2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-27238MEDIUM5.4BigBlueButton version 2.4.7 (or earlier) is vulnerable to stored Cross-Site Scripting (XSS) in the private chat function...
CVE-2022-22502MEDIUM5.4IBM Robotic Process Automation 21.0.1 and 21.0.2 is vulnerable to cross-site scripting. This vulnerability allows users ...
CVE-2022-32209MEDIUM6.1# Possible XSS Vulnerability in Rails::Html::SanitizerThere is a possible XSS vulnerability with certain configurations ...
CVE-2022-30120MEDIUM6.1XSS in /dashboard/blocks/stacks/view_details/ - old browsers only. When using an older browser with built-in XSS protect...
CVE-2022-30119MEDIUM6.1XSS in /dashboard/reports/logs/view - old browsers only. When using Internet Explorer with the XSS protection disabled, ...
CVE-2022-30118MEDIUM6.1Title for CVE: XSS in /dashboard/system/express/entities/forms/save_control/[GUID]: old browsers only.Description: When ...
CVE-2022-2121MEDIUM6.5OFFIS DCMTK's (All versions prior to 3.6.7) has a NULL pointer dereference vulnerability while processing DICOM files, w...
CVE-2022-1747MEDIUM4.6The authentication mechanism used by voters to activate a voting session on the tested version of Dominion Voting System...
CVE-2022-1745MEDIUM6.8The authentication mechanism used by technicians on the tested version of Dominion Voting Systems ImageCast X is suscept...
CVE-2022-1744MEDIUM6.8Applications on the tested version of Dominion Voting Systems ImageCast X can execute code with elevated privileges by e...
CVE-2022-1743MEDIUM6.8The tested version of Dominion Voting System ImageCast X can be manipulated to cause arbitrary code execution by special...
CVE-2022-1742MEDIUM6.8The tested version of Dominion Voting Systems ImageCast X allows for rebooting into Android Safe Mode, which allows an a...
CVE-2022-1741MEDIUM6.8The tested version of Dominion Voting Systems ImageCast X has a Terminal Emulator application which could be leveraged b...
CVE-2022-1740MEDIUM4.6The tested version of Dominion Voting Systems ImageCast X’s on-screen application hash display feature, audit log export...
CVE-2022-1739MEDIUM6.8The tested version of Dominion Voting Systems ImageCast X does not validate application signatures to a trusted root cer...
CVE-2022-1666MEDIUM6.5The default password for the web application’s root user (the vendor’s private account) was weak and the MD5 hash was us...
CVE-2022-1524MEDIUM5.9LRM version 2.4 and lower does not implement TLS encryption. A malicious actor can MITM attack sensitive data in-transit...
CVE-2022-32990MEDIUM5.5An issue in gimp_layer_invalidate_boundary of GNOME GIMP 2.10.30 allows attackers to trigger an unhandled exception via ...
CVE-2022-32141MEDIUM6.5Multiple CODESYS Products are prone to a buffer over read. A low privileged remote attacker may craft a request with an ...
CVE-2022-32140MEDIUM6.5Multiple CODESYS products are affected to a buffer overflow.A low privileged remote attacker may craft a request, which ...
CVE-2022-32139MEDIUM6.5In multiple CODESYS products, a low privileged remote attacker may craft a request, which cause an out-of-bounds read, r...
CVE-2022-32136MEDIUM6.5In multiple CODESYS products, a low privileged remote attacker may craft a request that cause a read access to an uninit...
CVE-2022-31803MEDIUM5.3In CODESYS Gateway Server V2 an insufficient check for the activity of TCP client connections allows an unauthenticated ...
CVE-2022-32987MEDIUM4.8Multiple cross-site scripting (XSS) vulnerabilities in /bsms/?page=manage_account of Simple Bakery Shop Management Syste...
CVE-2022-34328MEDIUM6.1PMB 7.3.10 allows reflected XSS via the id parameter in an lvl=author_see request to index.php.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now