2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29517 | HIGH | 8.8 | 60.2% | Dec 15, 2022 | A directory traversal vulnerability exists in the HelpdeskActions.aspx edittemplate functionality of Lansweeper lansweep... |
| CVE-2022-4506 | HIGH | 8.8 | 1.1% | Dec 15, 2022 | Unrestricted Upload of File with Dangerous Type in GitHub repository openemr/openemr prior to 7.0.0.2. |
| CVE-2022-4504 | HIGH | 7.5 | 0.9% | Dec 15, 2022 | Improper Input Validation in GitHub repository openemr/openemr prior to 7.0.0.2. |
| CVE-2022-4283 | HIGH | 7.8 | 1.0% | Dec 14, 2022 | A vulnerability was found in X.Org. This security flaw occurs because the XkbCopyNames function left a dangling pointer ... |
| CVE-2022-47411 | HIGH | 7.5 | 0.7% | Dec 14, 2022 | An issue was discovered in the fp_newsletter (aka Newsletter subscriber management) extension before 1.1.1, 1.2.0, 2.x b... |
| CVE-2022-47410 | HIGH | 7.5 | 0.7% | Dec 14, 2022 | An issue was discovered in the fp_newsletter (aka Newsletter subscriber management) extension before 1.1.1, 1.2.0, 2.x b... |
| CVE-2022-47409 | HIGH | 7.5 | 0.6% | Dec 14, 2022 | An issue was discovered in the fp_newsletter (aka Newsletter subscriber management) extension before 1.1.1, 1.2.0, 2.x b... |
| CVE-2022-46344 | HIGH | 8.8 | 2.7% | Dec 14, 2022 | A vulnerability was found in X.Org. This security flaw occurs because the handler for the XIChangeProperty request has a... |
| CVE-2022-46343 | HIGH | 8.8 | 2.4% | Dec 14, 2022 | A vulnerability was found in X.Org. This security flaw occurs because the handler for the ScreenSaverSetAttributes reque... |
| CVE-2022-46342 | HIGH | 8.8 | 1.3% | Dec 14, 2022 | A vulnerability was found in X.Org. This security flaw occurs because the handler for the XvdiSelectVideoNotify request ... |
| CVE-2022-46341 | HIGH | 8.8 | 2.5% | Dec 14, 2022 | A vulnerability was found in X.Org. This security flaw occurs because the handler for the XIPassiveUngrab request access... |
| CVE-2022-46340 | HIGH | 8.8 | 2.5% | Dec 14, 2022 | A vulnerability was found in X.Org. This security flaw occurs becuase the swap handler for the XTestFakeInput request of... |
| CVE-2022-2601 | HIGH | 8.6 | 0.5% | Dec 14, 2022 | A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when ca... |
| CVE-2022-31705 | HIGH | 8.2 | 1.5% | Dec 14, 2022 | VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write vulnerability in the USB 2.0 controller (EHCI). ... |
| CVE-2022-31703 | HIGH | 7.5 | 1.8% | Dec 14, 2022 | The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject fi... |
| CVE-2022-31700 | HIGH | 7.2 | 1.1% | Dec 14, 2022 | VMware Workspace ONE Access and Identity Manager contain an authenticated remote code execution vulnerability. VMware ha... |
| CVE-2022-23741 | HIGH | 7.2 | 1.1% | Dec 14, 2022 | An incorrect authorization vulnerability was identified in GitHub Enterprise Server that allowed a scoped user-to-server... |
| CVE-2022-46443 | HIGH | 8.8 | 37.7% | Dec 14, 2022 | mesinkasir Bangresto 1.0 is vulnberable to SQL Injection via the itemqty%5B%5D parameter. |
| CVE-2022-46256 | HIGH | 8.8 | 1.9% | Dec 14, 2022 | A path traversal vulnerability was identified in GitHub Enterprise Server that allowed remote code execution when buildi... |
| CVE-2022-44910 | HIGH | 7.8 | 0.4% | Dec 14, 2022 | Binbloom 2.0 was discovered to contain a heap buffer overflow via the read_pointer function at /binbloom-master/src/help... |
| CVE-2022-46127 | HIGH | 7.2 | 0.8% | Dec 14, 2022 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/classes/Master.php?f=delete_product. |
| CVE-2022-46126 | HIGH | 7.2 | 0.8% | Dec 14, 2022 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/admin/brands/manage_brand.php?id=. |
| CVE-2022-46125 | HIGH | 7.2 | 0.8% | Dec 14, 2022 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/admin/?page=client/manage_client&id=. |
| CVE-2022-46124 | HIGH | 7.2 | 0.7% | Dec 14, 2022 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/admin/?page=user/manage_user&id=. |
| CVE-2022-46123 | HIGH | 7.2 | 0.7% | Dec 14, 2022 | Helmet Store Showroom Site v1.0 is vulnerable to SQL Injection via /hss/admin/categories/manage_category.php?id=. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now