2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2022-48307LOW3.7It was discovered that the Magritte-ftp was not verifying hostnames in TLS certificates due to a misuse of the javax.net...
CVE-2022-42436LOW3.3IBM MQ 8.0.0, 9.0.0, 9.1.0, 9.2.0, 9.3.0 Managed File Transfer could allow a local user to obtain sensitive information ...
CVE-2022-34452LOW2.7 PowerPath Management Appliance with versions 3.3, 3.2*, 3.1 & 3.0* contains sensitive information disclosure vulnerabil...
CVE-2022-39324LOW3.5Grafana is an open-source platform for monitoring and observability. Prior to versions 8.5.16 and 9.2.8, malicious user ...
CVE-2022-43978LOW3.7There is an improper authentication vulnerability in Pandora FMS v764. The application verifies that the user has a vali...
CVE-2022-44718LOW3.5An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 2 of 2). After success...
CVE-2022-44717LOW3.1An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 1 of 2). After success...
CVE-2022-34399LOW2.3 Dell Alienware m17 R5 BIOS version prior to 1.2.2 contain a buffer access vulnerability. A malicious user with admin pr...
CVE-2022-4309LOW3.1The Subscribe2 WordPress plugin before 10.38 does not have CSRF check when deleting users, which could allow attackers t...
CVE-2022-4342LOW3.8An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.1 before 15.5.7, all versions start...
CVE-2022-4102LOW3.1The Royal Elementor Addons WordPress plugin before 1.3.56 does not have authorization and CSRF checks when deleting a te...
CVE-2022-3343LOW3.5The WPQA Builder WordPress plugin before 5.9.3 (which is a companion plugin used with Discy and Himer Discy WordPress th...
CVE-2022-46168LOW3.5Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 2.9.0.beta...
CVE-2022-4109LOW2.7The Wholesale Market for WooCommerce WordPress plugin before 2.0.0 does not validate user input against path traversal a...
CVE-2022-47952LOW3.3lxc-user-nic in lxc through 5.0.1 is installed setuid root, and may allow local users to infer whether any file exists, ...
CVE-2022-42266LOW3.3NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD...
CVE-2022-4773LOW3.3** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as problematic was found in cloudsync. Affected by this vulne...
CVE-2022-2583LOW3.7A race condition can cause incorrect HTTP request routing.
CVE-2022-45433LOW3.7Some Dahua software products have a vulnerability of unauthenticated traceroute host from remote DSS Server. After bypas...
CVE-2022-45430LOW3.7Some Dahua software products have a vulnerability of unauthenticated enable or disable SSHD service. After bypassing the...
CVE-2022-45428LOW2.7Some Dahua software products have a vulnerability of sensitive information leakage. After obtaining the permissions of a...
CVE-2022-41977LOW3.3An out of bounds read vulnerability exists in the way OpenImageIO version v2.3.19.0 processes string fields in TIFF imag...
CVE-2022-42931LOW3.3Logins saved by Firefox should be managed by the Password Manager component which uses encryption to save files on-disk....
CVE-2022-20562LOW3.3In various functions of ap_input_processor.c, there is a possible way to record audio during a phone call due to a logic...
CVE-2022-20559LOW3.3In revokeOwnPermissionsOnKill of PermissionManager.java, there is a possible way to determine whether an app is installe...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now