2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-45168MEDIUM6.5An issue was discovered in LIVEBOX Collaboration vDesk through v018. A Bypass of Two-Factor Authentication can occur und...
CVE-2022-4968MEDIUM6.5netplan leaks the private key of wireguard to local users. Versions after 1.0 are not affected.
CVE-2022-28658MEDIUM5.5Apport argument parsing mishandles filename splitting on older kernels resulting in argument spoofing
CVE-2022-28656MEDIUM5.5is_closing_session() allows users to consume RAM in the Apport process
CVE-2022-28654MEDIUM5.5is_closing_session() allows users to fill up apport.log
CVE-2022-28652MEDIUM5.5~/.config/apport/settings parsing is vulnerable to "billion laughs" attack
CVE-2022-25038MEDIUM6.1wanEditor v4.7.11 was discovered to contain a cross-site scripting (XSS) vulnerability via the video upload function.
CVE-2022-25037MEDIUM5.4An issue in wanEditor v4.7.11 and fixed in v.4.7.12 and v.5 was discovered to contain a cross-site scripting (XSS) vulne...
CVE-2022-43575MEDIUM5.4IBM Aspera Console 3.4.0 through 3.4.2 PL5 is vulnerable to cross-site scripting. This vulnerability allows users to emb...
CVE-2022-43384MEDIUM5.4IBM Aspera Console 3.4.0 through 3.4.2 PL5 is vulnerable to cross-site scripting. This vulnerability allows users to emb...
CVE-2022-4969MEDIUM5.3A vulnerability, which was classified as critical, has been found in bwoodsend rockhopper up to 0.1.2. Affected by this ...
CVE-2022-48710MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix a possible null pointer dereference...
CVE-2022-48709MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ice: switch: fix potential memleak in ice_add_adv_r...
CVE-2022-48708MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: pinctrl: single: fix potential NULL dereference Ad...
CVE-2022-48707MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: cxl/region: Fix null pointer dereference for resett...
CVE-2022-48706MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: vdpa: ifcvf: Do proper cleanup if IFCVF init fails ...
CVE-2022-45374MEDIUM6.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in YARPP allows PHP Local F...
CVE-2022-45070MEDIUM5.3Missing Authorization vulnerability in FmeAddons Conditional Checkout Fields for WooCommerce.This issue affects Conditio...
CVE-2022-4967MEDIUM6.5strongSwan versions 5.9.2 through 5.9.5 are affected by authorization bypass through improper validation of certificate ...
CVE-2022-32506MEDIUM6.4An issue was discovered on certain Nuki Home Solutions devices. An attacker with physical access to the circuit board co...
CVE-2022-32502MEDIUM6.3An issue was discovered on certain Nuki Home Solutions devices. There is a buffer overflow over the encrypted token pars...
CVE-2022-43656MEDIUM5.5Bentley View FBX File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote ...
CVE-2022-43652MEDIUM5.5Bentley View SKP File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote atta...
CVE-2022-22364MEDIUM5.3IBM Cognos Controller 10.4.1, 10.4.2, and 11.0.0 is vulnerable to external service interaction attack, caused by imprope...
CVE-2022-48705MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921e: fix crash in chip reset fail ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now