2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-1861HIGH8.8Use after free in Sharing in Google Chrome on Chrome OS prior to 102.0.5005.61 allowed a remote attacker who convinced a...
CVE-2022-1860HIGH8.8Use after free in UI Foundations in Google Chrome on Chrome OS prior to 102.0.5005.61 allowed a remote attacker who conv...
CVE-2022-1859HIGH8.8Use after free in Performance Manager in Google Chrome prior to 102.0.5005.61 allowed a remote attacker who convinced a ...
CVE-2022-1857HIGH8.8Insufficient policy enforcement in File System API in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to ...
CVE-2022-1856HIGH8.8Use after free in User Education in Google Chrome prior to 102.0.5005.61 allowed an attacker who convinced a user to ins...
CVE-2022-1855HIGH8.8Use after free in Messaging in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to potentially exploit hea...
CVE-2022-1854HIGH8.8Use after free in ANGLE in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to potentially exploit heap co...
CVE-2022-36956HIGH7.5In Veritas NetBackup, the NetBackup Client allows arbitrary command execution from any remote host that has access to a ...
CVE-2022-36955HIGH8.4In Veritas NetBackup, an attacker with unprivileged local access to a NetBackup Client may send specific commands to esc...
CVE-2022-36949HIGH7.8In Veritas NetBackup OpsCenter, an attacker with local access to a NetBackup OpsCenter server could potentially escalate...
CVE-2022-35911HIGH7.5On Patlite NH-FB series devices through 1.46, remote attackers can cause a denial of service by omitting the query strin...
CVE-2022-36946HIGH7.5nfqnl_mangle in net/netfilter/nfnetlink_queue.c in the Linux kernel through 5.18.14 allows remote attackers to cause a d...
CVE-2022-34121HIGH7.5Cuppa CMS v1.0 was discovered to contain a local file inclusion (LFI) vulnerability via the component /templates/default...
CVE-2022-34120HIGH7.2Barangay Management System v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the module edi...
CVE-2022-35672HIGH7.8Adobe Acrobat Reader version 22.001.20085 (and earlier), 20.005.30314 (and earlier) and 17.012.30205 (and earlier) are a...
CVE-2022-36921HIGH8.1A missing permission check in Jenkins Coverity Plugin 1.11.4 and earlier allows attackers with Overall/Read permission t...
CVE-2022-36920HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Coverity Plugin 1.11.4 and earlier allows attackers to conn...
CVE-2022-36916HIGH8A cross-site request forgery (CSRF) vulnerability in Jenkins Google Cloud Backup Plugin 0.6 and earlier allows attackers...
CVE-2022-36900HIGH8.2Jenkins Compuware zAdviser API Plugin 1.0.3 and earlier does not restrict execution of a controller/agent message to age...
CVE-2022-36899HIGH8.2Jenkins Compuware ISPW Operations Plugin 1.0.8 and earlier does not restrict execution of a controller/agent message to ...
CVE-2022-36889HIGH8.8Jenkins Deployer Framework Plugin 85.v1d1888e8c021 and earlier does not restrict the application path of the application...
CVE-2022-36883HIGH7.5A missing permission check in Jenkins Git Plugin 4.11.3 and earlier allows unauthenticated attackers to trigger builds o...
CVE-2022-36882HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Git Plugin 4.11.3 and earlier allows attackers to trigger b...
CVE-2022-36881HIGH8.1Jenkins Git client Plugin 3.11.0 and earlier does not perform SSH host key verification when connecting to Git repositor...
CVE-2022-2550HIGH8.8OS Command Injection in GitHub repository hestiacp/hestiacp prior to 1.6.5.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now