2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-28133MEDIUM5.4Jenkins Bitbucket Server Integration Plugin 3.1.0 and earlier does not limit URL schemes for callback URLs on OAuth cons...
CVE-2022-23903MEDIUM5.4A Cross Site Scripting (XSS) vulnerability exists in pearadmin pear-admin-think <=5.0.6, which allows a login account to...
CVE-2022-23059MEDIUM4.8A Stored Cross Site Scripting (XSS) vulnerability exists in Shopizer versions 2.0 through 2.17.0 via the “Manage Images”...
CVE-2022-1087MEDIUM5.4A vulnerability, which was classified as problematic, has been found in htmly 5.3 whis affects the component Edit Profil...
CVE-2022-1086MEDIUM5.4A vulnerability was found in DolphinPHP up to 1.5.0 and classified as problematic. Affected by this issue is the User Ma...
CVE-2022-1085MEDIUM6.1A vulnerability was found in CLTPHP up to 6.0. It has been declared as problematic. Affected by this vulnerability is th...
CVE-2022-1081MEDIUM6.1A vulnerability was found in SourceCodester Microfinance Management System 1.0. It has been declared as problematic. Thi...
CVE-2022-1079MEDIUM6.1A vulnerability classified as problematic has been found in SourceCodester One Church Management System. Affected are mu...
CVE-2022-1076MEDIUM6.1A vulnerability was found in Automatic Question Paper Generator System 1.0. It has been classified as problematic. This ...
CVE-2022-1075MEDIUM5.4A vulnerability was found in College Website Management System 1.0 and classified as problematic. Affected by this issue...
CVE-2022-1074MEDIUM5.4A vulnerability has been found in TEM FLEX-1085 1.6.0 and classified as problematic. Using the input <h1>HTML Injection<...
CVE-2022-24957MEDIUM5.4DHC Vision eQMS through 5.4.8.322 has Persistent XSS due to insufficient encoding of untrusted input/output. To exploit ...
CVE-2022-24956MEDIUM6.5An issue was discovered in Shopware B2B-Suite through 4.4.1. The sort-by parameter of the search functionality of b2bord...
CVE-2022-26269MEDIUM4.6Suzuki Connect v1.0.15 allows attackers to tamper with displayed messages via spoofed CAN messages.
CVE-2022-0331MEDIUM5.3An information disclosure vulnerability in Webadmin allows an unauthenticated remote attacker to read the device serial ...
CVE-2022-26296MEDIUM5.5BOOM: The Berkeley Out-of-Order RISC-V Processor commit d77c2c3 was discovered to allow unauthorized disclosure of infor...
CVE-2022-26291MEDIUM5.5lrzip v0.641 was discovered to contain a multiple concurrency use-after-free between the functions zpaq_decompress_buf()...
CVE-2022-26280MEDIUM6.5Libarchive v3.6.0 was discovered to contain an out-of-bounds read via the component zipx_lzma_alone_init.
CVE-2022-26980MEDIUM6.1Teampass 2.1.26 allows reflected XSS via the index.php PATH_INFO.
CVE-2022-1056MEDIUM5.5Out-of-bounds Read error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff f...
CVE-2022-0549MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions before 14.3.6, all versions starting from 14.4 befor...
CVE-2022-0488MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting with version 8.10. It was possible to trigg...
CVE-2022-0371MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.4 before 14.5.4, all versions start...
CVE-2022-0344MEDIUM4.3An issue has been discovered in GitLab affecting all versions starting from 10.0 before 14.5.4, all versions starting fr...
CVE-2022-0283MEDIUM6.1An issue has been discovered affecting GitLab versions prior to 13.5. An open redirect vulnerability was fixed in GitLab...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now