2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-0353 | MEDIUM | 4.4 | 0.2% | Oct 25, 2023 | A denial of service vulnerability was reported in the Lenovo HardwareScanPlugin versions prior to 1.3.1.2 and Len... |
| CVE-2022-4943 | MEDIUM | 5.3 | 0.5% | Oct 20, 2023 | The miniOrange's Google Authenticator plugin for WordPress is vulnerable to authorization bypass due to a missing capabi... |
| CVE-2022-3622 | MEDIUM | 4.1 | 0.6% | Oct 20, 2023 | The Blog2Social plugin for WordPress is vulnerable to authorization bypass due to missing capability checks in versions... |
| CVE-2022-4954 | MEDIUM | 4.8 | 0.3% | Oct 20, 2023 | The Waiting: One-click countdowns plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown na... |
| CVE-2022-4712 | MEDIUM | 6.1 | 0.5% | Oct 20, 2023 | The WP Cerber Security plugin for WordPress is vulnerable to stored cross-site scripting via the log parameter when logg... |
| CVE-2022-25332 | MEDIUM | 4.1 | 0.1% | Oct 19, 2023 | The AES implementation in the Texas Instruments OMAP L138 (secure variants), present in mask ROM, suffers from a timing ... |
| CVE-2022-24400 | MEDIUM | 5.9 | 0.3% | Oct 19, 2023 | A flaw in the TETRA authentication procecure allows a MITM adversary that can predict the MS challenge RAND2 to set sess... |
| CVE-2022-3761 | MEDIUM | 5.9 | 0.7% | Oct 17, 2023 | OpenVPN Connect versions before 3.4.0.4506 (macOS) and OpenVPN Connect before 3.4.0.3100 (Windows) allows man-in-the-mid... |
| CVE-2022-43892 | MEDIUM | 5.3 | 0.3% | Oct 17, 2023 | IBM Security Verify Privilege On-Premises 11.5 does not validate, or incorrectly validates, a certificate which could d... |
| CVE-2022-43891 | MEDIUM | 5.3 | 0.5% | Oct 17, 2023 | IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information when a det... |
| CVE-2022-43893 | MEDIUM | 4.4 | 0.4% | Oct 17, 2023 | IBM Security Verify Privilege On-Premises 11.5 could allow a privileged user to cause by using a malicious payload. IB... |
| CVE-2022-43889 | MEDIUM | 5.3 | 0.5% | Oct 17, 2023 | IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information through an HTTP request that could ... |
| CVE-2022-22386 | MEDIUM | 5.9 | 0.5% | Oct 17, 2023 | IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information, caused by... |
| CVE-2022-22380 | MEDIUM | 4.3 | 0.2% | Oct 17, 2023 | IBM Security Verify Privilege On-Premises 11.5 could allow an attacker to spoof a trusted entity due to improperly vali... |
| CVE-2022-22384 | MEDIUM | 4.3 | 0.4% | Oct 17, 2023 | IBM Security Verify Privilege On-Premises 11.5 could allow an attacker to modify messages returned from the server due ... |
| CVE-2022-22377 | MEDIUM | 5.3 | 0.5% | Oct 17, 2023 | IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information, caused by ... |
| CVE-2022-48612 | MEDIUM | 6.1 | 0.4% | Oct 16, 2023 | A Universal Cross Site Scripting (UXSS) vulnerability in ClassLink OneClick Extension through 10.7 allows remote attacke... |
| CVE-2022-43868 | MEDIUM | 5.3 | 0.4% | Oct 14, 2023 | IBM Security Verify Access OIDC Provider could disclose directory information that could aid attackers in further attack... |
| CVE-2022-33161 | MEDIUM | 5.9 | 0.4% | Oct 14, 2023 | IBM Security Directory Server 6.4.0 could allow a remote attacker to obtain sensitive information, caused by the failure... |
| CVE-2022-44758 | MEDIUM | 5.3 | 0.3% | Oct 11, 2023 | BigFix Insights/IVR fixlet uses improper credential handling within certain fixlet content. An attacker can gain access... |
| CVE-2022-42451 | MEDIUM | 4.4 | 0.1% | Oct 11, 2023 | Certain credentials within the BigFix Patch Management Download Plug-ins are stored insecurely and could be exposed to a... |
| CVE-2022-48183 | MEDIUM | 6.8 | 0.3% | Oct 9, 2023 | A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism t... |
| CVE-2022-48182 | MEDIUM | 6.8 | 0.3% | Oct 9, 2023 | A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism t... |
| CVE-2022-3728 | MEDIUM | 6.8 | 0.3% | Oct 9, 2023 | A vulnerability was reported in ThinkPad T14s Gen 3 and X13 Gen3 that could cause the BIOS tamper detection mechanism t... |
| CVE-2022-36228 | MEDIUM | 6.5 | 0.3% | Oct 9, 2023 | Nokelock Smart padlock O1 Version 5.3.0 is vulnerable to Insecure Permissions. By sending a request, you can add any dev... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now