2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-25037 | MEDIUM | 5.4 | 0.3% | May 31, 2024 | An issue in wanEditor v4.7.11 and fixed in v.4.7.12 and v.5 was discovered to contain a cross-site scripting (XSS) vulne... |
| CVE-2022-43841 | LOW | 3.3 | 0.2% | May 30, 2024 | IBM Aspera Console 3.4.0 through 3.4.2 PL9 allows web pages to be stored locally which can be read by another user on th... |
| CVE-2022-43575 | MEDIUM | 5.4 | 0.2% | May 30, 2024 | IBM Aspera Console 3.4.0 through 3.4.2 PL5 is vulnerable to cross-site scripting. This vulnerability allows users to emb... |
| CVE-2022-43384 | MEDIUM | 5.4 | 0.2% | May 30, 2024 | IBM Aspera Console 3.4.0 through 3.4.2 PL5 is vulnerable to cross-site scripting. This vulnerability allows users to emb... |
| CVE-2022-45171 | HIGH | 8.8 | 0.8% | May 28, 2024 | An issue was discovered in LIVEBOX Collaboration vDesk through v018. An Unrestricted Upload of a File with a Dangerous T... |
| CVE-2022-48681 | HIGH | 8.8 | 0.2% | May 28, 2024 | Some Huawei smart speakers have a memory overflow vulnerability. Successful exploitation of this vulnerability may cause... |
| CVE-2022-4969 | MEDIUM | 5.3 | 0.2% | May 27, 2024 | A vulnerability, which was classified as critical, has been found in bwoodsend rockhopper up to 0.1.2. Affected by this ... |
| CVE-2022-48710 | MEDIUM | 5.5 | 0.3% | May 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/radeon: fix a possible null pointer dereference... |
| CVE-2022-48709 | MEDIUM | 5.5 | 0.2% | May 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: ice: switch: fix potential memleak in ice_add_adv_r... |
| CVE-2022-48708 | MEDIUM | 5.5 | 0.2% | May 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: single: fix potential NULL dereference Ad... |
| CVE-2022-48707 | MEDIUM | 5.5 | 0.2% | May 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: cxl/region: Fix null pointer dereference for resett... |
| CVE-2022-48706 | MEDIUM | 5.5 | 0.2% | May 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: vdpa: ifcvf: Do proper cleanup if IFCVF init fails ... |
| CVE-2022-45374 | MEDIUM | 6.5 | 0.8% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in YARPP allows PHP Local F... |
| CVE-2022-45368 | HIGH | 7.7 | 0.9% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Lenderd 1003 Mortgage Ap... |
| CVE-2022-45070 | MEDIUM | 5.3 | 0.5% | May 17, 2024 | Missing Authorization vulnerability in FmeAddons Conditional Checkout Fields for WooCommerce.This issue affects Conditio... |
| CVE-2022-44581 | CRITICAL | 9.8 | 0.7% | May 17, 2024 | Insecure Storage of Sensitive Information vulnerability in WPMU DEV Defender Security allows : Screen Temporary Files fo... |
| CVE-2022-37410 | HIGH | 7 | 0.2% | May 16, 2024 | Improper access control for some Intel(R) Thunderbolt driver software before version 89 may allow an authenticated user ... |
| CVE-2022-37341 | HIGH | 7.8 | 0.2% | May 16, 2024 | Improper access control in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware ... |
| CVE-2022-28132 | HIGH | 7.2 | 0.6% | May 14, 2024 | The T-Soft E-Commerce 4 web application is susceptible to SQL injection (SQLi) attacks when authenticated as an admin or... |
| CVE-2022-4967 | MEDIUM | 6.5 | 0.5% | May 14, 2024 | strongSwan versions 5.9.2 through 5.9.5 are affected by authorization bypass through improper validation of certificate ... |
| CVE-2022-32510 | HIGH | 7.1 | 0.3% | May 14, 2024 | An issue was discovered on certain Nuki Home Solutions devices. The HTTP API exposed by a Bridge used an unencrypted cha... |
| CVE-2022-32509 | HIGH | 8.8 | 0.3% | May 14, 2024 | An issue was discovered on certain Nuki Home Solutions devices. Lack of certificate validation on HTTP communications al... |
| CVE-2022-32508 | HIGH | 7.5 | 1.3% | May 14, 2024 | An issue was discovered on certain Nuki Home Solutions devices. By sending a malformed HTTP verb, it is possible to forc... |
| CVE-2022-32507 | HIGH | 8.8 | 0.5% | May 14, 2024 | An issue was discovered on certain Nuki Home Solutions devices. Some BLE commands, which should have been designed to be... |
| CVE-2022-32506 | MEDIUM | 6.4 | 0.4% | May 14, 2024 | An issue was discovered on certain Nuki Home Solutions devices. An attacker with physical access to the circuit board co... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now