2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-26724MEDIUM5.5An authentication issue was addressed with improved state management. This issue is fixed in tvOS 15.5. A local user may...
CVE-2022-26712MEDIUM5.5This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Monterey 12.4, macOS Big Sur 11.6...
CVE-2022-26706MEDIUM5.5An access issue was addressed with additional sandbox restrictions on third-party applications. This issue is fixed in t...
CVE-2022-30508MEDIUM6.5DedeCMS v5.7.93 was discovered to contain arbitrary file deletion vulnerability in upload.php via the delete parameter.
CVE-2022-26691MEDIUM6.7A logic issue was addressed with improved state management. This issue is fixed in Security Update 2022-003 Catalina, ma...
CVE-2022-26690MEDIUM4.7Description: A race condition was addressed with additional validation. This issue is fixed in macOS Monterey 12.3. A ma...
CVE-2022-26688MEDIUM4.4An issue in the handling of symlinks was addressed with improved validation. This issue is fixed in Security Update 2022...
CVE-2022-22676MEDIUM5.5An event handler validation issue in the XPC Services API was addressed by removing the service. This issue is fixed in ...
CVE-2022-22674MEDIUM5.5An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input ...
CVE-2022-22663MEDIUM5.5This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in iOS 15.4 and iPadO...
CVE-2022-22662MEDIUM6.5A cookie management issue was addressed with improved state management. This issue is fixed in Security Update 2022-003 ...
CVE-2022-22616MEDIUM5.5This issue was addressed with improved checks. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey ...
CVE-2022-30494MEDIUM5.4In oretnom23 Automotive Shop Management System v1.0, the first and last name user fields suffer from a stored XSS Inject...
CVE-2022-27777MEDIUM6.1A XSS Vulnerability in Action View tag helpers >= 5.2.0 and < 5.2.0 which would allow an attacker to inject content if a...
CVE-2022-22577MEDIUM6.1An XSS Vulnerability in Action Pack >= 5.2.0 and < 5.2.0 that could allow an attacker to bypass CSP for non HTML like re...
CVE-2022-30787MEDIUM6.7An integer underflow in fuse_lib_readdir enables arbitrary memory read operations in NTFS-3G through 2021.8.22 when usin...
CVE-2022-30785MEDIUM6.7A file handle created in fuse_lib_opendir, and later used in fuse_lib_readdir, enables arbitrary memory read and write o...
CVE-2022-30783MEDIUM6.7An invalid return code in fuse_kern_mount enables intercepting of libfuse-lite protocol traffic between NTFS-3G and the ...
CVE-2022-29091MEDIUM6.1Dell Unity, Dell UnityVSA, and Dell UnityXT versions prior to 5.2.0.0.5.173 contain a Reflected Cross-Site Scripting Vul...
CVE-2022-29082MEDIUM4.6Dell EMC NetWorker versions 19.1.x, 19.1.0.x, 19.1.1.x, 19.2.x, 19.2.0.x, 19.2.1.x 19.3.x, 19.3.0.x, 19.4.x, 19.4.0.x, 1...
CVE-2022-26865MEDIUM6.8Dell Support Assist OS Recovery versions before 5.5.2 contain an Authentication Bypass vulnerability. An unauthenticated...
CVE-2022-24418MEDIUM6.7Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl...
CVE-2022-24417MEDIUM6.7Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl...
CVE-2022-24414MEDIUM6.5Dell EMC CloudLink 7.1.3 and all earlier versions, Auth Token is exposed in GET requests. These request parameters can g...
CVE-2022-20821MEDIUM6.5A vulnerability in the health check RPM of Cisco IOS XR Software could allow an unauthenticated, remote attacker to acce...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now