2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-24434 | HIGH | 7.5 | 3.0% | May 20, 2022 | This affects all versions of package dicer. A malicious attacker can send a modified form to server, and crash the nodej... |
| CVE-2022-21195 | HIGH | 7.5 | 1.3% | May 20, 2022 | All versions of package url-regex are vulnerable to Regular Expression Denial of Service (ReDoS) which can cause the CPU... |
| CVE-2022-29181 | HIGH | 8.2 | 2.9% | May 20, 2022 | Nokogiri is an open source XML and HTML library for Ruby. Nokogiri prior to version 1.13.6 does not type-check all input... |
| CVE-2022-29179 | HIGH | 8.2 | 0.4% | May 20, 2022 | Cilium is open source software for providing and securing network connectivity and loadbalancing between application wor... |
| CVE-2022-29178 | HIGH | 8.2 | 0.3% | May 20, 2022 | Cilium is open source software for providing and securing network connectivity and loadbalancing between application wor... |
| CVE-2022-28990 | HIGH | 7.8 | 0.4% | May 20, 2022 | WASM3 v0.5.0 was discovered to contain a heap overflow via the component /wabt/bin/poc.wasm. |
| CVE-2022-1770 | HIGH | 8.8 | 2.4% | May 20, 2022 | Improper Privilege Management in GitHub repository polonel/trudesk prior to 1.2.2. |
| CVE-2022-29170 | HIGH | 8.5 | 1.1% | May 20, 2022 | Grafana is an open-source platform for monitoring and observability. In Grafana Enterprise, the Request security feature... |
| CVE-2022-31245 | HIGH | 8.8 | 5.2% | May 20, 2022 | mailcow before 2022-05d allows a remote authenticated user to inject OS commands and escalate privileges to domain admin... |
| CVE-2022-29882 | HIGH | 7.1 | 0.8% | May 20, 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not handle uploaded files corr... |
| CVE-2022-29878 | HIGH | 7.5 | 1.0% | May 20, 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices use a limited range for challenge... |
| CVE-2022-29876 | HIGH | 7.1 | 0.8% | May 20, 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not properly handle the input ... |
| CVE-2022-29874 | HIGH | 8.8 | 0.7% | May 20, 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not encrypt web traffic with c... |
| CVE-2022-29872 | HIGH | 8.8 | 1.3% | May 20, 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not properly validate paramete... |
| CVE-2022-29801 | HIGH | 7.5 | 0.9% | May 20, 2022 | A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.13), Teamcenter V13.0 (All versions < V1... |
| CVE-2022-29320 | HIGH | 7.8 | 0.4% | May 20, 2022 | MiniTool Partition Wizard v12.0 contains an unquoted service path which allows attackers to escalate privileges to the s... |
| CVE-2022-29033 | HIGH | 7.8 | 0.7% | May 20, 2022 | A vulnerability has been identified in JT2Go (All versions < V13.3.0.3), Teamcenter Visualization V13.3 (All versions < ... |
| CVE-2022-29032 | HIGH | 7.8 | 0.7% | May 20, 2022 | A vulnerability has been identified in JT2Go (All versions < V13.3.0.3), Teamcenter Visualization V13.3 (All versions < ... |
| CVE-2022-28992 | HIGH | 8.8 | 0.6% | May 20, 2022 | A Cross-Site Request Forgery (CSRF) in Online Banquet Booking System v1.0 allows attackers to change admin credentials v... |
| CVE-2022-28991 | HIGH | 7.5 | 1.4% | May 20, 2022 | Multi Store Inventory Management System v1.0 was discovered to contain an information disclosure vulnerability which all... |
| CVE-2022-27653 | HIGH | 7.8 | 0.8% | May 20, 2022 | A vulnerability has been identified in Simcenter Femap (All versions < V2022.2). The affected application contains an ou... |
| CVE-2022-27095 | HIGH | 7.8 | 0.4% | May 20, 2022 | BattlEye v0.9 contains an unquoted service path which allows attackers to escalate privileges to the system level. |
| CVE-2022-26634 | HIGH | 7.8 | 0.4% | May 20, 2022 | HMA VPN v5.3.5913.0 contains an unquoted service path which allows attackers to escalate privileges to the system level. |
| CVE-2022-24290 | HIGH | 7.5 | 1.2% | May 20, 2022 | A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.13), Teamcenter V13.0 (All versions < V1... |
| CVE-2022-24287 | HIGH | 7.8 | 0.2% | May 20, 2022 | A vulnerability has been identified in SIMATIC PCS 7 V8.2 (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3 UC... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now