2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-41311MEDIUM5.4A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industri...
CVE-2022-40693HIGH7.5A cleartext transmission vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Et...
CVE-2022-40691MEDIUM5.3An information disclosure vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial E...
CVE-2022-40224HIGH7.5A denial of service vulnerability exists in the web server functionality of Moxa SDS-3008 Series Industrial Ethernet Swi...
CVE-2022-46621Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-46620Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-45544HIGH8.8Insecure Permission vulnerability in Schlix Web Inc SCHLIX CMS 2.2.7-2 allows attacker to upload arbitrary files and exe...
CVE-2022-43759HIGH8.8A Improper Privilege Management vulnerability in SUSE Rancher, allows users with access to the escalate verb on PRTBs to...
CVE-2022-43758MEDIUM6.8A Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in SUSE Ranch...
CVE-2022-43757HIGH8.8A Cleartext Storage of Sensitive Information vulnerability in SUSE Rancher allows users on managed clusters to gain acce...
CVE-2022-43756HIGH7.5A Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in SU...
CVE-2022-43755CRITICAL9.8A Insufficient Entropy vulnerability in SUSE Rancher allows attackers that gained knowledge of the cattle-token to conti...
CVE-2022-31249CRITICAL9.8A Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in wrangler o...
CVE-2022-21953HIGH8.8A Missing Authorization vulnerability in of SUSE Rancher allows authenticated user to create an unauthorized shell pod a...
CVE-2022-21948MEDIUM6.1An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in paste allows re...
CVE-2022-31254HIGH7.8A Incorrect Default Permissions vulnerability in rmt-server-regsharing service of SUSE Linux Enterprise Server for SAP 1...
CVE-2022-42291MEDIUM5.5 NVIDIA GeForce Experience contains a vulnerability in the installer, where a user installing the NVIDIA GeForce Experie...
CVE-2022-31611HIGH7.3 NVIDIA GeForce Experience contains an uncontrolled search path vulnerability in all its client installers, where an att...
CVE-2022-45854MEDIUM4.3An improper check for unusual conditions in Zyxel NWA110AX firmware verisons prior to 6.50(ABTG.0)C0, which could allow ...
CVE-2022-45441MEDIUM6.1A cross-site scripting (XSS) vulnerability in Zyxel NBG-418N v2 firmware versions prior to V1.00(AARP.13)C0, which could...
CVE-2022-38547HIGH7.2A post-authentication command injection vulnerability in the CLI command of Zyxel ZyWALL/USG series firmware versions 4....
CVE-2022-46496MEDIUM5.9BTicino Door Entry HOMETOUCH for iOS 1.4.2 was discovered to be missing an SSL certificate.
CVE-2022-44617HIGH7.5A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some parser functions will b...
CVE-2022-3229CRITICAL9.8Because the web management interface for Unified Intents' Unified Remote solution does not itself require authentication...
CVE-2022-28923MEDIUM6.1Caddy v2.4.6 was discovered to contain an open redirection vulnerability which allows attackers to redirect users to phi...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now