2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32751 | MEDIUM | 5.3 | 0.5% | Mar 22, 2024 | IBM Security Verify Directory 10.0.0 could disclose sensitive server information that could be used in further attacks a... |
| CVE-2022-44595 | MEDIUM | 5.3 | 0.5% | Mar 21, 2024 | Improper Authentication vulnerability in Melapress WP 2FA allows Authentication Bypass.This issue affects WP 2FA: from n... |
| CVE-2022-4963 | CRITICAL | 9.8 | 0.6% | Mar 21, 2024 | A vulnerability was found in Folio Spring Module Core up to 1.1.5. It has been rated as critical. Affected by this issue... |
| CVE-2022-47037 | HIGH | 7.5 | 0.5% | Mar 18, 2024 | Siklu TG Terragraph devices before 2.1.1 allow attackers to discover valid, randomly generated credentials via GetCreden... |
| CVE-2022-47036 | CRITICAL | 9.8 | 0.5% | Mar 18, 2024 | Siklu TG Terragraph devices before approximately 2.1.1 have a hardcoded root password that has been revealed via a brute... |
| CVE-2022-34321 | HIGH | 8.2 | 1.8% | Mar 12, 2024 | Improper Authentication vulnerability in Apache Pulsar Proxy allows an attacker to connect to the /proxy-stats endpoint ... |
| CVE-2022-32257 | CRITICAL | 9.8 | 0.8% | Mar 12, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2). The affected application cons... |
| CVE-2022-46070 | HIGH | 7.5 | 0.5% | Mar 11, 2024 | GV-ASManager V6.0.1.0 contains a Local File Inclusion vulnerability in GeoWebServer via Path. |
| CVE-2022-43855 | MEDIUM | 5.5 | 0.2% | Mar 8, 2024 | IBM SPSS Statistics 26.0, 27.0.1, and 28.0 IO Module could allow a local user to create multiple files that could exhaus... |
| CVE-2022-46499 | HIGH | 8.8 | 0.5% | Mar 7, 2024 | Hospital Management System 1.0 was discovered to contain a SQL injection vulnerability via the pat_number parameter at h... |
| CVE-2022-46498 | LOW | 2.7 | 0.4% | Mar 7, 2024 | Hospital Management System 1.0 was discovered to contain a SQL injection vulnerability via the doc_number parameter at h... |
| CVE-2022-46497 | HIGH | 8.1 | 0.5% | Mar 7, 2024 | Hospital Management System 1.0 was discovered to contain a SQL injection vulnerability via the pat_number parameter at h... |
| CVE-2022-46091 | MEDIUM | 4.7 | 0.4% | Mar 7, 2024 | Cross Site Scripting (XSS) vulnerability in the feedback form of Online Flight Booking Management System v1.0 allows att... |
| CVE-2022-46089 | MEDIUM | 6.1 | 0.4% | Mar 7, 2024 | Cross Site Scripting (XSS) vulnerability in the add-airline form of Online Flight Booking Management System v1.0 allows ... |
| CVE-2022-22399 | MEDIUM | 6.5 | 0.4% | Mar 5, 2024 | IBM Aspera Faspex 5.0.0 and 5.0.1 is vulnerable to HTTP header injection, caused by improper validation of input by the ... |
| CVE-2022-46088 | MEDIUM | 6.1 | 0.4% | Mar 5, 2024 | Online Flight Booking Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via th... |
| CVE-2022-48630 | MEDIUM | 5.5 | 0.2% | Mar 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - fix infinite loop on requests no... |
| CVE-2022-48629 | MEDIUM | 5.5 | 0.4% | Mar 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - ensure buffer for generate is co... |
| CVE-2022-43890 | HIGH | 7.5 | 0.4% | Mar 4, 2024 | IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information through an HTTP request that could a... |
| CVE-2022-43880 | MEDIUM | 4.4 | 0.2% | Mar 3, 2024 | IBM QRadar WinCollect Agent 10.0 through 10.1.2 could allow a privileged user to cause a denial of service. IBM X-Force... |
| CVE-2022-48628 | MEDIUM | 5.5 | 0.2% | Mar 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: ceph: drop messages from MDS when unmounting When ... |
| CVE-2022-48627 | MEDIUM | 5.5 | 0.3% | Mar 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: vt: fix memory overlapping when deleting chars in t... |
| CVE-2022-36677 | MEDIUM | 6.1 | 0.5% | Feb 29, 2024 | Obsidian Mind Map v1.1.0 allows attackers to execute arbitrary code via a crafted payload injected into an uploaded docu... |
| CVE-2022-34270 | CRITICAL | 9.8 | 0.9% | Feb 29, 2024 | An issue was discovered in RWS WorldServer before 11.7.3. Regular users can create users with the Administrator role via... |
| CVE-2022-34269 | HIGH | 8.8 | 1.7% | Feb 29, 2024 | An issue was discovered in RWS WorldServer before 11.7.3. An authenticated, remote attacker can perform a ws-legacy/load... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now