2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4053 | MEDIUM | 4.8 | 0.4% | Nov 17, 2022 | A vulnerability was found in Student Attendance Management System. It has been classified as problematic. Affected is an... |
| CVE-2022-42892 | MEDIUM | 5.3 | 0.6% | Nov 17, 2022 | A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hos... |
| CVE-2022-40751 | MEDIUM | 4.9 | 0.6% | Nov 17, 2022 | IBM UrbanCode Deploy (UCD) 6.2.7.0 through 6.2.7.17, 7.0.0.0 through 7.0.5.12, 7.1.0.0 through 7.1.2.8, and 7.2.0.0 thr... |
| CVE-2022-38390 | MEDIUM | 5.4 | 0.4% | Nov 17, 2022 | Multiple IBM Business Automation Workflow versions are vulnerable to cross-site scripting. This vulnerability allows use... |
| CVE-2022-42985 | MEDIUM | 4.8 | 0.4% | Nov 17, 2022 | The ScratchLogin extension through 1.1 for MediaWiki does not escape verification failure messages, which allows users w... |
| CVE-2022-42954 | MEDIUM | 5.4 | 0.3% | Nov 17, 2022 | Keyfactor EJBCA before 7.10.0 allows XSS. |
| CVE-2022-39834 | MEDIUM | 5.4 | 0.3% | Nov 17, 2022 | A stored XSS vulnerability was discovered in adminweb/ra/viewendentity.jsp in PrimeKey EJBCA through 7.9.0.2. A low-priv... |
| CVE-2022-36432 | MEDIUM | 5.4 | 0.5% | Nov 17, 2022 | The Preview functionality in the Amasty Blog Pro 2.10.3 plugin for Magento 2 uses eval unsafely. This allows attackers t... |
| CVE-2022-42187 | MEDIUM | 6.1 | 0.4% | Nov 17, 2022 | Hustoj 22.09.22 has a XSS Vulnerability in /admin/problem_judge.php. |
| CVE-2022-42960 | MEDIUM | 5.4 | 0.4% | Nov 17, 2022 | EqualWeb Accessibility Widget 2.0.0, 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.1.10, 3.0.0, 3.0.1, 3.0.2, 4.0.0, and 4.0.1 allows DO... |
| CVE-2022-44005 | MEDIUM | 5.3 | 0.6% | Nov 16, 2022 | An issue was discovered in BACKCLICK Professional 5.9.63. Due to the use of consecutive IDs in verification links, the n... |
| CVE-2022-44002 | MEDIUM | 6.1 | 0.4% | Nov 16, 2022 | An issue was discovered in BACKCLICK Professional 5.9.63. Due to insufficient output encoding of user-supplied data, the... |
| CVE-2022-44008 | MEDIUM | 6.5 | 0.8% | Nov 16, 2022 | An issue was discovered in BACKCLICK Professional 5.9.63. Due to improper validation, arbitrary local files can be retri... |
| CVE-2022-39319 | MEDIUM | 4.6 | 0.7% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input length val... |
| CVE-2022-39318 | MEDIUM | 5.7 | 1.0% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input validation... |
| CVE-2022-39317 | MEDIUM | 4.6 | 0.6% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing a range check fo... |
| CVE-2022-41877 | MEDIUM | 4.6 | 0.7% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input length val... |
| CVE-2022-39383 | MEDIUM | 6.5 | 0.4% | Nov 16, 2022 | KubeVela is an open source application delivery platform. Users using the VelaUX APIServer could be affected by this vul... |
| CVE-2022-39347 | MEDIUM | 5.7 | 0.9% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing path canonicaliz... |
| CVE-2022-39320 | MEDIUM | 4.6 | 0.7% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP may attempt integer addition... |
| CVE-2022-39316 | MEDIUM | 5.7 | 1.0% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. In affected versions there is an out of bound read in ZGF... |
| CVE-2022-44073 | MEDIUM | 5.4 | 0.4% | Nov 16, 2022 | Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via svg,Users & Contacts. |
| CVE-2022-44071 | MEDIUM | 5.4 | 0.4% | Nov 16, 2022 | Zenario CMS 9.3.57186 is is vulnerable to Cross Site Scripting (XSS) via profile. |
| CVE-2022-44070 | MEDIUM | 5.4 | 0.4% | Nov 16, 2022 | Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via News articles. |
| CVE-2022-44069 | MEDIUM | 5.4 | 0.4% | Nov 16, 2022 | Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via the Nest library module. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now