2022 CVE Vulnerabilities

27,528 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-23456MEDIUM5.5Potential arbitrary file deletion vulnerability has been identified in HP Support Assistant software.
CVE-2022-22938MEDIUM6.5VMware Workstation (16.x prior to 16.2.2) and Horizon Client for Windows (5.x prior to 5.5.3) contains a denial-of-servi...
CVE-2022-22791MEDIUM5.4SYNEL - eharmony Authenticated Blind & Stored XSS. Inject JS code into the "comments" field could lead to potential stea...
CVE-2022-21199MEDIUM5.9An information disclosure vulnerability exists due to the hardcoded TLS key of reolink RLC-410W v3.0.0.136_20121102. A s...
CVE-2022-22868MEDIUM4.8Gibbon CMS v22.0.01 was discovered to contain a cross-site scripting (XSS) vulnerability, that allows attackers to injec...
CVE-2022-23863MEDIUM6.5Zoho ManageEngine Desktop Central before 10.1.2137.10 allows an authenticated user to change any user's login password.
CVE-2022-24071MEDIUM4.3A Built-in extension in Whale browser before 3.12.129.46 allows attackers to compromise the rendering process which coul...
CVE-2022-21720MEDIUM4.9GLPI is a free asset and IT management software package. Prior to version 9.5.7, an entity administrator is capable of r...
CVE-2022-0394MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v.
CVE-2022-21719MEDIUM6.1GLPI is a free asset and IT management software package. All GLPI versions prior to 9.5.7 are vulnerable to reflected cr...
CVE-2022-0348MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist pimcore/pimcore prior to 10.2.
CVE-2022-0372MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist bytefury/crater prior to 6.0.2.
CVE-2022-0387MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v.
CVE-2022-0370MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v.
CVE-2022-22852MEDIUM5.4A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System...
CVE-2022-23993MEDIUM6.1/usr/local/www/pkg.php in pfSense CE before 2.6.0 and pfSense Plus before 22.01 uses $_REQUEST['pkg_filter'] in a PHP ec...
CVE-2022-22850MEDIUM5.4A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System...
CVE-2022-22851MEDIUM5.4A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System...
CVE-2022-0379MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-0378MEDIUM5.4Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-0203MEDIUM5.3Improper Access Control in GitHub repository crater-invoice/crater prior to 6.0.2.
CVE-2022-22932MEDIUM5.3Apache Karaf obr:* commands and run goal on the karaf-maven-plugin have partial path traversal which allows to break out...
CVE-2022-0251MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.2.10.
CVE-2022-0375MEDIUM4.8Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v.
CVE-2022-0374MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now