2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-25175 | HIGH | 8.8 | 1.4% | Feb 15, 2022 | Jenkins Pipeline: Multibranch Plugin 706.vd43c65dec013 and earlier uses the same checkout directories for distinct SCMs ... |
| CVE-2022-25174 | HIGH | 8.8 | 1.4% | Feb 15, 2022 | Jenkins Pipeline: Shared Groovy Libraries Plugin 552.vd9cc05b8a2e1 and earlier uses the same checkout directories for di... |
| CVE-2022-25173 | HIGH | 8.8 | 1.4% | Feb 15, 2022 | Jenkins Pipeline: Groovy Plugin 2648.va9433432b33c and earlier uses the same checkout directories for distinct SCMs when... |
| CVE-2022-24226 | HIGH | 7.5 | 1.7% | Feb 15, 2022 | Hospital Management System v4.0 was discovered to contain a blind SQL injection vulnerability via the register function ... |
| CVE-2022-23604 | HIGH | 7.2 | 1.1% | Feb 15, 2022 | x26-Cogs is a repository of cogs made by Twentysix for the Red Discord bot. Among these cogs is the Defender cog, a tool... |
| CVE-2022-21698 | HIGH | 7.5 | 6.0% | Feb 15, 2022 | client_golang is the instrumentation library for Go applications in Prometheus, and the promhttp package in client_golan... |
| CVE-2022-23384 | HIGH | 8.8 | 0.5% | Feb 15, 2022 | YzmCMS v6.3 is affected by Cross Site Request Forgery (CSRF) in /admin.add |
| CVE-2022-23317 | HIGH | 7.5 | 1.1% | Feb 15, 2022 | CobaltStrike <=4.5 HTTP(S) listener does not determine whether the request URL begins with "/", and attackers can obtain... |
| CVE-2022-0580 | HIGH | 8.8 | 1.1% | Feb 14, 2022 | Incorrect Authorization in Packagist librenms/librenms prior to 22.2.0. |
| CVE-2022-23410 | HIGH | 7.8 | 0.4% | Feb 14, 2022 | AXIS IP Utility before 4.18.0 allows for remote code execution and local privilege escalation by the means of DLL hijack... |
| CVE-2022-0586 | HIGH | 7.5 | 2.0% | Feb 14, 2022 | Infinite loop in RTMPT protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via p... |
| CVE-2022-0583 | HIGH | 7.5 | 1.8% | Feb 14, 2022 | Crash in the PVFS protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet... |
| CVE-2022-0581 | HIGH | 7.5 | 1.8% | Feb 14, 2022 | Crash in the CMS protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet ... |
| CVE-2022-25150 | HIGH | 7.8 | 0.4% | Feb 14, 2022 | In Malwarebytes Binisoft Windows Firewall Control before 6.8.1.0, programs executed from the Tools tab can be used to es... |
| CVE-2022-22854 | HIGH | 8.8 | 0.9% | Feb 14, 2022 | An access control issue in hprms/admin/?page=user/list of Hospital Patient Record Management System v1.0 allows attacker... |
| CVE-2022-0572 | HIGH | 7.8 | 26.6% | Feb 14, 2022 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-0214 | HIGH | 7.5 | 1.6% | Feb 14, 2022 | The Custom Popup Builder WordPress plugin before 1.3.1 autoload data from its popup on every pages, as such data can be ... |
| CVE-2022-0190 | HIGH | 8.8 | 1.3% | Feb 14, 2022 | The Ad Invalid Click Protector (AICP) WordPress plugin before 1.2.6 is affected by a SQL Injection in the id parameter o... |
| CVE-2022-22765 | HIGH | 7.8 | 0.2% | Feb 12, 2022 | BD Viper LT system, versions 2.0 and later, contains hardcoded credentials. If exploited, threat actors may be able to a... |
| CVE-2022-0311 | HIGH | 8.8 | 0.9% | Feb 12, 2022 | Heap buffer overflow in Task Manager in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced a us... |
| CVE-2022-0310 | HIGH | 8.8 | 0.8% | Feb 12, 2022 | Heap buffer overflow in Task Manager in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exp... |
| CVE-2022-0308 | HIGH | 8.8 | 0.7% | Feb 12, 2022 | Use after free in Data Transfer in Google Chrome on Chrome OS prior to 97.0.4692.99 allowed a remote attacker who convin... |
| CVE-2022-0307 | HIGH | 8.8 | 0.7% | Feb 12, 2022 | Use after free in Optimization Guide in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced a us... |
| CVE-2022-0306 | HIGH | 8.8 | 85.4% | Feb 12, 2022 | Heap buffer overflow in PDFium in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to potentially exploit h... |
| CVE-2022-0304 | HIGH | 8.8 | 0.7% | Feb 12, 2022 | Use after free in Bookmarks in Google Chrome prior to 97.0.4692.99 allowed a remote attacker who convinced a user to eng... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now