2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-33097 | HIGH | 7.5 | 0.9% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a SQL injection vulnerability via the keyword parameter at /home/campus/campus_... |
| CVE-2022-33096 | HIGH | 7.5 | 0.9% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a SQL injection vulnerability via the keyword parameter at /home/resume/index. |
| CVE-2022-33095 | HIGH | 7.5 | 1.0% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a SQL injection vulnerability via the keyword parameter at /home/jobfairol/resu... |
| CVE-2022-33094 | HIGH | 7.5 | 0.9% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a SQL injection vulnerability via the keyword parameter at /home/job/map. |
| CVE-2022-33093 | HIGH | 7.5 | 0.9% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a SQL injection vulnerability via the key parameter at /freelance/resume_list. |
| CVE-2022-33092 | HIGH | 7.5 | 0.9% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a SQL injection vulnerability via the keyword parameter at /home/job/index. |
| CVE-2022-33034 | HIGH | 7.8 | 0.7% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a stack overflow via the function copy_bytes at decode_r2007.c. |
| CVE-2022-33033 | HIGH | 7.8 | 0.7% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a double-free via the function dwg_read_file at dwg.c. |
| CVE-2022-33032 | HIGH | 7.8 | 0.7% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a heap-buffer-overflow via the function decode_preR13_section_hdr at dec... |
| CVE-2022-33028 | HIGH | 7.8 | 0.7% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a heap buffer overflow via the function dwg_add_object at decode.c. |
| CVE-2022-33027 | HIGH | 7.8 | 0.7% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a heap-use-after-free via the function dwg_add_handleref at dwg.c. |
| CVE-2022-33026 | HIGH | 7.8 | 0.7% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a heap buffer overflow via the function bit_calc_CRC at bits.c. |
| CVE-2022-33025 | HIGH | 7.8 | 0.8% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a heap-use-after-free via the function decode_preR13_section at decode_r... |
| CVE-2022-33024 | HIGH | 7.5 | 1.0% | Jun 23, 2022 | There is an Assertion `int decode_preR13_entities(BITCODE_RL, BITCODE_RL, unsigned int, BITCODE_RL, BITCODE_RL, Bit_Chai... |
| CVE-2022-32553 | HIGH | 8.8 | 1.0% | Jun 23, 2022 | Pure Storage FlashArray products running Purity//FA 6.2.0 - 6.2.3, 6.1.0 - 6.1.12, 6.0.0 - 6.0.8, 5.3.0 - 5.3.17, 5.2.x ... |
| CVE-2022-32552 | HIGH | 8.8 | 1.0% | Jun 23, 2022 | Pure Storage FlashArray products running Purity//FA 6.2.0 - 6.2.3, 6.1.0 - 6.1.12, 6.0.0 - 6.0.8, 5.3.0 - 5.3.17, 5.2.x ... |
| CVE-2022-32536 | HIGH | 8.8 | 1.0% | Jun 23, 2022 | The user access rights validation in the web server of the Bosch Ethernet switch PRA-ES8P2S with software version 1.01.0... |
| CVE-2022-31395 | HIGH | 8.8 | 2.6% | Jun 23, 2022 | Algo Communication Products Ltd. 8373 IP Zone Paging Adapter Firmware 1.7.6 allows attackers to perform a directory trav... |
| CVE-2022-31362 | HIGH | 8.8 | 16.1% | Jun 23, 2022 | Docebo Community Edition v4.0.5 and below was discovered to contain an arbitrary file upload vulnerability. NOTE: This v... |
| CVE-2022-22967 | HIGH | 8.8 | 1.9% | Jun 23, 2022 | An issue was discovered in SaltStack Salt in versions before 3002.9, 3003.5, 3004.2. PAM auth fails to reject locked acc... |
| CVE-2022-2175 | HIGH | 7.8 | 1.3% | Jun 23, 2022 | Buffer Over-read in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-21952 | HIGH | 7.5 | 1.4% | Jun 22, 2022 | A Missing Authentication for Critical Function vulnerability in spacewalk-java of SUSE Manager Server 4.1, SUSE Manager ... |
| CVE-2022-34008 | HIGH | 7.8 | 0.5% | Jun 21, 2022 | Comodo Antivirus 12.2.2.8012 has a quarantine flaw that allows privilege escalation. To escalate privilege, a low-privil... |
| CVE-2022-33995 | HIGH | 7.5 | 1.6% | Jun 21, 2022 | A path traversal issue in entry attachments in Devolutions Remote Desktop Manager before 2022.2 allows attackers to crea... |
| CVE-2022-32973 | HIGH | 8.8 | 1.2% | Jun 21, 2022 | An authenticated attacker could create an audit file that bypasses PowerShell cmdlet checks and executes commands with a... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now