2022 CVE Vulnerabilities
27,554 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23220 | HIGH | 7.8 | 0.5% | Jan 21, 2022 | USBView 2.1 before 2.2 allows some local users (e.g., ones logged in via SSH) to execute arbitrary code as root because ... |
| CVE-2022-0319 | MEDIUM | 5.5 | 1.4% | Jan 21, 2022 | Out-of-bounds Read in vim/vim prior to 8.2. |
| CVE-2022-0318 | CRITICAL | 9.8 | 2.1% | Jan 21, 2022 | Heap-based Buffer Overflow in vim/vim prior to 8.2. |
| CVE-2022-0329 | — | — | — | Jan 21, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This CVE has been rejected as it was incorrectly assigned. Al... |
| CVE-2022-21933 | HIGH | 7.8 | 0.3% | Jan 21, 2022 | ASUS VivoMini/Mini PC device has an improper input validation vulnerability. A local attacker with system privilege can ... |
| CVE-2022-0326 | MEDIUM | 5.5 | 0.8% | Jan 21, 2022 | NULL Pointer Dereference in Homebrew mruby prior to 3.2. |
| CVE-2022-23315 | CRITICAL | 9.8 | 1.8% | Jan 21, 2022 | MCMS v5.2.4 was discovered to contain an arbitrary file upload vulnerability via the component /ms/template/writeFileCon... |
| CVE-2022-23314 | CRITICAL | 9.8 | 1.6% | Jan 21, 2022 | MCMS v5.2.4 was discovered to contain a SQL injection vulnerability via /ms/mdiy/model/importJson.do. |
| CVE-2022-22930 | CRITICAL | 9.8 | 23.7% | Jan 21, 2022 | A remote code execution (RCE) vulnerability in the Template Management function of MCMS v5.2.4 allows attackers to execu... |
| CVE-2022-22929 | CRITICAL | 9.8 | 2.6% | Jan 21, 2022 | MCMS v5.2.4 was discovered to have an arbitrary file upload vulnerability in the New Template module, which allows attac... |
| CVE-2022-22928 | CRITICAL | 9.8 | 2.5% | Jan 21, 2022 | MCMS v5.2.4 was discovered to have a hardcoded shiro-key, allowing attackers to exploit the key and execute arbitrary co... |
| CVE-2022-22895 | HIGH | 7.8 | 0.8% | Jan 21, 2022 | Jerryscript 3.0.0 was discovered to contain a heap-buffer-overflow via ecma_utf8_string_to_number_by_radix in /jerry-cor... |
| CVE-2022-22894 | HIGH | 7.8 | 0.7% | Jan 21, 2022 | Jerryscript 3.0.0 was discovered to contain a stack overflow via ecma_lcache_lookup in /jerry-core/ecma/base/ecma-lcache... |
| CVE-2022-22893 | HIGH | 7.8 | 0.7% | Jan 21, 2022 | Jerryscript 3.0.0 was discovered to contain a stack overflow via vm_loop.lto_priv.304 in /jerry-core/vm/vm.c. |
| CVE-2022-22892 | MEDIUM | 5.5 | 0.6% | Jan 21, 2022 | There is an Assertion 'ecma_is_value_undefined (value) || ecma_is_value_null (value) || ecma_is_value_boolean (value) ||... |
| CVE-2022-22891 | MEDIUM | 5.5 | 0.6% | Jan 21, 2022 | Jerryscript 3.0.0 was discovered to contain a SEGV vulnerability via ecma_ref_object_inline in /jerry-core/ecma/base/ecm... |
| CVE-2022-22890 | MEDIUM | 5.5 | 0.8% | Jan 20, 2022 | There is an Assertion 'arguments_type != SCANNER_ARGUMENTS_PRESENT && arguments_type != SCANNER_ARGUMENTS_PRESENT_NO_REG... |
| CVE-2022-22888 | HIGH | 7.8 | 0.7% | Jan 20, 2022 | Jerryscript 3.0.0 was discovered to contain a stack overflow via ecma_op_object_find_own in /ecma/operations/ecma-object... |
| CVE-2022-23120 | HIGH | 7.8 | 6.4% | Jan 20, 2022 | A code injection vulnerability in Trend Micro Deep Security and Cloud One - Workload Security Agent for Linux version 20... |
| CVE-2022-23119 | HIGH | 7.5 | 22.3% | Jan 20, 2022 | A directory traversal vulnerability in Trend Micro Deep Security and Cloud One - Workload Security Agent for Linux versi... |
| CVE-2022-21658 | MEDIUM | 6.3 | 1.4% | Jan 20, 2022 | Rust is a multi-paradigm, general-purpose programming language designed for performance and safety, especially safe conc... |
| CVE-2022-0219 | MEDIUM | 5.5 | 1.1% | Jan 20, 2022 | Improper Restriction of XML External Entity Reference in GitHub repository skylot/jadx prior to 1.3.2. |
| CVE-2022-0285 | MEDIUM | 5.4 | 1.5% | Jan 20, 2022 | Cross-site Scripting (XSS) - Stored in Packagist pimcore/pimcore prior to 10.2.9. |
| CVE-2022-22820 | MEDIUM | 5.5 | 0.8% | Jan 20, 2022 | Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption... |
| CVE-2022-0282 | HIGH | 7.5 | 1.6% | Jan 20, 2022 | Cross-site Scripting in Packagist microweber/microweber prior to 1.2.11. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now