2022 CVE Vulnerabilities

27,528 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-43565HIGH8.8In Splunk Enterprise versions below 8.2.9 and 8.1.12, the way that the ‘tstats command handles Javascript Object Notatio...
CVE-2022-43564MEDIUM6.5In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, a remote user who can create search macros and schedule se...
CVE-2022-43563HIGH8.8In Splunk Enterprise versions below 8.2.9 and 8.1.12, the way that the rex search command handles field names lets an at...
CVE-2022-43562MEDIUM5.4In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, Splunk Enterprise fails to properly validate and escape th...
CVE-2022-39384MEDIUM5.6OpenZeppelin Contracts is a library for secure smart contract development. Before version 4.4.1 but after 3.2.0, initial...
CVE-2022-38654MEDIUM5.5HCL Domino is susceptible to an information disclosure vulnerability. In some scenarios, local calls made on the server...
CVE-2022-39344CRITICAL9.8Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack, that is fully integrated with Azure RTOS Thre...
CVE-2022-38660HIGH8.8HCL XPages applications are susceptible to a Cross Site Request Forgery (CSRF) vulnerability. An unauthenticated attack...
CVE-2022-43945HIGH7.5The Linux kernel NFSD implementation prior to versions 5.19.17 and 6.0.2 are vulnerable to buffer overflow. NFSD tracks ...
CVE-2022-40263HIGH7.8BD Totalys MultiProcessor, versions 1.70 and earlier, contain hardcoded credentials. If exploited, threat actors may be ...
CVE-2022-39387HIGH7.5XWiki OIDC has various tools to manipulate OpenID Connect protocol in XWiki. Prior to version 1.29.1, even if a wiki has...
CVE-2022-31691CRITICAL9.8Spring Tools 4 for Eclipse version 4.16.0 and below as well as VSCode extensions such as Spring Boot Tools, Concourse CI...
CVE-2022-27894MEDIUM5.4The Foundry Blobster service was found to have a cross-site scripting (XSS) vulnerability that could have allowed an att...
CVE-2022-20969MEDIUM5.4A vulnerability in multiple management dashboard pages of Cisco Umbrella could allow an authenticated, remote attacker t...
CVE-2022-20963MEDIUM5.4A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat...
CVE-2022-20962HIGH8.8A vulnerability in the Localdisk Management feature of Cisco Identity Services Engine (ISE) could allow an authenticated...
CVE-2022-20961HIGH8.8A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic...
CVE-2022-20960HIGH7.5A vulnerability in Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated remote...
CVE-2022-20958HIGH8.8A vulnerability in the web-based management interface of Cisco BroadWorks CommPilot application could allow an unauthent...
CVE-2022-20956HIGH8.8A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat...
CVE-2022-20951MEDIUM6.5A vulnerability in the web-based management interface of Cisco BroadWorks CommPilot application could allow an authentic...
CVE-2022-20942MEDIUM6.5A vulnerability in the web-based management interface of Cisco Email Security Appliance (ESA), Cisco Secure Email and We...
CVE-2022-20937MEDIUM5.3A vulnerability in a feature that monitors RADIUS requests on Cisco Identity Services Engine (ISE) Software could allow ...
CVE-2022-20868HIGH8.8A vulnerability in the web-based management interface of Cisco Email Security Appliance, Cisco Secure Email and Web Mana...
CVE-2022-20867MEDIUM6.5A vulnerability in web-based management interface of the of Cisco Email Security Appliance and Cisco Secure Email and We...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now