2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-22416MEDIUM5.4IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 is vulnerable to server-side request forgery (SS...
CVE-2022-22359MEDIUM6.5IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 is vulnerable to cross-site request forgery whic...
CVE-2022-27545MEDIUM5.4BigFix Web Reports authorized users may perform HTML injection for the email administrative configuration page.
CVE-2022-27544MEDIUM6.5BigFix Web Reports authorized users may see SMTP credentials in clear text.
CVE-2022-30301MEDIUM6.7A path traversal vulnerability [CWE-22] in FortiAP-U CLI 6.2.0 through 6.2.3, 6.0.0 through 6.0.4, 5.4.0 through 5.4.6 m...
CVE-2022-29057MEDIUM5.4A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiEDR version 5.1....
CVE-2022-30532MEDIUM5.3In affected versions of Octopus Deploy, there is no logging of changes to artifacts within Octopus Deploy.
CVE-2022-2030MEDIUM6.5A directory traversal vulnerability caused by specific character sequences within an improperly sanitized URL was identi...
CVE-2022-34643MEDIUM5.5RISCV ISA Sim commit ac466a21df442c59962589ba296c702631e041b5 implements the incorrect exception priotrity when accessin...
CVE-2022-34642MEDIUM5.5The component mcontrol.action in RISCV ISA Sim commit ac466a21df442c59962589ba296c702631e041b5 contains the incorrect ma...
CVE-2022-34641MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a and RISCV-Boom commit ad64c5419151e5e886daee7084d8399713b46b4b impl...
CVE-2022-34640MEDIUM5.5The *tval of ecall/ebreak in CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a was discovered to be incorrect.
CVE-2022-34639MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a treats non-standard fence instructions as illegal which can affect ...
CVE-2022-34637MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a implements an incorrect exception type when an illegal virtual addr...
CVE-2022-34636MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a and RISCV-Boom commit ad64c5419151e5e886daee7084d8399713b46b4b impl...
CVE-2022-34634MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a executes crafted or incorrectly formatted det instructions rather c...
CVE-2022-34633MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a executes crafted or incorrectly formatted sfence.vma instructions r...
CVE-2022-28681MEDIUM6.1This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Read...
CVE-2022-26118MEDIUM6.7A privilege chaining vulnerability [CWE-268] in FortiManager and FortiAnalyzer 6.0.x, 6.2.x, 6.4.0 through 6.4.7, 7.0.0 ...
CVE-2022-23438MEDIUM6.1An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in FortiO...
CVE-2022-22445MEDIUM6.5An attacker that gains service access to the FSP (POWER9 only) or gains admin authority to a partition can compromise pa...
CVE-2022-2224MEDIUM4.3The WordPress plugin Gallery for Social Photo is vulnerable to Cross-Site Request Forgery in versions up to, and includi...
CVE-2022-2223MEDIUM4.3The WordPress plugin Image Slider is vulnerable to Cross-Site Request Forgery in versions up to, and including 1.1.121 d...
CVE-2022-2117MEDIUM5.3The GiveWP plugin for WordPress is vulnerable to Sensitive Information Disclosure in versions up to, and including, 2.20...
CVE-2022-2108MEDIUM5.3The plugin Wbcom Designs – BuddyPress Group Reviews for WordPress is vulnerable to unauthorized settings changes and rev...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now