2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26295 | MEDIUM | 5.4 | 0.6% | Mar 16, 2022 | A stored cross-site scripting (XSS) vulnerability in /ptms/?page=user of Online Project Time Management System v1.0 allo... |
| CVE-2022-26293 | CRITICAL | 9.8 | 2.2% | Mar 16, 2022 | Online Project Time Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter ... |
| CVE-2022-23610 | HIGH | 8.1 | 0.7% | Mar 16, 2022 | wire-server provides back end services for Wire, an open source messenger. In versions of wire-server prior to the 2022-... |
| CVE-2022-24729 | HIGH | 7.5 | 2.4% | Mar 16, 2022 | CKEditor4 is an open source what-you-see-is-what-you-get HTML editor. CKEditor4 prior to version 4.18.0 contains a vulne... |
| CVE-2022-24728 | MEDIUM | 5.4 | 1.2% | Mar 16, 2022 | CKEditor4 is an open source what-you-see-is-what-you-get HTML editor. A vulnerability has been discovered in the core HT... |
| CVE-2022-23812 | CRITICAL | 9.8 | 4.2% | Mar 16, 2022 | This affects the package node-ipc from 10.1.1 and before 10.1.3. This package contains malicious code, that targets user... |
| CVE-2022-21164 | HIGH | 7.5 | 1.3% | Mar 16, 2022 | The package node-lmdb before 0.9.7 are vulnerable to Denial of Service (DoS) when defining a non-invokable ToString valu... |
| CVE-2022-26660 | HIGH | 7.5 | 0.6% | Mar 16, 2022 | RunAsSpc 4.0 uses a universal and recoverable encryption key. In possession of a file encrypted by RunAsSpc, an attacker... |
| CVE-2022-26354 | LOW | 3.2 | 0.4% | Mar 16, 2022 | A flaw was found in the vhost-vsock device of QEMU. In case of error, an invalid element was not detached from the virtq... |
| CVE-2022-26353 | HIGH | 7.5 | 2.7% | Mar 16, 2022 | A flaw was found in the virtio-net device of QEMU. This flaw was inadvertently introduced with the fix for CVE-2021-3748... |
| CVE-2022-25252 | HIGH | 7.5 | 1.5% | Mar 16, 2022 | When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) when re... |
| CVE-2022-25251 | CRITICAL | 9.8 | 1.8% | Mar 16, 2022 | When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) may all... |
| CVE-2022-25250 | HIGH | 7.5 | 1.6% | Mar 16, 2022 | When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) may all... |
| CVE-2022-25249 | HIGH | 7.5 | 2.4% | Mar 16, 2022 | When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) (disreg... |
| CVE-2022-25248 | MEDIUM | 5.3 | 0.9% | Mar 16, 2022 | When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) supplie... |
| CVE-2022-25247 | CRITICAL | 9.8 | 3.9% | Mar 16, 2022 | Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) may allow an attacker to send certain com... |
| CVE-2022-25246 | HIGH | 8.8 | 1.7% | Mar 16, 2022 | Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) uses hard-coded credentials for its Ultra... |
| CVE-2022-23234 | MEDIUM | 5.5 | 0.2% | Mar 16, 2022 | SnapCenter versions prior to 4.5 are susceptible to a vulnerability which could allow a local authenticated attacker to ... |
| CVE-2022-0982 | CRITICAL | 9.8 | 1.2% | Mar 16, 2022 | The telnet_input_char function in opt/src/accel-pppd/cli/telnet.c suffers from a memory corruption vulnerability, whereb... |
| CVE-2022-0959 | MEDIUM | 6.5 | 0.9% | Mar 16, 2022 | A malicious, but authorised and authenticated user can construct an HTTP request using their existing CSRF token and ses... |
| CVE-2022-0918 | HIGH | 7.5 | 5.9% | Mar 16, 2022 | A vulnerability was discovered in the 389 Directory Server that allows an unauthenticated attacker with network access t... |
| CVE-2022-0811 | HIGH | 8.8 | 18.6% | Mar 16, 2022 | A flaw was found in CRI-O in the way it set kernel options for a pod. This issue allows anyone with rights to deploy a p... |
| CVE-2022-24751 | HIGH | 7.4 | 0.9% | Mar 16, 2022 | Zulip is an open source group chat application. Starting with version 4.0 and prior to version 4.11, Zulip is vulnerable... |
| CVE-2022-0986 | MEDIUM | 6.1 | 0.9% | Mar 16, 2022 | Reflected Cross-site Scripting (XSS) Vulnerability in GitHub repository hestiacp/hestiacp prior to 1.5.11. |
| CVE-2022-0705 | MEDIUM | 5.4 | 0.5% | Mar 16, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.4.0. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now