2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-25069 | CRITICAL | 9.6 | 1.8% | Mar 5, 2022 | Mark Text v0.16.3 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allows attackers ... |
| CVE-2022-25312 | CRITICAL | 9.1 | 2.7% | Mar 5, 2022 | An XML external entity (XXE) injection vulnerability was discovered in the Any23 RDFa XSLTStylesheet extractor and is kn... |
| CVE-2022-25106 | MEDIUM | 5.5 | 8.6% | Mar 4, 2022 | D-Link DIR-859 v1.05 was discovered to contain a stack-based buffer overflow via the function genacgi_main. This vulnera... |
| CVE-2022-23915 | HIGH | 8.8 | 2.9% | Mar 4, 2022 | The package weblate from 0 and before 4.11.1 are vulnerable to Remote Code Execution (RCE) via argument injection when u... |
| CVE-2022-26484 | MEDIUM | 4.9 | 2.6% | Mar 4, 2022 | An issue was discovered in Veritas InfoScale Operations Manager (VIOM) before 7.4.2 Patch 600 and 8.x before 8.0.0 Patch... |
| CVE-2022-26483 | MEDIUM | 4.8 | 0.4% | Mar 4, 2022 | An issue was discovered in Veritas InfoScale Operations Manager (VIOM) before 7.4.2 Patch 600 and 8.x before 8.0.0 Patch... |
| CVE-2022-0855 | MEDIUM | 6.1 | 1.0% | Mar 4, 2022 | Improper Resolution of Path Equivalence in GitHub repository microweber-dev/whmcs_plugin prior to 0.0.4. |
| CVE-2022-26318 | CRITICAL | 9.8 | 78.3% | Mar 4, 2022 | On WatchGuard Firebox and XTM appliances, an unauthenticated user can execute arbitrary code, aka FBX-22786. This vulner... |
| CVE-2022-23233 | HIGH | 7.5 | 0.9% | Mar 4, 2022 | StorageGRID (formerly StorageGRID Webscale) versions prior to 11.6.0 are susceptible to a vulnerability which when succe... |
| CVE-2022-23232 | MEDIUM | 4.9 | 0.7% | Mar 4, 2022 | StorageGRID (formerly StorageGRID Webscale) versions prior to 11.6.0 are susceptible to a vulnerability which when succe... |
| CVE-2022-25623 | HIGH | 7.8 | 0.3% | Mar 4, 2022 | The Symantec Management Agent is susceptible to a privilege escalation vulnerability. A low privilege local account can ... |
| CVE-2022-24727 | — | — | — | Mar 4, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-23915. Reason: This candidate is a reservation d... |
| CVE-2022-21828 | HIGH | 7.2 | 3.7% | Mar 4, 2022 | A user with high privilege access to the Incapptic Connect web console can remotely execute code on the Incapptic Connec... |
| CVE-2022-26336 | MEDIUM | 5.5 | 1.5% | Mar 4, 2022 | A shortcoming in the HMEF package of poi-scratchpad (Apache POI) allows an attacker to cause an Out of Memory exception.... |
| CVE-2022-23729 | HIGH | 7.8 | 0.1% | Mar 4, 2022 | When the device is in factory state, it can be access the shell without adb authentication process. The LG ID is LVE-SMP... |
| CVE-2022-22946 | MEDIUM | 5.5 | 4.7% | Mar 4, 2022 | In spring cloud gateway versions prior to 3.1.1+ , applications that are configured to enable HTTP2 and no key store or ... |
| CVE-2022-23397 | MEDIUM | 6.1 | 0.9% | Mar 4, 2022 | The Cedar Gate EZ-NET portal 6.5.5 6.8.0 Internet portal has a call to display messages to users which does not properly... |
| CVE-2022-0839 | CRITICAL | 9.8 | 2.9% | Mar 4, 2022 | Improper Restriction of XML External Entity Reference in GitHub repository liquibase/liquibase prior to 4.8.0. |
| CVE-2022-26201 | CRITICAL | 9.8 | 1.5% | Mar 4, 2022 | Victor CMS v1.0 was discovered to contain a SQL injection vulnerability. |
| CVE-2022-0832 | MEDIUM | 5.4 | 66.6% | Mar 4, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.3.3. |
| CVE-2022-0831 | MEDIUM | 5.4 | 1.3% | Mar 4, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.3.3. |
| CVE-2022-23328 | HIGH | 7.5 | 1.8% | Mar 4, 2022 | A design flaw in all versions of Go-Ethereum allows an attacker node to send 5120 pending transactions of a high gas pri... |
| CVE-2022-23327 | HIGH | 7.5 | 1.8% | Mar 4, 2022 | A design flaw in Go-Ethereum 1.10.12 and older versions allows an attacker node to send 5120 future transactions with a ... |
| CVE-2022-0752 | MEDIUM | 6.1 | 1.0% | Mar 4, 2022 | Cross-site Scripting (XSS) - Generic in GitHub repository hestiacp/hestiacp prior to 1.5.9. |
| CVE-2022-0848 | CRITICAL | 9.8 | 35.4% | Mar 4, 2022 | OS Command Injection in GitHub repository part-db/part-db prior to 0.5.11. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now