2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-33325CRITICAL9.8Multiple command injection vulnerabilities exist in the web_server ajax endpoints functionalities of Robustel R1510 3.3....
CVE-2022-33314CRITICAL9.8Multiple command injection vulnerabilities exist in the web_server action endpoints functionalities of Robustel R1510 3....
CVE-2022-33313CRITICAL9.8Multiple command injection vulnerabilities exist in the web_server action endpoints functionalities of Robustel R1510 3....
CVE-2022-33312CRITICAL9.8Multiple command injection vulnerabilities exist in the web_server action endpoints functionalities of Robustel R1510 3....
CVE-2022-32585CRITICAL9.8A command execution vulnerability exists in the clish art2 functionality of Robustel R1510 3.3.0. A specially-crafted ne...
CVE-2022-2197CRITICAL9.8By using a specific credential string, an attacker with network access to the device’s web interface could circumvent th...
CVE-2022-28127CRITICAL9.1A data removal vulnerability exists in the web_server /action/remove/ API functionality of Robustel R1510 3.3.0. A speci...
CVE-2022-34818MEDIUM4.3Jenkins Failed Job Deactivator Plugin 1.2.1 and earlier does not perform permission checks in several views and HTTP end...
CVE-2022-34817MEDIUM4.3A cross-site request forgery (CSRF) vulnerability in Jenkins Failed Job Deactivator Plugin 1.2.1 and earlier allows atta...
CVE-2022-34816MEDIUM6.5Jenkins HPE Network Virtualization Plugin 1.0 stores passwords unencrypted in its global configuration file on the Jenki...
CVE-2022-34815MEDIUM4.3A cross-site request forgery (CSRF) vulnerability in Jenkins Request Rename Or Delete Plugin 1.1.0 and earlier allows at...
CVE-2022-34814MEDIUM4.3Jenkins Request Rename Or Delete Plugin 1.1.0 and earlier does not correctly perform a permission check in an HTTP endpo...
CVE-2022-34813MEDIUM4.3A missing permission check in Jenkins XPath Configuration Viewer Plugin 1.1.1 and earlier allows attackers with Overall/...
CVE-2022-34812MEDIUM4.3A cross-site request forgery (CSRF) vulnerability in Jenkins XPath Configuration Viewer Plugin 1.1.1 and earlier allows ...
CVE-2022-34811MEDIUM4.3A missing permission check in Jenkins XPath Configuration Viewer Plugin 1.1.1 and earlier allows attackers with Overall/...
CVE-2022-34810MEDIUM6.5A missing check in Jenkins RQM Plugin 2.8 and earlier allows attackers with Overall/Read permission to enumerate credent...
CVE-2022-34809MEDIUM6.5Jenkins RQM Plugin 2.8 and earlier stores a password unencrypted in its global configuration file on the Jenkins control...
CVE-2022-34808MEDIUM4.3Jenkins Cisco Spark Plugin 1.1.1 and earlier stores bearer tokens unencrypted in its global configuration file on the Je...
CVE-2022-34807MEDIUM6.5Jenkins Elasticsearch Query Plugin 1.2 and earlier stores a password unencrypted in its global configuration file on the...
CVE-2022-34806MEDIUM6.5Jenkins Jigomerge Plugin 0.9 and earlier stores passwords unencrypted in job config.xml files on the Jenkins controller ...
CVE-2022-34805MEDIUM6.5Jenkins Skype notifier Plugin 1.1.0 and earlier stores a password unencrypted in its global configuration file on the Je...
CVE-2022-34804MEDIUM4.3Jenkins OpsGenie Plugin 1.9 and earlier transmits API keys in plain text as part of the global Jenkins configuration for...
CVE-2022-34803MEDIUM4.3Jenkins OpsGenie Plugin 1.9 and earlier stores API keys unencrypted in its global configuration file and in job config.x...
CVE-2022-34802MEDIUM4.3Jenkins RocketChat Notifier Plugin 1.5.2 and earlier stores the login password and webhook token unencrypted in its glob...
CVE-2022-34801MEDIUM4.3Jenkins Build Notifications Plugin 1.5.0 and earlier transmits tokens in plain text as part of the global Jenkins config...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now