2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-1059 | MEDIUM | 6.1 | 0.6% | Oct 21, 2022 | Aethon TUG Home Base Server versions prior to version 24 are affected by un unauthenticated attacker who can freely acce... |
| CVE-2022-42206 | MEDIUM | 5.4 | 0.4% | Oct 21, 2022 | PHPGurukul Hospital Management System In PHP V 4.0 is vulnerable to Cross Site Scripting (XSS) via doctor/view-patient.p... |
| CVE-2022-42205 | MEDIUM | 5.4 | 0.4% | Oct 21, 2022 | PHPGurukul Hospital Management System In PHP V 4.0 is vulnerable to Cross Site Scripting (XSS) via add-patient.php. |
| CVE-2022-3637 | MEDIUM | 5.5 | 0.3% | Oct 21, 2022 | A vulnerability has been found in Linux Kernel and classified as problematic. This vulnerability affects the function jl... |
| CVE-2022-3630 | MEDIUM | 5.5 | 0.2% | Oct 21, 2022 | A vulnerability was found in Linux Kernel. It has been rated as problematic. This issue affects some unknown processing ... |
| CVE-2022-36966 | MEDIUM | 5.4 | 0.4% | Oct 20, 2022 | Users with Node Management rights were able to view and edit all nodes due to Insufficient control on URL parameter caus... |
| CVE-2022-3621 | MEDIUM | 6.5 | 1.2% | Oct 20, 2022 | A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_bmap_lo... |
| CVE-2022-3619 | MEDIUM | 4.3 | 0.6% | Oct 20, 2022 | A vulnerability has been found in Linux Kernel and classified as problematic. This vulnerability affects the function l2... |
| CVE-2022-40084 | MEDIUM | 5.3 | 0.6% | Oct 20, 2022 | OpenCRX before v5.2.2 was discovered to be vulnerable to password enumeration due to the difference in error messages re... |
| CVE-2022-42200 | MEDIUM | 5.4 | 0.5% | Oct 20, 2022 | Simple Exam Reviewer Management System v1.0 is vulnerable to Stored Cross Site Scripting (XSS) via the Exam List. |
| CVE-2022-42197 | MEDIUM | 6.5 | 0.6% | Oct 20, 2022 | In Simple Exam Reviewer Management System v1.0 the User List function has improper access control that allows low privil... |
| CVE-2022-26954 | MEDIUM | 6.1 | 0.7% | Oct 20, 2022 | Multiple open redirect vulnerabilities in NopCommerce 4.10 through 4.50.1 allow remote attackers to conduct phishing att... |
| CVE-2022-41358 | MEDIUM | 5.4 | 2.9% | Oct 20, 2022 | A stored cross-site scripting (XSS) vulnerability in Garage Management System v1.0 allows attackers to execute arbitrary... |
| CVE-2022-41813 | MEDIUM | 6.5 | 0.6% | Oct 19, 2022 | In versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when BIG-I... |
| CVE-2022-41780 | MEDIUM | 5.5 | 0.5% | Oct 19, 2022 | In F5OS-A version 1.x before 1.1.0 and F5OS-C version 1.x before 1.4.0, a directory traversal vulnerability exists in an... |
| CVE-2022-41770 | MEDIUM | 6.5 | 0.6% | Oct 19, 2022 | In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1, and all... |
| CVE-2022-41694 | MEDIUM | 4.9 | 0.6% | Oct 19, 2022 | In BIG-IP versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, and B... |
| CVE-2022-38107 | MEDIUM | 5.3 | 0.6% | Oct 19, 2022 | Sensitive information could be displayed when a detailed technical error message is posted. This information could discl... |
| CVE-2022-31684 | MEDIUM | 4.3 | 0.6% | Oct 19, 2022 | Reactor Netty HTTP Server, in versions 1.0.11 - 1.0.23, may log request headers in some cases of invalid HTTP requests. ... |
| CVE-2022-41708 | MEDIUM | 4.3 | 0.5% | Oct 19, 2022 | Relatedcode's Messenger version 7bcd20b allows an authenticated external attacker to access existing chats in the worksp... |
| CVE-2022-43023 | MEDIUM | 6.5 | 0.8% | Oct 19, 2022 | OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the importID parameter in the Import viewerr... |
| CVE-2022-43022 | MEDIUM | 6.5 | 0.8% | Oct 19, 2022 | OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the tag_id variable in the Tag deletion func... |
| CVE-2022-43021 | MEDIUM | 6.5 | 0.8% | Oct 19, 2022 | OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the entriesPerPage variable. |
| CVE-2022-43020 | MEDIUM | 6.5 | 0.8% | Oct 19, 2022 | OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the tag_id variable in the Tag update functi... |
| CVE-2022-43018 | MEDIUM | 6.1 | 1.3% | Oct 19, 2022 | OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the email parameter i... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now