2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-21523MEDIUM4.3Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: BI Publisher Security). Support...
CVE-2022-21522MEDIUM4.4Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that...
CVE-2022-21521MEDIUM4.9Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: XML Publisher). Supporte...
CVE-2022-21520MEDIUM6.1Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Fluid Core). Supported v...
CVE-2022-21519MEDIUM5.9Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are af...
CVE-2022-21518MEDIUM6.5Vulnerability in the Oracle Health Sciences Data Management Workbench product of Oracle Health Sciences Applications (co...
CVE-2022-21517MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are ...
CVE-2022-21515MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Options). Supported versions that are affe...
CVE-2022-21512MEDIUM4.4Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Integration Broker). Sup...
CVE-2022-21509MEDIUM5.5Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are af...
CVE-2022-21508MEDIUM5.8Vulnerability in Oracle Essbase (component: Security and Provisioning). The supported version that is affected is 21.3. ...
CVE-2022-21455MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PAM Auth Plugin). Supported versions that ...
CVE-2022-21439MEDIUM4.2Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). Supported versions that are affected ...
CVE-2022-21428MEDIUM6.7Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Inf...
CVE-2022-31150MEDIUM6.5undici is an HTTP/1.1 client, written from scratch for Node.js. It is possible to inject CRLF sequences into request hea...
CVE-2022-34537MEDIUM5.4Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a cross-site scripting (XSS) vulnerabil...
CVE-2022-34266MEDIUM5.5The libtiff-4.0.3-35.amzn2.0.1 package for LibTIFF on Amazon Linux 2 allows attackers to cause a denial of service (appl...
CVE-2022-2476MEDIUM5.5A null pointer dereference bug was found in wavpack-5.4.0 The results from the ASAN log: AddressSanitizer:DEADLYSIGNAL =...
CVE-2022-36305MEDIUM6.1Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS) vulnerability via the body function at /web/api/v1...
CVE-2022-36304MEDIUM6.1Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS) vulnerability via the generate_response function a...
CVE-2022-36303MEDIUM6.1Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS) vulnerability via the handle_file_upload function ...
CVE-2022-34025MEDIUM6.1Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS) vulnerability via the post function at /web/api/v1...
CVE-2022-30570MEDIUM6.5The Column Based Security component of TIBCO Software Inc.'s TIBCO Data Virtualization and TIBCO Data Virtualization for...
CVE-2022-34001MEDIUM6.5Unit4 ERP through 7.9 allows XXE via ExecuteServerProcessAsynchronously.
CVE-2022-22417MEDIUM5.4IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 is vulnerable to cross-site scripting. This vuln...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now