2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-23675MEDIUM4.8A remote authenticated stored cross-site scripting (xss) vulnerability was discovered in Aruba ClearPass Policy Manager ...
CVE-2022-23673HIGH7.2A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10...
CVE-2022-23672HIGH7.2A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10...
CVE-2022-23671HIGH7.5A remote authenticated information disclosure vulnerability was discovered in Aruba ClearPass Policy Manager version(s):...
CVE-2022-23669HIGH8.8A remote authorization bypass vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10.4 and belo...
CVE-2022-22775MEDIUM5.4The Workspace client component of TIBCO Software Inc.'s TIBCO BPM Enterprise and TIBCO BPM Enterprise Distribution for T...
CVE-2022-22773MEDIUM5.4The REST API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server - Community Editi...
CVE-2022-1706MEDIUM6.5A vulnerability was found in Ignition where ignition configs are accessible from unprivileged containers in VMs running ...
CVE-2022-30072MEDIUM5.4WBCE CMS 1.5.2 is vulnerable to Cross Site Scripting (XSS) via \admin\pages\sections_save.php namesection2 parameters.
CVE-2022-30067MEDIUM5.5GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow. Through a crafted XCF file, the program will allocate for a ...
CVE-2022-29581HIGH7.8Improper Update of Reference Count vulnerability in net/sched of Linux Kernel allows local attacker to cause privilege e...
CVE-2022-22482MEDIUM6.5IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5 and 6.1.0.0 through 6.1.1.0 could allow an authenti...
CVE-2022-22475MEDIUM6.5IBM WebSphere Application Server Liberty and Open Liberty 17.0.0.3 through 22.0.0.5 are vulnerable to identity spoofing ...
CVE-2022-1769HIGH7.8Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974.
CVE-2022-1733HIGH7.8Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968.
CVE-2022-1116HIGH7.8Integer Overflow or Wraparound vulnerability in io_uring of Linux Kernel allows local attacker to cause memory corruptio...
CVE-2022-30073MEDIUM5.4WBCE CMS 1.5.2 is vulnerable to Cross Site Scripting (XSS) via /admin/users/save.php.
CVE-2022-30007HIGH7.2GXCMS V1.5 has a file upload vulnerability in the background. The vulnerability is the template management page. You can...
CVE-2022-24856HIGH7.5FlyteConsole is the web user interface for the Flyte platform. FlyteConsole prior to version 0.52.0 is vulnerable to ser...
CVE-2022-24108CRITICAL9.8The Skyoftech So Listing Tabs module 2.2.0 for OpenCart allows a remote attacker to inject a serialized PHP object via t...
CVE-2022-22484MEDIUM5.5IBM Spectrum Protect Operations Center 8.1.12 and 8.1.13 could allow a local attacker to obtain sensitive information, c...
CVE-2022-30972HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Storable Configs Plugin 1.0 and earlier allows attackers to...
CVE-2022-30971HIGH8.8Jenkins Storable Configs Plugin 1.0 and earlier does not configure its XML parser to prevent XML external entity (XXE) a...
CVE-2022-30970MEDIUM5.4Jenkins Autocomplete Parameter Plugin 1.1 and earlier references Dropdown Autocomplete parameter and Auto Complete Strin...
CVE-2022-30969HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Autocomplete Parameter Plugin 1.1 and earlier allows attack...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now