2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-28867MEDIUM5.4An issue was discovered in Nokia NetAct 22 through the Administration of Measurements website section. A malicious user ...
CVE-2022-28865MEDIUM5.4An issue was discovered in Nokia NetAct 22 through the Site Configuration Tool website section. A malicious user can cha...
CVE-2022-2127MEDIUM5.9An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. Wh...
CVE-2022-40896MEDIUM5.5A ReDoS issue was discovered in pygments/lexers/smithy.py in pygments through 2.15.0 via SmithyLexer.
CVE-2022-43908MEDIUM6.5 IBM Security Guardium 11.3 could allow an authenticated user to cause a denial of service due to improper input validat...
CVE-2022-47421MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Repute InfoSystems ARMember (free), Repute InfoSystems...
CVE-2022-30858MEDIUM6.5An issue was discovered in ngiflib 0.4. There is SEGV in SDL_LoadAnimatedGif when use SDLaffgif. poc : ./SDLaffgif CA_fi...
CVE-2022-4023MEDIUM5.3The 3DPrint WordPress plugin before 3.5.6.9 does not protect against CSRF attacks in the modified version of Tiny File M...
CVE-2022-42045MEDIUM6.7Certain Zemana products are vulnerable to Arbitrary code injection. This affects Watchdog Anti-Malware 4.1.422 and Zeman...
CVE-2022-46651MEDIUM6.5Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows an unauthorized actor to gain access t...
CVE-2022-48451MEDIUM4.1In bluetooth service, there is a possible out of bounds write due to race condition. This could lead to local denial of...
CVE-2022-48450MEDIUM4.4In bluetooth service, there is a possible missing params check. This could lead to local denial of service with System ...
CVE-2022-48521MEDIUM5.3An issue was discovered in OpenDKIM through 2.10.3, and 2.11.x through 2.11.0-Beta2. It fails to keep track of ordinal n...
CVE-2022-29562MEDIUM5.3A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2022-4361MEDIUM6.1Keycloak, an open-source identity and access management solution, has a cross-site scripting (XSS) vulnerability in the ...
CVE-2022-48518MEDIUM5.5Vulnerability of signature verification in the iaware system being initialized later than the time when the system broad...
CVE-2022-48509MEDIUM5.9Race condition vulnerability due to multi-thread access to mutually exclusive resources in Huawei Share. Successful expl...
CVE-2022-4623MEDIUM5.4The ND Shortcodes WordPress plugin before 7.0 does not validate and escape numerous of its shortcode attributes before o...
CVE-2022-23264MEDIUM4.7Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2022-46408MEDIUM6.8Ericsson Network Manager (ENM), versions prior to 22.1, contains a vulnerability in the application Network Connectivity...
CVE-2022-46407MEDIUM4.8Ericsson Network Manager (ENM), versions prior to 22.2, contains a vulnerability in the REST endpoint “editprofile” wher...
CVE-2022-4143MEDIUM5.3An issue has been discovered in GitLab affecting all versions starting from 15.7 before 15.8.5, from 15.9 before 15.9.4,...
CVE-2022-48505MEDIUM5.5This issue was addressed with improved data protection. This issue is fixed in macOS Ventura 13. An app may be able to m...
CVE-2022-34352MEDIUM6.5 IBM QRadar SIEM 7.5.0 is vulnerable to information exposure allowing a delegated Admin tenant user with a specific doma...
CVE-2022-4115MEDIUM5.4The Editorial Calendar WordPress plugin before 3.8.3 does not sanitise and escape its settings, allowing users with role...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now