2022 CVE Vulnerabilities

27,554 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-21723CRITICAL9.1PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto...
CVE-2022-21722CRITICAL9.1PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto...
CVE-2022-23967Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-15679. Reason: This candidate is a duplicate of ...
CVE-2022-22852MEDIUM5.4A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System...
CVE-2022-21686CRITICAL9.8PrestaShop is an Open Source e-commerce platform. Starting with version 1.7.0.0 and ending with version 1.7.8.3, an atta...
CVE-2022-23993MEDIUM6.1/usr/local/www/pkg.php in pfSense CE before 2.6.0 and pfSense Plus before 22.01 uses $_REQUEST['pkg_filter'] in a PHP ec...
CVE-2022-23990HIGH7.5Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function.
CVE-2022-22850MEDIUM5.4A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System...
CVE-2022-0368HIGH7.8Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
CVE-2022-22851MEDIUM5.4A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System...
CVE-2022-0379MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-0378MEDIUM5.4Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11.
CVE-2022-0362CRITICAL9.8SQL Injection in Packagist showdoc/showdoc prior to 2.10.3.
CVE-2022-0361HIGH7.8Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVE-2022-0203MEDIUM5.3Improper Access Control in GitHub repository crater-invoice/crater prior to 6.0.2.
CVE-2022-0359HIGH7.8Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVE-2022-22932MEDIUM5.3Apache Karaf obr:* commands and run goal on the karaf-maven-plugin have partial path traversal which allows to break out...
CVE-2022-0251MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.2.10.
CVE-2022-0375MEDIUM4.8Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v.
CVE-2022-0374MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v.
CVE-2022-21944HIGH7.8A UNIX Symbolic Link (Symlink) Following vulnerability in the systemd service file for watchman of openSUSE Backports SL...
CVE-2022-23968HIGH7.5Xerox VersaLink devices on specific versions of firmware before 2022-01-26 allow remote attackers to brick the device vi...
CVE-2022-0355HIGH7.5Improper Removal of Sensitive Information Before Storage or Transfer in NPM simple-get prior to 4.0.1.
CVE-2022-23959CRITICAL9.1In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cac...
CVE-2022-23258MEDIUM4.3Microsoft Edge for Android Spoofing Vulnerability

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now