2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-30842 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Covid-19 Travel Pass Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via /ctpms/classes/Users.php?f=s... |
| CVE-2022-30839 | MEDIUM | 6.1 | 0.6% | May 24, 2022 | Room-rent-portal-site v1.0 is vulnerable to Cross Site Scripting (XSS) via /rrps/classes/Master.php?f=save_category, veh... |
| CVE-2022-29237 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Opencast is a free and open source solution for automated video capture and distribution at scale. Prior to Opencast 10.... |
| CVE-2022-22306 | MEDIUM | 5.3 | 0.2% | May 24, 2022 | An improper certificate validation vulnerability [CWE-295] in FortiOS 6.0.0 through 6.0.14, 6.2.0 through 6.2.10, 6.4.0 ... |
| CVE-2022-30837 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Toll-tax-management-system v1.0 is vulnerable to Cross Site Scripting (XSS) via /ttms/classes/Master.php?f=save_recipien... |
| CVE-2022-30464 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | ChatBot App with Suggestion in PHP/OOP v1.0 is vulnerable to Cross Site Scripting (XSS) via /simple_chat_bot/classes/Mas... |
| CVE-2022-30462 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Water-billing-management-system v1.0 is affected by: Cross Site Scripting (XSS) via /wbms/classes/Users.php?f=save, firs... |
| CVE-2022-30460 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Simple Social Networking Site v1.0 is vulnerable to Cross Site Scripting (XSS) via /sns/classes/Users.php?f=save, firstn... |
| CVE-2022-30458 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Automotive Shop Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via /asms/classes/Master.php?f=save_p... |
| CVE-2022-30456 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Badminton Center Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via /bcms/classes/Master.php?f=save_c... |
| CVE-2022-1848 | MEDIUM | 5.3 | 1.0% | May 24, 2022 | Business Logic Errors in GitHub repository erudika/para prior to 1.45.11. |
| CVE-2022-1840 | MEDIUM | 4.8 | 0.6% | May 24, 2022 | A vulnerability, which was classified as problematic, has been found in Home Clean Services Management System 1.0. This ... |
| CVE-2022-1819 | MEDIUM | 4.8 | 0.6% | May 24, 2022 | A vulnerability, which was classified as problematic, was found in Student Information System 1.0. Affected is admin/?pa... |
| CVE-2022-31263 | MEDIUM | 5.3 | 0.8% | May 24, 2022 | app/models/user.rb in Mastodon before 3.5.0 allows a bypass of e-mail restrictions. |
| CVE-2022-0910 | MEDIUM | 6.5 | 0.7% | May 24, 2022 | A downgrade from two-factor authentication to one-factor authentication vulnerability in the CGI program of Zyxel USG/Zy... |
| CVE-2022-0734 | MEDIUM | 6.1 | 8.4% | May 24, 2022 | A cross-site scripting vulnerability was identified in the CGI program of Zyxel USG/ZyWALL series firmware versions 4.35... |
| CVE-2022-30015 | MEDIUM | 5.4 | 0.5% | May 23, 2022 | In Simple Food Website 1.0, a moderation can put the Cross Site Scripting Payload in any of the fields on http://127.0.0... |
| CVE-2022-30017 | MEDIUM | 5.4 | 0.5% | May 23, 2022 | Rescue Dispatch Management System 1.0 suffers from Stored XSS, leading to admin account takeover via cookie stealing. |
| CVE-2022-29005 | MEDIUM | 6.1 | 2.5% | May 23, 2022 | Multiple cross-site scripting (XSS) vulnerabilities in the component /obcs/user/profile.php of Online Birth Certificate ... |
| CVE-2022-29004 | MEDIUM | 6.1 | 3.5% | May 23, 2022 | Diary Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Name parameter... |
| CVE-2022-1811 | MEDIUM | 5.4 | 0.7% | May 23, 2022 | Unrestricted Upload of File with Dangerous Type in GitHub repository publify/publify prior to 9.2.9. |
| CVE-2022-0900 | MEDIUM | 5.4 | 0.4% | May 23, 2022 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NetDataSoft DivvyD... |
| CVE-2022-1817 | MEDIUM | 5.4 | 0.5% | May 23, 2022 | A vulnerability, which was classified as problematic, was found in Badminton Center Management System. This affects the ... |
| CVE-2022-1816 | MEDIUM | 5.4 | 0.5% | May 23, 2022 | A vulnerability, which was classified as problematic, has been found in Zoo Management System 1.0. Affected by this issu... |
| CVE-2022-1810 | MEDIUM | 4.3 | 0.8% | May 23, 2022 | Authorization Bypass Through User-Controlled Key in GitHub repository publify/publify prior to 9.2.9. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now