2022 CVE Vulnerabilities
27,531 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-3060 | HIGH | 7.3 | 0.9% | Oct 17, 2022 | Improper control of a resource identifier in Error Tracking in GitLab CE/EE affecting all versions from 12.7 allows an a... |
| CVE-2022-3031 | HIGH | 7.5 | 0.5% | Oct 17, 2022 | An issue has been discovered in GitLab CE/EE affecting all versions before 15.1.6, all versions starting from 15.2 befor... |
| CVE-2022-3030 | MEDIUM | 4.3 | 0.6% | Oct 17, 2022 | An improper access control issue in GitLab CE/EE affecting all versions starting before 15.1.6, all versions from 15.2 b... |
| CVE-2022-2992 | CRITICAL | 9.9 | 86.2% | Oct 17, 2022 | A vulnerability in GitLab CE/EE affecting all versions from 11.10 prior to 15.1.6, 15.2 to 15.2.4, 15.3 to 15.3.2 allows... |
| CVE-2022-2931 | HIGH | 7.5 | 1.1% | Oct 17, 2022 | A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions before 15.1.6, all versions starting... |
| CVE-2022-2908 | MEDIUM | 4.3 | 0.9% | Oct 17, 2022 | A potential DoS vulnerability was discovered in Gitlab CE/EE versions starting from 10.7 before 15.1.5, all versions sta... |
| CVE-2022-2884 | CRITICAL | 9.9 | 75.7% | Oct 17, 2022 | A vulnerability in GitLab CE/EE affecting all versions from 11.3.4 prior to 15.1.5, 15.2 to 15.2.3, 15.3 to 15.3 to 15.3... |
| CVE-2022-2865 | MEDIUM | 4.8 | 0.7% | Oct 17, 2022 | A cross-site scripting issue has been discovered in GitLab CE/EE affecting all versions before 15.1.6, 15.2 to 15.2.4 an... |
| CVE-2022-2630 | MEDIUM | 4.3 | 0.6% | Oct 17, 2022 | An improper access control issue in GitLab CE/EE affecting all versions starting from 15.2 before 15.2.4, all versions f... |
| CVE-2022-2592 | MEDIUM | 6.5 | 1.0% | Oct 17, 2022 | A lack of length validation in Snippet descriptions in GitLab CE/EE affecting all versions prior to 15.1.6, 15.2 prior t... |
| CVE-2022-2533 | HIGH | 7.4 | 0.7% | Oct 17, 2022 | An issue has been discovered in GitLab affecting all versions starting from 12.10 before 15.1.6, all versions starting f... |
| CVE-2022-2527 | HIGH | 8 | 0.8% | Oct 17, 2022 | An issue in Incident Timelines has been discovered in GitLab CE/EE affecting all versions starting from 14.9 before 15.1... |
| CVE-2022-2455 | MEDIUM | 6.5 | 1.0% | Oct 17, 2022 | A business logic issue in the handling of large repositories in all versions of GitLab CE/EE from 10.0 before 15.1.6, al... |
| CVE-2022-2428 | HIGH | 7.3 | 0.8% | Oct 17, 2022 | A crafted tag in the Jupyter Notebook viewer in GitLab EE/CE affecting all versions before 15.1.6, 15.2 to 15.2.4, and 1... |
| CVE-2022-28291 | MEDIUM | 6.5 | 0.6% | Oct 17, 2022 | Insufficiently Protected Credentials: An authenticated user with debug privileges can retrieve stored Nessus policy cred... |
| CVE-2022-23771 | HIGH | 8.8 | 0.3% | Oct 17, 2022 | This vulnerability occurs in user accounts creation and deleteion related pages of IPTIME NAS products. The vulnerabilit... |
| CVE-2022-23770 | CRITICAL | 9.8 | 1.4% | Oct 17, 2022 | This vulnerability could allow a remote attacker to execute remote commands with improper validation of parameters of ce... |
| CVE-2022-23769 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Remote code execution vulnerability due to insufficient user privilege verification in reverseWall-MDS. Remote attackers... |
| CVE-2022-22128 | CRITICAL | 9.8 | 1.3% | Oct 17, 2022 | Tableau discovered a path traversal vulnerability affecting Tableau Server Administration Agent’s internal file transfer... |
| CVE-2022-0699 | CRITICAL | 9.8 | 1.2% | Oct 17, 2022 | A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases. This issue may allow an attack... |
| CVE-2022-42237 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | A SQL Injection issue in Merchandise Online Store v.1.0 allows an attacker to log in to the admin account. |
| CVE-2022-42171 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/saveParentControlInfo. |
| CVE-2022-42170 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formWifiWpsStart. |
| CVE-2022-42169 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/addWifiMacFilter. |
| CVE-2022-42168 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/fromSetIpMacBind. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now