2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-31100 | MEDIUM | 6.5 | 0.8% | Jun 27, 2022 | rulex is a new, portable, regular expression language. When parsing untrusted rulex expressions, rulex may crash, possib... |
| CVE-2022-31096 | MEDIUM | 5.7 | 0.5% | Jun 27, 2022 | Discourse is an open source discussion platform. Under certain conditions, a logged in user can redeem an invite with an... |
| CVE-2022-33116 | MEDIUM | 6.5 | 1.6% | Jun 27, 2022 | An issue in the jmpath variable in /modules/mindmap/index.php of GUnet Open eClass Platform (aka openeclass) v3.12.4 and... |
| CVE-2022-33005 | MEDIUM | 6.1 | 0.6% | Jun 27, 2022 | A cross-site scripting (XSS) vulnerability in the System Settings/IOT Settings module of Delta Electronics DIAEnergie v1... |
| CVE-2022-31094 | MEDIUM | 6.1 | 0.8% | Jun 27, 2022 | ScratchTools is a web extension designed to make interacting with the Scratch programming language community (Scratching... |
| CVE-2022-31088 | MEDIUM | 5.3 | 1.2% | Jun 27, 2022 | LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP d... |
| CVE-2022-31085 | MEDIUM | 6.1 | 0.3% | Jun 27, 2022 | LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP d... |
| CVE-2022-31081 | MEDIUM | 6.5 | 2.1% | Jun 27, 2022 | HTTP::Daemon is a simple http server class written in perl. Versions prior to 6.15 are subject to a vulnerability which ... |
| CVE-2022-31077 | MEDIUM | 5.7 | 0.8% | Jun 27, 2022 | KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to ho... |
| CVE-2022-31076 | MEDIUM | 5.7 | 0.6% | Jun 27, 2022 | KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to ho... |
| CVE-2022-31065 | MEDIUM | 6.1 | 0.7% | Jun 27, 2022 | BigBlueButton is an open source web conferencing system. In affected versions an attacker can embed malicious JS in thei... |
| CVE-2022-31064 | MEDIUM | 5.4 | 1.2% | Jun 27, 2022 | BigBlueButton is an open source web conferencing system. Users in meetings with private chat enabled are vulnerable to a... |
| CVE-2022-31057 | MEDIUM | 5.4 | 0.6% | Jun 27, 2022 | Shopware is an open source e-commerce software made in Germany. Versions of Shopware 5 prior to version 5.7.12 are subje... |
| CVE-2022-31039 | MEDIUM | 5.3 | 0.6% | Jun 27, 2022 | Greenlight is a simple front-end interface for your BigBlueButton server. In affected versions an attacker can view any ... |
| CVE-2022-31036 | MEDIUM | 4.3 | 0.8% | Jun 27, 2022 | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. All versions of Argo CD starting with v1.3.0 a... |
| CVE-2022-31035 | MEDIUM | 5.4 | 0.9% | Jun 27, 2022 | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. All versions of Argo CD starting with v1.0.0 a... |
| CVE-2022-2221 | MEDIUM | 6.5 | 1.1% | Jun 27, 2022 | Information Exposure vulnerability in My Account Settings of Devolutions Remote Desktop Manager before 2022.1.8 allows a... |
| CVE-2022-28172 | MEDIUM | 6.1 | 0.7% | Jun 27, 2022 | The web module in some Hikvision Hybrid SAN/Cluster Storage products have the following security vulnerability. Due to t... |
| CVE-2022-28167 | MEDIUM | 6.5 | 0.6% | Jun 27, 2022 | Brocade SANnav before Brocade SANvav v. 2.2.0.2 and Brocade SANanv v.2.1.1.8 logs the Brocade Fabric OS switch password ... |
| CVE-2022-2088 | MEDIUM | 4.9 | 0.7% | Jun 27, 2022 | An authenticated user with admin privileges may be able to terminate any process on the system running Elcomplus SmartIC... |
| CVE-2022-2218 | MEDIUM | 6.1 | 0.9% | Jun 27, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository ionicabizau/parse-url prior to 7.0.0. |
| CVE-2022-2208 | MEDIUM | 5.5 | 1.3% | Jun 27, 2022 | NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.5163. |
| CVE-2022-2217 | MEDIUM | 6.1 | 1.0% | Jun 27, 2022 | Cross-site Scripting (XSS) - Generic in GitHub repository ionicabizau/parse-url prior to 7.0.0. |
| CVE-2022-2041 | MEDIUM | 5.4 | 0.6% | Jun 27, 2022 | The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element content, which could allow users with ... |
| CVE-2022-2040 | MEDIUM | 5.4 | 0.6% | Jun 27, 2022 | The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element URL, which could allow users with a ro... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now