| | CVE-2022-26501 | Veeam | critical | 9.8 | — | | Veeam Backup & Replication 10.x and 11.x has Incorrect Access Control (issue 1 of 2). | Mar 17, 2022 | Nov 3, 2025 |
| | CVE-2022-26504 | Veeam | high | 8.8 | — | | Improper authentication in Veeam Backup & Replication 9.5U3, 9.5U4,10.x and 11.x component used for … | Mar 17, 2022 | Nov 21, 2024 |
| | CVE-2022-24473 | Microsoft | high | 7.8 | 2.4%
| | Microsoft Excel Remote Code Execution Vulnerability | Apr 15, 2022 | May 19, 2026 |
| | CVE-2022-26901 | Microsoft | high | 7.8 | 0.8%
| | Microsoft Excel Remote Code Execution Vulnerability | Apr 15, 2022 | May 19, 2026 |
| | CVE-2022-20773 | Cisco | high | 7.5 | 1.1%
| | A vulnerability in the key-based SSH authentication mechanism of Cisco Umbrella Virtual Appliance (V… | Apr 21, 2022 | Jun 22, 2026 |
| | CVE-2022-20795 | Cisco | medium | 5.8 | 0.7%
| | A vulnerability in the implementation of the Datagram TLS (DTLS) protocol in Cisco Adaptive Security… | Apr 21, 2022 | Aug 11, 2026 |
| | CVE-2021-41992 | ForgeRock | high | 7.7 | — | | A misconfiguration of RSA in PingID Windows Login prior to 2.7 is vulnerable to pre-computed diction… | Apr 30, 2022 | Nov 21, 2024 |
| | CVE-2021-41993 | ForgeRock | medium | 6.6 | — | | A misconfiguration of RSA in PingID Android app prior to 1.19 is vulnerable to pre-computed dictiona… | Apr 30, 2022 | Nov 21, 2024 |
| | CVE-2021-41994 | ForgeRock | medium | 6.6 | — | | A misconfiguration of RSA in PingID iOS app prior to 1.19 is vulnerable to pre-computed dictionary a… | Apr 30, 2022 | Nov 21, 2024 |
| | CVE-2021-42001 | ForgeRock | high | 8.0 | — | | PingID Desktop prior to 1.7.3 has a misconfiguration in the encryption libraries which can lead to s… | Apr 30, 2022 | Nov 21, 2024 |
| | CVE-2022-23722 | ForgeRock | medium | 6.5 | — | | When a password reset mechanism is configured to use the Authentication API with an Authentication P… | May 2, 2022 | Nov 21, 2024 |
| | CVE-2022-23723 | ForgeRock | high | 7.7 | — | | An MFA bypass vulnerability exists in the PingFederate PingOne MFA Integration Kit when adapter HTML… | May 2, 2022 | Nov 21, 2024 |
| | CVE-2022-20715 | Cisco | high | 8.6 | 1.3%
| | A vulnerability in the remote access SSL VPN features of Cisco Adaptive Security Appliance (ASA) Sof… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20729 | Cisco | medium | 4.4 | 0.3%
| | A vulnerability in CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20730 | Cisco | medium | 4.0 | 0.9%
| | A vulnerability in the Security Intelligence feed feature of Cisco Firepower Threat Defense (FTD) So… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20742 | Cisco | high | 7.4 | 0.4%
| | A vulnerability in an IPsec VPN library of Cisco Adaptive Security Appliance (ASA) Software and Cisc… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20745 | Cisco | high | 8.6 | 1.4%
| | A vulnerability in the web services interface for remote access VPN features of Cisco Adaptive Secur… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20746 | Cisco | high | 8.6 | 1.3%
| | A vulnerability in the TCP proxy functionality of Cisco Firepower Threat Defense (FTD) Software coul… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20748 | Cisco | medium | 5.3 | 1.2%
| | A vulnerability in the local malware analysis process of Cisco Firepower Threat Defense (FTD) Softwa… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20751 | Cisco | high | 8.6 | 1.3%
| | A vulnerability in the Snort detection engine integration for Cisco Firepower Threat Defense (FTD) S… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20757 | Cisco | high | 8.6 | 1.2%
| | A vulnerability in the connection handling function in Cisco Firepower Threat Defense (FTD) Software… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20759 | Cisco | high | 8.8 | 29.2%
| | A vulnerability in the web services interface for remote access VPN features of Cisco Adaptive Secur… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20760 | Cisco | high | 8.6 | 1.6%
| | A vulnerability in the DNS inspection handler of Cisco Adaptive Security Appliance (ASA) Software an… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-20767 | Cisco | high | 8.6 | 1.6%
| | A vulnerability in the Snort rule evaluation function of Cisco Firepower Threat Defense (FTD) Softwa… | May 3, 2022 | Aug 11, 2026 |
| | CVE-2022-23724 | ForgeRock | medium | 6.4 | — | | Use of static encryption key material allows forging an authentication token to other users within a… | May 4, 2022 | Nov 21, 2024 |
| | CVE-2022-26934 | Microsoft | medium | 6.5 | 17.4%
| | Windows Graphics Component Information Disclosure Vulnerability | May 10, 2022 | May 19, 2026 |
| | CVE-2022-29107 | Microsoft | medium | 5.5 | 7.7%
| | Microsoft Office Security Feature Bypass Vulnerability | May 10, 2022 | May 19, 2026 |
| | CVE-2022-29109 | Microsoft | high | 7.8 | 2.4%
| | Microsoft Excel Remote Code Execution Vulnerability | May 10, 2022 | May 19, 2026 |
| | CVE-2022-29117 | Microsoft | high | 7.5 | 2.2%
| | .NET and Visual Studio Denial of Service Vulnerability | May 10, 2022 | May 27, 2026 |
| | CVE-2022-29145 | Microsoft | high | 7.5 | 4.8%
| | .NET and Visual Studio Denial of Service Vulnerability | May 10, 2022 | May 27, 2026 |
| | CVE-2022-23742 | Check Point | high | 7.8 | 0.1%
| | Check Point Endpoint Security Client for Windows versions earlier than E86.40 copy files for forensi… | May 12, 2022 | Jun 2, 2026 |
| | CVE-2022-25762 | Apache | high | 8.6 | 8.4%
| | If a web application sends a WebSocket message concurrently with the WebSocket connection closing wh… | May 13, 2022 | Aug 25, 2026 |
| | CVE-2022-22977 | VMware | high | 7.1 | 0.0%
| | VMware Tools for Windows(12.0.0, 11.x.y and 10.x.y) contains an XML External Entity (XXE) vulnerabil… | May 24, 2022 | Jun 2, 2026 |
| | CVE-2022-22576 | Splunk | high | 8.1 | 0.3%
| | An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might a… | May 26, 2022 | May 27, 2026 |
| | CVE-2022-30190 | Microsoft | high | 7.8 | 99.4%
| ⚠ KEV | A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calli… | Jun 1, 2022 | Aug 6, 2026 |
| | CVE-2022-27774 | Splunk | medium | 5.7 | 0.3%
| | An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 … | Jun 2, 2022 | May 27, 2026 |
| | CVE-2022-27775 | Splunk | high | 7.5 | 0.2%
| | An information disclosure vulnerability exists in curl 7.65.0 to 7.82.0 are vulnerable that by using… | Jun 2, 2022 | May 27, 2026 |
| | CVE-2022-27781 | Splunk | high | 7.5 | 0.1%
| | libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returne… | Jun 2, 2022 | May 27, 2026 |
| | CVE-2022-27782 | Splunk | high | 7.5 | 0.5%
| | libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been ch… | Jun 2, 2022 | May 27, 2026 |
| | CVE-2022-32156 | Splunk | high | 8.1 | 0.2%
| | In Splunk Enterprise and Universal Forwarder versions before 9.0, the Splunk command-line interface … | Jun 15, 2022 | Feb 25, 2026 |
| | CVE-2021-41995 | ForgeRock | high | 7.7 | — | | A misconfiguration of RSA in PingID Mac Login prior to 1.1 is vulnerable to pre-computed dictionary … | Jun 30, 2022 | Nov 21, 2024 |
| | CVE-2022-23717 | ForgeRock | medium | 5.0 | — | | PingID Windows Login prior to 2.8 is vulnerable to a denial of service condition on local machines w… | Jun 30, 2022 | Nov 21, 2024 |
| | CVE-2022-23718 | ForgeRock | high | 7.6 | — | | PingID Windows Login prior to 2.8 uses known vulnerable components that can lead to remote code exec… | Jun 30, 2022 | Nov 21, 2024 |
| | CVE-2022-23719 | ForgeRock | high | 7.2 | — | | PingID Windows Login prior to 2.8 does not authenticate communication with a local Java service used… | Jun 30, 2022 | Nov 21, 2024 |
| | CVE-2022-23720 | ForgeRock | high | 7.5 | — | | PingID Windows Login prior to 2.8 does not alert or halt operation if it has been provisioned with t… | Jun 30, 2022 | Nov 21, 2024 |
| | CVE-2022-23725 | ForgeRock | high | 7.7 | — | | PingID Windows Login prior to 2.8 does not properly set permissions on the Windows Registry entries … | Jun 30, 2022 | Nov 21, 2024 |
| | CVE-2022-32225 | Veeam | medium | 6.1 | — | | A reflected DOM-Based XSS vulnerability has been discovered in the Help directory of Veeam Managemen… | Jul 14, 2022 | Nov 21, 2024 |
| | CVE-2022-34169 | Apache | high | 7.5 | 11.0%
| | The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing mali… | Jul 19, 2022 | May 27, 2026 |
| | CVE-2022-35737 | Splunk | high | 7.5 | 51.9%
| | SQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-bounds overflow if billions of … | Aug 3, 2022 | Feb 13, 2026 |
| | CVE-2022-36124 | Apache | high | 7.5 | 1.3%
| | It is possible for a Reader to consume memory beyond the allowed constraints and thus lead to out of… | Aug 9, 2022 | Jun 23, 2026 |