2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-24746 | MEDIUM | 6.1 | 0.8% | Mar 9, 2022 | Shopware is an open commerce platform based on the Symfony php Framework and the Vue javascript framework. In affected v... |
| CVE-2022-24745 | MEDIUM | 6.5 | 0.5% | Mar 9, 2022 | Shopware is an open commerce platform based on the Symfony php Framework and the Vue javascript framework. In affected v... |
| CVE-2022-24744 | LOW | 3.5 | 0.5% | Mar 9, 2022 | Shopware is an open commerce platform based on the Symfony php Framework and the Vue javascript framework. In affected v... |
| CVE-2022-24323 | MEDIUM | 5.9 | 0.8% | Mar 9, 2022 | A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause a disruption of co... |
| CVE-2022-24322 | MEDIUM | 5.9 | 0.6% | Mar 9, 2022 | A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause... |
| CVE-2022-24741 | MEDIUM | 6.5 | 1.6% | Mar 9, 2022 | Nextcloud server is an open source, self hosted cloud style services platform. In affected versions an attacker can caus... |
| CVE-2022-24734 | HIGH | 7.2 | 77.7% | Mar 9, 2022 | MyBB is a free and open source forum software. In affected versions the Admin CP's Settings management module does not v... |
| CVE-2022-24919 | MEDIUM | 4.4 | 0.8% | Mar 9, 2022 | An authenticated user can create a link with reflected Javascript code inside it for graphs’ page and send it to other u... |
| CVE-2022-24918 | MEDIUM | 4.4 | 0.7% | Mar 9, 2022 | An authenticated user can create a link with reflected Javascript code inside it for items’ page and send it to other us... |
| CVE-2022-24917 | MEDIUM | 4.4 | 0.8% | Mar 9, 2022 | An authenticated user can create a link with reflected Javascript code inside it for services’ page and send it to other... |
| CVE-2022-24732 | HIGH | 8.8 | 0.4% | Mar 9, 2022 | Maddy Mail Server is an open source SMTP compatible email server. Versions of maddy prior to 0.5.4 do not implement pass... |
| CVE-2022-24349 | MEDIUM | 4.4 | 0.8% | Mar 9, 2022 | An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malic... |
| CVE-2022-22806 | CRITICAL | 9.8 | 12.3% | Mar 9, 2022 | A CWE-294: Authentication Bypass by Capture-replay vulnerability exists that could cause an unauthenticated connection t... |
| CVE-2022-22805 | CRITICAL | 9.8 | 11.7% | Mar 9, 2022 | A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists that could cause ... |
| CVE-2022-22511 | MEDIUM | 5.4 | 0.6% | Mar 9, 2022 | Various configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks. An authorized ... |
| CVE-2022-0715 | CRITICAL | 9.1 | 5.8% | Mar 9, 2022 | A CWE-287: Improper Authentication vulnerability exists that could cause an attacker to arbitrarily change the behavior ... |
| CVE-2022-0022 | MEDIUM | 4.4 | 0.1% | Mar 9, 2022 | Usage of a weak cryptographic algorithm in Palo Alto Networks PAN-OS software where the password hashes of administrator... |
| CVE-2022-24526 | MEDIUM | 6.1 | 1.6% | Mar 9, 2022 | Visual Studio Code Spoofing Vulnerability |
| CVE-2022-24525 | HIGH | 7 | 0.4% | Mar 9, 2022 | Windows Update Stack Elevation of Privilege Vulnerability |
| CVE-2022-24522 | MEDIUM | 6.5 | 2.1% | Mar 9, 2022 | Skype Extension for Chrome Information Disclosure Vulnerability |
| CVE-2022-24520 | HIGH | 7.2 | 2.3% | Mar 9, 2022 | Azure Site Recovery Remote Code Execution Vulnerability |
| CVE-2022-24519 | MEDIUM | 6.5 | 2.6% | Mar 9, 2022 | Azure Site Recovery Elevation of Privilege Vulnerability |
| CVE-2022-24518 | MEDIUM | 6.5 | 2.6% | Mar 9, 2022 | Azure Site Recovery Elevation of Privilege Vulnerability |
| CVE-2022-24517 | HIGH | 7.2 | 2.3% | Mar 9, 2022 | Azure Site Recovery Remote Code Execution Vulnerability |
| CVE-2022-24515 | MEDIUM | 6.5 | 2.6% | Mar 9, 2022 | Azure Site Recovery Elevation of Privilege Vulnerability |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now