2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-42722MEDIUM5.5In the Linux kernel 5.8 through 5.19.x before 5.19.16, local attackers able to inject WLAN frames into the mac80211 stac...
CVE-2022-42721MEDIUM5.5A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could ...
CVE-2022-39302MEDIUM5.4Ree6 is a moderation bot. This vulnerability would allow other server owners to create configurations such as "Better-Au...
CVE-2022-39295MEDIUM6.1Knowage is an open source suite for modern business analytics alternative over big data systems. KnowageLabs / Knowage-S...
CVE-2022-39229MEDIUM4.3Grafana is an open source data visualization platform for metrics, logs, and traces. Versions prior to 9.1.8 and 8.5.14 ...
CVE-2022-35612MEDIUM5.4A cross-site scripting (XSS) vulnerability in MQTTRoute v3.3 and below allows attackers to execute arbitrary web scripts...
CVE-2022-35611MEDIUM4.3A Cross-Site Request Forgery (CSRF) in MQTTRoute v3.3 and below allows attackers to create and remove dashboards.
CVE-2022-35136MEDIUM6.5Boodskap IoT Platform v4.4.9-02 allows attackers to make unauthenticated API requests.
CVE-2022-35134MEDIUM5.4Boodskap IoT Platform v4.4.9-02 contains a cross-site scripting (XSS) vulnerability.
CVE-2022-34021MEDIUM5.4Multiple Cross Site Scripting (XSS) vulnerabilities in ResIOT IOT Platform + LoRaWAN Network Server through 4.1.1000114 ...
CVE-2022-42159MEDIUM4.3D-Link COVR 1200,1202,1203 v1.08 was discovered to have a predictable seed in a Pseudo-Random Number Generator.
CVE-2022-3493MEDIUM5.4A vulnerability, which was classified as problematic, has been found in SourceCodester Human Resource Management System ...
CVE-2022-41474MEDIUM6.5RPCMS v3.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to arbitrarily change ...
CVE-2022-41473MEDIUM6.1RPCMS v3.0.2 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in the Search function.
CVE-2022-38902MEDIUM5.4A Cross-site scripting (XSS) vulnerability in the Blog module - add new topic functionality in Liferay Digital Experienc...
CVE-2022-35081MEDIUM5.5SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_read_header at /src/png2swf.c.
CVE-2022-35080MEDIUM5.5SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_load at /lib/png.c.
CVE-2022-2828MEDIUM6.5In affected versions of Octopus Server it is possible to reveal information about teams via the API due to an Insecure D...
CVE-2022-3473MEDIUM6.5A vulnerability classified as critical has been found in SourceCodester Human Resource Management System. This affects a...
CVE-2022-3472MEDIUM4.9A vulnerability was found in SourceCodester Human Resource Management System. It has been rated as critical. Affected by...
CVE-2022-3471MEDIUM4.9A vulnerability was found in SourceCodester Human Resource Management System. It has been declared as critical. Affected...
CVE-2022-3470MEDIUM6.5A vulnerability was found in SourceCodester Human Resource Management System. It has been classified as critical. Affect...
CVE-2022-41316MEDIUM5.3HashiCorp Vault and Vault Enterprise’s TLS certificate auth method did not initially load the optionally configured CRL ...
CVE-2022-41351MEDIUM6.1In Zimbra Collaboration Suite (ZCS) 8.8.15, at the URL /h/calendar, one can trigger XSS by adding JavaScript code to the...
CVE-2022-41350MEDIUM6.1In Zimbra Collaboration Suite (ZCS) 8.8.15, /h/search?action=voicemail&action=listen accepts a phone parameter that is v...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now