2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-23673HIGH7.2A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10...
CVE-2022-23672HIGH7.2A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10...
CVE-2022-23671HIGH7.5A remote authenticated information disclosure vulnerability was discovered in Aruba ClearPass Policy Manager version(s):...
CVE-2022-23669HIGH8.8A remote authorization bypass vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10.4 and belo...
CVE-2022-29581HIGH7.8Improper Update of Reference Count vulnerability in net/sched of Linux Kernel allows local attacker to cause privilege e...
CVE-2022-1769HIGH7.8Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974.
CVE-2022-1733HIGH7.8Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968.
CVE-2022-1116HIGH7.8Integer Overflow or Wraparound vulnerability in io_uring of Linux Kernel allows local attacker to cause memory corruptio...
CVE-2022-30007HIGH7.2GXCMS V1.5 has a file upload vulnerability in the background. The vulnerability is the template management page. You can...
CVE-2022-24856HIGH7.5FlyteConsole is the web user interface for the Flyte platform. FlyteConsole prior to version 0.52.0 is vulnerable to ser...
CVE-2022-30972HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Storable Configs Plugin 1.0 and earlier allows attackers to...
CVE-2022-30971HIGH8.8Jenkins Storable Configs Plugin 1.0 and earlier does not configure its XML parser to prevent XML external entity (XXE) a...
CVE-2022-30969HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Autocomplete Parameter Plugin 1.1 and earlier allows attack...
CVE-2022-30958HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins SSH Plugin 2.6.1 and earlier allows attackers to connect to...
CVE-2022-30951HIGH8.8Jenkins WMI Windows Agents Plugin 1.8 and earlier includes the Windows Remote Command library does not implement access ...
CVE-2022-30950HIGH8.8Jenkins WMI Windows Agents Plugin 1.8 and earlier includes the Windows Remote Command library which has a buffer overflo...
CVE-2022-30948HIGH7.5Jenkins Mercurial Plugin 2.16 and earlier allows attackers able to configure pipelines to check out some SCM repositorie...
CVE-2022-30947HIGH7.5Jenkins Git Plugin 4.11.1 and earlier allows attackers able to configure pipelines to check out some SCM repositories st...
CVE-2022-30945HIGH8.5Jenkins Pipeline: Groovy Plugin 2689.v434009a_31b_f1 and earlier allows loading any Groovy source files on the classpath...
CVE-2022-1711HIGH7.5Server-Side Request Forgery (SSRF) in GitHub repository jgraph/drawio prior to 18.0.5.
CVE-2022-1723HIGH7.5Server-Side Request Forgery (SSRF) in GitHub repository jgraph/drawio prior to 18.0.6.
CVE-2022-26650HIGH7.5In Apache ShenYui, ShenYu-Bootstrap, RegexPredicateJudge.java uses Pattern.matches(conditionData.getParamValue(), realDa...
CVE-2022-23667HIGH7.2A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10...
CVE-2022-30697HIGH7.8Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Snap Deploy ...
CVE-2022-30696HIGH7.8Local privilege escalation due to a DLL hijacking vulnerability. The following products are affected: Acronis Snap Deplo...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now