2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-29597MEDIUM6.5Solutions Atlantic Regulatory Reporting System (RRS) v500 is vulnerable to Local File Inclusion (LFI). Any authenticated...
CVE-2022-26944MEDIUM6.5Percona XtraBackup 2.4.20 unintentionally writes the command line to any resulting backup file output. This may include ...
CVE-2022-26497MEDIUM5.4BigBlueButton Greenlight 2.11.1 allows XSS. A threat actor could have a username containing a JavaScript payload. The pa...
CVE-2022-1982MEDIUM6.5Uncontrolled resource consumption in Mattermost version 6.6.0 and earlier allows an authenticated attacker to crash the ...
CVE-2022-1980MEDIUM4.8A vulnerability was found in SourceCodester Product Show Room Site 1.0. It has been rated as problematic. This issue aff...
CVE-2022-1979MEDIUM4.8A vulnerability was found in SourceCodester Product Show Room Site 1.0. It has been declared as problematic. This vulner...
CVE-2022-1716MEDIUM4.6Keep My Notes v1.80.147 allows an attacker with physical access to the victim's device to bypass the application's passw...
CVE-2022-32202MEDIUM5.5In libjpeg 1.63, there is a NULL pointer dereference in LineBuffer::FetchRegion in linebuffer.cpp.
CVE-2022-32201MEDIUM5.5In libjpeg 1.63, there is a NULL pointer dereference in Component::SubXOf in component.hpp.
CVE-2022-31973MEDIUM6.5Online Fire Reporting System v1.0 is vulnerable to Delete any file via /ofrs/classes/Master.php?f=delete_img.
CVE-2022-31966MEDIUM6.5ChatBot App with Suggestion v1.0 is vulnerable to Delete any file via /simple_chat_bot/classes/Master.php?f=delete_img.
CVE-2022-31796MEDIUM6.5libjpeg 1.63 has a heap-based buffer over-read in HierarchicalBitmapRequester::FetchRegion in hierarchicalbitmaprequeste...
CVE-2022-31783MEDIUM5.5Liblouis 3.21.0 has an out-of-bounds write in compileRule in compileTranslationTable.c, as demonstrated by lou_trace.
CVE-2022-31342MEDIUM6.5Online Car Wash Booking System v1.0 is vulnerable to Delete any file via /ocwbs/classes/Master.php?f=delete_img.
CVE-2022-30999MEDIUM5.4FriendsofFlarum (FoF) Upload is an extension that handles file uploads intelligently for your forum. If FoF Upload prior...
CVE-2022-30804MEDIUM6.5elitecms v1.01 is vulnerable to Delete any file via /admin/delete_image.php?file=.
CVE-2022-30514MEDIUM6.1School Dormitory Management System v1.0 is vulnerable to reflected cross-site scripting (XSS) via admin/inc/navigation.p...
CVE-2022-30513MEDIUM6.1School Dormitory Management System v1.0 is vulnerable to reflected cross-site scripting (XSS) via admin/inc/navigation.p...
CVE-2022-30503MEDIUM5.5Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_set_number at src/njs_value.h.
CVE-2022-30482MEDIUM4.8Ecommerce-project-with-php-and-mysqli-Fruits-Bazar- 1.0 is vulnerable to Cross Site Scripting (XSS) in \admin\add_cata.p...
CVE-2022-30349MEDIUM6.1siteserver SSCMS 6.15.51 is vulnerable to Cross Site Scripting (XSS).
CVE-2022-30277MEDIUM5.7BD Synapsys™, versions 4.20, 4.20 SR1, and 4.30, contain an insufficient session expiration vulnerability. If exploited,...
CVE-2022-30115MEDIUM4.3Using its HSTS support, curl can be instructed to use HTTPS directly insteadof using an insecure clear-text HTTP step ev...
CVE-2022-29788MEDIUM6.5libmobi before v0.10 contains a NULL pointer dereference via the component mobi_buffer_getpointer. This vulnerability al...
CVE-2022-29780MEDIUM5.5Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_prototype_sort at src/njs_...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now