2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4918 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Use after free in UI in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to perform arbitrary read/write v... |
| CVE-2022-4917 | MEDIUM | 4.3 | 0.3% | Jul 29, 2023 | Incorrect security UI in Notifications in Google Chrome on Android prior to 103.0.5060.53 allowed a remote attacker to o... |
| CVE-2022-4916 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Use after free in Media in Google Chrome prior to 103.0.5060.53 allowed a remote attacker to perform arbitrary read/writ... |
| CVE-2022-4915 | MEDIUM | 6.5 | 0.5% | Jul 29, 2023 | Inappropriate implementation in URL Formatting in Google Chrome prior to 103.0.5060.134 allowed a remote attacker to per... |
| CVE-2022-4914 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Heap buffer overflow in PrintPreview in Google Chrome prior to 104.0.5112.79 allowed an attacker who convinced a user to... |
| CVE-2022-4913 | MEDIUM | 6.5 | 0.5% | Jul 29, 2023 | Inappropriate implementation in Extensions in Google Chrome prior to 105.0.5195.52 allowed a remote attacker who had com... |
| CVE-2022-4912 | HIGH | 8.8 | 0.6% | Jul 29, 2023 | Type Confusion in MathML in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap c... |
| CVE-2022-4911 | MEDIUM | 6.5 | 0.5% | Jul 29, 2023 | Insufficient data validation in DevTools in Google Chrome prior to 106.0.5249.62 allowed a remote attacker to bypass con... |
| CVE-2022-4910 | MEDIUM | 5.4 | 0.4% | Jul 29, 2023 | Inappropriate implementation in Autofill in Google Chrome prior to 107.0.5304.62 allowed a remote attacker to bypass nav... |
| CVE-2022-4909 | MEDIUM | 6.3 | 0.4% | Jul 29, 2023 | Inappropriate implementation in XML in Google Chrome prior to 107.0.5304.62 allowed a remote attacker to potentially per... |
| CVE-2022-4908 | MEDIUM | 4.3 | 0.5% | Jul 29, 2023 | Inappropriate implementation in iFrame Sandbox in Google Chrome prior to 107.0.5304.62 allowed a remote attacker to leak... |
| CVE-2022-4907 | HIGH | 8.8 | 1.3% | Jul 29, 2023 | Uninitialized Use in FFmpeg in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to execute arbitrary code ... |
| CVE-2022-4906 | HIGH | 8.8 | 13.0% | Jul 29, 2023 | Inappropriate implementation in Blink in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to perform arbit... |
| CVE-2022-31454 | MEDIUM | 6.1 | 0.4% | Jul 28, 2023 | Yii 2 v2.0.45 was discovered to contain a cross-site scripting (XSS) vulnerability via the endpoint /books. NOTE: this i... |
| CVE-2022-43703 | HIGH | 7.8 | 0.2% | Jul 27, 2023 | An installer that loads or executes files using an unconstrained search path may be vulnerable to substitute files under... |
| CVE-2022-43702 | HIGH | 7.8 | 0.2% | Jul 27, 2023 | When the directory containing the installer does not have sufficiently restrictive file permissions, an attacker can mod... |
| CVE-2022-43701 | HIGH | 7.8 | 0.2% | Jul 27, 2023 | When the installation directory does not have sufficiently restrictive file permissions, an attacker can modify files in... |
| CVE-2022-31200 | MEDIUM | 6.1 | 0.4% | Jul 27, 2023 | Atmail 5.62 allows XSS via the mail/parse.php?file=html/$this-%3ELanguage/help/filexp.html&FirstLoad=1&HelpFile=file.htm... |
| CVE-2022-31455 | MEDIUM | 6.1 | 0.4% | Jul 26, 2023 | * A cross-site scripting (XSS) vulnerability in Truedesk v1.2.2 allows attackers to execute arbitrary web scripts or HTM... |
| CVE-2022-31456 | MEDIUM | 6.1 | 0.4% | Jul 26, 2023 | A cross-site scripting (XSS) vulnerability in Truedesk v1.2.2 allows attackers to execute arbitrary web scripts or HTML ... |
| CVE-2022-43713 | HIGH | 7.5 | 0.4% | Jul 26, 2023 | Interactive Forms (IAF) in GX Software XperienCentral versions 10.33.1 until 10.35.0 was vulnerable to invalid data inpu... |
| CVE-2022-43712 | MEDIUM | 6.5 | 0.4% | Jul 26, 2023 | POST requests to /web/mvc in GX Software XperienCentral version 10.36.0 and earlier were not blocked for uses that are n... |
| CVE-2022-43711 | MEDIUM | 6.1 | 0.3% | Jul 26, 2023 | Interactive Forms (IAF) in GX Software XperienCentral versions 10.29.1 until 10.33.0 was vulnerable to cross site script... |
| CVE-2022-43710 | HIGH | 8.8 | 0.2% | Jul 26, 2023 | Interactive Forms (IAF) in GX Software XperienCentral versions 10.31.0 until 10.33.0 was vulnerable to cross site reques... |
| CVE-2022-4608 | HIGH | 7.5 | 0.6% | Jul 26, 2023 | A vulnerability exists in HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vu... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now