2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-48538MEDIUM5.3In Cacti 1.2.19, there is an authentication bypass in the web login functionality because of improper validation in the ...
CVE-2022-48065MEDIUM5.5GNU Binutils before 2.40 was discovered to contain a memory leak vulnerability var the function find_abstract_instance i...
CVE-2022-48064MEDIUM5.5GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function bfd_dw...
CVE-2022-48063MEDIUM5.5GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function load_s...
CVE-2022-47022MEDIUM4.7An issue was discovered in open-mpi hwloc 2.1.0 allows attackers to cause a denial of service or other unspecified impac...
CVE-2022-47011MEDIUM5.5An issue was discovered function parse_stab_struct_fields in stabs.c in Binutils 2.34 thru 2.38, allows attackers to cau...
CVE-2022-47010MEDIUM5.5An issue was discovered function pr_function_type in prdbg.c in Binutils 2.34 thru 2.38, allows attackers to cause a den...
CVE-2022-47008MEDIUM5.5An issue was discovered function make_tempdir, and make_tempname in bucomm.c in Binutils 2.34 thru 2.38, allows attacker...
CVE-2022-47007MEDIUM5.5An issue was discovered function stab_demangle_v3_arg in stabs.c in Binutils 2.34 thru 2.38, allows attackers to cause a...
CVE-2022-45582MEDIUM6.1Open Redirect vulnerability in Horizon Web Dashboard 19.4.0 thru 20.1.4 via the success_url parameter.
CVE-2022-44730MEDIUM4.4Server-Side Request Forgery (SSRF) vulnerability in Apache Software Foundation Apache XML Graphics Batik.This issue affe...
CVE-2022-44215MEDIUM6.1There is an open redirect vulnerability in Titan FTP server 19.0 and below. Users are redirected to any target URL.
CVE-2022-41444MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Cacti 1.2.21 via crafted POST request to graphs_new.php.
CVE-2022-40090MEDIUM6.5An issue was discovered in function TIFFReadDirectory libtiff before 4.4.0 allows attackers to cause a denial of service...
CVE-2022-38349MEDIUM6.5An issue was discovered in Poppler 22.08.0. There is a reachable assertion in Object.h, will lead to denial of service b...
CVE-2022-37052MEDIUM6.5A reachable Object::getString assertion in Poppler 22.07.0 allows attackers to cause a denial of service due to a failur...
CVE-2022-37051MEDIUM6.5An issue was discovered in Poppler 22.07.0. There is a reachable abort which leads to denial of service because the main...
CVE-2022-37050MEDIUM6.5In Poppler 22.07.0, PDFDoc::savePageAs in PDFDoc.c callows attackers to cause a denial-of-service (application crashes w...
CVE-2022-35206MEDIUM5.5Null pointer dereference vulnerability in Binutils readelf 2.38.50 via function read_and_display_attr_value in file dwar...
CVE-2022-35205MEDIUM5.5An issue was discovered in Binutils readelf 2.38.50, reachable assertion failure in function display_debug_names allows ...
CVE-2022-29654MEDIUM5.5Buffer overflow vulnerability in quote_for_pmake in asm/nasm.c in nasm before 2.15.05 allows attackers to cause a denial...
CVE-2022-4782MEDIUM5.4The ClickFunnels WordPress plugin through 3.1.1 does not validate and escape one of its shortcode attributes, which coul...
CVE-2022-46725MEDIUM4.3A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation. This issue is...
CVE-2022-46722MEDIUM5.5A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13. An app may be able to modify ...
CVE-2022-26699MEDIUM5.5A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13. An app may be able ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now