2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-1110 | MEDIUM | 5.5 | 0.2% | May 18, 2022 | A buffer overflow vulnerability in Lenovo Smart Standby Driver prior to version 4.1.50.0 could allow a local attacker to... |
| CVE-2022-28717 | MEDIUM | 4.8 | 0.5% | May 18, 2022 | Cross-site scripting vulnerability in Rebooter(WATCH BOOT nino RPC-M2C [End of Sale] all firmware versions, WATCH BOOT l... |
| CVE-2022-1782 | MEDIUM | 6.1 | 0.9% | May 18, 2022 | Cross-site Scripting (XSS) - Generic in GitHub repository erudika/para prior to v1.45.11. |
| CVE-2022-23068 | MEDIUM | 5.4 | 0.6% | May 18, 2022 | ToolJet versions v0.6.0 to v1.10.2 are vulnerable to HTML injection where an attacker can inject malicious code inside t... |
| CVE-2022-1432 | MEDIUM | 6.4 | 1.2% | May 18, 2022 | Cross-site Scripting (XSS) - Generic in GitHub repository octoprint/octoprint prior to 1.8.0. |
| CVE-2022-29646 | MEDIUM | 5.3 | 0.8% | May 18, 2022 | An access control issue in TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 allows attackers to obtai... |
| CVE-2022-30975 | MEDIUM | 5.5 | 1.1% | May 18, 2022 | In Artifex MuJS through 1.2.0, jsP_dumpsyntax in jsdump.c has a NULL pointer dereference, as demonstrated by mujs-pp. |
| CVE-2022-30974 | MEDIUM | 5.5 | 1.1% | May 18, 2022 | compile in regexp.c in Artifex MuJS through 1.2.0 results in stack consumption because of unlimited recursion, a differe... |
| CVE-2022-30045 | MEDIUM | 6.5 | 0.9% | May 17, 2022 | An issue was discovered in libezxml.a in ezXML 0.8.6. The function ezxml_decode() performs incorrect memory handling whi... |
| CVE-2022-29436 | MEDIUM | 6.1 | 0.4% | May 17, 2022 | Persistent Cross-Site Scripting (XSS) vulnerability in Alexander Stokmann's Code Snippets Extended plugin <= 1.4.7 on Wo... |
| CVE-2022-29435 | MEDIUM | 5.4 | 0.4% | May 17, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Alexander Stokmann's Code Snippets Extended plugin <= 1.4.7 on WordPr... |
| CVE-2022-28192 | MEDIUM | 4.1 | 0.2% | May 17, 2022 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where it may lead to a use-after-f... |
| CVE-2022-28191 | MEDIUM | 5.5 | 0.3% | May 17, 2022 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where uncontrolled resource consum... |
| CVE-2022-28190 | MEDIUM | 5.5 | 0.3% | May 17, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD... |
| CVE-2022-28189 | MEDIUM | 5.5 | 0.3% | May 17, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD... |
| CVE-2022-28188 | MEDIUM | 5.5 | 0.3% | May 17, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD... |
| CVE-2022-28187 | MEDIUM | 5.5 | 0.3% | May 17, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where the memory... |
| CVE-2022-28186 | MEDIUM | 6.1 | 0.3% | May 17, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkD... |
| CVE-2022-23706 | MEDIUM | 6.1 | 0.7% | May 17, 2022 | A remote cross-site scripting (xss) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has provid... |
| CVE-2022-24890 | MEDIUM | 4.3 | 0.9% | May 17, 2022 | Nextcloud Talk is a video and audio conferencing app for Nextcloud. In versions prior to 13.0.5 and 14.0.0, a call moder... |
| CVE-2022-23674 | MEDIUM | 5.4 | 0.5% | May 17, 2022 | A remote authenticated stored cross-site scripting (xss) vulnerability was discovered in Aruba ClearPass Policy Manager ... |
| CVE-2022-30689 | MEDIUM | 5.3 | 1.1% | May 17, 2022 | HashiCorp Vault and Vault Enterprise from 1.10.0 to 1.10.2 did not correctly configure and enforce MFA on login after se... |
| CVE-2022-24611 | MEDIUM | 6.5 | 0.7% | May 17, 2022 | Denial of Service (DoS) in the Z-Wave S0 NonceGet protocol specification in Silicon Labs Z-Wave 500 series allows local ... |
| CVE-2022-23675 | MEDIUM | 4.8 | 0.5% | May 17, 2022 | A remote authenticated stored cross-site scripting (xss) vulnerability was discovered in Aruba ClearPass Policy Manager ... |
| CVE-2022-22775 | MEDIUM | 5.4 | 0.5% | May 17, 2022 | The Workspace client component of TIBCO Software Inc.'s TIBCO BPM Enterprise and TIBCO BPM Enterprise Distribution for T... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now