2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-30842MEDIUM5.4Covid-19 Travel Pass Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via /ctpms/classes/Users.php?f=s...
CVE-2022-30839MEDIUM6.1Room-rent-portal-site v1.0 is vulnerable to Cross Site Scripting (XSS) via /rrps/classes/Master.php?f=save_category, veh...
CVE-2022-29237MEDIUM5.4Opencast is a free and open source solution for automated video capture and distribution at scale. Prior to Opencast 10....
CVE-2022-22306MEDIUM5.3An improper certificate validation vulnerability [CWE-295] in FortiOS 6.0.0 through 6.0.14, 6.2.0 through 6.2.10, 6.4.0 ...
CVE-2022-30837MEDIUM5.4Toll-tax-management-system v1.0 is vulnerable to Cross Site Scripting (XSS) via /ttms/classes/Master.php?f=save_recipien...
CVE-2022-30464MEDIUM5.4ChatBot App with Suggestion in PHP/OOP v1.0 is vulnerable to Cross Site Scripting (XSS) via /simple_chat_bot/classes/Mas...
CVE-2022-30462MEDIUM5.4Water-billing-management-system v1.0 is affected by: Cross Site Scripting (XSS) via /wbms/classes/Users.php?f=save, firs...
CVE-2022-30460MEDIUM5.4Simple Social Networking Site v1.0 is vulnerable to Cross Site Scripting (XSS) via /sns/classes/Users.php?f=save, firstn...
CVE-2022-30458MEDIUM5.4Automotive Shop Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via /asms/classes/Master.php?f=save_p...
CVE-2022-30456MEDIUM5.4Badminton Center Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via /bcms/classes/Master.php?f=save_c...
CVE-2022-1848MEDIUM5.3Business Logic Errors in GitHub repository erudika/para prior to 1.45.11.
CVE-2022-1840MEDIUM4.8A vulnerability, which was classified as problematic, has been found in Home Clean Services Management System 1.0. This ...
CVE-2022-1819MEDIUM4.8A vulnerability, which was classified as problematic, was found in Student Information System 1.0. Affected is admin/?pa...
CVE-2022-31263MEDIUM5.3app/models/user.rb in Mastodon before 3.5.0 allows a bypass of e-mail restrictions.
CVE-2022-0910MEDIUM6.5A downgrade from two-factor authentication to one-factor authentication vulnerability in the CGI program of Zyxel USG/Zy...
CVE-2022-0734MEDIUM6.1A cross-site scripting vulnerability was identified in the CGI program of Zyxel USG/ZyWALL series firmware versions 4.35...
CVE-2022-30015MEDIUM5.4In Simple Food Website 1.0, a moderation can put the Cross Site Scripting Payload in any of the fields on http://127.0.0...
CVE-2022-30017MEDIUM5.4Rescue Dispatch Management System 1.0 suffers from Stored XSS, leading to admin account takeover via cookie stealing.
CVE-2022-29005MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in the component /obcs/user/profile.php of Online Birth Certificate ...
CVE-2022-29004MEDIUM6.1Diary Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Name parameter...
CVE-2022-1811MEDIUM5.4Unrestricted Upload of File with Dangerous Type in GitHub repository publify/publify prior to 9.2.9.
CVE-2022-0900MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NetDataSoft DivvyD...
CVE-2022-1817MEDIUM5.4A vulnerability, which was classified as problematic, was found in Badminton Center Management System. This affects the ...
CVE-2022-1816MEDIUM5.4A vulnerability, which was classified as problematic, has been found in Zoo Management System 1.0. Affected by this issu...
CVE-2022-1810MEDIUM4.3Authorization Bypass Through User-Controlled Key in GitHub repository publify/publify prior to 9.2.9.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now