2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-46089MEDIUM6.1Cross Site Scripting (XSS) vulnerability in the add-airline form of Online Flight Booking Management System v1.0 allows ...
CVE-2022-22399MEDIUM6.5IBM Aspera Faspex 5.0.0 and 5.0.1 is vulnerable to HTTP header injection, caused by improper validation of input by the ...
CVE-2022-46088MEDIUM6.1Online Flight Booking Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via th...
CVE-2022-48630MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - fix infinite loop on requests no...
CVE-2022-48629MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - ensure buffer for generate is co...
CVE-2022-43880MEDIUM4.4IBM QRadar WinCollect Agent 10.0 through 10.1.2 could allow a privileged user to cause a denial of service. IBM X-Force...
CVE-2022-48628MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ceph: drop messages from MDS when unmounting When ...
CVE-2022-48627MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: vt: fix memory overlapping when deleting chars in t...
CVE-2022-36677MEDIUM6.1Obsidian Mind Map v1.1.0 allows attackers to execute arbitrary code via a crafted payload injected into an uploaded docu...
CVE-2022-34357MEDIUM6.5IBM Cognos Analytics Mobile Server 11.1.7, 11.2.4, and 12.0.0 is vulnerable to Denial of Service due to due to weak or a...
CVE-2022-45179MEDIUM5.4An issue was discovered in LIVEBOX Collaboration vDesk through v031. A basic XSS vulnerability exists under the /api/v1/...
CVE-2022-45169MEDIUM5.4An issue was discovered in LIVEBOX Collaboration vDesk through v031. A URL Redirection to an Untrusted Site (Open Redire...
CVE-2022-45320MEDIUM6.3Liferay Portal before 7.4.3.16 and Liferay DXP before 7.2 fix pack 19, 7.3 before update 6, and 7.4 before update 16 all...
CVE-2022-41737MEDIUM6.5IBM Storage Scale Container Native Storage Access 5.1.2.1 through 5.1.7.0 could allow a local attacker to initiate conne...
CVE-2022-23093MEDIUM6.5ping reads raw IP packets from the network to process responses in the pr_pack() function. As part of processing a resp...
CVE-2022-23091MEDIUM4A particular case of memory sharing is mishandled in the virtual memory system. This is very similar to SA-21:08.vm, bu...
CVE-2022-23089MEDIUM4.7When dumping core and saving process information, proc_getargv() might return an sbuf which have a sbuf_len() of 0 or -1...
CVE-2022-48220MEDIUM6.4Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which ...
CVE-2022-48219MEDIUM6.4Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which ...
CVE-2022-22506MEDIUM4.6IBM Robotic Process Automation 21.0.2 contains a vulnerability that could allow user ids may be exposed across tenants. ...
CVE-2022-34311MEDIUM4.3IBM CICS TX Standard and Advanced 11.1 could allow a user with physical access to the web browser to gain access to the ...
CVE-2022-38714MEDIUM4.9IBM DataStage on Cloud Pak for Data 4.0.6 to 4.5.2 stores sensitive credential information that can be read by a privile...
CVE-2022-40744MEDIUM5.4IBM Aspera Faspex 5.0.6 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary...
CVE-2022-4964MEDIUM5.5Ubuntu's pipewire-pulse in snap grants microphone access even when the snap interface for audio-record is not set.
CVE-2022-47160MEDIUM6.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wpmet Wp Social Login and Register Social Co...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now