2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-27525 | HIGH | 7.8 | 1.6% | Apr 18, 2022 | A malicious crafted .dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption... |
| CVE-2022-23976 | HIGH | 8.1 | 0.5% | Apr 18, 2022 | Cross-Site Request Forgery (CSRF) in Access Demo Importer <= 1.0.7 on WordPress allows an attacker to reset all data (po... |
| CVE-2022-1341 | HIGH | 7.5 | 1.1% | Apr 18, 2022 | An issue was discovered in in bwm-ng v0.6.2. An arbitrary null write exists in get_cmdln_options() function in src/optio... |
| CVE-2022-26665 | HIGH | 7.5 | 1.8% | Apr 18, 2022 | An Insecure Direct Object Reference issue exists in the Tyler Odyssey Portal platform before 17.1.20. This may allow an ... |
| CVE-2022-27908 | HIGH | 8.8 | 36.8% | Apr 18, 2022 | Zoho ManageEngine OpManager before 125588 (and before 125603) is vulnerable to authenticated SQL Injection in the Invent... |
| CVE-2022-1381 | HIGH | 7.8 | 3.0% | Apr 18, 2022 | global heap buffer overflow in skip_range in GitHub repository vim/vim prior to 8.2.4763. This vulnerability is capable ... |
| CVE-2022-29281 | HIGH | 8.8 | 1.4% | Apr 15, 2022 | Notable before 1.9.0-beta.8 doesn't effectively prevent the opening of executable files when clicking on a link. There i... |
| CVE-2022-29072 | HIGH | 7.8 | 1.5% | Apr 15, 2022 | 7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is d... |
| CVE-2022-27426 | HIGH | 8.8 | 0.8% | Apr 15, 2022 | A Server-Side Request Forgery (SSRF) in Chamilo LMS v1.11.13 allows attackers to enumerate the internal network and exec... |
| CVE-2022-27421 | HIGH | 7.2 | 0.9% | Apr 15, 2022 | Chamilo LMS v1.11.13 lacks validation on the user modification form, allowing attackers to escalate privileges to Platfo... |
| CVE-2022-24279 | HIGH | 7.5 | 1.3% | Apr 15, 2022 | The package madlib-object-utils before 0.1.8 are vulnerable to Prototype Pollution via the setValue method, as it allows... |
| CVE-2022-28113 | HIGH | 7.2 | 3.7% | Apr 15, 2022 | An issue in upload.csp of FANTEC GmbH MWiD25-DS Firmware v2.000.030 allows attackers to write files and reset the user p... |
| CVE-2022-27048 | HIGH | 7.4 | 0.7% | Apr 15, 2022 | A vulnerability has been discovered in Moxa MGate which allows an attacker to perform a man-in-the-middle (MITM) attack ... |
| CVE-2022-26924 | HIGH | 7.5 | 3.1% | Apr 15, 2022 | YARP Denial of Service Vulnerability |
| CVE-2022-26921 | HIGH | 7.3 | 0.6% | Apr 15, 2022 | Visual Studio Code Elevation of Privilege Vulnerability |
| CVE-2022-26919 | HIGH | 8.1 | 2.4% | Apr 15, 2022 | Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
| CVE-2022-26918 | HIGH | 7.8 | 1.9% | Apr 15, 2022 | Windows Fax Compose Form Remote Code Execution Vulnerability |
| CVE-2022-26917 | HIGH | 7.8 | 1.9% | Apr 15, 2022 | Windows Fax Compose Form Remote Code Execution Vulnerability |
| CVE-2022-26916 | HIGH | 7.8 | 1.9% | Apr 15, 2022 | Windows Fax Compose Form Remote Code Execution Vulnerability |
| CVE-2022-26915 | HIGH | 7.5 | 3.1% | Apr 15, 2022 | Windows Secure Channel Denial of Service Vulnerability |
| CVE-2022-26914 | HIGH | 7.8 | 0.8% | Apr 15, 2022 | Win32k Elevation of Privilege Vulnerability |
| CVE-2022-26904 | HIGH | 7 | 9.8% | Apr 15, 2022 | Windows User Profile Service Elevation of Privilege Vulnerability |
| CVE-2022-26903 | HIGH | 7.8 | 2.4% | Apr 15, 2022 | Windows Graphics Component Remote Code Execution Vulnerability |
| CVE-2022-26901 | HIGH | 7.8 | 2.5% | Apr 15, 2022 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2022-26898 | HIGH | 7.2 | 2.0% | Apr 15, 2022 | Azure Site Recovery Remote Code Execution Vulnerability |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now