2022 CVE Vulnerabilities

27,554 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-21837HIGH8.8Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2022-21836HIGH7.8Windows Certificate Spoofing Vulnerability
CVE-2022-21835HIGH7.8Microsoft Cryptographic Services Elevation of Privilege Vulnerability
CVE-2022-21834HIGH7.8Windows User-mode Driver Framework Reflector Driver Elevation of Privilege Vulnerability
CVE-2022-21833HIGH7.8Virtual Machine IDE Drive Elevation of Privilege Vulnerability
CVE-2022-0173MEDIUM5.5radare2 is vulnerable to Out-of-bounds Read
CVE-2022-0129MEDIUM6.7Uncontrolled search path element vulnerability in McAfee TechCheck prior to 4.0.0.2 allows a local administrator to load...
CVE-2022-0170MEDIUM4.3peertube is vulnerable to Improper Access Control
CVE-2022-21671MEDIUM6.5@replit/crosis is a JavaScript client that speaks Replit's container protocol. A vulnerability that involves exposure of...
CVE-2022-21669HIGH7.5PuddingBot is a group management bot. In version 0.0.6-b933652 and prior, the bot token is publicly exposed in main.py, ...
CVE-2022-0144HIGH7.1shelljs is vulnerable to Improper Privilege Management
CVE-2022-21672MEDIUM6.5make-ca is a utility to deliver and manage a complete PKI configuration for workstations and servers. Starting with vers...
CVE-2022-21670MEDIUM5.3markdown-it is a Markdown parser. Prior to version 1.3.2, special patterns with length greater than 50 thousand characte...
CVE-2022-21668HIGH8.6pipenv is a Python development workflow tool. Starting with version 2018.10.9 and prior to version 2022.1.8, a flaw in p...
CVE-2022-21666HIGH7.2Useful Simple Open-Source CMS (USOC) is a content management system (CMS) for programmers. Versions prior to Pb2.4Bfx3 a...
CVE-2022-0155MEDIUM6.5follow-redirects is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor
CVE-2022-0174MEDIUM4.3Improper Validation of Specified Quantity in Input vulnerability in dolibarr dolibarr/dolibarr.
CVE-2022-22121HIGH8In NocoDB, versions 0.81.0 through 0.83.8 are affected by CSV Injection vulnerability (Formula Injection). A low privile...
CVE-2022-22120MEDIUM5.3In NocoDB, versions 0.9 to 0.83.8 are vulnerable to Observable Discrepancy in the password-reset feature. When requestin...
CVE-2022-22117MEDIUM5.4In Directus, versions 9.0.0-alpha.4 through 9.4.1 allow unrestricted file upload of .html files in the media upload func...
CVE-2022-22116MEDIUM5.4In Directus, versions 9.0.0-alpha.4 through 9.4.1 are vulnerable to stored Cross-Site Scripting (XSS) vulnerability via ...
CVE-2022-22115CRITICAL9In Teedy, versions v1.5 through v1.9 are vulnerable to Stored Cross-Site Scripting (XSS) in the name of a created Tag. S...
CVE-2022-22114CRITICAL9.6In Teedy, versions v1.5 through v1.9 are vulnerable to Reflected Cross-Site Scripting (XSS). The “search term" search fu...
CVE-2022-0158LOW3.3vim is vulnerable to Heap-based Buffer Overflow
CVE-2022-0157MEDIUM5.4phoronix-test-suite is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now