2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-22555MEDIUM6.7Dell EMC PowerStore, contains an OS command injection Vulnerability. A locally authenticated attacker could potentially ...
CVE-2022-31160MEDIUM6.1jQuery UI is a curated set of user interface interactions, effects, widgets, and themes built on top of jQuery. Versions...
CVE-2022-29923MEDIUM4.8Cross-site Scripting (XSS) vulnerability in ThingsForRestaurants Quick Restaurant Reservations (WordPress plugin) allows...
CVE-2022-29454MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in WordPlus Better Messages plugin <= 1.9.9.148 at WordPress allows atta...
CVE-2022-35569MEDIUM4.8Blogifier v3.0 was discovered to contain an arbitrary file upload vulnerability at /api/storage/upload/PostImage. This v...
CVE-2022-22424MEDIUM5.5IBM QRadar SIEM 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information from the TLS key file due to ...
CVE-2022-34049MEDIUM5.3An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows unauthenticated attackers to download log files a...
CVE-2022-34048MEDIUM6.1Wavlink WN533A8 M33A8.V5030.190716 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via th...
CVE-2022-34150MEDIUM5.4The main MiCODUS MV720 GPS tracker web server has an authenticated insecure direct object reference vulnerability on end...
CVE-2022-33944MEDIUM6.5The main MiCODUS MV720 GPS tracker web server has an authenticated insecure direct object references vulnerability on en...
CVE-2022-2199MEDIUM6.1The main MiCODUS MV720 GPS tracker web server has a reflected cross-site scripting vulnerability that could allow an att...
CVE-2022-2179MEDIUM6.5The X-Frame-Options header in Rockwell Automation MicroLogix 1100/1400 Versions 21.007 and prior is not configured in th...
CVE-2022-22217MEDIUM6.5An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N...
CVE-2022-22216MEDIUM4.3An Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the PFE of Juniper Networks Junos OS on P...
CVE-2022-22215MEDIUM5.5A Missing Release of File Descriptor or Handle after Effective Lifetime vulnerability in plugable authentication module ...
CVE-2022-22214MEDIUM6.5An Improper Input Validation vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS and Junos ...
CVE-2022-22213MEDIUM5.9A vulnerability in Handling of Undefined Values in the routing protocol daemon (RPD) process of Juniper Networks Junos O...
CVE-2022-22210MEDIUM6.5A NULL Pointer Dereference vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on QFX5000 S...
CVE-2022-22204MEDIUM5.3An Improper Release of Memory Before Removing Last Reference vulnerability in the Session Initiation Protocol (SIP) Appl...
CVE-2022-22203MEDIUM6.5An Incorrect Comparison vulnerability in PFE of Juniper Networks Junos OS allows an adjacent unauthenticated attacker to...
CVE-2022-22202MEDIUM6.5An Improper Handling of Exceptional Conditions vulnerability on specific PTX Series devices, including the PTX1000, PTX3...
CVE-2022-36321MEDIUM6.5In JetBrains TeamCity before 2022.04.2 the private SSH key could be written to the build log in some cases
CVE-2022-32962MEDIUM6.8HiCOS’ client-side citizen certificate component has a double free vulnerability. An unauthenticated physical attacker c...
CVE-2022-32961MEDIUM6.8HICOS’ client-side citizen digital certificate component has a stack-based buffer overflow vulnerability when reading IC...
CVE-2022-32960MEDIUM6.8HiCOS’ client-side citizen digital certificate component has a stack-based buffer overflow vulnerability when reading IC...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now