2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23957 | MEDIUM | 5.5 | 0.2% | Mar 2, 2022 | Potential vulnerabilities have been identified in the BIOS for some HP PC products which may allow denial of service. |
| CVE-2022-23955 | MEDIUM | 5.5 | 0.2% | Mar 2, 2022 | Potential vulnerabilities have been identified in the BIOS for some HP PC products which may allow denial of service. |
| CVE-2022-23954 | MEDIUM | 5.5 | 0.2% | Mar 2, 2022 | Potential vulnerabilities have been identified in the BIOS for some HP PC products which may allow denial of service. |
| CVE-2022-23956 | MEDIUM | 5.5 | 0.2% | Mar 2, 2022 | Potential vulnerabilities have been identified in the BIOS for some HP PC products which may allow denial of service. |
| CVE-2022-23953 | MEDIUM | 5.5 | 0.2% | Mar 2, 2022 | Potential vulnerabilities have been identified in the BIOS for some HP PC products which may allow denial of service. |
| CVE-2022-23656 | MEDIUM | 5.4 | 0.5% | Mar 2, 2022 | Zulip is an open source team chat app. The `main` development branch of Zulip Server from June 2021 and later is vulnera... |
| CVE-2022-22944 | MEDIUM | 5.4 | 0.4% | Mar 2, 2022 | VMware Workspace ONE Boxer contains a stored cross-site scripting (XSS) vulnerability. Due to insufficient sanitization ... |
| CVE-2022-22350 | MEDIUM | 5.5 | 0.2% | Mar 2, 2022 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in CAA to cause a... |
| CVE-2022-24447 | MEDIUM | 6.5 | 0.9% | Mar 2, 2022 | An issue was discovered in Zoho ManageEngine Key Manager Plus before 6200. A service exposed by the application allows a... |
| CVE-2022-23779 | MEDIUM | 5.3 | 15.1% | Mar 2, 2022 | Zoho ManageEngine Desktop Central before 10.1.2137.8 exposes the installed server name to anyone. The internal hostname ... |
| CVE-2022-23395 | MEDIUM | 6.1 | 1.1% | Mar 2, 2022 | jQuery Cookie 1.4.1 is affected by prototype pollution, which can lead to DOM cross-site scripting (XSS). |
| CVE-2022-22303 | MEDIUM | 5.5 | 0.2% | Mar 2, 2022 | An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiManager ve... |
| CVE-2022-0577 | MEDIUM | 6.5 | 1.2% | Mar 2, 2022 | Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository scrapy/scrapy prior to 2.6.1. |
| CVE-2022-25051 | MEDIUM | 5.5 | 0.7% | Mar 2, 2022 | An Off-by-one Error occurs in cmr113_decode of rtl_433 21.12 when decoding a crafted file. |
| CVE-2022-25050 | MEDIUM | 5.5 | 0.8% | Mar 2, 2022 | rtl_433 21.12 was discovered to contain a stack overflow in the function somfy_iohc_decode(). This vulnerability allows ... |
| CVE-2022-25012 | MEDIUM | 5.5 | 0.3% | Mar 1, 2022 | Argus Surveillance DVR v4.0 employs weak password encryption. |
| CVE-2022-24719 | MEDIUM | 6.1 | 0.8% | Mar 1, 2022 | Fluture-Node is a FP-style HTTP and streaming utils for Node based on Fluture. Using `followRedirects` or `followRedirec... |
| CVE-2022-24718 | MEDIUM | 6.5 | 1.1% | Mar 1, 2022 | ssr-pages is an HTML page builder for the purpose of server-side rendering (SSR). In versions prior to 0.1.4, a path tra... |
| CVE-2022-24717 | MEDIUM | 6.1 | 0.8% | Mar 1, 2022 | ssr-pages is an HTML page builder for the purpose of server-side rendering (SSR). In versions prior to 0.1.5, a cross si... |
| CVE-2022-22321 | MEDIUM | 5.5 | 0.2% | Mar 1, 2022 | IBM MQ Appliance 9.2 CD and 9.2 LTS local messaging users stored with a password hash that provides insufficient protect... |
| CVE-2022-0776 | MEDIUM | 6.1 | 3.7% | Mar 1, 2022 | Cross-site Scripting (XSS) - DOM in GitHub repository hakimel/reveal.js prior to 4.3.0. |
| CVE-2022-25022 | MEDIUM | 5.4 | 1.1% | Mar 1, 2022 | A cross-site scripting (XSS) vulnerability in Htmly v2.8.1 allows attackers to excute arbitrary web scripts HTML via a c... |
| CVE-2022-25020 | MEDIUM | 5.4 | 1.2% | Mar 1, 2022 | A cross-site scripting (XSS) vulnerability in Pluxml v5.8.7 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2022-24446 | MEDIUM | 4.3 | 1.0% | Mar 1, 2022 | An issue was discovered in Zoho ManageEngine Key Manager Plus 6.1.6. A user, with the level Operator, can see all SSH se... |
| CVE-2022-26332 | MEDIUM | 5.4 | 0.7% | Mar 1, 2022 | Cipi 3.1.15 allows Add Server stored XSS via the /api/servers name field. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now