2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4583 | HIGH | 8.8 | 0.8% | Dec 17, 2022 | A vulnerability was found in jLEMS. It has been declared as critical. Affected by this vulnerability is the function unp... |
| CVE-2022-4582 | MEDIUM | 6.1 | 0.5% | Dec 17, 2022 | A vulnerability was found in starter-public-edition-4 up to 4.6.10. It has been classified as problematic. Affected is a... |
| CVE-2022-4581 | MEDIUM | 6.1 | 0.4% | Dec 17, 2022 | A vulnerability was found in 1j01 mind-map and classified as problematic. This issue affects some unknown processing of ... |
| CVE-2022-4567 | HIGH | 8.1 | 0.6% | Dec 17, 2022 | Improper Access Control in GitHub repository openemr/openemr prior to 7.0.0.2. |
| CVE-2022-4572 | HIGH | 7.1 | 0.5% | Dec 17, 2022 | A vulnerability, which was classified as problematic, has been found in UBI Reader up to 0.8.0. Affected by this issue i... |
| CVE-2022-23488 | HIGH | 7.5 | 0.6% | Dec 17, 2022 | BigBlueButton is an open source web conferencing system. Versions prior to 2.4-rc-6 are vulnerable to Insertion of Sensi... |
| CVE-2022-23531 | HIGH | 7.8 | 0.6% | Dec 17, 2022 | GuardDog is a CLI tool to identify malicious PyPI packages. Versions prior to 0.1.5 are vulnerable to Relative Path Trav... |
| CVE-2022-38756 | MEDIUM | 4.3 | 0.8% | Dec 16, 2022 | A vulnerability has been identified in Micro Focus GroupWise Web in versions prior to 18.4.2. The GW Web component makes... |
| CVE-2022-23530 | MEDIUM | 6.5 | 0.7% | Dec 16, 2022 | GuardDog is a CLI tool to identify malicious PyPI packages. Versions prior to v0.1.8 are vulnerable to arbitrary file wr... |
| CVE-2022-37832 | CRITICAL | 9.8 | 0.6% | Dec 16, 2022 | Mutiny 7.2.0-10788 suffers from Hardcoded root password. |
| CVE-2022-26582 | HIGH | 7.8 | 0.9% | Dec 16, 2022 | PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow an attacker to gain root access through command ... |
| CVE-2022-26581 | MEDIUM | 6.8 | 0.3% | Dec 16, 2022 | PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow an unauthorized attacker to perform privileged a... |
| CVE-2022-26580 | MEDIUM | 6.8 | 1.7% | Dec 16, 2022 | PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow the execution of specific command injections on ... |
| CVE-2022-26579 | MEDIUM | 6 | 0.2% | Dec 16, 2022 | PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow a root privileged attacker to install unsigned p... |
| CVE-2022-23490 | MEDIUM | 4.3 | 0.4% | Dec 16, 2022 | BigBlueButton is an open source web conferencing system. Versions prior to 2.4.0 expose sensitive information to Unautho... |
| CVE-2022-46670 | MEDIUM | 6.1 | 0.5% | Dec 16, 2022 | Rockwell Automation was made aware of a vulnerability by a security researcher from Georgia Institute of Technology tha... |
| CVE-2022-3157 | HIGH | 7.5 | 1.4% | Dec 16, 2022 | A vulnerability exists in the Rockwell Automation controllers that allows a malformed CIP request to cause a major non-... |
| CVE-2022-47210 | HIGH | 7.8 | 0.4% | Dec 16, 2022 | The default console presented to users over telnet (when enabled) is restricted to a subset of commands. Commands issued... |
| CVE-2022-47209 | HIGH | 8.8 | 0.5% | Dec 16, 2022 | A support user exists on the device and appears to be a backdoor for Technical Support staff. The default password for t... |
| CVE-2022-47208 | HIGH | 8.8 | 1.2% | Dec 16, 2022 | The “puhttpsniff” service, which runs by default, is susceptible to command injection due to improperly sanitized user i... |
| CVE-2022-3166 | HIGH | 7.5 | 0.7% | Dec 16, 2022 | Rockwell Automation was made aware that the webservers of the Micrologix 1100 and 1400 controllers contain a vulnerabil... |
| CVE-2022-2966 | HIGH | 7.5 | 0.4% | Dec 16, 2022 | Out-of-bounds Read vulnerability in Delta Electronics DOPSoft.This issue affects DOPSoft: All Versions. |
| CVE-2022-4566 | CRITICAL | 9.8 | 0.8% | Dec 16, 2022 | A vulnerability, which was classified as critical, has been found in y_project RuoYi 4.7.5. This issue affects some unkn... |
| CVE-2022-4565 | HIGH | 7.5 | 0.9% | Dec 16, 2022 | A vulnerability classified as problematic was found in Dromara HuTool up to 5.8.10. This vulnerability affects unknown c... |
| CVE-2022-41972 | MEDIUM | 6.5 | 0.2% | Dec 16, 2022 | Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. Versions prior to 4.9 con... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now