2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-43709 | MEDIUM | 4.9 | 0.6% | Nov 22, 2022 | MyBB 1.8.31 has a SQL injection vulnerability in the Admin CP's Users module allows remote authenticated users to modify... |
| CVE-2022-43708 | MEDIUM | 6.1 | 0.4% | Nov 22, 2022 | MyBB 1.8.31 has a (issue 2 of 2) cross-site scripting (XSS) vulnerabilities in the post Attachments interface allow atta... |
| CVE-2022-43707 | MEDIUM | 6.1 | 0.5% | Nov 22, 2022 | MyBB 1.8.31 has a Cross-site scripting (XSS) vulnerability in the visual MyCode editor (SCEditor) allows remote attacker... |
| CVE-2022-44788 | MEDIUM | 6.5 | 0.6% | Nov 21, 2022 | An issue was discovered in Appalti & Contratti 9.12.2. It allows Session Fixation. When a user logs in providing a JSESS... |
| CVE-2022-44787 | MEDIUM | 6.1 | 0.4% | Nov 21, 2022 | An issue was discovered in Appalti & Contratti 9.12.2. The web applications are vulnerable to a Reflected Cross-Site Scr... |
| CVE-2022-44786 | HIGH | 7.5 | 0.7% | Nov 21, 2022 | An issue was discovered in Appalti & Contratti 9.12.2. The target web applications allow Local File Inclusion in any pag... |
| CVE-2022-44785 | CRITICAL | 9.8 | 0.8% | Nov 21, 2022 | An issue was discovered in Appalti & Contratti 9.12.2. The target web applications are subject to multiple SQL Injection... |
| CVE-2022-44784 | HIGH | 8.8 | 1.0% | Nov 21, 2022 | An issue was discovered in Appalti & Contratti 9.12.2. The target web applications LFS and DL229 expose a set of service... |
| CVE-2022-41945 | CRITICAL | 9.8 | 0.8% | Nov 21, 2022 | super-xray is a vulnerability scanner (xray) GUI launcher. In version 0.1-beta, the URL is not filtered and directly spl... |
| CVE-2022-30258 | CRITICAL | 9.8 | 0.7% | Nov 21, 2022 | An issue was discovered in Technitium DNS Server through 8.0.2 that allows variant V2 of unintended domain name resoluti... |
| CVE-2022-30257 | CRITICAL | 9.8 | 0.7% | Nov 21, 2022 | An issue was discovered in Technitium DNS Server through 8.0.2 that allows variant V1 of unintended domain name resoluti... |
| CVE-2022-43143 | CRITICAL | 9.6 | 0.8% | Nov 21, 2022 | A cross-site scripting (XSS) vulnerability in Beekeeper Studio v3.6.6 allows attackers to execute arbitrary web scripts ... |
| CVE-2022-42096 | MEDIUM | 4.8 | 2.0% | Nov 21, 2022 | Backdrop CMS version 1.23.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via Post content... |
| CVE-2022-4105 | MEDIUM | 5.4 | 0.5% | Nov 21, 2022 | A stored XSS in a kiwi Test Plan can run malicious javascript which could be chained with an HTML injection to perform a... |
| CVE-2022-3388 | HIGH | 7.8 | 0.3% | Nov 21, 2022 | An input validation vulnerability exists in the Monitor Pro interface of MicroSCADA Pro and MicroSCADA X SYS600. An auth... |
| CVE-2022-44830 | HIGH | 7.8 | 0.6% | Nov 21, 2022 | Sourcecodester Event Registration App v1.0 was discovered to contain multiple CSV injection vulnerabilities via the Firs... |
| CVE-2022-44183 | CRITICAL | 9.8 | 1.0% | Nov 21, 2022 | Tenda AC18 V15.03.05.19 is vulnerable to Buffer Overflow via function formSetWifiGuestBasic. |
| CVE-2022-44180 | CRITICAL | 9.8 | 0.7% | Nov 21, 2022 | Tenda AC18 V15.03.05.19 is vulnerable to Buffer Overflow via function addWifiMacFilter. |
| CVE-2022-44178 | CRITICAL | 9.8 | 0.7% | Nov 21, 2022 | Tenda AC18 V15.03.05.19 is vulnerable to Buffer Overflow. via function formWifiWpsOOB. |
| CVE-2022-44177 | CRITICAL | 9.8 | 0.7% | Nov 21, 2022 | Tenda AC18 V15.03.05.19 is vulnerable to Buffer Overflow via function formWifiWpsStart. |
| CVE-2022-44176 | CRITICAL | 9.8 | 0.8% | Nov 21, 2022 | Tenda AC18 V15.03.05.19 is vulnerable to Buffer Overflow via function fromSetRouteStatic. |
| CVE-2022-44175 | CRITICAL | 9.8 | 0.8% | Nov 21, 2022 | Tenda AC18 V15.03.05.19 is vulnerable to Buffer Overflow via function formSetMacFilterCfg. |
| CVE-2022-44174 | CRITICAL | 9.8 | 0.7% | Nov 21, 2022 | Tenda AC18 V15.03.05.05 is vulnerable to Buffer Overflow via function formSetDeviceName. |
| CVE-2022-44172 | CRITICAL | 9.8 | 0.7% | Nov 21, 2022 | Tenda AC18 V15.03.05.19 is vulnerable to Buffer Overflow via function R7WebsSecurityHandler. |
| CVE-2022-44171 | CRITICAL | 9.8 | 0.7% | Nov 21, 2022 | Tenda AC18 V15.03.05.19 is vulnerable to Buffer Overflow via function form_fast_setting_wifi_set. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now