2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-22555 | MEDIUM | 6.7 | 0.9% | Jul 21, 2022 | Dell EMC PowerStore, contains an OS command injection Vulnerability. A locally authenticated attacker could potentially ... |
| CVE-2022-31160 | MEDIUM | 6.1 | 1.9% | Jul 20, 2022 | jQuery UI is a curated set of user interface interactions, effects, widgets, and themes built on top of jQuery. Versions... |
| CVE-2022-29923 | MEDIUM | 4.8 | 0.4% | Jul 20, 2022 | Cross-site Scripting (XSS) vulnerability in ThingsForRestaurants Quick Restaurant Reservations (WordPress plugin) allows... |
| CVE-2022-29454 | MEDIUM | 4.3 | 0.3% | Jul 20, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in WordPlus Better Messages plugin <= 1.9.9.148 at WordPress allows atta... |
| CVE-2022-35569 | MEDIUM | 4.8 | 0.4% | Jul 20, 2022 | Blogifier v3.0 was discovered to contain an arbitrary file upload vulnerability at /api/storage/upload/PostImage. This v... |
| CVE-2022-22424 | MEDIUM | 5.5 | 0.2% | Jul 20, 2022 | IBM QRadar SIEM 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information from the TLS key file due to ... |
| CVE-2022-34049 | MEDIUM | 5.3 | 2.2% | Jul 20, 2022 | An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows unauthenticated attackers to download log files a... |
| CVE-2022-34048 | MEDIUM | 6.1 | 5.1% | Jul 20, 2022 | Wavlink WN533A8 M33A8.V5030.190716 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via th... |
| CVE-2022-34150 | MEDIUM | 5.4 | 0.6% | Jul 20, 2022 | The main MiCODUS MV720 GPS tracker web server has an authenticated insecure direct object reference vulnerability on end... |
| CVE-2022-33944 | MEDIUM | 6.5 | 0.9% | Jul 20, 2022 | The main MiCODUS MV720 GPS tracker web server has an authenticated insecure direct object references vulnerability on en... |
| CVE-2022-2199 | MEDIUM | 6.1 | 0.6% | Jul 20, 2022 | The main MiCODUS MV720 GPS tracker web server has a reflected cross-site scripting vulnerability that could allow an att... |
| CVE-2022-2179 | MEDIUM | 6.5 | 1.1% | Jul 20, 2022 | The X-Frame-Options header in Rockwell Automation MicroLogix 1100/1400 Versions 21.007 and prior is not configured in th... |
| CVE-2022-22217 | MEDIUM | 6.5 | 0.3% | Jul 20, 2022 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N... |
| CVE-2022-22216 | MEDIUM | 4.3 | 0.3% | Jul 20, 2022 | An Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the PFE of Juniper Networks Junos OS on P... |
| CVE-2022-22215 | MEDIUM | 5.5 | 0.5% | Jul 20, 2022 | A Missing Release of File Descriptor or Handle after Effective Lifetime vulnerability in plugable authentication module ... |
| CVE-2022-22214 | MEDIUM | 6.5 | 0.3% | Jul 20, 2022 | An Improper Input Validation vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS and Junos ... |
| CVE-2022-22213 | MEDIUM | 5.9 | 0.6% | Jul 20, 2022 | A vulnerability in Handling of Undefined Values in the routing protocol daemon (RPD) process of Juniper Networks Junos O... |
| CVE-2022-22210 | MEDIUM | 6.5 | 0.3% | Jul 20, 2022 | A NULL Pointer Dereference vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on QFX5000 S... |
| CVE-2022-22204 | MEDIUM | 5.3 | 0.6% | Jul 20, 2022 | An Improper Release of Memory Before Removing Last Reference vulnerability in the Session Initiation Protocol (SIP) Appl... |
| CVE-2022-22203 | MEDIUM | 6.5 | 0.7% | Jul 20, 2022 | An Incorrect Comparison vulnerability in PFE of Juniper Networks Junos OS allows an adjacent unauthenticated attacker to... |
| CVE-2022-22202 | MEDIUM | 6.5 | 0.5% | Jul 20, 2022 | An Improper Handling of Exceptional Conditions vulnerability on specific PTX Series devices, including the PTX1000, PTX3... |
| CVE-2022-36321 | MEDIUM | 6.5 | 1.6% | Jul 20, 2022 | In JetBrains TeamCity before 2022.04.2 the private SSH key could be written to the build log in some cases |
| CVE-2022-32962 | MEDIUM | 6.8 | 0.2% | Jul 20, 2022 | HiCOS’ client-side citizen certificate component has a double free vulnerability. An unauthenticated physical attacker c... |
| CVE-2022-32961 | MEDIUM | 6.8 | 0.2% | Jul 20, 2022 | HICOS’ client-side citizen digital certificate component has a stack-based buffer overflow vulnerability when reading IC... |
| CVE-2022-32960 | MEDIUM | 6.8 | 0.2% | Jul 20, 2022 | HiCOS’ client-side citizen digital certificate component has a stack-based buffer overflow vulnerability when reading IC... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now