2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32149 | HIGH | 7.5 | 1.4% | Oct 14, 2022 | An attacker may cause a denial of service by crafting an Accept-Language header which ParseAcceptLanguage will take sign... |
| CVE-2022-2880 | HIGH | 7.5 | 1.1% | Oct 14, 2022 | Requests forwarded by ReverseProxy include the raw query parameters from the inbound request, including unparsable param... |
| CVE-2022-2879 | HIGH | 7.5 | 1.5% | Oct 14, 2022 | Reader.Read does not set a limit on the maximum size of file headers. A maliciously crafted archive could cause Read to ... |
| CVE-2022-28762 | HIGH | 7.8 | 0.3% | Oct 14, 2022 | Zoom Client for Meetings for macOS (Standard and for IT Admin) starting with 5.10.6 and prior to 5.12.0 contains a debug... |
| CVE-2022-28759 | HIGH | 8.6 | 0.6% | Oct 14, 2022 | Zoom On-Premise Meeting Connector MMR before version 4.8.20220815.130 contains an improper access control vulnerability.... |
| CVE-2022-3496 | HIGH | 8.8 | 0.4% | Oct 14, 2022 | A vulnerability was found in SourceCodester Human Resource Management System 1.0 and classified as critical. This issue ... |
| CVE-2022-3495 | HIGH | 7.2 | 0.6% | Oct 14, 2022 | A vulnerability has been found in SourceCodester Simple Online Public Access Catalog 1.0 and classified as critical. Thi... |
| CVE-2022-2780 | HIGH | 8.1 | 0.5% | Oct 14, 2022 | In affected versions of Octopus Server it is possible to use the Git Connectivity test function on the VCS project to in... |
| CVE-2022-41536 | HIGH | 7.2 | 0.7% | Oct 14, 2022 | Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-41535 | HIGH | 7.2 | 0.7% | Oct 14, 2022 | Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-41539 | HIGH | 8.8 | 1.0% | Oct 14, 2022 | Wedding Planner v1.0 was discovered to contain an arbitrary file upload vulnerability in the component /admin/users_add.... |
| CVE-2022-41538 | HIGH | 8.8 | 1.0% | Oct 14, 2022 | Wedding Planner v1.0 was discovered to contain an arbitrary file upload vulnerability in the component /Wedding-Manageme... |
| CVE-2022-36803 | HIGH | 8.8 | 0.6% | Oct 14, 2022 | The MasterUserEdit API in Atlassian Jira Align Server before version 10.109.2 allows An authenticated attacker with the ... |
| CVE-2022-42720 | HIGH | 7.8 | 0.8% | Oct 14, 2022 | Various refcounting bugs in the multi-BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5... |
| CVE-2022-41674 | HIGH | 8.1 | 3.8% | Oct 14, 2022 | An issue was discovered in the Linux kernel before 5.19.16. Attackers able to inject WLAN frames could cause a buffer ov... |
| CVE-2022-42719 | HIGH | 8.8 | 1.2% | Oct 13, 2022 | A use-after-free in the mac80211 stack when parsing a multi-BSSID element in the Linux kernel 5.2 through 5.19.x before ... |
| CVE-2022-39278 | HIGH | 7.5 | 1.1% | Oct 13, 2022 | Istio is an open platform-independent service mesh that provides traffic management, policy enforcement, and telemetry c... |
| CVE-2022-39201 | HIGH | 7.5 | 1.2% | Oct 13, 2022 | Grafana is an open source observability and data visualization platform. Starting with version 5.0.0-beta1 and prior to ... |
| CVE-2022-35135 | HIGH | 8.8 | 0.8% | Oct 13, 2022 | Boodskap IoT Platform v4.4.9-02 allows attackers to escalate privileges via a crafted request sent to /api/user/upsert/<... |
| CVE-2022-34022 | HIGH | 7.2 | 0.8% | Oct 13, 2022 | SQL injection vulnerability in ResIOT IOT Platform + LoRaWAN Network Server through 4.1.1000114 via a crafted POST reque... |
| CVE-2022-31130 | HIGH | 7.5 | 1.0% | Oct 13, 2022 | Grafana is an open source observability and data visualization platform. Versions of Grafana for endpoints prior to 9.1.... |
| CVE-2022-39300 | HIGH | 8.1 | 0.6% | Oct 13, 2022 | node SAML is a SAML 2.0 library based on the SAML implementation of passport-saml. A remote attacker may be able to bypa... |
| CVE-2022-35944 | HIGH | 7.2 | 0.9% | Oct 13, 2022 | October is a self-hosted Content Management System (CMS) platform based on the Laravel PHP Framework. This vulnerability... |
| CVE-2022-31123 | HIGH | 7.8 | 0.2% | Oct 13, 2022 | Grafana is an open source observability and data visualization platform. Versions prior to 9.1.8 and 8.5.14 are vulnerab... |
| CVE-2022-41534 | HIGH | 7.2 | 1.1% | Oct 13, 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the co... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now