2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-43522 | HIGH | 8.8 | 1.0% | Jan 5, 2023 | Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow ... |
| CVE-2022-43521 | HIGH | 8.8 | 1.0% | Jan 5, 2023 | Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow ... |
| CVE-2022-43520 | HIGH | 8.8 | 1.0% | Jan 5, 2023 | Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow ... |
| CVE-2022-43519 | HIGH | 8.8 | 1.0% | Jan 5, 2023 | Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow ... |
| CVE-2022-37934 | HIGH | 7.5 | 1.8% | Jan 5, 2023 | A potential security vulnerability has been identified in HPE OfficeConnect 1820, and 1850 switch series. The vulnerabil... |
| CVE-2022-37933 | HIGH | 7.8 | 0.3% | Jan 5, 2023 | A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 servers. The vulnera... |
| CVE-2022-34330 | MEDIUM | 6.1 | 0.4% | Jan 5, 2023 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 is vulnerable to cross-site scripting. This vulnera... |
| CVE-2022-22371 | MEDIUM | 6.5 | 0.3% | Jan 5, 2023 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 does not invalidate session after a password change... |
| CVE-2022-4876 | MEDIUM | 6.1 | 0.5% | Jan 4, 2023 | A vulnerability was found in Kaltura mwEmbed up to 2.96.rc1 and classified as problematic. This issue affects some unkno... |
| CVE-2022-4875 | MEDIUM | 6.1 | 0.5% | Jan 4, 2023 | A vulnerability has been found in fossology and classified as problematic. This vulnerability affects unknown code. The ... |
| CVE-2022-48217 | HIGH | 8.1 | 0.7% | Jan 4, 2023 | The tf_remapper_node component 1.1.1 for Robot Operating System (ROS) allows attackers, who control the source code of a... |
| CVE-2022-45052 | MEDIUM | 6.5 | 0.7% | Jan 4, 2023 | A Local File Inclusion vulnerability has been found in Axiell Iguana CMS. Due to insufficient neutralisation of user inp... |
| CVE-2022-45051 | MEDIUM | 6.1 | 0.4% | Jan 4, 2023 | A reflected XSS vulnerability has been found in Axiell Iguana CMS, allowing an attacker to execute code in a victim's br... |
| CVE-2022-45049 | MEDIUM | 6.1 | 0.4% | Jan 4, 2023 | A reflected XSS vulnerability has been found in Axiell Iguana CMS, allowing an attacker to execute code in a victim's br... |
| CVE-2022-46457 | MEDIUM | 5.5 | 0.3% | Jan 4, 2023 | NASM v2.16 was discovered to contain a segmentation violation in the component ieee_write_file at /output/outieee.c. |
| CVE-2022-46456 | MEDIUM | 6.1 | 0.4% | Jan 4, 2023 | NASM v2.16 was discovered to contain a global buffer overflow in the component dbgdbg_typevalue at /output/outdbg.c. |
| CVE-2022-43920 | HIGH | 8.8 | 0.5% | Jan 4, 2023 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 could allow an authenticated user to gain privilege... |
| CVE-2022-25926 | HIGH | 7.8 | 1.1% | Jan 4, 2023 | Versions of the package window-control before 1.4.5 are vulnerable to Command Injection via the sendKeys function, due t... |
| CVE-2022-22352 | MEDIUM | 5.4 | 0.4% | Jan 4, 2023 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 is vulnerable to cross-site scripting. This vulnera... |
| CVE-2022-22338 | CRITICAL | 9.8 | 0.7% | Jan 4, 2023 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 is vulnerable to SQL injection. A remote attacker c... |
| CVE-2022-22337 | MEDIUM | 6.5 | 0.5% | Jan 4, 2023 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 could disclose sensitive information to an authenti... |
| CVE-2022-46180 | MEDIUM | 5.4 | 0.5% | Jan 4, 2023 | Discourse Mermaid (discourse-mermaid-theme-component) allows users of Discourse, open-source forum software, to create g... |
| CVE-2022-48216 | HIGH | 7.5 | 0.8% | Jan 4, 2023 | Uniswap Universal Router before 1.1.0 mishandles reentrancy. This would have allowed theft of funds. |
| CVE-2022-45875 | CRITICAL | 9.8 | 2.5% | Jan 4, 2023 | Improper validation of script alert plugin parameters in Apache DolphinScheduler to avoid remote command execution vulne... |
| CVE-2022-29899 | — | — | — | Jan 4, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now