2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-35291 | HIGH | 8.1 | 0.6% | Jul 27, 2022 | Due to misconfigured application endpoints, SAP SuccessFactors attachment APIs allow attackers with user privileges to p... |
| CVE-2022-34549 | HIGH | 8.8 | 1.1% | Jul 27, 2022 | Sims v1.0 was discovered to contain an arbitrary file upload vulnerability via the component /uploadServlet. This vulner... |
| CVE-2022-33970 | HIGH | 7.2 | 0.9% | Jul 27, 2022 | Authenticated WordPress Options Change vulnerability in Biplob018 Shortcode Addons plugin <= 3.1.2 at WordPress. |
| CVE-2022-2313 | HIGH | 7.3 | 0.3% | Jul 27, 2022 | A DLL hijacking vulnerability in the MA Smart Installer for Windows prior to 5.7.7, which allows local users to execute ... |
| CVE-2022-27610 | HIGH | 8.1 | 1.3% | Jul 27, 2022 | Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in webapi component in Syno... |
| CVE-2022-34971 | HIGH | 8.8 | 1.0% | Jul 27, 2022 | An arbitrary file upload vulnerability in the Advertising Management module of Feehi CMS v2.1.1 allows attackers to exec... |
| CVE-2022-30276 | HIGH | 7.5 | 0.6% | Jul 26, 2022 | The Motorola MOSCAD and ACE line of RTUs through 2022-05-02 omit an authentication requirement. They feature IP Gateway ... |
| CVE-2022-30272 | HIGH | 7.2 | 0.4% | Jul 26, 2022 | The Motorola ACE1000 RTU through 2022-05-02 mishandles firmware integrity. It utilizes either the STS software suite or ... |
| CVE-2022-30269 | HIGH | 8.8 | 0.4% | Jul 26, 2022 | Motorola ACE1000 RTUs through 2022-05-02 mishandle application integrity. They allow for custom application installation... |
| CVE-2022-31205 | HIGH | 7.5 | 0.5% | Jul 26, 2022 | In Omron CS series, CJ series, and CP series PLCs through 2022-05-18, the password for access to the Web UI is stored in... |
| CVE-2022-31204 | HIGH | 7.5 | 0.5% | Jul 26, 2022 | Omron CS series, CJ series, and CP series PLCs through 2022-05-18 use cleartext passwords. They feature a UM Protection ... |
| CVE-2022-30275 | HIGH | 7.5 | 0.5% | Jul 26, 2022 | The Motorola MOSCAD Toolbox software through 2022-05-02 relies on a cleartext password. It utilizes an MDLC driver to co... |
| CVE-2022-29957 | HIGH | 7.8 | 0.2% | Jul 26, 2022 | The Emerson DeltaV Distributed Control System (DCS) through 2022-04-29 mishandles authentication. It utilizes several pr... |
| CVE-2022-1641 | HIGH | 8.8 | 0.8% | Jul 26, 2022 | Use after free in Web UI Diagnostics in Google Chrome on Chrome OS prior to 101.0.4951.64 allowed a remote attacker who ... |
| CVE-2022-1640 | HIGH | 8.8 | 0.7% | Jul 26, 2022 | Use after free in Sharing in Google Chrome prior to 101.0.4951.64 allowed a remote attacker who convinced a user to enga... |
| CVE-2022-1639 | HIGH | 8.8 | 0.7% | Jul 26, 2022 | Use after free in ANGLE in Google Chrome prior to 101.0.4951.64 allowed a remote attacker to potentially exploit heap co... |
| CVE-2022-1638 | HIGH | 8.8 | 0.6% | Jul 26, 2022 | Heap buffer overflow in V8 Internationalization in Google Chrome prior to 101.0.4951.64 allowed a remote attacker to pot... |
| CVE-2022-1636 | HIGH | 8.8 | 0.7% | Jul 26, 2022 | Use after free in Performance APIs in Google Chrome prior to 101.0.4951.64 allowed a remote attacker to potentially expl... |
| CVE-2022-1635 | HIGH | 8.8 | 0.7% | Jul 26, 2022 | Use after free in Permission Prompts in Google Chrome prior to 101.0.4951.64 allowed a remote attacker who convinced a u... |
| CVE-2022-1634 | HIGH | 8.8 | 0.7% | Jul 26, 2022 | Use after free in Browser UI in Google Chrome prior to 101.0.4951.64 allowed a remote attacker who had convinced a user ... |
| CVE-2022-1633 | HIGH | 8.8 | 0.7% | Jul 26, 2022 | Use after free in Sharesheet in Google Chrome on Chrome OS prior to 101.0.4951.64 allowed a remote attacker who convince... |
| CVE-2022-1496 | HIGH | 8.8 | 0.7% | Jul 26, 2022 | Use after free in File Manager in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially exploit ... |
| CVE-2022-1493 | HIGH | 8.8 | 0.7% | Jul 26, 2022 | Use after free in Dev Tools in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially exploit hea... |
| CVE-2022-1491 | HIGH | 8.8 | 0.7% | Jul 26, 2022 | Use after free in Bookmarks in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially exploit hea... |
| CVE-2022-1490 | HIGH | 8.8 | 0.7% | Jul 26, 2022 | Use after free in Browser Switcher in Google Chrome prior to 101.0.4951.41 allowed a remote attacker who convinced a use... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now