2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-25298 | HIGH | 7.5 | 1.7% | Feb 18, 2022 | This affects the package sprinfall/webcc before 0.3.0. It is possible to traverse directories to fetch arbitrary files f... |
| CVE-2022-0660 | HIGH | 7.5 | 6.9% | Feb 18, 2022 | Generation of Error Message Containing Sensitive Information in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-25314 | HIGH | 7.5 | 4.7% | Feb 18, 2022 | In Expat (aka libexpat) before 2.4.5, there is an integer overflow in copyString. |
| CVE-2022-23646 | HIGH | 7.5 | 1.8% | Feb 17, 2022 | Next.js is a React framework. Starting with version 10.0.0 and prior to version 12.1.0, Next.js is vulnerable to User In... |
| CVE-2022-22914 | HIGH | 7.5 | 1.4% | Feb 17, 2022 | An incorrect access control issue in the component FileManager of Ovidentia CMS 6.0 allows authenticated attackers to to... |
| CVE-2022-24683 | HIGH | 7.5 | 1.5% | Feb 17, 2022 | HashiCorp Nomad and Nomad Enterprise 0.9.2 through 1.0.17, 1.1.11, and 1.2.5 allow operators with read-fs and alloc-exec... |
| CVE-2022-23632 | HIGH | 7.5 | 1.7% | Feb 17, 2022 | Traefik is an HTTP reverse proxy and load balancer. Prior to version 2.6.1, Traefik skips the router transport layer sec... |
| CVE-2022-20750 | HIGH | 7.5 | 1.1% | Feb 17, 2022 | A vulnerability in the checkpoint manager implementation of Cisco Redundancy Configuration Manager (RCM) for Cisco StarO... |
| CVE-2022-20653 | HIGH | 7.5 | 1.8% | Feb 17, 2022 | A vulnerability in the DNS-based Authentication of Named Entities (DANE) email verification component of Cisco AsyncOS S... |
| CVE-2022-23318 | HIGH | 7.1 | 0.8% | Feb 17, 2022 | A heap-buffer-overflow in pcf2bdf, versions >= 1.05 allows an attacker to trigger unsafe memory access via a specially c... |
| CVE-2022-0629 | HIGH | 7.8 | 1.9% | Feb 17, 2022 | Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-25271 | HIGH | 7.5 | 1.2% | Feb 16, 2022 | Drupal core's form API has a vulnerability where certain contributed or custom modules' forms may be vulnerable to impro... |
| CVE-2022-24985 | HIGH | 8.8 | 2.3% | Feb 16, 2022 | Forms generated by JQueryForm.com before 2022-02-05 allows a remote authenticated attacker to bypass authentication and ... |
| CVE-2022-24983 | HIGH | 7.5 | 2.6% | Feb 16, 2022 | Forms generated by JQueryForm.com before 2022-02-05 allow remote attackers to obtain the URI to any uploaded file by cap... |
| CVE-2022-23636 | HIGH | 8.1 | 0.8% | Feb 16, 2022 | Wasmtime is an open source runtime for WebAssembly & WASI. Prior to versions 0.34.1 and 0.33.1, there exists a bug in th... |
| CVE-2022-25265 | HIGH | 7.8 | 1.1% | Feb 16, 2022 | In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they were built in approxim... |
| CVE-2022-25255 | HIGH | 7.8 | 0.3% | Feb 16, 2022 | In Qt 5.9.x through 5.15.x before 5.15.9 and 6.x before 6.2.4 on Linux and UNIX, QProcess could execute a binary from th... |
| CVE-2022-23644 | HIGH | 8.8 | 0.9% | Feb 16, 2022 | BookWyrm is a decentralized social network for tracking reading habits and reviewing books. The functionality to load a ... |
| CVE-2022-24665 | HIGH | 8.8 | 2.4% | Feb 16, 2022 | PHP Everywhere <= 2.0.3 included functionality that allowed execution of PHP Code Snippets via a WordPress gutenberg blo... |
| CVE-2022-24664 | HIGH | 8.8 | 1.6% | Feb 16, 2022 | PHP Everywhere <= 2.0.3 included functionality that allowed execution of PHP Code Snippets via WordPress metaboxes, whic... |
| CVE-2022-24663 | HIGH | 8.8 | 2.0% | Feb 16, 2022 | PHP Everywhere <= 2.0.3 included functionality that allowed execution of PHP Code Snippets via WordPress shortcodes, whi... |
| CVE-2022-23804 | HIGH | 7.8 | 1.5% | Feb 16, 2022 | A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsi... |
| CVE-2022-23803 | HIGH | 7.8 | 1.5% | Feb 16, 2022 | A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsi... |
| CVE-2022-23203 | HIGH | 7.8 | 4.7% | Feb 16, 2022 | Adobe Photoshop versions 22.5.4 (and earlier) and 23.1 (and earlier) are affected by a buffer overflow vulnerability due... |
| CVE-2022-23202 | HIGH | 7 | 2.2% | Feb 16, 2022 | Adobe Creative Cloud Desktop version 2.7.0.13 (and earlier) is affected by an Uncontrolled Search Path Element vulnerabi... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now