2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-45884 | HIGH | 7 | 0.3% | Nov 25, 2022 | An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvbdev.c has a use-after-free, related... |
| CVE-2022-29831 | HIGH | 7.5 | 1.3% | Nov 25, 2022 | Use of Hard-coded Password vulnerability in Mitsubishi Electric Corporation GX Works3 versions from 1.015R to 1.095Z all... |
| CVE-2022-29829 | HIGH | 7.5 | 1.0% | Nov 25, 2022 | Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U, GT De... |
| CVE-2022-29828 | HIGH | 7.5 | 1.0% | Nov 25, 2022 | Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A and later allows... |
| CVE-2022-29827 | HIGH | 7.5 | 1.0% | Nov 25, 2022 | Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A and later allows... |
| CVE-2022-29826 | HIGH | 7.5 | 0.7% | Nov 25, 2022 | Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.087R... |
| CVE-2022-29825 | HIGH | 7.5 | 0.5% | Nov 25, 2022 | Use of Hard-coded Password vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U, GT Designer3 V... |
| CVE-2022-25164 | HIGH | 7.5 | 0.8% | Nov 25, 2022 | Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z... |
| CVE-2022-26885 | HIGH | 7.5 | 1.2% | Nov 24, 2022 | When using tasks to read config files, there is a risk of database password disclosure. We recommend you upgrade to vers... |
| CVE-2022-4090 | HIGH | 8.8 | 0.2% | Nov 24, 2022 | A vulnerability was found in rickxy Stock Management System and classified as problematic. This issue affects some unkno... |
| CVE-2022-40977 | HIGH | 7.5 | 0.9% | Nov 24, 2022 | A path traversal vulnerability was discovered in Pilz PASvisu Server before 1.12.0. An unauthenticated remote attacker c... |
| CVE-2022-44749 | HIGH | 7 | 0.4% | Nov 24, 2022 | A directory traversal vulnerability in the ZIP archive extraction routines of KNIME Analytics Platform 3.2.0 and above c... |
| CVE-2022-44748 | HIGH | 7.5 | 1.3% | Nov 24, 2022 | A directory traversal vulnerability in the ZIP archive extraction routines of KNIME Server since 4.3.0 can result in arb... |
| CVE-2022-45868 | HIGH | 7.8 | 0.3% | Nov 23, 2022 | The web-based admin console in H2 Database Engine before 2.2.220 can be started via the CLI with the argument -webAdminP... |
| CVE-2022-45278 | HIGH | 8.8 | 0.7% | Nov 23, 2022 | Jizhicms v2.3.3 was discovered to contain a SQL injection vulnerability via the /index.php/admins/Fields/get_fields.html... |
| CVE-2022-44789 | HIGH | 8.8 | 2.2% | Nov 23, 2022 | A logical issue in O_getOwnPropertyDescriptor() in Artifex MuJS 1.0.0 through 1.3.x before 1.3.2 allows an attacker to a... |
| CVE-2022-44140 | HIGH | 8.8 | 0.7% | Nov 23, 2022 | Jizhicms v2.3.3 was discovered to contain a SQL injection vulnerability via the /Member/memberedit.html component. |
| CVE-2022-41934 | HIGH | 8.8 | 1.3% | Nov 23, 2022 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any user with v... |
| CVE-2022-41931 | HIGH | 8.8 | 1.2% | Nov 23, 2022 | xwiki-platform-icon-ui is vulnerable to Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injec... |
| CVE-2022-41930 | HIGH | 8.2 | 0.8% | Nov 23, 2022 | org.xwiki.platform:xwiki-platform-user-profile-ui is missing authorization to enable or disable users. Any user (logged ... |
| CVE-2022-41928 | HIGH | 8.8 | 1.0% | Nov 23, 2022 | XWiki Platform vulnerable to Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') in A... |
| CVE-2022-41927 | HIGH | 7.4 | 0.3% | Nov 23, 2022 | XWiki Platform is vulnerable to Cross-Site Request Forgery (CSRF) that may allow attackers to delete or rename tags with... |
| CVE-2022-41925 | HIGH | 8.8 | 0.5% | Nov 23, 2022 | A vulnerability identified in the Tailscale client allows a malicious website to access the peer API, which can then be ... |
| CVE-2022-40304 | HIGH | 7.8 | 6.8% | Nov 23, 2022 | An issue was discovered in libxml2 before 2.10.3. Certain invalid XML entity definitions can corrupt a hash table key, p... |
| CVE-2022-39833 | HIGH | 7.2 | 2.6% | Nov 23, 2022 | FileCloud Versions 20.2 and later allows remote attackers to potentially cause unauthorized remote code execution and ac... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now