2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-25375MEDIUM5.5An issue was discovered in drivers/usb/gadget/function/rndis.c in the Linux kernel before 5.16.10. The RNDIS USB gadget ...
CVE-2022-23054MEDIUM6.1Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via the “Summary Widget” element, that allows the inje...
CVE-2022-23053MEDIUM6.1Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via the “Condition Widget” element, that allows the in...
CVE-2022-22126MEDIUM6.1Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via the “Web Page” element, that allows the injection ...
CVE-2022-0688MEDIUM4.9Business Logic Errors in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-0690MEDIUM6.1Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-23376MEDIUM6.1WikiDocs version 0.1.18 has multiple reflected XSS vulnerabilities on different pages.
CVE-2022-0689MEDIUM5.3Use multiple time the one-time coupon in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-0632MEDIUM5.5NULL Pointer Dereference in Homebrew mruby prior to 3.2.
CVE-2022-0678MEDIUM6.1Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-24979MEDIUM5.3An issue was discovered in the Varnishcache extension before 2.0.1 for TYPO3. The Edge Site Includes (ESI) content eleme...
CVE-2022-25256MEDIUM6.1SAS Web Report Studio 4.4 allows XSS. /SASWebReportStudio/logonAndRender.do has two parameters: saspfs_request_backlabel...
CVE-2022-25358MEDIUM5.3A ..%2F path traversal vulnerability exists in the path handler of awful-salmonella-tar before 0.0.4. Attackers can only...
CVE-2022-23645MEDIUM5.5swtpm is a libtpms-based TPM emulator with socket, character device, and Linux CUSE interface. Versions prior to 0.5.3, ...
CVE-2022-24370MEDIUM6.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Read...
CVE-2022-24368MEDIUM6.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Read...
CVE-2022-24061MEDIUM5.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Sante DICOM Vi...
CVE-2022-24060MEDIUM5.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Sante DICOM Vi...
CVE-2022-24055MEDIUM5.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Sante DICOM Vi...
CVE-2022-25336MEDIUM5.3Ibexa DXP ezsystems/ezpublish-kernel 7.5.x before 7.5.26 and 1.3.x before 1.3.12 allows Insecure Direct Object Reference...
CVE-2022-23981MEDIUM4.3The vulnerability allows Subscriber+ level users to create brands in WordPress Perfect Brands for WooCommerce plugin (ve...
CVE-2022-21800MEDIUM6.5MMP: All versions prior to v1.0.3, PTP C-series: Device versions prior to v2.8.6.1, and PTMP C-series and A5x: Device ve...
CVE-2022-0673MEDIUM6.5A flaw was found in LemMinX in versions prior to 0.19.0. Cache poisoning of external schema files due to directory trave...
CVE-2022-0672MEDIUM5.5A flaw was found in LemMinX in versions prior to 0.19.0. Insecure redirect could allow unauthorized access to sensitive ...
CVE-2022-0585MEDIUM6.5Large loops in multiple protocol dissectors in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allow denial of service via ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now