2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48437 | MEDIUM | 5.3 | 0.4% | Apr 12, 2023 | An issue was discovered in x509/x509_verify.c in LibreSSL before 3.6.1, and in OpenBSD before 7.2 errata 001. x509_verif... |
| CVE-2022-43955 | MEDIUM | 6.1 | 0.6% | Apr 11, 2023 | An improper neutralization of input during web page generation [CWE-79] in the FortiWeb web interface 7.0.0 through 7.0.... |
| CVE-2022-43952 | MEDIUM | 5.4 | 0.4% | Apr 11, 2023 | An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiA... |
| CVE-2022-42477 | MEDIUM | 5.5 | 0.2% | Apr 11, 2023 | An improper input validation vulnerability [CWE-20] in FortiAnalyzer version 7.2.1 and below, version 7.0.6 and below, 6... |
| CVE-2022-42469 | MEDIUM | 4.3 | 0.4% | Apr 11, 2023 | A permissive list of allowed inputs vulnerability [CWE-183] in FortiGate version 7.2.3 and below, version 7.0.9 and belo... |
| CVE-2022-41330 | MEDIUM | 6.1 | 0.6% | Apr 11, 2023 | An improper neutralization of input during web page generation vulnerability ('Cross-site Scripting') [CWE-79] in Fortin... |
| CVE-2022-35850 | MEDIUM | 6.1 | 0.5% | Apr 11, 2023 | An improper neutralization of script-related HTML tags in a web page vulnerability [CWE-80] in FortiAuthenticator versio... |
| CVE-2022-27485 | MEDIUM | 6.5 | 0.6% | Apr 11, 2023 | A improper neutralization of special elements used in an sql command ('sql injection') vulnerability [CWE-89] in Fortine... |
| CVE-2022-3695 | MEDIUM | 6.1 | 0.4% | Apr 11, 2023 | Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.3.0.0, 9.2.0.4 and 8.3.0.27 allow a malicious URL... |
| CVE-2022-47468 | MEDIUM | 5.5 | 0.1% | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
| CVE-2022-47467 | MEDIUM | 5.5 | 0.1% | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
| CVE-2022-47466 | MEDIUM | 5.5 | 0.1% | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
| CVE-2022-47465 | MEDIUM | 5.5 | 0.1% | Apr 11, 2023 | In vdsp service, there is a missing permission check. This could lead to local denial of service in vdsp service. |
| CVE-2022-47464 | MEDIUM | 5.5 | 0.1% | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
| CVE-2022-47463 | MEDIUM | 5.5 | 0.1% | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
| CVE-2022-47362 | MEDIUM | 5.5 | 0.1% | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
| CVE-2022-47337 | MEDIUM | 5.5 | 0.1% | Apr 11, 2023 | In media service, there is a missing permission check. This could lead to local denial of service in media service. |
| CVE-2022-47336 | MEDIUM | 5.5 | 0.1% | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
| CVE-2022-47335 | MEDIUM | 5.5 | 0.1% | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
| CVE-2022-43293 | MEDIUM | 5.9 | 0.8% | Apr 11, 2023 | Wacom Driver 6.3.46-1 for Windows was discovered to contain an arbitrary file write vulnerability via the component \Wac... |
| CVE-2022-46703 | MEDIUM | 5.5 | 0.2% | Apr 10, 2023 | A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.7.2 and iPadOS 15.7.2, macOS Ventu... |
| CVE-2022-4827 | MEDIUM | 5.4 | 0.5% | Apr 10, 2023 | The WP Tiles WordPress plugin through 1.1.2 does not validate and escape some of its shortcode attributes before outputt... |
| CVE-2022-39048 | MEDIUM | 6.1 | 1.1% | Apr 10, 2023 | A XSS vulnerability was identified in the ServiceNow UI page assessment_redirect. To exploit this vulnerability, an atta... |
| CVE-2022-37462 | MEDIUM | 5.4 | 0.6% | Apr 10, 2023 | A stored Cross-Site Scripting (XSS) vulnerability in the Chat gadget in Upstream Works Agent Desktop for Cisco Finesse t... |
| CVE-2022-43309 | MEDIUM | 5.5 | 0.2% | Apr 7, 2023 | Supermicro X11SSL-CF HW Rev 1.01, BMC firmware v1.63 was discovered to contain insecure permissions. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now