2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-33142MEDIUM6.5Authenticated (subscriber+) Denial Of Service (DoS) vulnerability in WordPlus WordPress Better Messages plugin <= 1.9.10...
CVE-2022-2965MEDIUM4.3Improper Restriction of Rendered UI Layers or Frames in GitHub repository notrinos/notrinoserp prior to 0.7.
CVE-2022-29476MEDIUM6.1Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability in 8 Degree Themes otification Bar for WordPress plugin ...
CVE-2022-35278MEDIUM6.1In Apache ActiveMQ Artemis prior to 2.24.0, an attacker could show malicious content and/or redirect users to a maliciou...
CVE-2022-2956MEDIUM6.1A vulnerability classified as problematic has been found in ConsoleTVs Noxen. Affected is an unknown function of the fil...
CVE-2022-1989MEDIUM5.3All CODESYS Visualization versions before V4.2.0.0 generate a login dialog vulnerable to information exposure allowing a...
CVE-2022-2796MEDIUM4.8Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.4.
CVE-2022-36350MEDIUM5.4Stored cross-site scripting vulnerability in PukiWiki versions 1.3.1 to 1.5.3 allows a remote attacker to inject an arbi...
CVE-2022-27637MEDIUM6.1Reflected cross-site scripting vulnerability in PukiWiki versions 1.5.1 to 1.5.3 allows a remote attacker to inject an a...
CVE-2022-2829MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0.
CVE-2022-35191MEDIUM6.5D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows unauthenticated attackers to caus...
CVE-2022-2923MEDIUM5.5NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0240.
CVE-2022-32772MEDIUM6.1A cross-site scripting (xss) vulnerability exists in the footer alerts functionality of WWBN AVideo 11.6 and dev master ...
CVE-2022-32771MEDIUM6.1A cross-site scripting (xss) vulnerability exists in the footer alerts functionality of WWBN AVideo 11.6 and dev master ...
CVE-2022-32770MEDIUM6.1A cross-site scripting (xss) vulnerability exists in the footer alerts functionality of WWBN AVideo 11.6 and dev master ...
CVE-2022-32769MEDIUM5Multiple authentication bypass vulnerabilities exist in the objects id handling functionality of WWBN AVideo 11.6 and de...
CVE-2022-32768MEDIUM4.2Multiple authentication bypass vulnerabilities exist in the objects id handling functionality of WWBN AVideo 11.6 and de...
CVE-2022-32761MEDIUM6.5An information disclosure vulnerability exists in the aVideoEncoderReceiveImage functionality of WWBN AVideo 11.6 and de...
CVE-2022-30690MEDIUM6.1A cross-site scripting (xss) vulnerability exists in the image403 functionality of WWBN AVideo 11.6 and dev master commi...
CVE-2022-28710MEDIUM6.5An information disclosure vulnerability exists in the chunkFile functionality of WWBN AVideo 11.6 and dev master commit ...
CVE-2022-33932MEDIUM5.3Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an unprotect...
CVE-2022-32480MEDIUM6.5Dell PowerScale OneFS, versions 9.0.0, up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an insecure...
CVE-2022-31238MEDIUM5.5Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain a process in...
CVE-2022-28598MEDIUM6.1Frappe ERPNext 12.29.0 is vulnerable to XSS where the software does not neutralize or incorrectly neutralize user-contro...
CVE-2022-35656MEDIUM4.5Pega Platform from 8.3 to 8.7.3 vulnerability may allow authenticated security administrators to alter CSRF settings dir...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now