2022 CVE Vulnerabilities
27,554 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-21837 | HIGH | 8.8 | 3.0% | Jan 11, 2022 | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2022-21836 | HIGH | 7.8 | 0.7% | Jan 11, 2022 | Windows Certificate Spoofing Vulnerability |
| CVE-2022-21835 | HIGH | 7.8 | 0.7% | Jan 11, 2022 | Microsoft Cryptographic Services Elevation of Privilege Vulnerability |
| CVE-2022-21834 | HIGH | 7.8 | 0.6% | Jan 11, 2022 | Windows User-mode Driver Framework Reflector Driver Elevation of Privilege Vulnerability |
| CVE-2022-21833 | HIGH | 7.8 | 0.6% | Jan 11, 2022 | Virtual Machine IDE Drive Elevation of Privilege Vulnerability |
| CVE-2022-0173 | MEDIUM | 5.5 | 1.1% | Jan 11, 2022 | radare2 is vulnerable to Out-of-bounds Read |
| CVE-2022-0129 | MEDIUM | 6.7 | 0.3% | Jan 11, 2022 | Uncontrolled search path element vulnerability in McAfee TechCheck prior to 4.0.0.2 allows a local administrator to load... |
| CVE-2022-0170 | MEDIUM | 4.3 | 0.7% | Jan 11, 2022 | peertube is vulnerable to Improper Access Control |
| CVE-2022-21671 | MEDIUM | 6.5 | 1.1% | Jan 11, 2022 | @replit/crosis is a JavaScript client that speaks Replit's container protocol. A vulnerability that involves exposure of... |
| CVE-2022-21669 | HIGH | 7.5 | 1.0% | Jan 11, 2022 | PuddingBot is a group management bot. In version 0.0.6-b933652 and prior, the bot token is publicly exposed in main.py, ... |
| CVE-2022-0144 | HIGH | 7.1 | 0.4% | Jan 11, 2022 | shelljs is vulnerable to Improper Privilege Management |
| CVE-2022-21672 | MEDIUM | 6.5 | 0.7% | Jan 10, 2022 | make-ca is a utility to deliver and manage a complete PKI configuration for workstations and servers. Starting with vers... |
| CVE-2022-21670 | MEDIUM | 5.3 | 2.2% | Jan 10, 2022 | markdown-it is a Markdown parser. Prior to version 1.3.2, special patterns with length greater than 50 thousand characte... |
| CVE-2022-21668 | HIGH | 8.6 | 3.9% | Jan 10, 2022 | pipenv is a Python development workflow tool. Starting with version 2018.10.9 and prior to version 2022.1.8, a flaw in p... |
| CVE-2022-21666 | HIGH | 7.2 | 1.2% | Jan 10, 2022 | Useful Simple Open-Source CMS (USOC) is a content management system (CMS) for programmers. Versions prior to Pb2.4Bfx3 a... |
| CVE-2022-0155 | MEDIUM | 6.5 | 2.4% | Jan 10, 2022 | follow-redirects is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor |
| CVE-2022-0174 | MEDIUM | 4.3 | 0.9% | Jan 10, 2022 | Improper Validation of Specified Quantity in Input vulnerability in dolibarr dolibarr/dolibarr. |
| CVE-2022-22121 | HIGH | 8 | 1.2% | Jan 10, 2022 | In NocoDB, versions 0.81.0 through 0.83.8 are affected by CSV Injection vulnerability (Formula Injection). A low privile... |
| CVE-2022-22120 | MEDIUM | 5.3 | 1.4% | Jan 10, 2022 | In NocoDB, versions 0.9 to 0.83.8 are vulnerable to Observable Discrepancy in the password-reset feature. When requestin... |
| CVE-2022-22117 | MEDIUM | 5.4 | 0.6% | Jan 10, 2022 | In Directus, versions 9.0.0-alpha.4 through 9.4.1 allow unrestricted file upload of .html files in the media upload func... |
| CVE-2022-22116 | MEDIUM | 5.4 | 0.6% | Jan 10, 2022 | In Directus, versions 9.0.0-alpha.4 through 9.4.1 are vulnerable to stored Cross-Site Scripting (XSS) vulnerability via ... |
| CVE-2022-22115 | CRITICAL | 9 | 1.0% | Jan 10, 2022 | In Teedy, versions v1.5 through v1.9 are vulnerable to Stored Cross-Site Scripting (XSS) in the name of a created Tag. S... |
| CVE-2022-22114 | CRITICAL | 9.6 | 1.3% | Jan 10, 2022 | In Teedy, versions v1.5 through v1.9 are vulnerable to Reflected Cross-Site Scripting (XSS). The “search term" search fu... |
| CVE-2022-0158 | LOW | 3.3 | 1.7% | Jan 10, 2022 | vim is vulnerable to Heap-based Buffer Overflow |
| CVE-2022-0157 | MEDIUM | 5.4 | 1.1% | Jan 10, 2022 | phoronix-test-suite is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now