2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-25613MEDIUM5.4Authenticated Persistent Cross-Site Scripting (XSS) vulnerability in FV Flowplayer Video Player (WordPress plugin) versi...
CVE-2022-23700MEDIUM5.5A local unauthorized read access to files vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has ...
CVE-2022-23697MEDIUM6.1A remote cross-site scripting (xss) vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has provid...
CVE-2022-1233MEDIUM6.1URL Confusion When Scheme Not Supplied in GitHub repository medialize/uri.js prior to 1.19.11.
CVE-2022-1190MEDIUM5.4Improper handling of user input in GitLab CE/EE versions 8.3 prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14...
CVE-2022-1189MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.2 before 14.7.7, all versions start...
CVE-2022-1188MEDIUM5.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.1 before 14.7.7, all versions start...
CVE-2022-1185MEDIUM6.5A denial of service vulnerability when rendering RDoc files in GitLab CE/EE versions 10 to 14.7.7, 14.8.0 to 14.8.5, and...
CVE-2022-1175MEDIUM6.1Improper neutralization of user input in GitLab CE/EE versions 14.4 before 14.7.7, all versions starting from 14.8 befor...
CVE-2022-1148MEDIUM6.5Improper authorization in GitLab Pages included with GitLab CE/EE affecting all versions from 11.5 prior to 14.7.7, 14.8...
CVE-2022-1121MEDIUM5.3A lack of appropriate timeouts in GitLab Pages included in GitLab CE/EE all versions prior to 14.7.7, 14.8 prior to 14.8...
CVE-2022-1120MEDIUM6.5Missing filtering in an error message in GitLab CE/EE affecting all versions prior to 14.7.7, 14.8 prior to 14.8.5, and ...
CVE-2022-1105MEDIUM4.3An improper access control vulnerability in GitLab CE/EE affecting all versions from 13.11 prior to 14.7.7, 14.8 prior t...
CVE-2022-1100MEDIUM4.3A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions from 13.1 prior to 14.7.7, 14.8.0 pr...
CVE-2022-1099MEDIUM4.3Adding a very large number of tags to a runner in GitLab CE/EE affecting all versions prior to 14.7.7, 14.8 prior to 14....
CVE-2022-0740MEDIUM4.3Incorrect authorization in the Asana integration's branch restriction feature in all versions of GitLab CE/EE starting f...
CVE-2022-24814MEDIUM6.1Directus is a real-time API and App dashboard for managing SQL database content. Prior to version 9.7.0, unauthorized Ja...
CVE-2022-24813MEDIUM5.3CreateWiki is Miraheze's MediaWiki extension for requesting & creating wikis. Without the patch for this issue, anonymou...
CVE-2022-1170MEDIUM6.1In the Noo JobMonster WordPress theme before 4.5.2.9 JobMonster there is a XSS vulnerability as the input for the search...
CVE-2022-1169MEDIUM6.1There is a XSS vulnerability in Careerfy.
CVE-2022-1168MEDIUM6.1There is a Cross-Site Scripting vulnerability in the JobSearch WP JobSearch WordPress plugin before 1.5.1.
CVE-2022-1167MEDIUM6.1There are unauthenticated reflected Cross-Site Scripting (XSS) vulnerabilities in CareerUp Careerup WordPress theme befo...
CVE-2022-1166MEDIUM5.3The JobMonster Theme was vulnerable to Directory Listing in the /wp-content/uploads/jobmonster/ folder, as it did not in...
CVE-2022-1164MEDIUM6.1The Wyzi Theme was affected by reflected XSS vulnerabilities in the business search feature
CVE-2022-0958MEDIUM4.8The Mark Posts WordPress plugin before 2.0.1 does not escape new markers, allowing high privilege users such as admin to...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now