2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-46089 | MEDIUM | 6.1 | 0.4% | Mar 7, 2024 | Cross Site Scripting (XSS) vulnerability in the add-airline form of Online Flight Booking Management System v1.0 allows ... |
| CVE-2022-22399 | MEDIUM | 6.5 | 0.4% | Mar 5, 2024 | IBM Aspera Faspex 5.0.0 and 5.0.1 is vulnerable to HTTP header injection, caused by improper validation of input by the ... |
| CVE-2022-46088 | MEDIUM | 6.1 | 0.4% | Mar 5, 2024 | Online Flight Booking Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via th... |
| CVE-2022-48630 | MEDIUM | 5.5 | 0.2% | Mar 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - fix infinite loop on requests no... |
| CVE-2022-48629 | MEDIUM | 5.5 | 0.4% | Mar 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - ensure buffer for generate is co... |
| CVE-2022-43880 | MEDIUM | 4.4 | 0.2% | Mar 3, 2024 | IBM QRadar WinCollect Agent 10.0 through 10.1.2 could allow a privileged user to cause a denial of service. IBM X-Force... |
| CVE-2022-48628 | MEDIUM | 5.5 | 0.2% | Mar 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: ceph: drop messages from MDS when unmounting When ... |
| CVE-2022-48627 | MEDIUM | 5.5 | 0.3% | Mar 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: vt: fix memory overlapping when deleting chars in t... |
| CVE-2022-36677 | MEDIUM | 6.1 | 0.5% | Feb 29, 2024 | Obsidian Mind Map v1.1.0 allows attackers to execute arbitrary code via a crafted payload injected into an uploaded docu... |
| CVE-2022-34357 | MEDIUM | 6.5 | 1.2% | Feb 26, 2024 | IBM Cognos Analytics Mobile Server 11.1.7, 11.2.4, and 12.0.0 is vulnerable to Denial of Service due to due to weak or a... |
| CVE-2022-45179 | MEDIUM | 5.4 | 0.4% | Feb 21, 2024 | An issue was discovered in LIVEBOX Collaboration vDesk through v031. A basic XSS vulnerability exists under the /api/v1/... |
| CVE-2022-45169 | MEDIUM | 5.4 | 0.3% | Feb 21, 2024 | An issue was discovered in LIVEBOX Collaboration vDesk through v031. A URL Redirection to an Untrusted Site (Open Redire... |
| CVE-2022-45320 | MEDIUM | 6.3 | 0.5% | Feb 20, 2024 | Liferay Portal before 7.4.3.16 and Liferay DXP before 7.2 fix pack 19, 7.3 before update 6, and 7.4 before update 16 all... |
| CVE-2022-41737 | MEDIUM | 6.5 | 0.1% | Feb 17, 2024 | IBM Storage Scale Container Native Storage Access 5.1.2.1 through 5.1.7.0 could allow a local attacker to initiate conne... |
| CVE-2022-23093 | MEDIUM | 6.5 | 2.4% | Feb 15, 2024 | ping reads raw IP packets from the network to process responses in the pr_pack() function. As part of processing a resp... |
| CVE-2022-23091 | MEDIUM | 4 | 0.2% | Feb 15, 2024 | A particular case of memory sharing is mishandled in the virtual memory system. This is very similar to SA-21:08.vm, bu... |
| CVE-2022-23089 | MEDIUM | 4.7 | 0.2% | Feb 15, 2024 | When dumping core and saving process information, proc_getargv() might return an sbuf which have a sbuf_len() of 0 or -1... |
| CVE-2022-48220 | MEDIUM | 6.4 | 0.3% | Feb 14, 2024 | Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which ... |
| CVE-2022-48219 | MEDIUM | 6.4 | 0.3% | Feb 14, 2024 | Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which ... |
| CVE-2022-22506 | MEDIUM | 4.6 | 0.3% | Feb 12, 2024 | IBM Robotic Process Automation 21.0.2 contains a vulnerability that could allow user ids may be exposed across tenants. ... |
| CVE-2022-34311 | MEDIUM | 4.3 | 0.4% | Feb 12, 2024 | IBM CICS TX Standard and Advanced 11.1 could allow a user with physical access to the web browser to gain access to the ... |
| CVE-2022-38714 | MEDIUM | 4.9 | 0.6% | Feb 12, 2024 | IBM DataStage on Cloud Pak for Data 4.0.6 to 4.5.2 stores sensitive credential information that can be read by a privile... |
| CVE-2022-40744 | MEDIUM | 5.4 | 0.3% | Feb 2, 2024 | IBM Aspera Faspex 5.0.6 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary... |
| CVE-2022-4964 | MEDIUM | 5.5 | 0.3% | Jan 24, 2024 | Ubuntu's pipewire-pulse in snap grants microphone access even when the snap interface for audio-record is not set. |
| CVE-2022-47160 | MEDIUM | 6.5 | 0.6% | Jan 19, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wpmet Wp Social Login and Register Social Co... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now