2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29779 | MEDIUM | 5.5 | 0.4% | Jun 2, 2022 | Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_value_own_enumerate at src/njs_v... |
| CVE-2022-29734 | MEDIUM | 5.4 | 0.4% | Jun 2, 2022 | A cross-site scripting (XSS) vulnerability in ICT Protege GX/WX v2.08 allows authenticated attackers to execute arbitrar... |
| CVE-2022-29733 | MEDIUM | 5.9 | 0.7% | Jun 2, 2022 | Delta Controls enteliTOUCH 3.40.3935, 3.40.3706, and 3.33.4005 was discovered to transmit and store sensitive informatio... |
| CVE-2022-29732 | MEDIUM | 6.1 | 0.7% | Jun 2, 2022 | Delta Controls enteliTOUCH 3.40.3935, 3.40.3706, and 3.33.4005 was discovered to contain a cross-site scripting (XSS) vu... |
| CVE-2022-29731 | MEDIUM | 4.3 | 0.4% | Jun 2, 2022 | An access control issue in ICT Protege GX/WX 2.08 allows attackers to leak SHA1 password hashes of other users. |
| CVE-2022-29711 | MEDIUM | 6.1 | 0.7% | Jun 2, 2022 | LibreNMS v22.3.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /Table/GraylogCo... |
| CVE-2022-29653 | MEDIUM | 6.1 | 0.5% | Jun 2, 2022 | OFCMS v1.1.4 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /admin/comn/service/... |
| CVE-2022-29648 | MEDIUM | 5.4 | 0.5% | Jun 2, 2022 | A cross-site scripting (XSS) vulnerability in Jfinal CMS v5.1.0 allows attackers to execute arbitrary web scripts or HTM... |
| CVE-2022-29628 | MEDIUM | 5.4 | 0.5% | Jun 2, 2022 | A cross-site scripting (XSS) vulnerability in /omps/seller of Online Market Place Site v1.0 allows attackers to execute ... |
| CVE-2022-29627 | MEDIUM | 4.3 | 0.5% | Jun 2, 2022 | An insecure direct object reference (IDOR) in Online Market Place Site v1.0 allows attackers to modify products that are... |
| CVE-2022-29598 | MEDIUM | 6.1 | 0.8% | Jun 2, 2022 | Solutions Atlantic Regulatory Reporting System (RRS) v500 is vulnerable to an reflected Cross-Site Scripting (XSS) vulne... |
| CVE-2022-29540 | MEDIUM | 6.1 | 0.7% | Jun 2, 2022 | resi-calltrace in RESI Gemini-Net 4.2 is affected by Multiple XSS issues. Unauthenticated remote attackers can inject ar... |
| CVE-2022-28702 | MEDIUM | 5.5 | 0.3% | Jun 2, 2022 | Incorrect Default Permissions vulnerability in ABB e-Design allows attacker to install malicious software executing with... |
| CVE-2022-27779 | MEDIUM | 5.3 | 2.4% | Jun 2, 2022 | libcurl wrongly allows cookies to be set for Top Level Domains (TLDs) if thehost name is provided with a trailing dot.cu... |
| CVE-2022-27776 | MEDIUM | 6.5 | 3.4% | Jun 2, 2022 | A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header ... |
| CVE-2022-27774 | MEDIUM | 5.7 | 1.6% | Jun 2, 2022 | An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that co... |
| CVE-2022-26978 | MEDIUM | 6.1 | 0.5% | Jun 2, 2022 | Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a URL /checkl... |
| CVE-2022-26977 | MEDIUM | 6.1 | 0.5% | Jun 2, 2022 | Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license fil... |
| CVE-2022-26976 | MEDIUM | 5.4 | 0.4% | Jun 2, 2022 | Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license fil... |
| CVE-2022-26974 | MEDIUM | 6.1 | 0.5% | Jun 2, 2022 | Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a file upload... |
| CVE-2022-26973 | MEDIUM | 5.3 | 0.7% | Jun 2, 2022 | Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license fil... |
| CVE-2022-26972 | MEDIUM | 6.1 | 0.5% | Jun 2, 2022 | Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a URL /cgi-bi... |
| CVE-2022-26971 | MEDIUM | 5.3 | 0.7% | Jun 2, 2022 | Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license fil... |
| CVE-2022-26491 | MEDIUM | 5.9 | 2.4% | Jun 2, 2022 | An issue was discovered in Pidgin before 2.14.9. A remote attacker who can spoof DNS responses can redirect a client con... |
| CVE-2022-24967 | MEDIUM | 5.4 | 0.6% | Jun 2, 2022 | Black Rainbow NIMBUS before 3.7.0 allows stored Cross-site Scripting (XSS). |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now