2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-28999 | HIGH | 8.8 | 1.1% | May 23, 2022 | Insecure permissions in the install directories and binaries of Dev-CPP v4.9.9.2 allows attackers to execute arbitrary c... |
| CVE-2022-31489 | HIGH | 7.5 | 1.0% | May 23, 2022 | Inout Blockchain AltExchanger 1.2.1 allows index.php/home/about inoutio_language cookie SQL injection. |
| CVE-2022-31488 | HIGH | 7.5 | 1.0% | May 23, 2022 | Inout Blockchain AltExchanger 1.2.1 allows index.php/coins/update_marketboxslider marketcurrency SQL injection. |
| CVE-2022-31487 | HIGH | 7.5 | 1.1% | May 23, 2022 | Inout Blockchain AltExchanger 1.2.1 and Inout Blockchain FiatExchanger 2.2.1 allow Chart/TradingView/chart_content/maste... |
| CVE-2022-31467 | HIGH | 7.3 | 0.3% | May 23, 2022 | A DLL hijacking vulnerability in the installed for Quick Heal Total Security prior to 12.1.1.27 allows a local attacker ... |
| CVE-2022-31466 | HIGH | 7 | 0.2% | May 23, 2022 | Time of Check - Time of Use (TOCTOU) vulnerability in Quick Heal Total Security prior to 12.1.1.27 allows a local attack... |
| CVE-2022-28944 | HIGH | 8.8 | 1.7% | May 23, 2022 | Certain EMCO Software products are affected by: CWE-494: Download of Code Without Integrity Check. This affects MSI Pack... |
| CVE-2022-30016 | HIGH | 8.8 | 0.9% | May 23, 2022 | Rescue Dispatch Management System 1.0 is vulnerable to Incorrect Access Control via http://localhost/rdms/admin/?page=sy... |
| CVE-2022-30014 | HIGH | 8.8 | 0.6% | May 23, 2022 | Lumidek Associates Simple Food Website 1.0 is vulnerable to Cross Site Request Forgery (CSRF) which allows anyone to tak... |
| CVE-2022-28998 | HIGH | 8.1 | 2.1% | May 23, 2022 | Xlight FTP v3.9.3.2 was discovered to contain a stack-based buffer overflow which allows attackers to leak sensitive inf... |
| CVE-2022-28997 | HIGH | 7.5 | 1.9% | May 23, 2022 | CSZCMS v1.3.0 allows attackers to execute a Server-Side Request Forgery (SSRF) which can be leveraged to leak sensitive ... |
| CVE-2022-28874 | HIGH | 7.5 | 0.6% | May 23, 2022 | Multiple Denial-of-Service vulnerabilities was discovered in the F-Secure Atlant and in certain WithSecure products whil... |
| CVE-2022-1809 | HIGH | 7.8 | 0.9% | May 21, 2022 | Access of Uninitialized Pointer in GitHub repository radareorg/radare2 prior to 5.7.0. |
| CVE-2022-31268 | HIGH | 7.5 | 9.6% | May 21, 2022 | A Path Traversal vulnerability in Gitblit 1.9.3 can lead to reading website files via /resources//../ (e.g., followed by... |
| CVE-2022-31264 | HIGH | 7.5 | 1.3% | May 21, 2022 | Solana solana_rbpf before 0.2.29 has an addition integer overflow via invalid ELF program headers. elf.rs has a panic vi... |
| CVE-2022-1752 | HIGH | 8 | 2.2% | May 21, 2022 | Unrestricted Upload of File with Dangerous Type in GitHub repository polonel/trudesk prior to 1.2.2. |
| CVE-2022-29222 | HIGH | 7.5 | 0.7% | May 21, 2022 | Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.5, a DTLS Client could provi... |
| CVE-2022-29216 | HIGH | 7.8 | 0.5% | May 21, 2022 | TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, TensorFlow... |
| CVE-2022-29215 | HIGH | 7.5 | 1.1% | May 21, 2022 | RegionProtect is a plugin that allows users to manage certain events in certain regions of the world. Versions prior to ... |
| CVE-2022-29190 | HIGH | 7.5 | 1.5% | May 21, 2022 | Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, an attacker can send pack... |
| CVE-2022-29208 | HIGH | 7.1 | 0.4% | May 20, 2022 | TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem... |
| CVE-2022-29447 | HIGH | 7.2 | 1.0% | May 20, 2022 | Authenticated (administrator or higher user role) Local File Inclusion (LFI) vulnerability in Wow-Company's Hover Effect... |
| CVE-2022-29427 | HIGH | 8.8 | 0.4% | May 20, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Aftab Muni's Disable Right Click For WP plugin <= 1.1.6 at WordPress. |
| CVE-2022-22973 | HIGH | 7.8 | 2.3% | May 20, 2022 | VMware Workspace ONE Access and Identity Manager contain a privilege escalation vulnerability. A malicious actor with lo... |
| CVE-2022-29184 | HIGH | 8.8 | 3.6% | May 20, 2022 | GoCD is a continuous delivery server. In GoCD versions prior to 22.1.0, it is possible for existing authenticated users ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now