CVEs from 2022
Total
8,277
critical
critical 88
high
high 1,240
medium
medium 887
low
low 23
% Critical
1.1%
% with KEV
1.6%
% with exploit
1.6%
Top products
- jdk 116
- jre 109
- openjdk 100
- zulu 82
- graalvm 74
- cloud_secure_agent 35
- oncommand_insight 34
- cloud_insights_acquisition_unit 34
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2022-45809 | low | 3.7 | 3.7 | 3y ago | Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Ricard Torres Thumbs Rating.This issue affects Thumbs Rating: from n/a through 5.0.0. | |
| CVE-2022-21624 | low | 3.7 | 3.7 | 4y ago | Moderate: java-11-openjdk security and bug fix update | |
| CVE-2022-39399 | low | 3.7 | 3.7 | 4y ago | Moderate: java-11-openjdk security and bug fix update | |
| CVE-2022-21619 | low | 3.7 | 3.7 | 4y ago | Moderate: java-11-openjdk security and bug fix update | |
| CVE-2022-45819 | low | 3.5 | 3.5 | 2y ago | Missing Authorization vulnerability in Popup Maker Popup Maker allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Popup Maker: from n/a through 1.17.1. | |
| CVE-2022-24101 | low | 3.3 | 3.3 | 4y ago | Acrobat Reader DC versions 20.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affected by a use-after-free vulnerability that could lead to disclosure of sensit… | |
| CVE-2022-27227 | low | — | 2.5 | — | In PowerDNS Authoritative Server before 4.4.3, 4.5.x before 4.5.4, and 4.6.x before 4.6.1 and PowerDNS Recursor before 4.4.8, 4.5.x before 4.5.8, and 4.6.x before 4.6.1, insufficient validation of an… | |
| CVE-2022-29458 | low | — | 2.5 | 10mo ago | ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library. | |
| CVE-2022-45063 | low | — | 2.5 | 1y ago | Low: xterm security update | |
| CVE-2022-48554 | low | — | 2.5 | 2y ago | Low: file security update | |
| CVE-2022-40284 | low | — | 2.5 | 3y ago | Low: libguestfs-winsupport security update | |
| CVE-2022-35252 | low | — | 2.5 | 3y ago | Low: curl security update | |
| CVE-2022-28805 | low | — | 2.5 | 3y ago | Low: lua security update | |
| CVE-2022-1615 | low | — | 2.5 | 3y ago | Low: samba security, bug fix, and enhancement update | |
| CVE-2022-43552 | low | — | 2.5 | 3y ago | Low: curl security update | |
| CVE-2022-36227 | low | — | 2.5 | 3y ago | Low: libarchive security update | |
| CVE-2022-2211 | low | — | 2.5 | 4y ago | Low: virt-v2v security, bug fix, and enhancement update | |
| CVE-2022-1122 | low | — | 2.5 | 4y ago | Low: openjpeg2 security update | |
| CVE-2022-0897 | low | — | 2.5 | 4y ago | Low: libvirt security, bug fix, and enhancement update | |
| CVE-2022-24735 | low | — | 2.5 | 4y ago | Low: redis security and bug fix update | |
| CVE-2022-24736 | low | — | 2.5 | 4y ago | Low: redis security and bug fix update | |
| CVE-2022-23645 | low | — | 2.5 | 4y ago | Low: swtpm security and bug fix update | |
| CVE-2022-3358 | low | — | 2.5 | 4y ago | Low: openssl security and bug fix update |