2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23673 | HIGH | 7.2 | 2.1% | May 17, 2022 | A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10... |
| CVE-2022-23672 | HIGH | 7.2 | 2.1% | May 17, 2022 | A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10... |
| CVE-2022-23671 | HIGH | 7.5 | 1.2% | May 17, 2022 | A remote authenticated information disclosure vulnerability was discovered in Aruba ClearPass Policy Manager version(s):... |
| CVE-2022-23669 | HIGH | 8.8 | 1.0% | May 17, 2022 | A remote authorization bypass vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10.4 and belo... |
| CVE-2022-29581 | HIGH | 7.8 | 1.0% | May 17, 2022 | Improper Update of Reference Count vulnerability in net/sched of Linux Kernel allows local attacker to cause privilege e... |
| CVE-2022-1769 | HIGH | 7.8 | 0.4% | May 17, 2022 | Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974. |
| CVE-2022-1733 | HIGH | 7.8 | 0.6% | May 17, 2022 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968. |
| CVE-2022-1116 | HIGH | 7.8 | 0.5% | May 17, 2022 | Integer Overflow or Wraparound vulnerability in io_uring of Linux Kernel allows local attacker to cause memory corruptio... |
| CVE-2022-30007 | HIGH | 7.2 | 0.9% | May 17, 2022 | GXCMS V1.5 has a file upload vulnerability in the background. The vulnerability is the template management page. You can... |
| CVE-2022-24856 | HIGH | 7.5 | 9.7% | May 17, 2022 | FlyteConsole is the web user interface for the Flyte platform. FlyteConsole prior to version 0.52.0 is vulnerable to ser... |
| CVE-2022-30972 | HIGH | 8.8 | 0.6% | May 17, 2022 | A cross-site request forgery (CSRF) vulnerability in Jenkins Storable Configs Plugin 1.0 and earlier allows attackers to... |
| CVE-2022-30971 | HIGH | 8.8 | 1.1% | May 17, 2022 | Jenkins Storable Configs Plugin 1.0 and earlier does not configure its XML parser to prevent XML external entity (XXE) a... |
| CVE-2022-30969 | HIGH | 8.8 | 0.8% | May 17, 2022 | A cross-site request forgery (CSRF) vulnerability in Jenkins Autocomplete Parameter Plugin 1.1 and earlier allows attack... |
| CVE-2022-30958 | HIGH | 8.8 | 0.6% | May 17, 2022 | A cross-site request forgery (CSRF) vulnerability in Jenkins SSH Plugin 2.6.1 and earlier allows attackers to connect to... |
| CVE-2022-30951 | HIGH | 8.8 | 0.8% | May 17, 2022 | Jenkins WMI Windows Agents Plugin 1.8 and earlier includes the Windows Remote Command library does not implement access ... |
| CVE-2022-30950 | HIGH | 8.8 | 1.7% | May 17, 2022 | Jenkins WMI Windows Agents Plugin 1.8 and earlier includes the Windows Remote Command library which has a buffer overflo... |
| CVE-2022-30948 | HIGH | 7.5 | 1.3% | May 17, 2022 | Jenkins Mercurial Plugin 2.16 and earlier allows attackers able to configure pipelines to check out some SCM repositorie... |
| CVE-2022-30947 | HIGH | 7.5 | 1.2% | May 17, 2022 | Jenkins Git Plugin 4.11.1 and earlier allows attackers able to configure pipelines to check out some SCM repositories st... |
| CVE-2022-30945 | HIGH | 8.5 | 1.2% | May 17, 2022 | Jenkins Pipeline: Groovy Plugin 2689.v434009a_31b_f1 and earlier allows loading any Groovy source files on the classpath... |
| CVE-2022-1711 | HIGH | 7.5 | 5.4% | May 17, 2022 | Server-Side Request Forgery (SSRF) in GitHub repository jgraph/drawio prior to 18.0.5. |
| CVE-2022-1723 | HIGH | 7.5 | 1.6% | May 17, 2022 | Server-Side Request Forgery (SSRF) in GitHub repository jgraph/drawio prior to 18.0.6. |
| CVE-2022-26650 | HIGH | 7.5 | 2.4% | May 17, 2022 | In Apache ShenYui, ShenYu-Bootstrap, RegexPredicateJudge.java uses Pattern.matches(conditionData.getParamValue(), realDa... |
| CVE-2022-23667 | HIGH | 7.2 | 1.5% | May 16, 2022 | A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10... |
| CVE-2022-30697 | HIGH | 7.8 | 0.2% | May 16, 2022 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Snap Deploy ... |
| CVE-2022-30696 | HIGH | 7.8 | 0.2% | May 16, 2022 | Local privilege escalation due to a DLL hijacking vulnerability. The following products are affected: Acronis Snap Deplo... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now