2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-2303MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions before 15.0.5, all versions starting from 15.1 befor...
CVE-2022-2095MEDIUM4.3An improper access control check in GitLab CE/EE affecting all versions starting from 13.7 before 15.0.5, all versions s...
CVE-2022-35936MEDIUM5.3Ethermint is an Ethereum library. In Ethermint running versions before `v0.17.2`, the contract `selfdestruct` invocation...
CVE-2022-37431MEDIUM6.1A Reflected Cross-site scripting (XSS) issue was discovered in dotCMS Core through 22.06. This occurs in the admin porta...
CVE-2022-37416MEDIUM6.5Ittiam libmpeg2 before 2022-07-27 uses memcpy with overlapping memory blocks in impeg2_mc_fullx_fully_8x8.
CVE-2022-35144MEDIUM4.8Renato v0.17.0 was discovered to contain a cross-site scripting (XSS) vulnerability.
CVE-2022-35272MEDIUM5.5In BIG-IP Versions 17.0.x before 17.0.0.1 and 16.1.x before 16.1.3.1, when source-port preserve-strict is configured on ...
CVE-2022-35241MEDIUM6.5In versions 2.x before 2.3.1 and all versions of 1.x, when NGINX Instance Manager is in use, undisclosed requests can ca...
CVE-2022-34851MEDIUM6.5In BIG-IP Versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and a...
CVE-2022-33968MEDIUM4.9In BIG-IP Versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and a...
CVE-2022-33962MEDIUM6.7In BIG-IP Versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and a...
CVE-2022-33947MEDIUM6.5In BIG-IP Versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, a vul...
CVE-2022-31119MEDIUM4.9Nextcloud Mail is an email application for the nextcloud personal cloud product. Affected versions of Nextcloud mail wou...
CVE-2022-30535MEDIUM6.5In versions 2.x before 2.3.0 and all versions of 1.x, An attacker authorized to create or update ingress objects can obt...
CVE-2022-31118MEDIUM5.3Nextcloud server is an open source personal cloud solution. In affected versions an attacker could brute force to find i...
CVE-2022-2653MEDIUM6.5With this vulnerability an attacker can read many sensitive files like configuration files, or the /proc/self/environ fi...
CVE-2022-2652MEDIUM6Depending on the way the format strings in the card label are crafted it's possible to leak kernel stack memory. There i...
CVE-2022-2646MEDIUM6.1A vulnerability, which was classified as problematic, was found in SourceCodester Online Admission System. Affected is a...
CVE-2022-2645MEDIUM6.1A vulnerability has been found in SourceCodester Garage Management System and classified as problematic. Affected by thi...
CVE-2022-28732MEDIUM6.1A carefully crafted request on WeblogPlugin could trigger an XSS vulnerability on Apache JSPWiki, which could allow the ...
CVE-2022-28731MEDIUM6.5A carefully crafted request on UserPreferences.jsp could trigger an CSRF vulnerability on Apache JSPWiki before 2.11.3, ...
CVE-2022-28730MEDIUM6.1A carefully crafted request on AJAXPreview.jsp could trigger an XSS vulnerability on Apache JSPWiki, which could allow t...
CVE-2022-27166MEDIUM6.1A carefully crafted request on XHRHtml2Markup.jsp could trigger an XSS vulnerability on Apache JSPWiki up to and includi...
CVE-2022-35928MEDIUM5.5AES Crypt is a file encryption software for multiple platforms. AES Crypt for Linux built using the source on GitHub and...
CVE-2022-27551MEDIUM6.5HCL Launch could allow an authenticated user to obtain sensitive information in some instances due to improper security ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now