2022 CVE Vulnerabilities
27,554 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-21723 | CRITICAL | 9.1 | 4.5% | Jan 27, 2022 | PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto... |
| CVE-2022-21722 | CRITICAL | 9.1 | 2.4% | Jan 27, 2022 | PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto... |
| CVE-2022-23967 | — | — | — | Jan 26, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-15679. Reason: This candidate is a duplicate of ... |
| CVE-2022-22852 | MEDIUM | 5.4 | 0.8% | Jan 26, 2022 | A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System... |
| CVE-2022-21686 | CRITICAL | 9.8 | 1.8% | Jan 26, 2022 | PrestaShop is an Open Source e-commerce platform. Starting with version 1.7.0.0 and ending with version 1.7.8.3, an atta... |
| CVE-2022-23993 | MEDIUM | 6.1 | 1.5% | Jan 26, 2022 | /usr/local/www/pkg.php in pfSense CE before 2.6.0 and pfSense Plus before 22.01 uses $_REQUEST['pkg_filter'] in a PHP ec... |
| CVE-2022-23990 | HIGH | 7.5 | 4.0% | Jan 26, 2022 | Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function. |
| CVE-2022-22850 | MEDIUM | 5.4 | 0.7% | Jan 26, 2022 | A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System... |
| CVE-2022-0368 | HIGH | 7.8 | 1.5% | Jan 26, 2022 | Out-of-bounds Read in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-22851 | MEDIUM | 5.4 | 0.6% | Jan 26, 2022 | A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System... |
| CVE-2022-0379 | MEDIUM | 5.4 | 0.9% | Jan 26, 2022 | Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-0378 | MEDIUM | 5.4 | 3.9% | Jan 26, 2022 | Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-0362 | CRITICAL | 9.8 | 1.4% | Jan 26, 2022 | SQL Injection in Packagist showdoc/showdoc prior to 2.10.3. |
| CVE-2022-0361 | HIGH | 7.8 | 1.6% | Jan 26, 2022 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-0203 | MEDIUM | 5.3 | 1.2% | Jan 26, 2022 | Improper Access Control in GitHub repository crater-invoice/crater prior to 6.0.2. |
| CVE-2022-0359 | HIGH | 7.8 | 1.3% | Jan 26, 2022 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-22932 | MEDIUM | 5.3 | 2.8% | Jan 26, 2022 | Apache Karaf obr:* commands and run goal on the karaf-maven-plugin have partial path traversal which allows to break out... |
| CVE-2022-0251 | MEDIUM | 5.4 | 0.7% | Jan 26, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.2.10. |
| CVE-2022-0375 | MEDIUM | 4.8 | 0.7% | Jan 26, 2022 | Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v. |
| CVE-2022-0374 | MEDIUM | 5.4 | 0.7% | Jan 26, 2022 | Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v. |
| CVE-2022-21944 | HIGH | 7.8 | 0.3% | Jan 26, 2022 | A UNIX Symbolic Link (Symlink) Following vulnerability in the systemd service file for watchman of openSUSE Backports SL... |
| CVE-2022-23968 | HIGH | 7.5 | 1.9% | Jan 26, 2022 | Xerox VersaLink devices on specific versions of firmware before 2022-01-26 allow remote attackers to brick the device vi... |
| CVE-2022-0355 | HIGH | 7.5 | 2.0% | Jan 26, 2022 | Improper Removal of Sensitive Information Before Storage or Transfer in NPM simple-get prior to 4.0.1. |
| CVE-2022-23959 | CRITICAL | 9.1 | 2.0% | Jan 26, 2022 | In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cac... |
| CVE-2022-23258 | MEDIUM | 4.3 | 1.6% | Jan 25, 2022 | Microsoft Edge for Android Spoofing Vulnerability |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now