2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-44540Rejected reason: CVE was unused by HPE.
CVE-2022-44539Rejected reason: CVE was unused by HPE.
CVE-2022-44538Rejected reason: CVE was unused by HPE.
CVE-2022-44537Rejected reason: CVE was unused by HPE.
CVE-2022-44536Rejected reason: CVE was unused by HPE.
CVE-2022-44877CRITICAL9.8login/index.php in CWP (aka Control Web Panel or CentOS Web Panel) 7 before 0.9.8.1147 allows remote attackers to execut...
CVE-2022-3929CRITICAL9.8 Communication between the client and the server application of the affected products is partially done using CORBA (Com...
CVE-2022-3928MEDIUM5.5 Hardcoded credential is found in affected products' message queue. An attacker that manages to exploit this vulnerabili...
CVE-2022-3927CRITICAL9.8 The affected products store both public and private key that are used to sign and protect Custom Parameter Set (CPS) fi...
CVE-2022-47544CRITICAL9.8An issue was discovered in Siren Investigate before 12.1.7. Script variable whitelisting is insufficiently sandboxed.
CVE-2022-47543MEDIUM5.3An issue was discovered in Siren Investigate before 12.1.7. There is an ACL bypass on global objects.
CVE-2022-46177HIGH8.1Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 3.0.0.beta...
CVE-2022-23549MEDIUM6.5Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 2.9.0.beta...
CVE-2022-23548MEDIUM6.5Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 2.9.0.beta...
CVE-2022-23546MEDIUM5.5In version 2.9.0.beta14 of Discourse, an open-source discussion platform, maliciously embedded urls can leak an admin's ...
CVE-2022-4435MEDIUM4.4A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS LenovoRemoteConfigUpdateDxe driver that could all...
CVE-2022-4434MEDIUM4.4A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS driver that could allow a local attacker with ele...
CVE-2022-4433MEDIUM4.4A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS LenovoSetupConfigDxe driver that could allow a lo...
CVE-2022-4432MEDIUM4.4A buffer over-read vulnerability was reported in the ThinkPadX13s BIOS PersistenceConfigDxe driver that could allow a lo...
CVE-2022-46168LOW3.5Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 2.9.0.beta...
CVE-2022-43844HIGH8.8IBM Robotic Process Automation for Cloud Pak 20.12 through 21.0.3 is vulnerable to broken access control. A user is no...
CVE-2022-43573MEDIUM5.3IBM Robotic Process Automation 20.12 through 21.0.6 is vulnerable to exposure of the name and email for the creator/modi...
CVE-2022-41740MEDIUM4.6 IBM Robotic Process Automation 20.12 through 21.0.6 could allow an attacker with physical access to the system to obtai...
CVE-2022-4378HIGH7.8A stack overflow flaw was found in the Linux kernel's SYSCTL subsystem in how a user changes certain kernel parameters a...
CVE-2022-47663HIGH7.8GPAC MP4box 2.1-DEV-rev649-ga8f438d20 is vulnerable to buffer overflow in h263dmx_process filters/reframe_h263.c:609

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now