2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-34060CRITICAL9.8The Togglee package in PyPI version v0.0.8 was discovered to contain a code execution backdoor. This vulnerability allow...
CVE-2022-34059CRITICAL9.8The Sixfab-Tool in PyPI v0.0.2 to v0.0.3 was discovered to contain a code execution backdoor via the request package. Th...
CVE-2022-34057CRITICAL9.8The Scoptrial package in PyPI version v0.0.5 was discovered to contain a code execution backdoor via the request package...
CVE-2022-34056CRITICAL9.8The Watertools package in PyPI v0.0.0 was discovered to contain a code execution backdoor via the request package. This ...
CVE-2022-34055CRITICAL9.8The drxhello package in PyPI v0.0.1 was discovered to contain a code execution backdoor via the request package. This vu...
CVE-2022-34054CRITICAL9.8The Perdido package in PyPI v0.0.1 to v0.0.2 was discovered to contain a code execution backdoor via the request package...
CVE-2022-34053CRITICAL9.8The DR-Web-Engine package in PyPI v0.2.0b0 was discovered to contain a code execution backdoor via the request package. ...
CVE-2022-33004CRITICAL9.8The Beginner package in PyPI v0.0.2 to v0.0.4 was discovered to contain a code execution backdoor via the request packag...
CVE-2022-33003CRITICAL9.8The watools package in PyPI v0.0.1 to v0.0.8 was discovered to contain a code execution backdoor via the request package...
CVE-2022-33002CRITICAL9.8The KGExplore package in PyPI v0.1.1 to v0.1.2 was discovered to contain a code execution backdoor via the request packa...
CVE-2022-33001CRITICAL9.8The AAmiles package in PyPI v0.1.0 was discovered to contain a code execution backdoor via the request package. This vul...
CVE-2022-33000CRITICAL9.8The ML-Scanner package in PyPI v0.1.0 to v0.1.5 was discovered to contain a code execution backdoor via the request pack...
CVE-2022-32999CRITICAL9.8The cloudlabeling package in PyPI v0.0.1 was discovered to contain a code execution backdoor via the request package. Th...
CVE-2022-32998CRITICAL9.8The cryptoasset-data-downloader package in PyPI v1.0.0 to v1.0.1 was discovered to contain a code execution backdoor via...
CVE-2022-32997CRITICAL9.8The RootInteractive package in PyPI v0.0.5 to v0.0.19b0 was discovered to contain a code execution backdoor via the requ...
CVE-2022-32996CRITICAL9.8The django-navbar-client package of v0.9.50 to v1.0.1 was discovered to contain a code execution backdoor via the reques...
CVE-2022-30885CRITICAL9.8The pyesasky for python, as distributed on PyPI, included a code-execution backdoor inserted by a third party. The curre...
CVE-2022-21231CRITICAL9.8All versions of package deep-get-set are vulnerable to Prototype Pollution via the 'deep' function. **Note:** This vulne...
CVE-2022-31767CRITICAL9.8IBM CICS TX Standard and Advanced 11.1 could allow a remote attacker to execute arbitrary commands on the system by send...
CVE-2022-30117CRITICAL9.1Concrete 8.5.7 and below as well as Concrete 9.0 through 9.0.2 allow traversal in /index.php/ccm/system/file/upload whic...
CVE-2022-2120CRITICAL9.8OFFIS DCMTK's (All versions prior to 3.6.7) service class user (SCU) is vulnerable to relative path traversal, allowing ...
CVE-2022-2119CRITICAL9.8OFFIS DCMTK's (All versions prior to 3.6.7) service class provider (SCP) is vulnerable to path traversal, allowing an at...
CVE-2022-2105CRITICAL9.1Client-side JavaScript controls may be bypassed to change user credentials and permissions without authentication, inclu...
CVE-2022-2104CRITICAL9.8The www-data (Apache web server) account is configured to run sudo with no password for many commands (including /bin/sh...
CVE-2022-2103CRITICAL9.1An attacker with weak credentials could access the TCP port via an open FTP port, allowing an attacker to read sensitive...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now