2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-1059MEDIUM6.1Aethon TUG Home Base Server versions prior to version 24 are affected by un unauthenticated attacker who can freely acce...
CVE-2022-42206MEDIUM5.4PHPGurukul Hospital Management System In PHP V 4.0 is vulnerable to Cross Site Scripting (XSS) via doctor/view-patient.p...
CVE-2022-42205MEDIUM5.4PHPGurukul Hospital Management System In PHP V 4.0 is vulnerable to Cross Site Scripting (XSS) via add-patient.php.
CVE-2022-3637MEDIUM5.5A vulnerability has been found in Linux Kernel and classified as problematic. This vulnerability affects the function jl...
CVE-2022-3630MEDIUM5.5A vulnerability was found in Linux Kernel. It has been rated as problematic. This issue affects some unknown processing ...
CVE-2022-36966MEDIUM5.4Users with Node Management rights were able to view and edit all nodes due to Insufficient control on URL parameter caus...
CVE-2022-3621MEDIUM6.5A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_bmap_lo...
CVE-2022-3619MEDIUM4.3A vulnerability has been found in Linux Kernel and classified as problematic. This vulnerability affects the function l2...
CVE-2022-40084MEDIUM5.3OpenCRX before v5.2.2 was discovered to be vulnerable to password enumeration due to the difference in error messages re...
CVE-2022-42200MEDIUM5.4Simple Exam Reviewer Management System v1.0 is vulnerable to Stored Cross Site Scripting (XSS) via the Exam List.
CVE-2022-42197MEDIUM6.5In Simple Exam Reviewer Management System v1.0 the User List function has improper access control that allows low privil...
CVE-2022-26954MEDIUM6.1Multiple open redirect vulnerabilities in NopCommerce 4.10 through 4.50.1 allow remote attackers to conduct phishing att...
CVE-2022-41358MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in Garage Management System v1.0 allows attackers to execute arbitrary...
CVE-2022-41813MEDIUM6.5In versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when BIG-I...
CVE-2022-41780MEDIUM5.5In F5OS-A version 1.x before 1.1.0 and F5OS-C version 1.x before 1.4.0, a directory traversal vulnerability exists in an...
CVE-2022-41770MEDIUM6.5In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1, and all...
CVE-2022-41694MEDIUM4.9In BIG-IP versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, and B...
CVE-2022-38107MEDIUM5.3Sensitive information could be displayed when a detailed technical error message is posted. This information could discl...
CVE-2022-31684MEDIUM4.3Reactor Netty HTTP Server, in versions 1.0.11 - 1.0.23, may log request headers in some cases of invalid HTTP requests. ...
CVE-2022-41708MEDIUM4.3Relatedcode's Messenger version 7bcd20b allows an authenticated external attacker to access existing chats in the worksp...
CVE-2022-43023MEDIUM6.5OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the importID parameter in the Import viewerr...
CVE-2022-43022MEDIUM6.5OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the tag_id variable in the Tag deletion func...
CVE-2022-43021MEDIUM6.5OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the entriesPerPage variable.
CVE-2022-43020MEDIUM6.5OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the tag_id variable in the Tag update functi...
CVE-2022-43018MEDIUM6.1OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the email parameter i...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now