2022 CVE Vulnerabilities

27,554 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-0729HIGH8.8Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4440.
CVE-2022-0727MEDIUM5.4Improper Access Control in GitHub repository chocobozzz/peertube prior to 4.1.0.
CVE-2022-0726MEDIUM5.4Missing Authorization in GitHub repository chocobozzz/peertube prior to 4.1.0.
CVE-2022-0724MEDIUM6.5Insecure Storage of Sensitive Information in GitHub repository microweber/microweber prior to 1.3.
CVE-2022-0721MEDIUM6.5Insertion of Sensitive Information Into Debugging Code in GitHub repository microweber/microweber prior to 1.3.
CVE-2022-0719MEDIUM5.4Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.3.
CVE-2022-0736HIGH7.5Insecure Temporary File in GitHub repository mlflow/mlflow prior to 1.23.1.
CVE-2022-0717CRITICAL9.1Out-of-bounds Read in GitHub repository mruby/mruby prior to 3.2.
CVE-2022-0654HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository fgribreau/node-request-retry prior to 7....
CVE-2022-23612HIGH7.5OpenMRS is a patient-based medical record system focusing on giving providers a free customizable electronic medical rec...
CVE-2022-23606MEDIUM6.5Envoy is an open source edge and service proxy, designed for cloud-native applications. When a cluster is deleted via Cl...
CVE-2022-21657MEDIUM6.5Envoy is an open source edge and service proxy, designed for cloud-native applications. In affected versions Envoy does ...
CVE-2022-21656MEDIUM5.9Envoy is an open source edge and service proxy, designed for cloud-native applications. The default_validator.cc impleme...
CVE-2022-21655HIGH7.5Envoy is an open source edge and service proxy, designed for cloud-native applications. The envoy common router will seg...
CVE-2022-21654CRITICAL9.8Envoy is an open source edge and service proxy, designed for cloud-native applications. Envoy's tls allows re-use when s...
CVE-2022-23635HIGH7.5Istio is an open platform to connect, manage, and secure microservices. In affected versions the Istio control plane, `i...
CVE-2022-23654MEDIUM6.5Wiki.js is a wiki app built on Node.js. In affected versions an authenticated user with write access on a restricted set...
CVE-2022-23652HIGH8.8capsule-proxy is a reverse proxy for Capsule Operator which provides multi-tenancy in Kubernetes. In versions prior to 0...
CVE-2022-23608CRITICAL9.8PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto...
CVE-2022-0714MEDIUM5.5Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4436.
CVE-2022-0713HIGH7.1Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.4.
CVE-2022-0712MEDIUM5.5NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.6.4.
CVE-2022-0665MEDIUM6.5Path Traversal in GitHub repository pimcore/pimcore prior to 10.3.2.
CVE-2022-0676HIGH7.8Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.4.
CVE-2022-24564MEDIUM6.1Checkmk <=2.0.0p19 contains a Cross Site Scripting (XSS) vulnerability. While creating or editing a user attribute, the ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now