2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29830 | CRITICAL | 9.1 | 1.2% | Nov 25, 2022 | Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z, and M... |
| CVE-2022-29829 | HIGH | 7.5 | 1.0% | Nov 25, 2022 | Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U, GT De... |
| CVE-2022-29828 | HIGH | 7.5 | 1.0% | Nov 25, 2022 | Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A and later allows... |
| CVE-2022-29827 | HIGH | 7.5 | 1.0% | Nov 25, 2022 | Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A and later allows... |
| CVE-2022-29826 | HIGH | 7.5 | 0.7% | Nov 25, 2022 | Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.087R... |
| CVE-2022-29825 | HIGH | 7.5 | 0.5% | Nov 25, 2022 | Use of Hard-coded Password vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U, GT Designer3 V... |
| CVE-2022-25164 | HIGH | 7.5 | 0.8% | Nov 25, 2022 | Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z... |
| CVE-2022-2650 | CRITICAL | 9.8 | 0.7% | Nov 24, 2022 | Improper Restriction of Excessive Authentication Attempts in GitHub repository wger-project/wger prior to 2.2. |
| CVE-2022-26885 | HIGH | 7.5 | 1.2% | Nov 24, 2022 | When using tasks to read config files, there is a risk of database password disclosure. We recommend you upgrade to vers... |
| CVE-2022-4090 | HIGH | 8.8 | 0.2% | Nov 24, 2022 | A vulnerability was found in rickxy Stock Management System and classified as problematic. This issue affects some unkno... |
| CVE-2022-4089 | MEDIUM | 5.4 | 0.4% | Nov 24, 2022 | A vulnerability was found in rickxy Stock Management System. It has been declared as problematic. This vulnerability aff... |
| CVE-2022-4088 | CRITICAL | 9.8 | 0.6% | Nov 24, 2022 | A vulnerability was found in rickxy Stock Management System and classified as critical. Affected by this issue is some u... |
| CVE-2022-40977 | HIGH | 7.5 | 0.9% | Nov 24, 2022 | A path traversal vulnerability was discovered in Pilz PASvisu Server before 1.12.0. An unauthenticated remote attacker c... |
| CVE-2022-40976 | MEDIUM | 5.5 | 0.2% | Nov 24, 2022 | A path traversal vulnerability was discovered in multiple Pilz products. An unauthenticated local attacker could use a z... |
| CVE-2022-40266 | MEDIUM | 6.5 | 0.8% | Nov 24, 2022 | Improper Input Validation vulnerability in Mitsubishi Electric GOT2000 Series GT27 model FTP server versions 01.39.000 a... |
| CVE-2022-4136 | CRITICAL | 9.8 | 0.9% | Nov 24, 2022 | Dangerous method exposed which can lead to RCE in qmpass/leadshop v1.4.15 allows an attacker to control the target host ... |
| CVE-2022-44749 | HIGH | 7 | 0.4% | Nov 24, 2022 | A directory traversal vulnerability in the ZIP archive extraction routines of KNIME Analytics Platform 3.2.0 and above c... |
| CVE-2022-44748 | HIGH | 7.5 | 1.3% | Nov 24, 2022 | A directory traversal vulnerability in the ZIP archive extraction routines of KNIME Server since 4.3.0 can result in arb... |
| CVE-2022-45873 | MEDIUM | 5.5 | 0.3% | Nov 23, 2022 | systemd 250 and 251 allows local users to achieve a systemd-coredump deadlock by triggering a crash that has a long back... |
| CVE-2022-45872 | CRITICAL | 9.8 | 0.9% | Nov 23, 2022 | iTerm2 before 3.4.18 mishandles a DECRQSS response. |
| CVE-2022-45868 | HIGH | 7.8 | 0.3% | Nov 23, 2022 | The web-based admin console in H2 Database Engine before 2.2.220 can be started via the CLI with the argument -webAdminP... |
| CVE-2022-45280 | MEDIUM | 5.4 | 0.3% | Nov 23, 2022 | A cross-site scripting (XSS) vulnerability in the Url parameter in /login.php of EyouCMS v1.6.0 allows attackers to exec... |
| CVE-2022-45278 | HIGH | 8.8 | 0.7% | Nov 23, 2022 | Jizhicms v2.3.3 was discovered to contain a SQL injection vulnerability via the /index.php/admins/Fields/get_fields.html... |
| CVE-2022-45276 | CRITICAL | 9.8 | 0.8% | Nov 23, 2022 | An issue in the /index/user/user_edit.html component of YJCMS v1.0.9 allows unauthenticated attackers to obtain the Admi... |
| CVE-2022-44789 | HIGH | 8.8 | 2.2% | Nov 23, 2022 | A logical issue in O_getOwnPropertyDescriptor() in Artifex MuJS 1.0.0 through 1.3.x before 1.3.2 allows an attacker to a... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now