2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-28867 | MEDIUM | 5.4 | 0.4% | Jul 24, 2023 | An issue was discovered in Nokia NetAct 22 through the Administration of Measurements website section. A malicious user ... |
| CVE-2022-28865 | MEDIUM | 5.4 | 0.4% | Jul 24, 2023 | An issue was discovered in Nokia NetAct 22 through the Site Configuration Tool website section. A malicious user can cha... |
| CVE-2022-2127 | MEDIUM | 5.9 | 1.5% | Jul 20, 2023 | An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. Wh... |
| CVE-2022-40896 | MEDIUM | 5.5 | 0.5% | Jul 19, 2023 | A ReDoS issue was discovered in pygments/lexers/smithy.py in pygments through 2.15.0 via SmithyLexer. |
| CVE-2022-43908 | MEDIUM | 6.5 | 0.6% | Jul 19, 2023 | IBM Security Guardium 11.3 could allow an authenticated user to cause a denial of service due to improper input validat... |
| CVE-2022-47421 | MEDIUM | 4.8 | 0.3% | Jul 18, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Repute InfoSystems ARMember (free), Repute InfoSystems... |
| CVE-2022-30858 | MEDIUM | 6.5 | 0.5% | Jul 17, 2023 | An issue was discovered in ngiflib 0.4. There is SEGV in SDL_LoadAnimatedGif when use SDLaffgif. poc : ./SDLaffgif CA_fi... |
| CVE-2022-4023 | MEDIUM | 5.3 | 0.3% | Jul 17, 2023 | The 3DPrint WordPress plugin before 3.5.6.9 does not protect against CSRF attacks in the modified version of Tiny File M... |
| CVE-2022-42045 | MEDIUM | 6.7 | 0.6% | Jul 13, 2023 | Certain Zemana products are vulnerable to Arbitrary code injection. This affects Watchdog Anti-Malware 4.1.422 and Zeman... |
| CVE-2022-46651 | MEDIUM | 6.5 | 0.9% | Jul 12, 2023 | Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows an unauthorized actor to gain access t... |
| CVE-2022-48451 | MEDIUM | 4.1 | 0.1% | Jul 12, 2023 | In bluetooth service, there is a possible out of bounds write due to race condition. This could lead to local denial of... |
| CVE-2022-48450 | MEDIUM | 4.4 | 0.1% | Jul 12, 2023 | In bluetooth service, there is a possible missing params check. This could lead to local denial of service with System ... |
| CVE-2022-48521 | MEDIUM | 5.3 | 0.6% | Jul 11, 2023 | An issue was discovered in OpenDKIM through 2.10.3, and 2.11.x through 2.11.0-Beta2. It fails to keep track of ordinal n... |
| CVE-2022-29562 | MEDIUM | 5.3 | 0.6% | Jul 11, 2023 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2022-4361 | MEDIUM | 6.1 | 0.6% | Jul 7, 2023 | Keycloak, an open-source identity and access management solution, has a cross-site scripting (XSS) vulnerability in the ... |
| CVE-2022-48518 | MEDIUM | 5.5 | 0.1% | Jul 6, 2023 | Vulnerability of signature verification in the iaware system being initialized later than the time when the system broad... |
| CVE-2022-48509 | MEDIUM | 5.9 | 0.3% | Jul 6, 2023 | Race condition vulnerability due to multi-thread access to mutually exclusive resources in Huawei Share. Successful expl... |
| CVE-2022-4623 | MEDIUM | 5.4 | 0.4% | Jul 4, 2023 | The ND Shortcodes WordPress plugin before 7.0 does not validate and escape numerous of its shortcode attributes before o... |
| CVE-2022-23264 | MEDIUM | 4.7 | 0.7% | Jun 29, 2023 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2022-46408 | MEDIUM | 6.8 | 0.8% | Jun 29, 2023 | Ericsson Network Manager (ENM), versions prior to 22.1, contains a vulnerability in the application Network Connectivity... |
| CVE-2022-46407 | MEDIUM | 4.8 | 0.3% | Jun 29, 2023 | Ericsson Network Manager (ENM), versions prior to 22.2, contains a vulnerability in the REST endpoint “editprofile” wher... |
| CVE-2022-4143 | MEDIUM | 5.3 | 0.6% | Jun 28, 2023 | An issue has been discovered in GitLab affecting all versions starting from 15.7 before 15.8.5, from 15.9 before 15.9.4,... |
| CVE-2022-48505 | MEDIUM | 5.5 | 0.2% | Jun 28, 2023 | This issue was addressed with improved data protection. This issue is fixed in macOS Ventura 13. An app may be able to m... |
| CVE-2022-34352 | MEDIUM | 6.5 | 0.6% | Jun 27, 2023 | IBM QRadar SIEM 7.5.0 is vulnerable to information exposure allowing a delegated Admin tenant user with a specific doma... |
| CVE-2022-4115 | MEDIUM | 5.4 | 0.4% | Jun 27, 2023 | The Editorial Calendar WordPress plugin before 3.8.3 does not sanitise and escape its settings, allowing users with role... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now