2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-22320MEDIUM4.8IBM QRadar SIEM 7.3 and 7.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Ja...
CVE-2022-29898CRITICAL9.1On various RAD-ISM-900-EN-* devices by PHOENIX CONTACT an admin user could use the configuration file uploader in the We...
CVE-2022-29897CRITICAL9.1On various RAD-ISM-900-EN-* devices by PHOENIX CONTACT an admin user could use the traceroute utility integrated in the ...
CVE-2022-29613MEDIUM4.3Due to insufficient input validation, SAP Employee Self Service allows an authenticated attacker with user privileges to...
CVE-2022-29611HIGH8.8SAP NetWeaver Application Server for ABAP and ABAP Platform do not perform necessary authorization checks for an authent...
CVE-2022-29610MEDIUM5.4SAP NetWeaver Application Server ABAP allows an authenticated attacker to upload malicious files and delete (theme) data...
CVE-2022-28774MEDIUM5.5Under certain conditions, the SAP Host Agent logfile shows information which would otherwise be restricted.
CVE-2022-28214HIGH7.8During an update of SAP BusinessObjects Enterprise, Central Management Server (CMS) - versions 420, 430, authentication ...
CVE-2022-27656MEDIUM6.1The Web administration UI of SAP Web Dispatcher and the Internet Communication Manager (ICM) does not sufficiently encod...
CVE-2022-1623MEDIUM5.5LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:624, allowing attackers to cause a den...
CVE-2022-1622MEDIUM5.5LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a den...
CVE-2022-1545MEDIUM4.3It was possible to disclose details of confidential notes created via the API in Gitlab CE/EE affecting all versions fro...
CVE-2022-1510HIGH7.5An issue has been discovered in GitLab affecting all versions starting from 13.9 before 14.8.6, all versions starting fr...
CVE-2022-1460MEDIUM4.9An issue has been discovered in GitLab affecting all versions starting from 9.2 before 14.8.6, all versions starting fro...
CVE-2022-1433MEDIUM6.1An issue has been discovered in GitLab affecting all versions starting from 14.4 before 14.8.6, all versions starting fr...
CVE-2022-1428MEDIUM4.3An issue has been discovered in GitLab affecting all versions before 14.8.6, all versions starting from 14.9 before 14.9...
CVE-2022-1426LOW3.7An issue has been discovered in GitLab affecting all versions starting from 12.6 before 14.8.6, all versions starting fr...
CVE-2022-1406MEDIUM6.5Improper input validation in GitLab CE/EE affecting all versions from 8.12 prior to 14.8.6, all versions from 14.9.0 pri...
CVE-2022-1352MEDIUM5.3Due to an insecure direct object reference vulnerability in Gitlab EE/CE affecting all versions from 11.0 prior to 14.8....
CVE-2022-1124MEDIUM4.3An improper authorization issue has been discovered in GitLab CE/EE affecting all versions prior to 14.8.6, all versions...
CVE-2022-29978MEDIUM6.5There is a floating point exception error in sixel_encoder_do_resize, encoder.c:633 in libsixel img2sixel 1.8.6. Remote ...
CVE-2022-29977MEDIUM6.5There is an assertion failure error in stbi__jpeg_huff_decode, stb_image.h:1894 in libsixel img2sixel 1.8.6. Remote atta...
CVE-2022-29932HIGH7.5The HTTP Server in PRIMEUR SPAZIO 2.5.1.954 (File Transfer) allows an unauthenticated attacker to obtain sensitive data ...
CVE-2022-29009CRITICAL9.8Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Cyber Cafe Managem...
CVE-2022-29008MEDIUM6.5An insecure direct object reference (IDOR) vulnerability in the viewid parameter of Bus Pass Management System v1.0 allo...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now