2022 CVE Vulnerabilities

27,518 CVEs published in 2022.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2022-48308LOW3.7It was discovered that the sls-logging was not verifying hostnames in TLS certificates due to a misuse of the javax.net....
CVE-2022-48307LOW3.7It was discovered that the Magritte-ftp was not verifying hostnames in TLS certificates due to a misuse of the javax.net...
CVE-2022-42436LOW3.3IBM MQ 8.0.0, 9.0.0, 9.1.0, 9.2.0, 9.3.0 Managed File Transfer could allow a local user to obtain sensitive information ...
CVE-2022-34452LOW2.7 PowerPath Management Appliance with versions 3.3, 3.2*, 3.1 & 3.0* contains sensitive information disclosure vulnerabil...
CVE-2022-39324LOW3.5Grafana is an open-source platform for monitoring and observability. Prior to versions 8.5.16 and 9.2.8, malicious user ...
CVE-2022-43978LOW3.7There is an improper authentication vulnerability in Pandora FMS v764. The application verifies that the user has a vali...
CVE-2022-44718LOW3.5An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 2 of 2). After success...
CVE-2022-44717LOW3.1An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 1 of 2). After success...
CVE-2022-34399LOW2.3 Dell Alienware m17 R5 BIOS version prior to 1.2.2 contain a buffer access vulnerability. A malicious user with admin pr...
CVE-2022-4309LOW3.1The Subscribe2 WordPress plugin before 10.38 does not have CSRF check when deleting users, which could allow attackers t...
CVE-2022-4342LOW3.8An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.1 before 15.5.7, all versions start...
CVE-2022-4102LOW3.1The Royal Elementor Addons WordPress plugin before 1.3.56 does not have authorization and CSRF checks when deleting a te...
CVE-2022-3343LOW3.5The WPQA Builder WordPress plugin before 5.9.3 (which is a companion plugin used with Discy and Himer Discy WordPress th...
CVE-2022-46168LOW3.5Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 2.9.0.beta...
CVE-2022-4109LOW2.7The Wholesale Market for WooCommerce WordPress plugin before 2.0.0 does not validate user input against path traversal a...
CVE-2022-47952LOW3.3lxc-user-nic in lxc through 5.0.1 is installed setuid root, and may allow local users to infer whether any file exists, ...
CVE-2022-42266LOW3.3NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD...
CVE-2022-4773LOW3.3** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as problematic was found in cloudsync. Affected by this vulne...
CVE-2022-2583LOW3.7A race condition can cause incorrect HTTP request routing.
CVE-2022-45433LOW3.7Some Dahua software products have a vulnerability of unauthenticated traceroute host from remote DSS Server. After bypas...
CVE-2022-45430LOW3.7Some Dahua software products have a vulnerability of unauthenticated enable or disable SSHD service. After bypassing the...
CVE-2022-45428LOW2.7Some Dahua software products have a vulnerability of sensitive information leakage. After obtaining the permissions of a...
CVE-2022-41977LOW3.3An out of bounds read vulnerability exists in the way OpenImageIO version v2.3.19.0 processes string fields in TIFF imag...
CVE-2022-42931LOW3.3Logins saved by Firefox should be managed by the Password Manager component which uses encryption to save files on-disk....
CVE-2022-20562LOW3.3In various functions of ap_input_processor.c, there is a possible way to record audio during a phone call due to a logic...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now