2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29467 | MEDIUM | 4.3 | 0.7% | Jul 4, 2022 | Address information disclosure vulnerability in Cybozu Garoon 4.2.0 to 5.5.1 allows a remote authenticated attacker to o... |
| CVE-2022-28718 | MEDIUM | 4.3 | 0.7% | Jul 4, 2022 | Operation restriction bypass vulnerability in Bulletin of Cybozu Garoon 4.0.0 to 5.5.1 allow a remote authenticated atta... |
| CVE-2022-28713 | MEDIUM | 5.3 | 0.9% | Jul 4, 2022 | Improper authentication vulnerability in Scheduler of Cybozu Garoon 4.10.0 to 5.5.1 allows a remote attacker to obtain s... |
| CVE-2022-28692 | MEDIUM | 4.3 | 0.6% | Jul 4, 2022 | Improper input validation vulnerability in Scheduler of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attac... |
| CVE-2022-27807 | MEDIUM | 4.3 | 0.6% | Jul 4, 2022 | Improper input validation vulnerability in Link of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker t... |
| CVE-2022-27803 | MEDIUM | 4.3 | 0.6% | Jul 4, 2022 | Improper input validation vulnerability in Space of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker ... |
| CVE-2022-27661 | MEDIUM | 4.3 | 0.7% | Jul 4, 2022 | Operation restriction bypass vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated att... |
| CVE-2022-27627 | MEDIUM | 6.1 | 0.6% | Jul 4, 2022 | Cross-site scripting vulnerability in Organization's Information of Cybozu Garoon 4.10.2 to 5.5.1 allows a remote attack... |
| CVE-2022-26368 | MEDIUM | 5.4 | 0.6% | Jul 4, 2022 | Browse restriction bypass and operation restriction bypass vulnerability in Cabinet of Cybozu Garoon 4.0.0 to 5.5.1 allo... |
| CVE-2022-26054 | MEDIUM | 4.3 | 0.7% | Jul 4, 2022 | Operation restriction bypass vulnerability in Link of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacke... |
| CVE-2022-26051 | MEDIUM | 4.3 | 0.7% | Jul 4, 2022 | Operation restriction bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attac... |
| CVE-2022-2290 | MEDIUM | 6.1 | 2.6% | Jul 3, 2022 | Cross-site Scripting (XSS) - Reflected in GitHub repository zadam/trilium prior to 0.52.4, 0.53.1-beta. |
| CVE-2022-34912 | MEDIUM | 6.1 | 0.9% | Jul 2, 2022 | An issue was discovered in MediaWiki before 1.37.3 and 1.38.x before 1.38.1. The contributions-title, used on Special:Co... |
| CVE-2022-34911 | MEDIUM | 6.1 | 0.9% | Jul 2, 2022 | An issue was discovered in MediaWiki before 1.35.7, 1.36.x and 1.37.x before 1.37.3, and 1.38.x before 1.38.1. XSS can o... |
| CVE-2022-34903 | MEDIUM | 6.5 | 2.1% | Jul 1, 2022 | GnuPG through 2.3.6, in unusual situations where an attacker possesses any secret-key information from a victim's keyrin... |
| CVE-2022-32325 | MEDIUM | 6.5 | 0.8% | Jul 1, 2022 | JPEGOPTIM v1.4.7 was discovered to contain a segmentation violation which is caused by a READ memory access at jpegoptim... |
| CVE-2022-25896 | MEDIUM | 4.8 | 0.8% | Jul 1, 2022 | This affects the package passport before 0.6.0. When a user logs in or logs out, the session is regenerated instead of b... |
| CVE-2022-25876 | MEDIUM | 5.5 | 0.4% | Jul 1, 2022 | The package link-preview-js before 2.1.16 are vulnerable to Server-side Request Forgery (SSRF) which allows attackers to... |
| CVE-2022-22373 | MEDIUM | 5.4 | 0.5% | Jul 1, 2022 | An improper validation vulnerability in IBM InfoSphere Information Server 11.7 Pack for SAP Apps and BW Packs may lead t... |
| CVE-2022-22367 | MEDIUM | 5.5 | 0.1% | Jul 1, 2022 | IBM UrbanCode Deploy (UCD) 6.2.7.15, 7.0.5.10, 7.1.2.6, and 7.2.2.1 could disclose sensitive database information to a l... |
| CVE-2022-22366 | MEDIUM | 4.4 | 0.4% | Jul 1, 2022 | IBM UrbanCode Deploy (UCD) 6.2.7.15, 7.0.5.10, 7.1.2.6, and 7.2.2.1 stores user credentials in plain clear text which ca... |
| CVE-2022-1954 | MEDIUM | 5.3 | 0.8% | Jul 1, 2022 | A Regular Expression Denial of Service vulnerability in GitLab CE/EE affecting all versions from 1.0.2 prior to 14.10.5,... |
| CVE-2022-0167 | MEDIUM | 6.1 | 0.7% | Jul 1, 2022 | An issue has been discovered in GitLab affecting all versions starting from 14.0 before 14.4.5, all versions starting fr... |
| CVE-2022-31113 | MEDIUM | 6.1 | 0.5% | Jul 1, 2022 | Canarytokens is an open source tool which helps track activity and actions on your network. A Cross-Site Scripting vulne... |
| CVE-2022-2270 | MEDIUM | 5.3 | 0.7% | Jul 1, 2022 | An issue has been discovered in GitLab affecting all versions starting from 12.4 before 14.10.5, all versions starting f... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now