2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26197 | MEDIUM | 5.4 | 0.6% | Mar 25, 2022 | Joget DX 7 was discovered to contain a cross-site scripting (XSS) vulnerability via the Datalist table. |
| CVE-2022-24643 | MEDIUM | 5.4 | 1.2% | Mar 25, 2022 | A stored cross-site scripting (XSS) issue was discovered in the OpenEMR Hospital Information Management System version 6... |
| CVE-2022-27920 | MEDIUM | 6.1 | 0.9% | Mar 25, 2022 | libkiwix 10.0.0 and 10.0.1 allows XSS in the built-in webserver functionality via the search suggestions URL parameter. ... |
| CVE-2022-27906 | MEDIUM | 5.9 | 1.0% | Mar 25, 2022 | Mendelson OFTP2 before 1.1 b43 is affected by directory traversal. To access the vulnerable code path, the attacker has ... |
| CVE-2022-27887 | MEDIUM | 6.1 | 0.5% | Mar 25, 2022 | Maccms v10 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in /admin.php/admin/vod/data.h... |
| CVE-2022-27886 | MEDIUM | 6.1 | 0.5% | Mar 25, 2022 | Maccms v10 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in /admin.php/admin/ulog/index... |
| CVE-2022-27885 | MEDIUM | 6.1 | 0.5% | Mar 25, 2022 | Maccms v10 was discovered to contain multiple reflected cross-site scripting (XSS) vulnerabilities in /admin.php/admin/w... |
| CVE-2022-27884 | MEDIUM | 6.1 | 0.5% | Mar 25, 2022 | Maccms v10 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in /admin.php/admin/plog/index... |
| CVE-2022-26573 | MEDIUM | 6.1 | 0.6% | Mar 25, 2022 | Maccms v10 was discovered to contain multiple reflected cross-site scripting (XSS) vulnerabilities in /admin.php/admin/a... |
| CVE-2022-25612 | MEDIUM | 5.4 | 0.5% | Mar 25, 2022 | Multiple Authenticated Persistent Cross-Site Scripting (XSS) vulnerabilities in Simple Event Planner WordPress plugin <=... |
| CVE-2022-25611 | MEDIUM | 5.4 | 0.5% | Mar 25, 2022 | Authenticated Stored Cross-Site Scripting (XSS) in Simple Event Planner plugin <= 1.5.4 allows attackers with contributo... |
| CVE-2022-25610 | MEDIUM | 6.1 | 0.7% | Mar 25, 2022 | Unauthenticated Stored Cross-Site Scripting (XSS) in Simple Ajax Chat <= 20220115 allows an attacker to store the malici... |
| CVE-2022-25606 | MEDIUM | 5.4 | 0.5% | Mar 25, 2022 | Multiple Authenticated Stored Cross-Site Scripting (XSS) vulnerabilities discovered in WP-DownloadManager WordPress plug... |
| CVE-2022-25590 | MEDIUM | 6.5 | 1.5% | Mar 25, 2022 | SurveyKing v0.2.0 was discovered to retain users' session cookies after logout, allowing attackers to login to the syste... |
| CVE-2022-0897 | MEDIUM | 4.3 | 1.0% | Mar 25, 2022 | A flaw was found in the libvirt nwfilter driver. The virNWFilterObjListNumOfNWFilters method failed to acquire the drive... |
| CVE-2022-0494 | MEDIUM | 4.4 | 0.4% | Mar 25, 2022 | A kernel information leak flaw was identified in the scsi_ioctl function in drivers/scsi/scsi_ioctl.c in the Linux kerne... |
| CVE-2022-0322 | MEDIUM | 5.5 | 0.3% | Mar 25, 2022 | A flaw was found in the sctp_make_strreset_req function in net/sctp/sm_make_chunk.c in the SCTP network protocol in the ... |
| CVE-2022-26263 | MEDIUM | 6.1 | 37.7% | Mar 25, 2022 | Yonyou u8 v13.0 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability via the component /u8sl/W... |
| CVE-2022-25582 | MEDIUM | 5.4 | 0.6% | Mar 25, 2022 | A stored cross-site scripting (XSS) vulnerability in the Column module of ClassCMS v2.5 and below allows attackers to ex... |
| CVE-2022-25574 | MEDIUM | 4.8 | 0.4% | Mar 25, 2022 | A stored cross-site scripting (XSS) vulnerability in the upload function of /admin/show.php allows attackers to execute ... |
| CVE-2022-25576 | MEDIUM | 4.5 | 0.4% | Mar 24, 2022 | Anchor CMS v0.12.7 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component anchor/routes/posts.p... |
| CVE-2022-25575 | MEDIUM | 6.1 | 0.6% | Mar 24, 2022 | Multiple cross-site scripting (XSS) vulnerabilities in Parking Management System v1.0 allows attackers to execute arbitr... |
| CVE-2022-24782 | MEDIUM | 4.3 | 0.9% | Mar 24, 2022 | Discourse is an open source discussion platform. Versions 2.8.2 and prior in the `stable` branch, 2.9.0.beta3 and prior ... |
| CVE-2022-24776 | MEDIUM | 6.1 | 0.9% | Mar 24, 2022 | Flask-AppBuilder is an application development framework, built on top of the Flask web framework. Flask-AppBuilder cont... |
| CVE-2022-24769 | MEDIUM | 5.9 | 0.5% | Mar 24, 2022 | Moby is an open-source project created by Docker to enable and accelerate software containerization. A bug was found in ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now