2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-38791MEDIUM5.5In MariaDB before 10.9.2, compress_write in extra/mariabackup/ds_compress.cc does not release data_mutex upon a stream w...
CVE-2022-2787MEDIUM4.3Schroot before 1.6.13 had too permissive rules on chroot or session names, allowing a denial of service on the schroot s...
CVE-2022-3015MEDIUM6.1A vulnerability, which was classified as problematic, has been found in oretnom23 Fast Food Ordering System. This issue ...
CVE-2022-3014MEDIUM6.1A vulnerability classified as problematic was found in SourceCodester Simple Task Managing System. This vulnerability af...
CVE-2022-36548MEDIUM5.4Edoc-doctor-appointment-system v1.0.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability at /pa...
CVE-2022-36547MEDIUM6.1Edoc-doctor-appointment-system v1.0.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability at ...
CVE-2022-36542MEDIUM6.5An access control issue in the component /ip/admin/ of Edoc-doctor-appointment-system v1.0.1 allows attackers to arbitra...
CVE-2022-36522MEDIUM6.5Mikrotik RouterOs through stable v6.48.3 was discovered to contain an assertion failure in the component /advanced-tools...
CVE-2022-35714MEDIUM5.4IBM Maximo Asset Management 7.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitr...
CVE-2022-34303MEDIUM6.7A flaw was found in Eurosoft bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tamper with...
CVE-2022-34302MEDIUM6.7A flaw was found in New Horizon Datasys bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or ...
CVE-2022-34301MEDIUM6.7A flaw was found in CryptoPro Secure Disk bootloaders before 2022-06-01. An attacker may use this bootloader to bypass o...
CVE-2022-0225MEDIUM5.4A flaw was found in Keycloak. This flaw allows a privileged attacker to use the malicious payload as the group name whil...
CVE-2022-0216MEDIUM4.4A use-after-free vulnerability was found in the LSI53C895A SCSI Host Bus Adapter emulation of QEMU. The flaw occurs whil...
CVE-2022-0207MEDIUM4.7A race condition was found in vdsm. Functionality to obfuscate sensitive values in log files that may lead to values bei...
CVE-2022-0175MEDIUM5.5A flaw was found in the VirGL virtual OpenGL renderer (virglrenderer). The virgl did not properly initialize memory when...
CVE-2022-0171MEDIUM5.5A flaw was found in the Linux kernel. The existing KVM SEV API has a vulnerability that allows a non-root (host) user-le...
CVE-2022-0168MEDIUM4.4A denial of service (DOS) issue was found in the Linux kernel’s smb2_ioctl_query_info function in the fs/cifs/smb2ops.c ...
CVE-2022-37150MEDIUM5.4An issue was discovered in Online Diagnostic Lab Management System 1.0. There is a stored XSS vulnerability via firstnam...
CVE-2022-38533MEDIUM5.5In GNU Binutils before 2.40, there is a heap-buffer-overflow in the error function bfd_getl32 when called from the strip...
CVE-2022-36121MEDIUM5.3An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...
CVE-2022-37318MEDIUM6.1Archer Platform 6.9 SP2 P2 before 6.11 P3 (6.11.0.3) contain a reflected XSS vulnerability. A remote unauthenticated mal...
CVE-2022-37317MEDIUM5.4Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability. An authenticated remote attacker could poten...
CVE-2022-37316MEDIUM6.5Archer Platform 6.8 before 6.11 P3 (6.11.0.3) contains an improper API access control vulnerability in a multi-instance ...
CVE-2022-36118MEDIUM5.3An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now