2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-23137MEDIUM6.1ZTE's ZXCDN product has a reflective XSS vulnerability. The attacker could modify the parameters in the content clearing...
CVE-2022-22975MEDIUM6.6An issue was discovered in the Pinniped Supervisor with either LADPIdentityProvider or ActiveDirectoryIdentityProvider r...
CVE-2022-22320MEDIUM4.8IBM QRadar SIEM 7.3 and 7.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Ja...
CVE-2022-29613MEDIUM4.3Due to insufficient input validation, SAP Employee Self Service allows an authenticated attacker with user privileges to...
CVE-2022-29610MEDIUM5.4SAP NetWeaver Application Server ABAP allows an authenticated attacker to upload malicious files and delete (theme) data...
CVE-2022-28774MEDIUM5.5Under certain conditions, the SAP Host Agent logfile shows information which would otherwise be restricted.
CVE-2022-27656MEDIUM6.1The Web administration UI of SAP Web Dispatcher and the Internet Communication Manager (ICM) does not sufficiently encod...
CVE-2022-1623MEDIUM5.5LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:624, allowing attackers to cause a den...
CVE-2022-1622MEDIUM5.5LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a den...
CVE-2022-1545MEDIUM4.3It was possible to disclose details of confidential notes created via the API in Gitlab CE/EE affecting all versions fro...
CVE-2022-1460MEDIUM4.9An issue has been discovered in GitLab affecting all versions starting from 9.2 before 14.8.6, all versions starting fro...
CVE-2022-1433MEDIUM6.1An issue has been discovered in GitLab affecting all versions starting from 14.4 before 14.8.6, all versions starting fr...
CVE-2022-1428MEDIUM4.3An issue has been discovered in GitLab affecting all versions before 14.8.6, all versions starting from 14.9 before 14.9...
CVE-2022-1406MEDIUM6.5Improper input validation in GitLab CE/EE affecting all versions from 8.12 prior to 14.8.6, all versions from 14.9.0 pri...
CVE-2022-1352MEDIUM5.3Due to an insecure direct object reference vulnerability in Gitlab EE/CE affecting all versions from 11.0 prior to 14.8....
CVE-2022-1124MEDIUM4.3An improper authorization issue has been discovered in GitLab CE/EE affecting all versions prior to 14.8.6, all versions...
CVE-2022-29978MEDIUM6.5There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6. Remote ...
CVE-2022-29977MEDIUM6.5There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote atta...
CVE-2022-29008MEDIUM6.5An insecure direct object reference (IDOR) vulnerability in the viewid parameter of Bus Pass Management System v1.0 allo...
CVE-2022-28078MEDIUM6.1Home Owners Collection Management v1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in t...
CVE-2022-28077MEDIUM6.1Home Owners Collection Management v1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in t...
CVE-2022-29976MEDIUM5.4An Authenticated Reflected Cross-site scripting at BCC Parameter was discovered in MDaemon before 22.0.0 .
CVE-2022-29975MEDIUM5.4An Authenticated Reflected Cross-site scripting at CC Parameter was discovered in MDaemon before 22.0.0 .
CVE-2022-29728MEDIUM6.1Survey Sparrow Enterprise Survey Software 2022 has a Reflected cross-site scripting (XSS) vulnerability in the test para...
CVE-2022-29727MEDIUM5.4Survey Sparrow Enterprise Survey Software 2022 has a Stored cross-site scripting (XSS) vulnerability in the Signup param...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now