2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-24848 | HIGH | 8.8 | 1.1% | Jun 1, 2022 | DHIS2 is an information system for data capture, management, validation, analytics and visualization. A SQL injection se... |
| CVE-2022-29098 | HIGH | 7.5 | 1.0% | Jun 1, 2022 | Dell PowerScale OneFS versions 8.2.0.x through 9.3.0.x, contain a weak password requirement vulnerability. An administra... |
| CVE-2022-1808 | HIGH | 8.8 | 3.4% | May 31, 2022 | Execution with Unnecessary Privileges in GitHub repository polonel/trudesk prior to 1.2.3. |
| CVE-2022-31011 | HIGH | 7.8 | 0.3% | May 31, 2022 | TiDB is an open-source NewSQL database that supports Hybrid Transactional and Analytical Processing (HTAP) workloads. Un... |
| CVE-2022-31007 | HIGH | 7.2 | 26.1% | May 31, 2022 | eLabFTW is an electronic lab notebook manager for research teams. Prior to version 4.3.0, a vulnerability allows an auth... |
| CVE-2022-31005 | HIGH | 7.5 | 1.9% | May 31, 2022 | Vapor is an HTTP web framework for Swift. Users of Vapor prior to version 4.60.3 with FileMiddleware enabled are vulnera... |
| CVE-2022-31001 | HIGH | 7.5 | 2.0% | May 31, 2022 | Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker c... |
| CVE-2022-31002 | HIGH | 7.5 | 1.8% | May 31, 2022 | Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker c... |
| CVE-2022-23082 | HIGH | 7.5 | 1.2% | May 31, 2022 | In CureKit versions v1.0.1 through v1.1.3 are vulnerable to path traversal as the function isFileOutsideDir fails to san... |
| CVE-2022-1942 | HIGH | 7.8 | 1.6% | May 31, 2022 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-1934 | HIGH | 7.8 | 0.4% | May 31, 2022 | Use After Free in GitHub repository mruby/mruby prior to 3.2. |
| CVE-2022-1931 | HIGH | 8.1 | 2.0% | May 31, 2022 | Incorrect Synchronization in GitHub repository polonel/trudesk prior to 1.2.3. |
| CVE-2022-1611 | HIGH | 8.8 | 0.6% | May 30, 2022 | The Bulk Page Creator WordPress plugin before 1.1.4 does not protect its page creation functionalities with nonce checks... |
| CVE-2022-1589 | HIGH | 7.5 | 0.6% | May 30, 2022 | The Change wp-admin login WordPress plugin before 1.1.0 does not properly check for authorisation and is also missing CS... |
| CVE-2022-1927 | HIGH | 7.8 | 1.6% | May 29, 2022 | Buffer Over-read in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-25878 | HIGH | 7.5 | 2.1% | May 27, 2022 | The package protobufjs before 6.11.3 are vulnerable to Prototype Pollution which can allow an attacker to add/modify pro... |
| CVE-2022-1897 | HIGH | 7.8 | 1.5% | May 27, 2022 | Out-of-bounds Write in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-20806 | HIGH | 7.1 | 0.9% | May 27, 2022 | Multiple vulnerabilities in the API and web-based management interfaces of Cisco Expressway Series and Cisco TelePresenc... |
| CVE-2022-1908 | HIGH | 8.1 | 0.7% | May 27, 2022 | Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. |
| CVE-2022-1907 | HIGH | 8.1 | 0.7% | May 27, 2022 | Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. |
| CVE-2022-1898 | HIGH | 7.8 | 1.4% | May 27, 2022 | Use After Free in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-30701 | HIGH | 7.8 | 0.4% | May 27, 2022 | An uncontrolled search path element vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local ... |
| CVE-2022-30700 | HIGH | 7.8 | 0.3% | May 27, 2022 | An incorrect permission assignment vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local a... |
| CVE-2022-30687 | HIGH | 7.1 | 0.4% | May 27, 2022 | Trend Micro Maximum Security 2022 is vulnerable to a link following vulnerability that could allow a low privileged loca... |
| CVE-2022-28394 | HIGH | 7.8 | 0.3% | May 27, 2022 | EOL Product CVE - Installer of Trend Micro Password Manager (Consumer) versions 3.7.0.1223 and below provided by Trend M... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now