2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-31100MEDIUM6.5rulex is a new, portable, regular expression language. When parsing untrusted rulex expressions, rulex may crash, possib...
CVE-2022-31096MEDIUM5.7Discourse is an open source discussion platform. Under certain conditions, a logged in user can redeem an invite with an...
CVE-2022-33116MEDIUM6.5An issue in the jmpath variable in /modules/mindmap/index.php of GUnet Open eClass Platform (aka openeclass) v3.12.4 and...
CVE-2022-33005MEDIUM6.1A cross-site scripting (XSS) vulnerability in the System Settings/IOT Settings module of Delta Electronics DIAEnergie v1...
CVE-2022-31094MEDIUM6.1ScratchTools is a web extension designed to make interacting with the Scratch programming language community (Scratching...
CVE-2022-31088MEDIUM5.3LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP d...
CVE-2022-31085MEDIUM6.1LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP d...
CVE-2022-31081MEDIUM6.5HTTP::Daemon is a simple http server class written in perl. Versions prior to 6.15 are subject to a vulnerability which ...
CVE-2022-31077MEDIUM5.7KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to ho...
CVE-2022-31076MEDIUM5.7KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to ho...
CVE-2022-31065MEDIUM6.1BigBlueButton is an open source web conferencing system. In affected versions an attacker can embed malicious JS in thei...
CVE-2022-31064MEDIUM5.4BigBlueButton is an open source web conferencing system. Users in meetings with private chat enabled are vulnerable to a...
CVE-2022-31057MEDIUM5.4Shopware is an open source e-commerce software made in Germany. Versions of Shopware 5 prior to version 5.7.12 are subje...
CVE-2022-31039MEDIUM5.3Greenlight is a simple front-end interface for your BigBlueButton server. In affected versions an attacker can view any ...
CVE-2022-31036MEDIUM4.3Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. All versions of Argo CD starting with v1.3.0 a...
CVE-2022-31035MEDIUM5.4Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. All versions of Argo CD starting with v1.0.0 a...
CVE-2022-2221MEDIUM6.5Information Exposure vulnerability in My Account Settings of Devolutions Remote Desktop Manager before 2022.1.8 allows a...
CVE-2022-28172MEDIUM6.1The web module in some Hikvision Hybrid SAN/Cluster Storage products have the following security vulnerability. Due to t...
CVE-2022-28167MEDIUM6.5Brocade SANnav before Brocade SANvav v. 2.2.0.2 and Brocade SANanv v.2.1.1.8 logs the Brocade Fabric OS switch password ...
CVE-2022-2088MEDIUM4.9An authenticated user with admin privileges may be able to terminate any process on the system running Elcomplus SmartIC...
CVE-2022-2218MEDIUM6.1Cross-site Scripting (XSS) - Stored in GitHub repository ionicabizau/parse-url prior to 7.0.0.
CVE-2022-2208MEDIUM5.5NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.5163.
CVE-2022-2217MEDIUM6.1Cross-site Scripting (XSS) - Generic in GitHub repository ionicabizau/parse-url prior to 7.0.0.
CVE-2022-2041MEDIUM5.4The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element content, which could allow users with ...
CVE-2022-2040MEDIUM5.4The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element URL, which could allow users with a ro...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now