2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-23957MEDIUM5.5Potential vulnerabilities have been identified in the BIOS for some HP PC products which may allow denial of service.
CVE-2022-23955MEDIUM5.5Potential vulnerabilities have been identified in the BIOS for some HP PC products which may allow denial of service.
CVE-2022-23954MEDIUM5.5Potential vulnerabilities have been identified in the BIOS for some HP PC products which may allow denial of service.
CVE-2022-23956MEDIUM5.5Potential vulnerabilities have been identified in the BIOS for some HP PC products which may allow denial of service.
CVE-2022-23953MEDIUM5.5Potential vulnerabilities have been identified in the BIOS for some HP PC products which may allow denial of service.
CVE-2022-23656MEDIUM5.4Zulip is an open source team chat app. The `main` development branch of Zulip Server from June 2021 and later is vulnera...
CVE-2022-22944MEDIUM5.4VMware Workspace ONE Boxer contains a stored cross-site scripting (XSS) vulnerability. Due to insufficient sanitization ...
CVE-2022-22350MEDIUM5.5IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in CAA to cause a...
CVE-2022-24447MEDIUM6.5An issue was discovered in Zoho ManageEngine Key Manager Plus before 6200. A service exposed by the application allows a...
CVE-2022-23779MEDIUM5.3Zoho ManageEngine Desktop Central before 10.1.2137.8 exposes the installed server name to anyone. The internal hostname ...
CVE-2022-23395MEDIUM6.1jQuery Cookie 1.4.1 is affected by prototype pollution, which can lead to DOM cross-site scripting (XSS).
CVE-2022-22303MEDIUM5.5An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiManager ve...
CVE-2022-0577MEDIUM6.5Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository scrapy/scrapy prior to 2.6.1.
CVE-2022-25051MEDIUM5.5An Off-by-one Error occurs in cmr113_decode of rtl_433 21.12 when decoding a crafted file.
CVE-2022-25050MEDIUM5.5rtl_433 21.12 was discovered to contain a stack overflow in the function somfy_iohc_decode(). This vulnerability allows ...
CVE-2022-25012MEDIUM5.5Argus Surveillance DVR v4.0 employs weak password encryption.
CVE-2022-24719MEDIUM6.1Fluture-Node is a FP-style HTTP and streaming utils for Node based on Fluture. Using `followRedirects` or `followRedirec...
CVE-2022-24718MEDIUM6.5ssr-pages is an HTML page builder for the purpose of server-side rendering (SSR). In versions prior to 0.1.4, a path tra...
CVE-2022-24717MEDIUM6.1ssr-pages is an HTML page builder for the purpose of server-side rendering (SSR). In versions prior to 0.1.5, a cross si...
CVE-2022-22321MEDIUM5.5IBM MQ Appliance 9.2 CD and 9.2 LTS local messaging users stored with a password hash that provides insufficient protect...
CVE-2022-0776MEDIUM6.1Cross-site Scripting (XSS) - DOM in GitHub repository hakimel/reveal.js prior to 4.3.0.
CVE-2022-25022MEDIUM5.4A cross-site scripting (XSS) vulnerability in Htmly v2.8.1 allows attackers to excute arbitrary web scripts HTML via a c...
CVE-2022-25020MEDIUM5.4A cross-site scripting (XSS) vulnerability in Pluxml v5.8.7 allows attackers to execute arbitrary web scripts or HTML vi...
CVE-2022-24446MEDIUM4.3An issue was discovered in Zoho ManageEngine Key Manager Plus 6.1.6. A user, with the level Operator, can see all SSH se...
CVE-2022-26332MEDIUM5.4Cipi 3.1.15 allows Add Server stored XSS via the /api/servers name field.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now