2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-35172MEDIUM6.1SAP NetWeaver Enterprise Portal - versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not sufficiently encode user-c...
CVE-2022-35171MEDIUM5.5When a user opens manipulated JPEG 2000 (.jp2, jp2k.x3d) files received from untrusted sources in SAP 3D Visual Enterpri...
CVE-2022-35170MEDIUM6.1SAP NetWeaver Enterprise Portal does - versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, not sufficiently encode user-c...
CVE-2022-35169MEDIUM6SAP BusinessObjects Business Intelligence Platform (LCM) - versions 420, 430, allows an attacker with an admin privilege...
CVE-2022-32248MEDIUM5.3Due to missing input validation in the Manage Checkbooks component of SAP S/4HANA - version 101, 102, 103, 104, 105, 106...
CVE-2022-32247MEDIUM6.1SAP NetWeaver Enterprise Portal - versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, is susceptible to script execution ...
CVE-2022-32246MEDIUM4.6SAP Busines Objects Business Intelligence Platform (Visual Difference Application) - versions 420, 430, allows an authen...
CVE-2022-31655MEDIUM5.4VMware vRealize Log Insight in versions prior to 8.8.2 contain a stored cross-site scripting vulnerability due to improp...
CVE-2022-31654MEDIUM5.4VMware vRealize Log Insight in versions prior to 8.8.2 contain a stored cross-site scripting vulnerability due to improp...
CVE-2022-31598MEDIUM5.4Due to insufficient input validation, SAP Business Objects - version 420, allows an authenticated attacker to submit a m...
CVE-2022-31597MEDIUM5.4Within SAP S/4HANA - versions S4CORE 101, 102, 103, 104, 105, 106, SAPSCORE 127, the application business partner extens...
CVE-2022-31592MEDIUM4.3The application SAP Enterprise Extension Defense Forces & Public Security - versions 605, 606, 616,617,618, 802, 803, 80...
CVE-2022-31134MEDIUM4.9Zulip is an open-source team collaboration tool. Zulip Server versions 2.1.0 above have a user interface tool, accessibl...
CVE-2022-2211MEDIUM6.5A vulnerability was found in libguestfs. This issue occurs while calculating the greatest possible number of matching ke...
CVE-2022-29619MEDIUM6.5Under certain conditions SAP BusinessObjects Business Intelligence Platform 4.x - versions 420,430 allows user Administr...
CVE-2022-29901MEDIUM6.5Intel microprocessor generations 6 to 8 are affected by a new Spectre variant that is able to bypass their retpoline mit...
CVE-2022-29900MEDIUM6.5Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain micr...
CVE-2022-25875MEDIUM6.1The package svelte before 3.49.0 are vulnerable to Cross-site Scripting (XSS) due to improper input sanitization and to ...
CVE-2022-2364MEDIUM5.4A vulnerability, which was classified as problematic, was found in SourceCodester Simple Parking Management System 1.0. ...
CVE-2022-2363MEDIUM4.6A vulnerability, which was classified as problematic, has been found in SourceCodester Simple Parking Management System ...
CVE-2022-2293MEDIUM5.4A vulnerability classified as problematic was found in SourceCodester Simple Sales Management System 1.0. Affected by th...
CVE-2022-2292MEDIUM5.4A vulnerability classified as problematic has been found in SourceCodester Hotel Management System 2.0. Affected is an u...
CVE-2022-2291MEDIUM5.4A vulnerability was found in SourceCodester Hotel Management System 2.0. It has been rated as problematic. This issue af...
CVE-2022-25303MEDIUM6.1The package whoogle-search before 0.7.2 are vulnerable to Cross-site Scripting (XSS) via the query string parameter q. I...
CVE-2022-34741MEDIUM6.5The NFC module has a buffer overflow vulnerability. Successful exploitation of this vulnerability may cause exceptions i...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now