2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-3563 | MEDIUM | 5.7 | 0.4% | Oct 17, 2022 | A vulnerability classified as problematic has been found in Linux Kernel. Affected is the function read_50_controller_ca... |
| CVE-2022-26375 | MEDIUM | 4.8 | 0.4% | Oct 17, 2022 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Mammothology AB Press Optimizer plugin <= 1.1.1 on Wor... |
| CVE-2022-3540 | MEDIUM | 6.5 | 0.4% | Oct 17, 2022 | An issue has been discovered in hunter2 affecting all versions before 2.1.0. Improper handling of auto-completion input ... |
| CVE-2022-3351 | MEDIUM | 4.3 | 0.7% | Oct 17, 2022 | An issue has been discovered in GitLab EE affecting all versions starting from 13.7 before 15.2.5, all versions starting... |
| CVE-2022-3331 | MEDIUM | 4.3 | 0.6% | Oct 17, 2022 | An issue has been discovered in GitLab EE affecting all versions starting from 14.5 before 15.1.6, all versions starting... |
| CVE-2022-3330 | MEDIUM | 4.3 | 0.5% | Oct 17, 2022 | It was possible for a guest user to read a todo targeting an inaccessible note in Gitlab CE/EE affecting all versions fr... |
| CVE-2022-3325 | MEDIUM | 4.3 | 0.4% | Oct 17, 2022 | Improper access control in the GitLab CE/EE API affecting all versions starting from 12.8 before 15.2.5, all versions st... |
| CVE-2022-3293 | MEDIUM | 4.3 | 0.5% | Oct 17, 2022 | Email addresses were leaked in WebHook logs in GitLab EE affecting all versions from 9.3 prior to 15.2.5, 15.3 prior to ... |
| CVE-2022-3291 | MEDIUM | 6.5 | 0.7% | Oct 17, 2022 | Serialization of sensitive data in GitLab EE affecting all versions from 14.9 prior to 15.2.5, 15.3 prior to 15.3.4, and... |
| CVE-2022-3288 | MEDIUM | 4.3 | 0.6% | Oct 17, 2022 | A branch/tag name confusion in GitLab CE/EE affecting all versions prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior... |
| CVE-2022-3286 | MEDIUM | 5.3 | 0.4% | Oct 17, 2022 | Lack of IP address checking in GitLab EE affecting all versions from 14.2 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.... |
| CVE-2022-3279 | MEDIUM | 6.5 | 0.9% | Oct 17, 2022 | An unhandled exception in job log parsing in GitLab CE/EE affecting all versions prior to 15.2.5, 15.3 prior to 15.3.4, ... |
| CVE-2022-3165 | MEDIUM | 6.5 | 1.1% | Oct 17, 2022 | An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended form... |
| CVE-2022-3067 | MEDIUM | 6.5 | 0.7% | Oct 17, 2022 | An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 befor... |
| CVE-2022-3066 | MEDIUM | 5.4 | 0.5% | Oct 17, 2022 | An issue has been discovered in GitLab affecting all versions starting from 10.0 before 15.2.5, all versions starting fr... |
| CVE-2022-3030 | MEDIUM | 4.3 | 0.6% | Oct 17, 2022 | An improper access control issue in GitLab CE/EE affecting all versions starting before 15.1.6, all versions from 15.2 b... |
| CVE-2022-2908 | MEDIUM | 4.3 | 0.9% | Oct 17, 2022 | A potential DoS vulnerability was discovered in Gitlab CE/EE versions starting from 10.7 before 15.1.5, all versions sta... |
| CVE-2022-2865 | MEDIUM | 4.8 | 0.7% | Oct 17, 2022 | A cross-site scripting issue has been discovered in GitLab CE/EE affecting all versions before 15.1.6, 15.2 to 15.2.4 an... |
| CVE-2022-2630 | MEDIUM | 4.3 | 0.6% | Oct 17, 2022 | An improper access control issue in GitLab CE/EE affecting all versions starting from 15.2 before 15.2.4, all versions f... |
| CVE-2022-2592 | MEDIUM | 6.5 | 1.0% | Oct 17, 2022 | A lack of length validation in Snippet descriptions in GitLab CE/EE affecting all versions prior to 15.1.6, 15.2 prior t... |
| CVE-2022-2455 | MEDIUM | 6.5 | 1.0% | Oct 17, 2022 | A business logic issue in the handling of large repositories in all versions of GitLab CE/EE from 10.0 before 15.1.6, al... |
| CVE-2022-28291 | MEDIUM | 6.5 | 0.6% | Oct 17, 2022 | Insufficiently Protected Credentials: An authenticated user with debug privileges can retrieve stored Nessus policy cred... |
| CVE-2022-41542 | MEDIUM | 5.4 | 0.6% | Oct 17, 2022 | devhub 0.102.0 was discovered to contain a broken session control. |
| CVE-2022-41472 | MEDIUM | 5.4 | 0.4% | Oct 17, 2022 | 74cmsSE v3.12.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /apiadmin/notice/... |
| CVE-2022-41471 | MEDIUM | 6.5 | 0.5% | Oct 17, 2022 | 74cmsSE v3.12.0 allows authenticated attackers with low-level privileges to arbitrarily change the rights and credential... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now