2022 CVE Vulnerabilities

27,531 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-3060HIGH7.3Improper control of a resource identifier in Error Tracking in GitLab CE/EE affecting all versions from 12.7 allows an a...
CVE-2022-3031HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions before 15.1.6, all versions starting from 15.2 befor...
CVE-2022-3030MEDIUM4.3An improper access control issue in GitLab CE/EE affecting all versions starting before 15.1.6, all versions from 15.2 b...
CVE-2022-2992CRITICAL9.9A vulnerability in GitLab CE/EE affecting all versions from 11.10 prior to 15.1.6, 15.2 to 15.2.4, 15.3 to 15.3.2 allows...
CVE-2022-2931HIGH7.5A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions before 15.1.6, all versions starting...
CVE-2022-2908MEDIUM4.3A potential DoS vulnerability was discovered in Gitlab CE/EE versions starting from 10.7 before 15.1.5, all versions sta...
CVE-2022-2884CRITICAL9.9A vulnerability in GitLab CE/EE affecting all versions from 11.3.4 prior to 15.1.5, 15.2 to 15.2.3, 15.3 to 15.3 to 15.3...
CVE-2022-2865MEDIUM4.8A cross-site scripting issue has been discovered in GitLab CE/EE affecting all versions before 15.1.6, 15.2 to 15.2.4 an...
CVE-2022-2630MEDIUM4.3An improper access control issue in GitLab CE/EE affecting all versions starting from 15.2 before 15.2.4, all versions f...
CVE-2022-2592MEDIUM6.5A lack of length validation in Snippet descriptions in GitLab CE/EE affecting all versions prior to 15.1.6, 15.2 prior t...
CVE-2022-2533HIGH7.4An issue has been discovered in GitLab affecting all versions starting from 12.10 before 15.1.6, all versions starting f...
CVE-2022-2527HIGH8An issue in Incident Timelines has been discovered in GitLab CE/EE affecting all versions starting from 14.9 before 15.1...
CVE-2022-2455MEDIUM6.5A business logic issue in the handling of large repositories in all versions of GitLab CE/EE from 10.0 before 15.1.6, al...
CVE-2022-2428HIGH7.3A crafted tag in the Jupyter Notebook viewer in GitLab EE/CE affecting all versions before 15.1.6, 15.2 to 15.2.4, and 1...
CVE-2022-28291MEDIUM6.5Insufficiently Protected Credentials: An authenticated user with debug privileges can retrieve stored Nessus policy cred...
CVE-2022-23771HIGH8.8This vulnerability occurs in user accounts creation and deleteion related pages of IPTIME NAS products. The vulnerabilit...
CVE-2022-23770CRITICAL9.8This vulnerability could allow a remote attacker to execute remote commands with improper validation of parameters of ce...
CVE-2022-23769CRITICAL9.8Remote code execution vulnerability due to insufficient user privilege verification in reverseWall-MDS. Remote attackers...
CVE-2022-22128CRITICAL9.8Tableau discovered a path traversal vulnerability affecting Tableau Server Administration Agent’s internal file transfer...
CVE-2022-0699CRITICAL9.8A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases. This issue may allow an attack...
CVE-2022-42237CRITICAL9.8A SQL Injection issue in Merchandise Online Store v.1.0 allows an attacker to log in to the admin account.
CVE-2022-42171CRITICAL9.8Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/saveParentControlInfo.
CVE-2022-42170CRITICAL9.8Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formWifiWpsStart.
CVE-2022-42169CRITICAL9.8Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/addWifiMacFilter.
CVE-2022-42168CRITICAL9.8Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/fromSetIpMacBind.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now