2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-38413 | HIGH | 7.8 | 0.4% | Sep 16, 2022 | Adobe InDesign versions 16.4.2 (and earlier) and 17.3 (and earlier) are affected by a Heap-based Buffer Overflow vulnera... |
| CVE-2022-38405 | HIGH | 7.8 | 0.6% | Sep 16, 2022 | Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by a Heap-based Buffer Overflow vulnerabil... |
| CVE-2022-38404 | HIGH | 7.8 | 0.6% | Sep 16, 2022 | Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by a Heap-based Buffer Overflow vulnerabil... |
| CVE-2022-38403 | HIGH | 7.8 | 0.6% | Sep 16, 2022 | Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by a Heap-based Buffer Overflow vulnerabil... |
| CVE-2022-38402 | HIGH | 7.8 | 0.4% | Sep 16, 2022 | Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by a Heap-based Buffer Overflow vulnerabil... |
| CVE-2022-38401 | HIGH | 7.8 | 0.4% | Sep 16, 2022 | Adobe InCopy version 17.3 (and earlier) and 16.4.2 (and earlier) are affected by a Heap-based Buffer Overflow vulnerabil... |
| CVE-2022-35713 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | Adobe Photoshop versions 22.5.8 (and earlier) and 23.4.2 (and earlier) are affected by an out-of-bounds write vulnerabil... |
| CVE-2022-28853 | HIGH | 7.8 | 0.4% | Sep 16, 2022 | Adobe InDesign versions 16.4.2 (and earlier) and 17.3 (and earlier) are affected by an out-of-bounds write vulnerability... |
| CVE-2022-28852 | HIGH | 7.8 | 0.4% | Sep 16, 2022 | Adobe InDesign versions 16.4.2 (and earlier) and 17.3 (and earlier) are affected by by an out-of-bounds write vulnerabil... |
| CVE-2022-38412 | HIGH | 7.8 | 0.4% | Sep 16, 2022 | Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by an out-of-bounds read vulnerability... |
| CVE-2022-38411 | HIGH | 7.8 | 0.6% | Sep 16, 2022 | Adobe Animate version 21.0.11 (and earlier) and 22.0.7 (and earlier) are affected by a Heap-based Buffer Overflow vulner... |
| CVE-2022-38408 | HIGH | 7.8 | 0.4% | Sep 16, 2022 | Adobe Illustrator versions 26.4 (and earlier) and 25.4.7 (and earlier) are affected by an Improper Input Validation vuln... |
| CVE-2022-40337 | HIGH | 8.8 | 1.1% | Sep 16, 2022 | OASES (aka Open Aviation Strategic Engineering System) 8.8.0.2 allows attackers to execute arbitrary code via the Open P... |
| CVE-2022-38878 | HIGH | 7.2 | 0.9% | Sep 16, 2022 | School Activity Updates with SMS Notification v1.0 is vulnerable to SQL Injection via /activity/admin/modules/event/inde... |
| CVE-2022-38877 | HIGH | 7.2 | 1.1% | Sep 16, 2022 | Garage Management System v1.0 is vulnerable to Arbitrary code execution via ip/garage/php_action/editProductImage.php?id... |
| CVE-2022-35195 | HIGH | 7.2 | 1.1% | Sep 16, 2022 | TestLink 1.9.20 Raijin was discovered to contain a broken access control vulnerability at /lib/attachments/attachmentdow... |
| CVE-2022-35193 | HIGH | 7.2 | 0.9% | Sep 16, 2022 | TestLink v1.9.20 was discovered to contain a SQL injection vulnerability via /lib/execute/execNavigator.php. |
| CVE-2022-38833 | HIGH | 7.2 | 0.8% | Sep 16, 2022 | School Activity Updates with SMS Notification v1.0 is vulnerable to SQL Injection via /activity/admin/modules/modstudent... |
| CVE-2022-38832 | HIGH | 7.2 | 0.9% | Sep 16, 2022 | School Activity Updates with SMS Notification v1.0 is vulnerable to SQL Injection via /activity/admin/modules/department... |
| CVE-2022-3176 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | There exists a use-after-free in io_uring in the Linux kernel. Signalfd_poll() and binder_poll() use a waitqueue whose l... |
| CVE-2022-38844 | HIGH | 8 | 1.1% | Sep 16, 2022 | CSV Injection in Create Contacts in EspoCRM 7.1.8 allows remote authenticated users to run system commands via creating ... |
| CVE-2022-38843 | HIGH | 8.8 | 1.1% | Sep 16, 2022 | EspoCRM version 7.1.8 is vulnerable to Unrestricted File Upload allowing attackers to upload malicious file with any ext... |
| CVE-2022-38808 | HIGH | 8.8 | 0.7% | Sep 16, 2022 | ywoa v6.1 is vulnerable to SQL Injection via backend/oa/visual/exportExcel.do interface. |
| CVE-2022-40152 | HIGH | 7.5 | 19.7% | Sep 16, 2022 | Those using Woodstox to parse XML data may be vulnerable to Denial of Service attacks (DOS) if DTD support is enabled. I... |
| CVE-2022-40151 | HIGH | 7.5 | 1.0% | Sep 16, 2022 | Those using Xstream to seralize XML data may be vulnerable to Denial of Service attacks (DOS). If the parser is running ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now