2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-24746MEDIUM6.1Shopware is an open commerce platform based on the Symfony php Framework and the Vue javascript framework. In affected v...
CVE-2022-24745MEDIUM6.5Shopware is an open commerce platform based on the Symfony php Framework and the Vue javascript framework. In affected v...
CVE-2022-24744LOW3.5Shopware is an open commerce platform based on the Symfony php Framework and the Vue javascript framework. In affected v...
CVE-2022-24323MEDIUM5.9A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause a disruption of co...
CVE-2022-24322MEDIUM5.9A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause...
CVE-2022-24741MEDIUM6.5Nextcloud server is an open source, self hosted cloud style services platform. In affected versions an attacker can caus...
CVE-2022-24734HIGH7.2MyBB is a free and open source forum software. In affected versions the Admin CP's Settings management module does not v...
CVE-2022-24919MEDIUM4.4An authenticated user can create a link with reflected Javascript code inside it for graphs’ page and send it to other u...
CVE-2022-24918MEDIUM4.4An authenticated user can create a link with reflected Javascript code inside it for items’ page and send it to other us...
CVE-2022-24917MEDIUM4.4An authenticated user can create a link with reflected Javascript code inside it for services’ page and send it to other...
CVE-2022-24732HIGH8.8Maddy Mail Server is an open source SMTP compatible email server. Versions of maddy prior to 0.5.4 do not implement pass...
CVE-2022-24349MEDIUM4.4An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malic...
CVE-2022-22806CRITICAL9.8A CWE-294: Authentication Bypass by Capture-replay vulnerability exists that could cause an unauthenticated connection t...
CVE-2022-22805CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists that could cause ...
CVE-2022-22511MEDIUM5.4Various configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks. An authorized ...
CVE-2022-0715CRITICAL9.1A CWE-287: Improper Authentication vulnerability exists that could cause an attacker to arbitrarily change the behavior ...
CVE-2022-0022MEDIUM4.4Usage of a weak cryptographic algorithm in Palo Alto Networks PAN-OS software where the password hashes of administrator...
CVE-2022-24526MEDIUM6.1Visual Studio Code Spoofing Vulnerability
CVE-2022-24525HIGH7Windows Update Stack Elevation of Privilege Vulnerability
CVE-2022-24522MEDIUM6.5Skype Extension for Chrome Information Disclosure Vulnerability
CVE-2022-24520HIGH7.2Azure Site Recovery Remote Code Execution Vulnerability
CVE-2022-24519MEDIUM6.5Azure Site Recovery Elevation of Privilege Vulnerability
CVE-2022-24518MEDIUM6.5Azure Site Recovery Elevation of Privilege Vulnerability
CVE-2022-24517HIGH7.2Azure Site Recovery Remote Code Execution Vulnerability
CVE-2022-24515MEDIUM6.5Azure Site Recovery Elevation of Privilege Vulnerability

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now