2022 CVE Vulnerabilities

27,554 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-23220HIGH7.8USBView 2.1 before 2.2 allows some local users (e.g., ones logged in via SSH) to execute arbitrary code as root because ...
CVE-2022-0319MEDIUM5.5Out-of-bounds Read in vim/vim prior to 8.2.
CVE-2022-0318CRITICAL9.8Heap-based Buffer Overflow in vim/vim prior to 8.2.
CVE-2022-0329Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This CVE has been rejected as it was incorrectly assigned. Al...
CVE-2022-21933HIGH7.8ASUS VivoMini/Mini PC device has an improper input validation vulnerability. A local attacker with system privilege can ...
CVE-2022-0326MEDIUM5.5NULL Pointer Dereference in Homebrew mruby prior to 3.2.
CVE-2022-23315CRITICAL9.8MCMS v5.2.4 was discovered to contain an arbitrary file upload vulnerability via the component /ms/template/writeFileCon...
CVE-2022-23314CRITICAL9.8MCMS v5.2.4 was discovered to contain a SQL injection vulnerability via /ms/mdiy/model/importJson.do.
CVE-2022-22930CRITICAL9.8A remote code execution (RCE) vulnerability in the Template Management function of MCMS v5.2.4 allows attackers to execu...
CVE-2022-22929CRITICAL9.8MCMS v5.2.4 was discovered to have an arbitrary file upload vulnerability in the New Template module, which allows attac...
CVE-2022-22928CRITICAL9.8MCMS v5.2.4 was discovered to have a hardcoded shiro-key, allowing attackers to exploit the key and execute arbitrary co...
CVE-2022-22895HIGH7.8Jerryscript 3.0.0 was discovered to contain a heap-buffer-overflow via ecma_utf8_string_to_number_by_radix in /jerry-cor...
CVE-2022-22894HIGH7.8Jerryscript 3.0.0 was discovered to contain a stack overflow via ecma_lcache_lookup in /jerry-core/ecma/base/ecma-lcache...
CVE-2022-22893HIGH7.8Jerryscript 3.0.0 was discovered to contain a stack overflow via vm_loop.lto_priv.304 in /jerry-core/vm/vm.c.
CVE-2022-22892MEDIUM5.5There is an Assertion 'ecma_is_value_undefined (value) || ecma_is_value_null (value) || ecma_is_value_boolean (value) ||...
CVE-2022-22891MEDIUM5.5Jerryscript 3.0.0 was discovered to contain a SEGV vulnerability via ecma_ref_object_inline in /jerry-core/ecma/base/ecm...
CVE-2022-22890MEDIUM5.5There is an Assertion 'arguments_type != SCANNER_ARGUMENTS_PRESENT && arguments_type != SCANNER_ARGUMENTS_PRESENT_NO_REG...
CVE-2022-22888HIGH7.8Jerryscript 3.0.0 was discovered to contain a stack overflow via ecma_op_object_find_own in /ecma/operations/ecma-object...
CVE-2022-23120HIGH7.8A code injection vulnerability in Trend Micro Deep Security and Cloud One - Workload Security Agent for Linux version 20...
CVE-2022-23119HIGH7.5A directory traversal vulnerability in Trend Micro Deep Security and Cloud One - Workload Security Agent for Linux versi...
CVE-2022-21658MEDIUM6.3Rust is a multi-paradigm, general-purpose programming language designed for performance and safety, especially safe conc...
CVE-2022-0219MEDIUM5.5Improper Restriction of XML External Entity Reference in GitHub repository skylot/jadx prior to 1.3.2.
CVE-2022-0285MEDIUM5.4Cross-site Scripting (XSS) - Stored in Packagist pimcore/pimcore prior to 10.2.9.
CVE-2022-22820MEDIUM5.5Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption...
CVE-2022-0282HIGH7.5Cross-site Scripting in Packagist microweber/microweber prior to 1.2.11.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now