2022 CVE Vulnerabilities
27,554 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-0729 | HIGH | 8.8 | 1.6% | Feb 23, 2022 | Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4440. |
| CVE-2022-0727 | MEDIUM | 5.4 | 0.7% | Feb 23, 2022 | Improper Access Control in GitHub repository chocobozzz/peertube prior to 4.1.0. |
| CVE-2022-0726 | MEDIUM | 5.4 | 0.7% | Feb 23, 2022 | Missing Authorization in GitHub repository chocobozzz/peertube prior to 4.1.0. |
| CVE-2022-0724 | MEDIUM | 6.5 | 1.3% | Feb 23, 2022 | Insecure Storage of Sensitive Information in GitHub repository microweber/microweber prior to 1.3. |
| CVE-2022-0721 | MEDIUM | 6.5 | 1.4% | Feb 23, 2022 | Insertion of Sensitive Information Into Debugging Code in GitHub repository microweber/microweber prior to 1.3. |
| CVE-2022-0719 | MEDIUM | 5.4 | 0.9% | Feb 23, 2022 | Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.3. |
| CVE-2022-0736 | HIGH | 7.5 | 1.6% | Feb 23, 2022 | Insecure Temporary File in GitHub repository mlflow/mlflow prior to 1.23.1. |
| CVE-2022-0717 | CRITICAL | 9.1 | 0.9% | Feb 23, 2022 | Out-of-bounds Read in GitHub repository mruby/mruby prior to 3.2. |
| CVE-2022-0654 | HIGH | 7.5 | 1.4% | Feb 23, 2022 | Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository fgribreau/node-request-retry prior to 7.... |
| CVE-2022-23612 | HIGH | 7.5 | 1.9% | Feb 22, 2022 | OpenMRS is a patient-based medical record system focusing on giving providers a free customizable electronic medical rec... |
| CVE-2022-23606 | MEDIUM | 6.5 | 1.0% | Feb 22, 2022 | Envoy is an open source edge and service proxy, designed for cloud-native applications. When a cluster is deleted via Cl... |
| CVE-2022-21657 | MEDIUM | 6.5 | 0.5% | Feb 22, 2022 | Envoy is an open source edge and service proxy, designed for cloud-native applications. In affected versions Envoy does ... |
| CVE-2022-21656 | MEDIUM | 5.9 | 0.8% | Feb 22, 2022 | Envoy is an open source edge and service proxy, designed for cloud-native applications. The default_validator.cc impleme... |
| CVE-2022-21655 | HIGH | 7.5 | 1.1% | Feb 22, 2022 | Envoy is an open source edge and service proxy, designed for cloud-native applications. The envoy common router will seg... |
| CVE-2022-21654 | CRITICAL | 9.8 | 1.1% | Feb 22, 2022 | Envoy is an open source edge and service proxy, designed for cloud-native applications. Envoy's tls allows re-use when s... |
| CVE-2022-23635 | HIGH | 7.5 | 1.6% | Feb 22, 2022 | Istio is an open platform to connect, manage, and secure microservices. In affected versions the Istio control plane, `i... |
| CVE-2022-23654 | MEDIUM | 6.5 | 0.7% | Feb 22, 2022 | Wiki.js is a wiki app built on Node.js. In affected versions an authenticated user with write access on a restricted set... |
| CVE-2022-23652 | HIGH | 8.8 | 1.4% | Feb 22, 2022 | capsule-proxy is a reverse proxy for Capsule Operator which provides multi-tenancy in Kubernetes. In versions prior to 0... |
| CVE-2022-23608 | CRITICAL | 9.8 | 4.0% | Feb 22, 2022 | PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto... |
| CVE-2022-0714 | MEDIUM | 5.5 | 12.8% | Feb 22, 2022 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4436. |
| CVE-2022-0713 | HIGH | 7.1 | 1.0% | Feb 22, 2022 | Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.4. |
| CVE-2022-0712 | MEDIUM | 5.5 | 0.9% | Feb 22, 2022 | NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.6.4. |
| CVE-2022-0665 | MEDIUM | 6.5 | 1.5% | Feb 22, 2022 | Path Traversal in GitHub repository pimcore/pimcore prior to 10.3.2. |
| CVE-2022-0676 | HIGH | 7.8 | 1.2% | Feb 22, 2022 | Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.4. |
| CVE-2022-24564 | MEDIUM | 6.1 | 0.7% | Feb 21, 2022 | Checkmk <=2.0.0p19 contains a Cross Site Scripting (XSS) vulnerability. While creating or editing a user attribute, the ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now