2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-21131 | MEDIUM | 5.5 | 0.3% | May 12, 2022 | Improper access control for some Intel(R) Xeon(R) Processors may allow an authenticated user to potentially enable infor... |
| CVE-2022-0004 | MEDIUM | 6.8 | 0.3% | May 12, 2022 | Hardware debug modes and processor INIT setting that allow override of locks for some Intel(R) Processors in Intel(R) Bo... |
| CVE-2022-29302 | MEDIUM | 5.5 | 0.3% | May 12, 2022 | SolarView Compact ver.6.00 was discovered to contain a local file disclosure via /html/Solar_Ftp.php. |
| CVE-2022-28920 | MEDIUM | 4.8 | 0.6% | May 12, 2022 | Tieba-Cloud-Sign v4.9 was discovered to contain a cross-site scripting (XSS) vulnerability via the function strip_tags. |
| CVE-2022-28919 | MEDIUM | 6.1 | 1.4% | May 12, 2022 | HTMLCreator release_stable_2020-07-29 was discovered to contain a cross-site scripting (XSS) vulnerability via the funct... |
| CVE-2022-29538 | MEDIUM | 5.3 | 0.8% | May 12, 2022 | RESI Gemini-Net Web 4.2 is affected by Improper Access Control in authorization logic. An unauthenticated user is able t... |
| CVE-2022-28873 | MEDIUM | 4.3 | 0.5% | May 12, 2022 | A vulnerability affecting F-Secure SAFE browser was discovered. An attacker can potentially exploit Javascript window.op... |
| CVE-2022-1674 | MEDIUM | 5.5 | 1.5% | May 12, 2022 | NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 in GitHub repository vim/vim prior to 8.2.4938.... |
| CVE-2022-29930 | MEDIUM | 4.9 | 0.8% | May 12, 2022 | SHA1 implementation in JetBrains Ktor Native 2.0.0 was returning the same value. The issue was fixed in Ktor version 2.0... |
| CVE-2022-29929 | MEDIUM | 6.1 | 0.4% | May 12, 2022 | In JetBrains TeamCity before 2022.04 potential XSS via Referrer header was possible |
| CVE-2022-29928 | MEDIUM | 4.9 | 0.4% | May 12, 2022 | In JetBrains TeamCity before 2022.04 leak of secrets in TeamCity agent logs was possible |
| CVE-2022-29927 | MEDIUM | 6.1 | 1.4% | May 12, 2022 | In JetBrains TeamCity before 2022.04 reflected XSS on the Build Chain Status page was possible |
| CVE-2022-1682 | MEDIUM | 6.1 | 0.7% | May 12, 2022 | Reflected Xss using url based payload in GitHub repository neorazorx/facturascripts prior to 2022.07. Xss can use to ste... |
| CVE-2022-1044 | MEDIUM | 6.5 | 0.8% | May 12, 2022 | Sensitive Data Exposure Due To Insecure Storage Of Profile Image in GitHub repository polonel/trudesk prior to v1.2.1. |
| CVE-2022-29855 | MEDIUM | 6.8 | 0.7% | May 11, 2022 | Mitel 6800 and 6900 Series SIP phone devices through 2022-04-27 have "undocumented functionality." A vulnerability in Mi... |
| CVE-2022-30062 | MEDIUM | 6.5 | 1.0% | May 11, 2022 | ftcms <=2.1 was discovered to be vulnerable to Arbitrary File Read via tp.php |
| CVE-2022-30061 | MEDIUM | 6.5 | 1.2% | May 11, 2022 | ftcms <=2.1 was discovered to be vulnerable to directory traversal attacks via the parameter tp. |
| CVE-2022-30059 | MEDIUM | 6.5 | 1.1% | May 11, 2022 | Shopwind <=v3.4.2 was discovered to contain a Arbitrary File Delete vulnerability via the neirong parameter at \backend\... |
| CVE-2022-30058 | MEDIUM | 5.3 | 1.1% | May 11, 2022 | Shopwind <=v3.4.2 was discovered to contain a Arbitrary File Download vulnerability via the neirong parameter at \backen... |
| CVE-2022-30057 | MEDIUM | 5.4 | 0.5% | May 11, 2022 | Shopwind <=v3.4.2 was discovered to contain a stored cross-site scripting (XSS) vulnerability. |
| CVE-2022-29848 | MEDIUM | 6.5 | 3.5% | May 11, 2022 | In Progress Ipswitch WhatsUp Gold 17.0.0 through 21.1.1, and 22.0.0, it is possible for an authenticated user to invoke ... |
| CVE-2022-29846 | MEDIUM | 5.3 | 5.1% | May 11, 2022 | In Progress Ipswitch WhatsUp Gold 16.1 through 21.1.1, and 22.0.0, it is possible for an unauthenticated attacker to obt... |
| CVE-2022-29845 | MEDIUM | 6.5 | 3.9% | May 11, 2022 | In Progress Ipswitch WhatsUp Gold 21.1.0 through 21.1.1, and 22.0.0, it is possible for an authenticated user to invoke ... |
| CVE-2022-28837 | MEDIUM | 5.5 | 1.9% | May 11, 2022 | Acrobat Pro DC version 22.001.2011x (and earlier), 20.005.3033x (and earlier) and 17.012.3022x (and earlier) are affecte... |
| CVE-2022-28267 | MEDIUM | 5.5 | 2.5% | May 11, 2022 | Acrobat Reader DC version 22.001.2011x (and earlier), 20.005.3033x (and earlier) and 17.012.3022x (and earlier) are affe... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now