2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29597 | MEDIUM | 6.5 | 1.9% | Jun 2, 2022 | Solutions Atlantic Regulatory Reporting System (RRS) v500 is vulnerable to Local File Inclusion (LFI). Any authenticated... |
| CVE-2022-26944 | MEDIUM | 6.5 | 0.9% | Jun 2, 2022 | Percona XtraBackup 2.4.20 unintentionally writes the command line to any resulting backup file output. This may include ... |
| CVE-2022-26497 | MEDIUM | 5.4 | 0.8% | Jun 2, 2022 | BigBlueButton Greenlight 2.11.1 allows XSS. A threat actor could have a username containing a JavaScript payload. The pa... |
| CVE-2022-1982 | MEDIUM | 6.5 | 0.8% | Jun 2, 2022 | Uncontrolled resource consumption in Mattermost version 6.6.0 and earlier allows an authenticated attacker to crash the ... |
| CVE-2022-1980 | MEDIUM | 4.8 | 0.6% | Jun 2, 2022 | A vulnerability was found in SourceCodester Product Show Room Site 1.0. It has been rated as problematic. This issue aff... |
| CVE-2022-1979 | MEDIUM | 4.8 | 0.6% | Jun 2, 2022 | A vulnerability was found in SourceCodester Product Show Room Site 1.0. It has been declared as problematic. This vulner... |
| CVE-2022-1716 | MEDIUM | 4.6 | 0.4% | Jun 2, 2022 | Keep My Notes v1.80.147 allows an attacker with physical access to the victim's device to bypass the application's passw... |
| CVE-2022-32202 | MEDIUM | 5.5 | 0.7% | Jun 2, 2022 | In libjpeg 1.63, there is a NULL pointer dereference in LineBuffer::FetchRegion in linebuffer.cpp. |
| CVE-2022-32201 | MEDIUM | 5.5 | 0.7% | Jun 2, 2022 | In libjpeg 1.63, there is a NULL pointer dereference in Component::SubXOf in component.hpp. |
| CVE-2022-31973 | MEDIUM | 6.5 | 0.9% | Jun 2, 2022 | Online Fire Reporting System v1.0 is vulnerable to Delete any file via /ofrs/classes/Master.php?f=delete_img. |
| CVE-2022-31966 | MEDIUM | 6.5 | 0.9% | Jun 2, 2022 | ChatBot App with Suggestion v1.0 is vulnerable to Delete any file via /simple_chat_bot/classes/Master.php?f=delete_img. |
| CVE-2022-31796 | MEDIUM | 6.5 | 0.9% | Jun 2, 2022 | libjpeg 1.63 has a heap-based buffer over-read in HierarchicalBitmapRequester::FetchRegion in hierarchicalbitmaprequeste... |
| CVE-2022-31783 | MEDIUM | 5.5 | 1.1% | Jun 2, 2022 | Liblouis 3.21.0 has an out-of-bounds write in compileRule in compileTranslationTable.c, as demonstrated by lou_trace. |
| CVE-2022-31342 | MEDIUM | 6.5 | 0.9% | Jun 2, 2022 | Online Car Wash Booking System v1.0 is vulnerable to Delete any file via /ocwbs/classes/Master.php?f=delete_img. |
| CVE-2022-30999 | MEDIUM | 5.4 | 1.1% | Jun 2, 2022 | FriendsofFlarum (FoF) Upload is an extension that handles file uploads intelligently for your forum. If FoF Upload prior... |
| CVE-2022-30804 | MEDIUM | 6.5 | 1.0% | Jun 2, 2022 | elitecms v1.01 is vulnerable to Delete any file via /admin/delete_image.php?file=. |
| CVE-2022-30514 | MEDIUM | 6.1 | 3.3% | Jun 2, 2022 | School Dormitory Management System v1.0 is vulnerable to reflected cross-site scripting (XSS) via admin/inc/navigation.p... |
| CVE-2022-30513 | MEDIUM | 6.1 | 3.3% | Jun 2, 2022 | School Dormitory Management System v1.0 is vulnerable to reflected cross-site scripting (XSS) via admin/inc/navigation.p... |
| CVE-2022-30503 | MEDIUM | 5.5 | 0.3% | Jun 2, 2022 | Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_set_number at src/njs_value.h. |
| CVE-2022-30482 | MEDIUM | 4.8 | 0.8% | Jun 2, 2022 | Ecommerce-project-with-php-and-mysqli-Fruits-Bazar- 1.0 is vulnerable to Cross Site Scripting (XSS) in \admin\add_cata.p... |
| CVE-2022-30349 | MEDIUM | 6.1 | 0.6% | Jun 2, 2022 | siteserver SSCMS 6.15.51 is vulnerable to Cross Site Scripting (XSS). |
| CVE-2022-30277 | MEDIUM | 5.7 | 0.2% | Jun 2, 2022 | BD Synapsys™, versions 4.20, 4.20 SR1, and 4.30, contain an insufficient session expiration vulnerability. If exploited,... |
| CVE-2022-30115 | MEDIUM | 4.3 | 1.1% | Jun 2, 2022 | Using its HSTS support, curl can be instructed to use HTTPS directly insteadof using an insecure clear-text HTTP step ev... |
| CVE-2022-29788 | MEDIUM | 6.5 | 0.8% | Jun 2, 2022 | libmobi before v0.10 contains a NULL pointer dereference via the component mobi_buffer_getpointer. This vulnerability al... |
| CVE-2022-29780 | MEDIUM | 5.5 | 0.4% | Jun 2, 2022 | Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_prototype_sort at src/njs_... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now