2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-42136 | HIGH | 8.8 | 0.9% | Jan 13, 2023 | Authenticated mail users, under specific circumstances, could add files with unsanitized content in public folders where... |
| CVE-2022-46956 | HIGH | 7.2 | 0.8% | Jan 13, 2023 | Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ... |
| CVE-2022-46955 | CRITICAL | 9.8 | 0.6% | Jan 13, 2023 | Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ... |
| CVE-2022-46954 | CRITICAL | 9.8 | 0.6% | Jan 13, 2023 | Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ... |
| CVE-2022-46953 | HIGH | 7.2 | 0.8% | Jan 13, 2023 | Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ... |
| CVE-2022-46952 | HIGH | 7.2 | 0.8% | Jan 13, 2023 | Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ... |
| CVE-2022-46951 | HIGH | 7.2 | 0.8% | Jan 13, 2023 | Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ... |
| CVE-2022-46950 | HIGH | 7.2 | 0.8% | Jan 13, 2023 | Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ... |
| CVE-2022-46949 | HIGH | 7.2 | 0.8% | Jan 13, 2023 | Helmet Store Showroom Site v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes... |
| CVE-2022-46947 | HIGH | 7.2 | 0.8% | Jan 13, 2023 | Helmet Store Showroom Site v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes... |
| CVE-2022-46946 | HIGH | 7.2 | 0.8% | Jan 13, 2023 | Helmet Store Showroom Site v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes... |
| CVE-2022-48091 | MEDIUM | 5.4 | 0.4% | Jan 13, 2023 | Tramyardg hotel-mgmt-system version 2022.4 is vulnerable to Cross Site Scripting (XSS) via process_update_profile.php. |
| CVE-2022-48090 | MEDIUM | 6.5 | 0.7% | Jan 13, 2023 | Tramyardg hotel-mgmt-system version 2022.4 is vulnerable to SQL Injection via /app/dao/CustomerDAO.php. |
| CVE-2022-3693 | HIGH | 7.5 | 0.7% | Jan 13, 2023 | Path Traversal vulnerability in Deytek Informatics FileOrbis File Management System allows Path Traversal. This issue a... |
| CVE-2022-42268 | HIGH | 7.8 | 0.6% | Jan 13, 2023 | Omniverse Kit contains a vulnerability in the reference applications Create, Audio2Face, Isaac Sim, View, Code, and Mac... |
| CVE-2022-3841 | HIGH | 7.8 | 0.2% | Jan 13, 2023 | RHACM: unauthenticated SSRF in console API endpoint. A Server-Side Request Forgery (SSRF) vulnerability was found in the... |
| CVE-2022-3782 | CRITICAL | 9.1 | 5.8% | Jan 13, 2023 | keycloak: path traversal via double URL encoding. A flaw was found in Keycloak, where it does not properly validate URLs... |
| CVE-2022-3143 | HIGH | 7.4 | 0.6% | Jan 13, 2023 | wildfly-elytron: possible timing attacks via use of unsafe comparator. A flaw was found in Wildfly-elytron. Wildfly-elyt... |
| CVE-2022-21191 | CRITICAL | 9.8 | 1.5% | Jan 13, 2023 | Versions of the package global-modules-path before 3.0.0 are vulnerable to Command Injection due to missing input saniti... |
| CVE-2022-42290 | HIGH | 8.8 | 1.0% | Jan 13, 2023 | NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can inject arbitrary shell commands, w... |
| CVE-2022-42289 | HIGH | 8.8 | 1.0% | Jan 13, 2023 | NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can inject arbitrary shell commands, w... |
| CVE-2022-42288 | MEDIUM | 5.3 | 0.5% | Jan 13, 2023 | NVIDIA BMC contains a vulnerability in IPMI handler, where an unauthorized attacker can use certain oracles to guess a v... |
| CVE-2022-42287 | HIGH | 7.8 | 0.2% | Jan 13, 2023 | NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can upload and download arbitrary file... |
| CVE-2022-42286 | HIGH | 7.8 | 0.2% | Jan 13, 2023 | DGX A100 SBIOS contains a vulnerability in Bds, which may lead to code execution, denial of service, or escalation of pr... |
| CVE-2022-46502 | CRITICAL | 9.8 | 13.7% | Jan 13, 2023 | Online Student Enrollment System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now