2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29034 | MEDIUM | 6.1 | 28.1% | Jun 14, 2022 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). An error message pop up windo... |
| CVE-2022-27221 | MEDIUM | 5.9 | 0.9% | Jun 14, 2022 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). An attacker in machine-in-the... |
| CVE-2022-27220 | MEDIUM | 4.3 | 0.6% | Jun 14, 2022 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). Affected application is m... |
| CVE-2022-27219 | MEDIUM | 4.3 | 0.6% | Jun 14, 2022 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0 SP2). Affected application is m... |
| CVE-2022-2079 | MEDIUM | 5.4 | 0.7% | Jun 14, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository nocodb/nocodb prior to 0.91.7+. |
| CVE-2022-29485 | MEDIUM | 6.1 | 1.0% | Jun 14, 2022 | Cross-site scripting vulnerability in SHIRASAGI v1.0.0 to v1.14.2, and v1.15.0 allows a remote attacker to inject an arb... |
| CVE-2022-31415 | MEDIUM | 6.5 | 0.9% | Jun 14, 2022 | Online Fire Reporting System v1.0 was discovered to contain a SQL injection vulnerability via the GET parameter in /repo... |
| CVE-2022-32193 | MEDIUM | 6.5 | 0.7% | Jun 13, 2022 | Couchbase Server 6.6.x through 7.x before 7.0.4 exposes Sensitive Information to an Unauthorized Actor. |
| CVE-2022-22259 | MEDIUM | 6.8 | 0.2% | Jun 13, 2022 | There is an improper authentication vulnerability in FLMG-10 10.0.1.0(H100SP22C00). Successful exploitation of this vuln... |
| CVE-2022-29455 | MEDIUM | 6.1 | 23.2% | Jun 13, 2022 | DOM-based Reflected Cross-Site Scripting (XSS) vulnerability in Elementor's Elementor Website Builder plugin <= 3.5.5 ve... |
| CVE-2022-28217 | MEDIUM | 6.5 | 0.7% | Jun 13, 2022 | Some part of SAP NetWeaver (EP Web Page Composer) does not sufficiently validate an XML document accepted from an untrus... |
| CVE-2022-31752 | MEDIUM | 5.5 | 0.1% | Jun 13, 2022 | Missing authorization vulnerability in the system components. Successful exploitation of this vulnerability will affect ... |
| CVE-2022-31763 | MEDIUM | 5.5 | 0.2% | Jun 13, 2022 | The kernel module has the null pointer and out-of-bounds array vulnerabilities. Successful exploitation of this vulnerab... |
| CVE-2022-31759 | MEDIUM | 5.5 | 0.1% | Jun 13, 2022 | AppLink has a vulnerability of accessing uninitialized pointers. Successful exploitation of this vulnerability may affec... |
| CVE-2022-31758 | MEDIUM | 4.7 | 0.1% | Jun 13, 2022 | The kernel module has the race condition vulnerability. Successful exploitation of this vulnerability may affect data co... |
| CVE-2022-31756 | MEDIUM | 5.5 | 0.2% | Jun 13, 2022 | The fingerprint sensor module has design defects. Successful exploitation of this vulnerability may affect data confiden... |
| CVE-2022-31755 | MEDIUM | 5.5 | 0.2% | Jun 13, 2022 | The communication module has a vulnerability of improper permission preservation. Successful exploitation of this vulner... |
| CVE-2022-31751 | MEDIUM | 5.5 | 0.2% | Jun 13, 2022 | The kernel emcom module has multi-thread contention. Successful exploitation of this vulnerability may affect system ava... |
| CVE-2022-1961 | MEDIUM | 4.8 | 1.0% | Jun 13, 2022 | The Google Tag Manager for WordPress (GTM4WP) plugin is vulnerable to Stored Cross-Site Scripting due to insufficient es... |
| CVE-2022-1820 | MEDIUM | 6.1 | 1.0% | Jun 13, 2022 | The Keep Backup Daily plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘t’ parameter in vers... |
| CVE-2022-1750 | MEDIUM | 4.8 | 0.5% | Jun 13, 2022 | The Sticky Popup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ popup_title' parameter in v... |
| CVE-2022-1658 | MEDIUM | 5.4 | 0.7% | Jun 13, 2022 | Vulnerable versions of the Jupiter Theme (<= 6.10.1) allow arbitrary plugin deletion by any authenticated user, includin... |
| CVE-2022-0209 | MEDIUM | 4.8 | 0.6% | Jun 13, 2022 | The Mitsol Social Post Feed WordPress plugin before 1.11 does not escape some of its settings before outputting them bac... |
| CVE-2022-31400 | MEDIUM | 4.8 | 0.5% | Jun 13, 2022 | A cross-site scripting (XSS) vulnerability in /staff/setup/email-addresses of Helpdeskz v2.0.2 allows attackers to execu... |
| CVE-2022-31398 | MEDIUM | 4.8 | 0.5% | Jun 13, 2022 | A cross-site scripting (XSS) vulnerability in /staff/tools/custom-fields of Helpdeskz v2.0.2 allows attackers to execute... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now