2022 CVE Vulnerabilities

27,528 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-21708MEDIUM6.5graphql-go is a GraphQL server with a focus on ease of use. In versions prior to 1.3.0 there exists a DoS vulnerability ...
CVE-2022-22552MEDIUM6.1Dell EMC AppSync versions 3.9 to 4.3 contain a clickjacking vulnerability in AppSync. A remote unauthenticated attacker ...
CVE-2022-23728MEDIUM6.1Attacker can reset the device with AT Command in the process of rebooting the device. The LG ID is LVE-SMP-210011.
CVE-2022-23130MEDIUM5.5Buffer Over-read vulnerability in Mitsubishi Electric MC Works64 versions 4.00A to 4.04E, Mitsubishi Electric GENESIS64 ...
CVE-2022-23129MEDIUM5.5Plaintext Storage of a Password vulnerability in Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior ...
CVE-2022-23127MEDIUM6.1Cross-site Scripting vulnerability in Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior and ICONICS...
CVE-2022-0319MEDIUM5.5Out-of-bounds Read in vim/vim prior to 8.2.
CVE-2022-0326MEDIUM5.5NULL Pointer Dereference in Homebrew mruby prior to 3.2.
CVE-2022-22892MEDIUM5.5There is an Assertion 'ecma_is_value_undefined (value) || ecma_is_value_null (value) || ecma_is_value_boolean (value) ||...
CVE-2022-22891MEDIUM5.5Jerryscript 3.0.0 was discovered to contain a SEGV vulnerability via ecma_ref_object_inline in /jerry-core/ecma/base/ecm...
CVE-2022-22890MEDIUM5.5There is an Assertion 'arguments_type != SCANNER_ARGUMENTS_PRESENT && arguments_type != SCANNER_ARGUMENTS_PRESENT_NO_REG...
CVE-2022-21658MEDIUM6.3Rust is a multi-paradigm, general-purpose programming language designed for performance and safety, especially safe conc...
CVE-2022-0219MEDIUM5.5Improper Restriction of XML External Entity Reference in GitHub repository skylot/jadx prior to 1.3.2.
CVE-2022-0285MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist pimcore/pimcore prior to 10.2.9.
CVE-2022-22820MEDIUM5.5Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption...
CVE-2022-22733MEDIUM6.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache ShardingSphere ElasticJob-UI allows a...
CVE-2022-0278MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-0277MEDIUM6.5Incorrect Permission Assignment for Critical Resource in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-21704MEDIUM5.5log4js-node is a port of log4js to node.js. In affected versions default file permissions for log files created by the f...
CVE-2022-23045MEDIUM4.8PhpIPAM v1.4.4 allows an authenticated admin user to inject persistent JavaScript code inside the "Site title" parameter...
CVE-2022-0243MEDIUM5.4Cross-site Scripting (XSS) - Stored in NuGet OrchardCore.Application.Cms.Targets prior to 1.2.2.
CVE-2022-0274MEDIUM5.4Cross-site Scripting (XSS) - Stored in NuGet OrchardCore.Application.Cms.Targets prior to 1.2.2.
CVE-2022-22310MEDIUM6.5IBM WebSphere Application Server Liberty 21.0.0.10 through 21.0.0.12 could provide weaker than expected security. A remo...
CVE-2022-21403MEDIUM6.6Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...
CVE-2022-21402MEDIUM4.8Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now