2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-34114 | HIGH | 8.8 | 0.8% | Jul 22, 2022 | Dataease v1.11.1 was discovered to contain a SQL injection vulnerability via the parameter dataSourceId. |
| CVE-2022-33960 | HIGH | 8.8 | 0.8% | Jul 22, 2022 | Multiple Authenticated (subscriber or higher user role) SQL Injection (SQLi) vulnerabilities in Social Share Buttons by ... |
| CVE-2022-33901 | HIGH | 7.5 | 2.1% | Jul 22, 2022 | Unauthenticated Arbitrary File Read vulnerability in MultiSafepay plugin for WooCommerce plugin <= 4.13.1 at WordPress. |
| CVE-2022-30998 | HIGH | 8.8 | 0.7% | Jul 22, 2022 | Multiple Authenticated (subscriber or higher user role) SQL Injection (SQLi) vulnerabilities in WooPlugins.co's Homepage... |
| CVE-2022-27235 | HIGH | 8.8 | 0.7% | Jul 22, 2022 | Multiple Broken Access Control vulnerabilities in Social Share Buttons by Supsystic plugin <= 2.2.3 at WordPress. |
| CVE-2022-0980 | HIGH | 8.8 | 0.5% | Jul 22, 2022 | Use after free in New Tab Page in Google Chrome prior to 99.0.4844.74 allowed an attacker who convinced a user to instal... |
| CVE-2022-0979 | HIGH | 8.8 | 0.7% | Jul 22, 2022 | Use after free in Safe Browsing in Google Chrome on Android prior to 99.0.4844.74 allowed a remote attacker who convince... |
| CVE-2022-0978 | HIGH | 8.8 | 0.7% | Jul 22, 2022 | Use after free in ANGLE in Google Chrome prior to 99.0.4844.74 allowed a remote attacker to potentially exploit heap cor... |
| CVE-2022-28879 | HIGH | 7.5 | 0.4% | Jul 22, 2022 | A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the... |
| CVE-2022-28878 | HIGH | 7.5 | 0.4% | Jul 22, 2022 | A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scannin... |
| CVE-2022-34037 | HIGH | 7.5 | 1.0% | Jul 22, 2022 | An out-of-bounds read in the rewrite function at /modules/caddyhttp/rewrite/rewrite.go in Caddy v2.5.1 allows attackers ... |
| CVE-2022-2138 | HIGH | 7.5 | 10.9% | Jul 22, 2022 | The affected product is vulnerable due to missing authentication, which may allow an attacker to read or modify sensitiv... |
| CVE-2022-2135 | HIGH | 7.5 | 10.1% | Jul 22, 2022 | The affected product is vulnerable to multiple SQL injections, which may allow an unauthorized attacker to disclose info... |
| CVE-2022-31168 | HIGH | 8.8 | 0.6% | Jul 22, 2022 | Zulip is an open source team chat tool. Due to an incorrect authorization check in Zulip Server 5.4 and earlier, a membe... |
| CVE-2022-2327 | HIGH | 7.8 | 0.3% | Jul 22, 2022 | io_uring use work_flags to determine which identity need to grab from the calling process to make sure it is consistent ... |
| CVE-2022-31172 | HIGH | 7.5 | 0.4% | Jul 22, 2022 | OpenZeppelin Contracts is a library for smart contract development. Versions 4.1.0 until 4.7.1 are vulnerable to the Sig... |
| CVE-2022-31170 | HIGH | 7.5 | 0.6% | Jul 22, 2022 | OpenZeppelin Contracts is a library for smart contract development. Versions 4.0.0 until 4.7.1 are vulnerable to ERC165C... |
| CVE-2022-31169 | HIGH | 7.5 | 0.7% | Jul 22, 2022 | Wasmtime is a standalone runtime for WebAssembly. There is a bug in Wasmtime's code generator, Cranelift, for AArch64 ta... |
| CVE-2022-31164 | HIGH | 7.5 | 0.5% | Jul 22, 2022 | Tovy is a a staff management system for Roblox groups. A vulnerability in versions prior to 0.7.51 allows users to log i... |
| CVE-2022-31163 | HIGH | 8.1 | 1.8% | Jul 22, 2022 | TZInfo is a Ruby library that provides access to time zone data and allows times to be converted using time zone rules. ... |
| CVE-2022-31162 | HIGH | 7.5 | 0.7% | Jul 22, 2022 | Slack Morphism is an async client library for Rust. Prior to 0.41.0, it was possible for Slack OAuth client information ... |
| CVE-2022-2493 | HIGH | 8.1 | 0.9% | Jul 22, 2022 | Data Access from Outside Expected Data Manager Component in GitHub repository openemr/openemr prior to 7.0.0. |
| CVE-2022-20912 | HIGH | 7.2 | 0.9% | Jul 22, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W... |
| CVE-2022-20911 | HIGH | 7.2 | 0.9% | Jul 22, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W... |
| CVE-2022-20910 | HIGH | 7.2 | 0.9% | Jul 22, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now