardia App version 5.17.1-754993421 and prior on A... |
| CVE-2022-3704 | MEDIUM | 5.4 | 0.7% | Oct 26, 2022 | A vulnerability classified as problematic has been found in Ruby on Rails. This affects an unknown part of the file acti... |
| CVE-2022-39348 | MEDIUM | 5.4 | 1.2% | Oct 26, 2022 | Twisted is an event-based framework for internet applications. Started with version 0.9.4, when the host header does not... |
| CVE-2022-3669 | MEDIUM | 5.5 | 0.7% | Oct 26, 2022 | A vulnerability was found in Axiomatic Bento4 and classified as problematic. This issue affects the function AP4_AvccAto... |
| CVE-2022-3668 | MEDIUM | 5.5 | 0.7% | Oct 26, 2022 | A vulnerability has been found in Axiomatic Bento4 and classified as problematic. This vulnerability affects the functio... |
| CVE-2022-3663 | MEDIUM | 5.5 | 0.7% | Oct 26, 2022 | A vulnerability was found in Axiomatic Bento4. It has been rated as problematic. This issue affects the function AP4_Sts... |
| CVE-2022-3474 | MEDIUM | 4.3 | 0.2% | Oct 26, 2022 | A bad credential handling in the remote assets API for Bazel versions prior to 5.3.2 and 4.2.3 sends all user-provided c... |
| CVE-2022-39360 | MEDIUM | 6.5 | 0.5% | Oct 26, 2022 | Metabase is data visualization software. Prior to versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, 1.42.6, 0.41.9, and 1... |
| CVE-2022-39359 | MEDIUM | 6.5 | 0.6% | Oct 26, 2022 | Metabase is data visualization software. Prior to versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, 1.42.6, 0.41.9, and 1... |
| CVE-2022-39358 | MEDIUM | 6.5 | 0.4% | Oct 26, 2022 | Metabase is data visualization software. Prior to versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, and 1.42.6, it was po... |
| CVE-2022-43776 | MEDIUM | 6.5 | 0.7% | Oct 26, 2022 | The url parameter of the /api/geojson endpoint in Metabase versions <44.5 can be used to perform Server Side Request For... |
| CVE-2022-3673 | MEDIUM | 6.1 | 0.3% | Oct 26, 2022 | A vulnerability, which was classified as problematic, was found in SourceCodester Sanitization Management System 1.0. Af... |
| CVE-2022-3672 | MEDIUM | 6.1 | 0.3% | Oct 26, 2022 | A vulnerability, which was classified as problematic, has been found in SourceCodester Sanitization Management System 1.... |
| CVE-2022-20959 | MEDIUM | 5.4 | 0.8% | Oct 26, 2022 | A vulnerability in the External RESTful Services (ERS) API of Cisco Identity Services Engine (ISE) Software could allow ... |
| CVE-2022-20953 | MEDIUM | 5.5 | 0.4% | Oct 26, 2022 | Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allo... |
| CVE-2022-20776 | MEDIUM | 6.7 | 0.5% | Oct 26, 2022 | Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allo... |
| CVE-2022-25849 | MEDIUM | 6.1 | 0.5% | Oct 26, 2022 | The package joyqi/hyper-down from 0.0.0 are vulnerable to Cross-site Scripting (XSS) because the module of parse markdow... |
| CVE-2022-43750 | MEDIUM | 6.7 | 0.3% | Oct 26, 2022 | drivers/usb/mon/mon_bin.c in usbmon in the Linux kernel before 5.19.15 and 6.x before 6.0.1 allows a user-space client t... |
| CVE-2022-33181 | MEDIUM | 5.5 | 0.2% | Oct 25, 2022 | An information disclosure vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0c... |
| CVE-2022-33180 | MEDIUM | 5.5 | 0.2% | Oct 25, 2022 | A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5 could allow a local ... |
| CVE-2022-28170 | MEDIUM | 6.5 | 0.2% | Oct 25, 2022 | Brocade Fabric OS Web Application services before Brocade Fabric v9.1.0, v9.0.1e, v8.2.3c, v7.4.2j store server and user... |
| CVE-2022-38162 | MEDIUM | 6.1 | 0.7% | Oct 25, 2022 | Reflected cross-site scripting (XSS) vulnerabilities in WithSecure through 2022-08-10) exists within the F-Secure Policy... |
| CVE-2022-31468 | MEDIUM | 6.1 | 0.5% | Oct 25, 2022 | OX App Suite through 8.2 allows XSS via an attachment or OX Drive content when a client uses the len or off parameter. |
| CVE-2022-27913 | MEDIUM | 6.1 | 0.4% | Oct 25, 2022 | An issue was discovered in Joomla! 4.2.0 through 4.2.3. Inadequate filtering of potentially malicious user input leads t... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now