2022 CVE Vulnerabilities

27,528 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-21689HIGH7.5OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with frien...
CVE-2022-22691HIGH7.4The password reset component deployed within Umbraco uses the hostname supplied within the request host header when buil...
CVE-2022-22690HIGH7.5Within the Umbraco CMS, a configuration element named "UmbracoApplicationUrl" (or just "ApplicationUrl") is used wheneve...
CVE-2022-0244HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions starting with 14.5. Arbitrary file read was possible...
CVE-2022-0236HIGH7.5The WP Import Export WordPress plugin (both free and premium versions) is vulnerable to unauthenticated sensitive data d...
CVE-2022-0215HIGH8.8The Login/Signup Popup, Waitlist Woocommerce ( Back in stock notifier ), and Side Cart Woocommerce (Ajax) WordPress plug...
CVE-2022-0154HIGH8An issue has been discovered in GitLab affecting all versions starting from 7.7 before 14.4.5, all versions starting fro...
CVE-2022-23307HIGH8.8CVE-2020-9493 identified a deserialization issue that was present in Apache Chainsaw. Prior to Chainsaw V2.0 Chainsaw wa...
CVE-2022-23302HIGH8.8JMSSink in all versions of Log4j 1.x is vulnerable to deserialization of untrusted data when the attacker has write acce...
CVE-2022-0263HIGH7.8Unrestricted Upload of File with Dangerous Type in Packagist pimcore/pimcore prior to 10.2.7.
CVE-2022-0261HIGH7.8Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVE-2022-0242HIGH7.2Unrestricted Upload of File with Dangerous Type in GitHub repository crater-invoice/crater prior to 6.0.
CVE-2022-0258HIGH8.8pimcore is vulnerable to Improper Neutralization of Special Elements used in an SQL Command
CVE-2022-0240HIGH7.5mruby is vulnerable to NULL Pointer Dereference
CVE-2022-0180HIGH8.8Cross-site request forgery (CSRF) vulnerability in Quiz And Survey Master versions prior to 7.3.7 allows a remote attack...
CVE-2022-23095HIGH7.8Open Design Alliance Drawings SDK before 2022.12.1 mishandles the loading of JPG files. Unchecked input data from a craf...
CVE-2022-23094HIGH7.5Libreswan 4.2 through 4.5 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon cras...
CVE-2022-22531HIGH8.1The F0743 Create Single Payment application of SAP S/4HANA - versions 100, 101, 102, 103, 104, 105, 106, does not check ...
CVE-2022-22530HIGH8.1The F0743 Create Single Payment application of SAP S/4HANA - versions 100, 101, 102, 103, 104, 105, 106, does not check ...
CVE-2022-21137HIGH7.8Omron CX-One Versions 4.60 and prior are vulnerable to a stack-based buffer overflow while processing specific project f...
CVE-2022-0130HIGH8.1Tenable.sc versions 5.14.0 through 5.19.1 were found to contain a remote code execution vulnerability which could allow ...
CVE-2022-21681HIGH7.5Marked is a markdown parser and compiler. Prior to version 4.0.10, the regular expression `inline.reflinkSearch` may cau...
CVE-2022-21680HIGH7.5Marked is a markdown parser and compiler. Prior to version 4.0.10, the regular expression `block.def` may cause catastro...
CVE-2022-23222HIGH7.8kernel/bpf/verifier.c in the Linux kernel through 5.15.14 allows local users to gain privileges because of the availabil...
CVE-2022-20698HIGH7.5A vulnerability in the OOXML parsing module in Clam AntiVirus (ClamAV) Software version 0.104.1 and LTS version 0.103.4 ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now