2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48590 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “admin dynamic app mib errors” feature of the ScienceLogic SL1 that takes un... |
| CVE-2022-48589 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “reporting job editor” feature of the ScienceLogic SL1 that takes unsanitize... |
| CVE-2022-48588 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “schedule editor decoupled” feature of the ScienceLogic SL1 that takes unsan... |
| CVE-2022-48587 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “schedule editor” feature of the ScienceLogic SL1 that takes unsanitized use... |
| CVE-2022-48586 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “json walker” feature of the ScienceLogic SL1 that takes unsanitized user‐co... |
| CVE-2022-48585 | HIGH | 8.8 | 0.6% | Aug 9, 2023 | A SQL injection vulnerability exists in the “admin brand portal” feature of the ScienceLogic SL1 that takes unsanitized ... |
| CVE-2022-48584 | HIGH | 8.8 | 1.3% | Aug 9, 2023 | A command injection vulnerability exists in the download and convert report feature of the ScienceLogic SL1 that takes u... |
| CVE-2022-48583 | HIGH | 8.8 | 1.3% | Aug 9, 2023 | A command injection vulnerability exists in the dashboard scheduler feature of the ScienceLogic SL1 that takes unsanitiz... |
| CVE-2022-48582 | HIGH | 8.8 | 1.3% | Aug 9, 2023 | A command injection vulnerability exists in the ticket report generate feature of the ScienceLogic SL1 that takes unsani... |
| CVE-2022-48581 | HIGH | 8.8 | 1.3% | Aug 9, 2023 | A command injection vulnerability exists in the “dash export” feature of the ScienceLogic SL1 that takes unsanitized use... |
| CVE-2022-48580 | HIGH | 8.8 | 1.3% | Aug 9, 2023 | A command injection vulnerability exists in the ARP ping device tool feature of the ScienceLogic SL1 that takes unsaniti... |
| CVE-2022-47185 | HIGH | 7.5 | 1.5% | Aug 9, 2023 | Improper input validation vulnerability on the range header in Apache Software Foundation Apache Traffic Server.This iss... |
| CVE-2022-39062 | HIGH | 7.8 | 0.2% | Aug 8, 2023 | A vulnerability has been identified in SICAM TOOLBOX II (All versions < V07.10). Affected applications do not properly s... |
| CVE-2022-48579 | HIGH | 7.5 | 0.7% | Aug 7, 2023 | UnRAR before 6.2.3 allows extraction of files outside of the destination folder via symlink chains. |
| CVE-2022-46782 | HIGH | 7.8 | 0.2% | Aug 5, 2023 | An issue was discovered in Stormshield SSL VPN Client before 3.2.0. A logged-in user, able to only launch the VPNSSL Cli... |
| CVE-2022-4046 | HIGH | 8.8 | 0.7% | Aug 3, 2023 | In CODESYS Control in multiple versions a improper restriction of operations within the bounds of a memory buffer allow ... |
| CVE-2022-34453 | HIGH | 7.1 | 0.4% | Aug 3, 2023 | Dell XtremIO X2 XMS versions prior to 6-4-1.11 contain an improper access control vulnerability. A remote read only use... |
| CVE-2022-46484 | HIGH | 7.5 | 0.7% | Aug 2, 2023 | Information disclosure in password protected surveys in Data Illusion Survey Software Solutions NGSurvey v2.4.28 and bel... |
| CVE-2022-46485 | HIGH | 7.5 | 1.0% | Aug 2, 2023 | Data Illusion Survey Software Solutions ngSurvey version 2.4.28 and below is vulnerable to Denial of Service if a survey... |
| CVE-2022-39987 | HIGH | 8.8 | 34.7% | Aug 1, 2023 | A Command injection vulnerability in RaspAP 2.8.0 thru 2.9.2 allows an authenticated attacker to execute arbitrary OS co... |
| CVE-2022-43831 | HIGH | 7.8 | 0.2% | Jul 31, 2023 | IBM Storage Scale Container Native Storage Access 5.1.2.1 through 5.1.6.1 could allow a local user to obtain escalated p... |
| CVE-2022-4921 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Use after free in Accessibility in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user to... |
| CVE-2022-4919 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Use after free in Base Internals in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to perform arbitrary ... |
| CVE-2022-4918 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Use after free in UI in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to perform arbitrary read/write v... |
| CVE-2022-4916 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Use after free in Media in Google Chrome prior to 103.0.5060.53 allowed a remote attacker to perform arbitrary read/writ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now