2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-0436MEDIUM5.5Path Traversal in GitHub repository gruntjs/grunt prior to 1.5.2.
CVE-2022-29052MEDIUM4.3Jenkins Google Compute Engine Plugin 4.3.8 and earlier stores private keys unencrypted in cloud agent config.xml files o...
CVE-2022-29051MEDIUM4.3Missing permission checks in Jenkins Publish Over FTP Plugin 1.16 and earlier allow attackers with Overall/Read permissi...
CVE-2022-29050HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Publish Over FTP Plugin 1.16 and earlier allows attackers t...
CVE-2022-29049MEDIUM5.4Jenkins promoted builds Plugin 873.v6149db_d64130 and earlier, except 3.10.1, does not validate the names of promotions ...
CVE-2022-29048MEDIUM4.3A cross-site request forgery (CSRF) vulnerability in Jenkins Subversion Plugin 2.15.3 and earlier allows attackers to co...
CVE-2022-29047MEDIUM5.3Jenkins Pipeline: Shared Groovy Libraries Plugin 564.ve62a_4eb_b_e039 and earlier, except 2.21.3, allows attackers able ...
CVE-2022-29046MEDIUM5.4Jenkins Subversion Plugin 2.15.3 and earlier does not escape the name and description of List Subversion tags (and more)...
CVE-2022-29045MEDIUM5.4Jenkins promoted builds Plugin 873.v6149db_d64130 and earlier, except 3.10.1, does not escape the name and description o...
CVE-2022-29044MEDIUM5.4Jenkins Node and Label parameter Plugin 1.10.3 and earlier does not escape the name and description of Node and Label pa...
CVE-2022-29043MEDIUM5.4Jenkins Mask Passwords Plugin 3.0 and earlier does not escape the name and description of Non-Stored Password parameters...
CVE-2022-29042MEDIUM5.4Jenkins Job Generator Plugin 1.22 and earlier does not escape the name and description of Generator Parameter and Genera...
CVE-2022-29041MEDIUM5.4Jenkins Jira Plugin 3.7 and earlier, except 3.6.1, does not escape the name and description of Jira Issue and Jira Relea...
CVE-2022-29040MEDIUM5.4Jenkins Git Parameter Plugin 0.9.15 and earlier does not escape the name and description of Git parameters on views disp...
CVE-2022-29039MEDIUM5.4Jenkins Gerrit Trigger Plugin 2.35.2 and earlier does not escape the name and description of Base64 Encoded String param...
CVE-2022-29038MEDIUM5.4Jenkins Extended Choice Parameter Plugin 346.vd87693c5a_86c and earlier does not escape the name and description of Exte...
CVE-2022-29037MEDIUM5.4Jenkins CVS Plugin 2.19 and earlier does not escape the name and description of CVS Symbolic Name parameters on views di...
CVE-2022-29036MEDIUM5.4Jenkins Credentials Plugin 1111.v35a_307992395 and earlier, except 1087.1089.v2f1b_9a_b_040e4, 1074.1076.v39c30cecb_0e2,...
CVE-2022-27419MEDIUM5.5rtl_433 21.12 was discovered to contain a stack overflow in the function acurite_00275rm_decode at /devices/acurite.c. T...
CVE-2022-27418HIGH7.8Tcpreplay v4.4.1 has a heap-based buffer overflow in do_checksum_math at /tcpedit/checksum.c.
CVE-2022-27416HIGH7.8Tcpreplay v4.4.1 was discovered to contain a double-free via __interceptor_free.
CVE-2022-27387HIGH7.5MariaDB Server v10.7 and below was discovered to contain a global buffer overflow in the component decimal_bin_size, whi...
CVE-2022-27386HIGH7.5MariaDB Server v10.7 and below was discovered to contain a segmentation fault via the component sql/sql_class.cc.
CVE-2022-27385HIGH7.5An issue in the component Used_tables_and_const_cache::used_tables_and_const_cache_join of MariaDB Server v10.7 and belo...
CVE-2022-27384HIGH7.5An issue in the component Item_subselect::init_expr_cache_tracker of MariaDB Server v10.6 and below was discovered to al...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now