2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-22007 | HIGH | 7.8 | 2.2% | Mar 9, 2022 | HEVC Video Extensions Remote Code Execution Vulnerability |
| CVE-2022-22006 | HIGH | 7.8 | 2.2% | Mar 9, 2022 | HEVC Video Extensions Remote Code Execution Vulnerability |
| CVE-2022-21990 | HIGH | 8.8 | 18.8% | Mar 9, 2022 | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2022-21967 | HIGH | 7 | 0.7% | Mar 9, 2022 | Xbox Live Auth Manager for Windows Elevation of Privilege Vulnerability |
| CVE-2022-0896 | HIGH | 8.8 | 1.4% | Mar 9, 2022 | Improper Neutralization of Special Elements Used in a Template Engine in GitHub repository microweber/microweber prior t... |
| CVE-2022-25943 | HIGH | 7.8 | 0.7% | Mar 9, 2022 | The installer of WPS Office for Windows versions prior to v11.2.0.10258 fails to configure properly the ACL for the dire... |
| CVE-2022-26337 | HIGH | 7.8 | 0.7% | Mar 8, 2022 | Trend Micro Password Manager (Consumer) installer version 5.0.0.1262 and below is vulnerable to an Uncontrolled Search P... |
| CVE-2022-24716 | HIGH | 7.5 | 89.4% | Mar 8, 2022 | Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Unauthenticated users can... |
| CVE-2022-24715 | HIGH | 8.8 | 14.7% | Mar 8, 2022 | Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Authenticated users, with... |
| CVE-2022-24713 | HIGH | 7.5 | 14.5% | Mar 8, 2022 | regex is an implementation of regular expressions for the Rust language. The regex crate features built-in mitigations t... |
| CVE-2022-25311 | HIGH | 7.3 | 0.5% | Mar 8, 2022 | A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All versions < V1.0.3), SIN... |
| CVE-2022-24661 | HIGH | 7.8 | 0.8% | Mar 8, 2022 | A vulnerability has been identified in Simcenter STAR-CCM+ Viewer (All versions < V2022.1). The starview+.exe contains a... |
| CVE-2022-24408 | HIGH | 7.8 | 0.2% | Mar 8, 2022 | A vulnerability has been identified in SINUMERIK MC (All versions < V1.15 SP1), SINUMERIK ONE (All versions < V6.15 SP1)... |
| CVE-2022-24309 | HIGH | 8.1 | 0.6% | Mar 8, 2022 | A vulnerability has been identified in Mendix Runtime V7 (All versions < V7.23.29), Mendix Runtime V8 (All versions < V8... |
| CVE-2022-24282 | HIGH | 7.2 | 1.3% | Mar 8, 2022 | A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All versions < V1.0.3), SIN... |
| CVE-2022-24281 | HIGH | 7.2 | 3.4% | Mar 8, 2022 | A vulnerability has been identified in SINEC NMS (All versions < V1.0.3), SINEMA Server V14 (All versions). A privileged... |
| CVE-2022-24738 | HIGH | 7.4 | 1.0% | Mar 7, 2022 | Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. In versions of evmos prior to 2.0.1 attackers are... |
| CVE-2022-22351 | HIGH | 8.6 | 1.1% | Mar 7, 2022 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged trusted host user to exploit a vulnerability in the nim... |
| CVE-2022-0440 | HIGH | 7.2 | 1.4% | Mar 7, 2022 | The Catch Themes Demo Import WordPress plugin before 2.1.1 does not validate one of the file to be imported, which could... |
| CVE-2022-0439 | HIGH | 8.8 | 4.2% | Mar 7, 2022 | The Email Subscribers & Newsletters WordPress plugin before 5.3.2 does not correctly escape the `order` and `orderby` pa... |
| CVE-2022-0420 | HIGH | 7.2 | 1.5% | Mar 7, 2022 | The RegistrationMagic WordPress plugin before 5.0.2.2 does not sanitise and escape the rm_form_id parameter before using... |
| CVE-2022-0410 | HIGH | 8.8 | 1.3% | Mar 7, 2022 | The WP Visitor Statistics (Real Time Traffic) WordPress plugin before 5.6 does not sanitise and escape the id parameter ... |
| CVE-2022-0267 | HIGH | 7.2 | 1.3% | Mar 7, 2022 | The AdRotate WordPress plugin before 5.8.22 does not sanitise and escape the adrotate_action before using it in a SQL st... |
| CVE-2022-26505 | HIGH | 7.4 | 1.6% | Mar 6, 2022 | A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media file... |
| CVE-2022-26490 | HIGH | 7.8 | 0.4% | Mar 6, 2022 | st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c in the Linux kernel through 5.16.12 has EVT_TRANSACTIO... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now