2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-22416 | MEDIUM | 5.4 | 0.4% | Jul 19, 2022 | IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 is vulnerable to server-side request forgery (SS... |
| CVE-2022-22359 | MEDIUM | 6.5 | 0.3% | Jul 19, 2022 | IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 is vulnerable to cross-site request forgery whic... |
| CVE-2022-27545 | MEDIUM | 5.4 | 0.3% | Jul 19, 2022 | BigFix Web Reports authorized users may perform HTML injection for the email administrative configuration page. |
| CVE-2022-27544 | MEDIUM | 6.5 | 0.4% | Jul 19, 2022 | BigFix Web Reports authorized users may see SMTP credentials in clear text. |
| CVE-2022-30301 | MEDIUM | 6.7 | 0.2% | Jul 19, 2022 | A path traversal vulnerability [CWE-22] in FortiAP-U CLI 6.2.0 through 6.2.3, 6.0.0 through 6.0.4, 5.4.0 through 5.4.6 m... |
| CVE-2022-29057 | MEDIUM | 5.4 | 0.5% | Jul 19, 2022 | A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiEDR version 5.1.... |
| CVE-2022-30532 | MEDIUM | 5.3 | 0.5% | Jul 19, 2022 | In affected versions of Octopus Deploy, there is no logging of changes to artifacts within Octopus Deploy. |
| CVE-2022-2030 | MEDIUM | 6.5 | 1.0% | Jul 19, 2022 | A directory traversal vulnerability caused by specific character sequences within an improperly sanitized URL was identi... |
| CVE-2022-34643 | MEDIUM | 5.5 | 0.2% | Jul 18, 2022 | RISCV ISA Sim commit ac466a21df442c59962589ba296c702631e041b5 implements the incorrect exception priotrity when accessin... |
| CVE-2022-34642 | MEDIUM | 5.5 | 0.2% | Jul 18, 2022 | The component mcontrol.action in RISCV ISA Sim commit ac466a21df442c59962589ba296c702631e041b5 contains the incorrect ma... |
| CVE-2022-34641 | MEDIUM | 5.5 | 0.3% | Jul 18, 2022 | CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a and RISCV-Boom commit ad64c5419151e5e886daee7084d8399713b46b4b impl... |
| CVE-2022-34640 | MEDIUM | 5.5 | 0.2% | Jul 18, 2022 | The *tval of ecall/ebreak in CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a was discovered to be incorrect. |
| CVE-2022-34639 | MEDIUM | 5.5 | 0.2% | Jul 18, 2022 | CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a treats non-standard fence instructions as illegal which can affect ... |
| CVE-2022-34637 | MEDIUM | 5.5 | 0.2% | Jul 18, 2022 | CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a implements an incorrect exception type when an illegal virtual addr... |
| CVE-2022-34636 | MEDIUM | 5.5 | 0.2% | Jul 18, 2022 | CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a and RISCV-Boom commit ad64c5419151e5e886daee7084d8399713b46b4b impl... |
| CVE-2022-34634 | MEDIUM | 5.5 | 0.2% | Jul 18, 2022 | CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a executes crafted or incorrectly formatted det instructions rather c... |
| CVE-2022-34633 | MEDIUM | 5.5 | 0.2% | Jul 18, 2022 | CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a executes crafted or incorrectly formatted sfence.vma instructions r... |
| CVE-2022-28681 | MEDIUM | 6.1 | 0.8% | Jul 18, 2022 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Read... |
| CVE-2022-26118 | MEDIUM | 6.7 | 0.3% | Jul 18, 2022 | A privilege chaining vulnerability [CWE-268] in FortiManager and FortiAnalyzer 6.0.x, 6.2.x, 6.4.0 through 6.4.7, 7.0.0 ... |
| CVE-2022-23438 | MEDIUM | 6.1 | 0.5% | Jul 18, 2022 | An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in FortiO... |
| CVE-2022-22445 | MEDIUM | 6.5 | 0.6% | Jul 18, 2022 | An attacker that gains service access to the FSP (POWER9 only) or gains admin authority to a partition can compromise pa... |
| CVE-2022-2224 | MEDIUM | 4.3 | 0.3% | Jul 18, 2022 | The WordPress plugin Gallery for Social Photo is vulnerable to Cross-Site Request Forgery in versions up to, and includi... |
| CVE-2022-2223 | MEDIUM | 4.3 | 0.3% | Jul 18, 2022 | The WordPress plugin Image Slider is vulnerable to Cross-Site Request Forgery in versions up to, and including 1.1.121 d... |
| CVE-2022-2117 | MEDIUM | 5.3 | 0.9% | Jul 18, 2022 | The GiveWP plugin for WordPress is vulnerable to Sensitive Information Disclosure in versions up to, and including, 2.20... |
| CVE-2022-2108 | MEDIUM | 5.3 | 0.7% | Jul 18, 2022 | The plugin Wbcom Designs – BuddyPress Group Reviews for WordPress is vulnerable to unauthorized settings changes and rev... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now