2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-24848HIGH8.8DHIS2 is an information system for data capture, management, validation, analytics and visualization. A SQL injection se...
CVE-2022-29098HIGH7.5Dell PowerScale OneFS versions 8.2.0.x through 9.3.0.x, contain a weak password requirement vulnerability. An administra...
CVE-2022-1808HIGH8.8Execution with Unnecessary Privileges in GitHub repository polonel/trudesk prior to 1.2.3.
CVE-2022-31011HIGH7.8TiDB is an open-source NewSQL database that supports Hybrid Transactional and Analytical Processing (HTAP) workloads. Un...
CVE-2022-31007HIGH7.2eLabFTW is an electronic lab notebook manager for research teams. Prior to version 4.3.0, a vulnerability allows an auth...
CVE-2022-31005HIGH7.5Vapor is an HTTP web framework for Swift. Users of Vapor prior to version 4.60.3 with FileMiddleware enabled are vulnera...
CVE-2022-31001HIGH7.5Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker c...
CVE-2022-31002HIGH7.5Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, an attacker c...
CVE-2022-23082HIGH7.5In CureKit versions v1.0.1 through v1.1.3 are vulnerable to path traversal as the function isFileOutsideDir fails to san...
CVE-2022-1942HIGH7.8Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVE-2022-1934HIGH7.8Use After Free in GitHub repository mruby/mruby prior to 3.2.
CVE-2022-1931HIGH8.1Incorrect Synchronization in GitHub repository polonel/trudesk prior to 1.2.3.
CVE-2022-1611HIGH8.8The Bulk Page Creator WordPress plugin before 1.1.4 does not protect its page creation functionalities with nonce checks...
CVE-2022-1589HIGH7.5The Change wp-admin login WordPress plugin before 1.1.0 does not properly check for authorisation and is also missing CS...
CVE-2022-1927HIGH7.8Buffer Over-read in GitHub repository vim/vim prior to 8.2.
CVE-2022-25878HIGH7.5The package protobufjs before 6.11.3 are vulnerable to Prototype Pollution which can allow an attacker to add/modify pro...
CVE-2022-1897HIGH7.8Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.
CVE-2022-20806HIGH7.1Multiple vulnerabilities in the API and web-based management interfaces of Cisco Expressway Series and Cisco TelePresenc...
CVE-2022-1908HIGH8.1Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
CVE-2022-1907HIGH8.1Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
CVE-2022-1898HIGH7.8Use After Free in GitHub repository vim/vim prior to 8.2.
CVE-2022-30701HIGH7.8An uncontrolled search path element vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local ...
CVE-2022-30700HIGH7.8An incorrect permission assignment vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local a...
CVE-2022-30687HIGH7.1Trend Micro Maximum Security 2022 is vulnerable to a link following vulnerability that could allow a low privileged loca...
CVE-2022-28394HIGH7.8EOL Product CVE - Installer of Trend Micro Password Manager (Consumer) versions 3.7.0.1223 and below provided by Trend M...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now