2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-24386 | MEDIUM | 6.1 | 0.7% | Mar 14, 2022 | Stored XSS in SmarterTools SmarterTrack This issue affects: SmarterTools SmarterTrack 100.0.8019.14010. |
| CVE-2022-24385 | MEDIUM | 6.5 | 0.8% | Mar 14, 2022 | A Direct Object Access vulnerability in SmarterTools SmarterTrack leads to information disclosure This issue affects: Sm... |
| CVE-2022-24384 | MEDIUM | 6.1 | 4.4% | Mar 14, 2022 | Cross-site Scripting (XSS) vulnerability in SmarterTools SmarterTrack This issue affects: SmarterTools SmarterTrack 100.... |
| CVE-2022-0941 | MEDIUM | 5.4 | 0.6% | Mar 14, 2022 | Stored XSS due to Unrestricted File Upload in GitHub repository star7th/showdoc prior to v2.10.4. |
| CVE-2022-0940 | MEDIUM | 5.4 | 0.5% | Mar 14, 2022 | Stored XSS due to Unrestricted File Upload in GitHub repository star7th/showdoc prior to v2.10.4. |
| CVE-2022-0938 | MEDIUM | 5.4 | 0.6% | Mar 14, 2022 | Stored XSS via file upload in GitHub repository star7th/showdoc prior to v2.10.4. |
| CVE-2022-0341 | MEDIUM | 5.4 | 0.5% | Mar 14, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository vanessa219/vditor prior to 3.8.12. |
| CVE-2022-0937 | MEDIUM | 5.4 | 0.5% | Mar 14, 2022 | Stored xss in showdoc through file upload in GitHub repository star7th/showdoc prior to 2.10.4. |
| CVE-2022-23960 | MEDIUM | 5.6 | 0.5% | Mar 13, 2022 | Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BH... |
| CVE-2022-26966 | MEDIUM | 5.5 | 0.3% | Mar 12, 2022 | An issue was discovered in the Linux kernel before 5.16.12. drivers/net/usb/sr9700.c allows attackers to obtain sensitiv... |
| CVE-2022-0930 | MEDIUM | 4.8 | 0.9% | Mar 12, 2022 | File upload filter bypass leading to stored XSS in GitHub repository microweber/microweber prior to 1.2.12. |
| CVE-2022-0929 | MEDIUM | 6.1 | 1.1% | Mar 12, 2022 | XSS on dynamic_text module in GitHub repository microweber/microweber prior to 1.2.11. |
| CVE-2022-0926 | MEDIUM | 4.8 | 0.8% | Mar 12, 2022 | File upload filter bypass leading to stored XSS in GitHub repository microweber/microweber prior to 1.2.12. |
| CVE-2022-0880 | MEDIUM | 5.4 | 0.7% | Mar 12, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository star7th/showdoc prior to 2.10.2. |
| CVE-2022-26533 | MEDIUM | 6.1 | 0.7% | Mar 12, 2022 | Alist v2.1.0 and below was discovered to contain a cross-site scripting (XSS) vulnerability via /i/:data/ipa.plist. |
| CVE-2022-26276 | MEDIUM | 5.3 | 1.1% | Mar 12, 2022 | An issue in index.php of OneNav v0.9.14 allows attackers to perform directory traversal. |
| CVE-2022-25839 | MEDIUM | 5.3 | 0.8% | Mar 11, 2022 | The package url-js before 2.1.0 are vulnerable to Improper Input Validation due to improper parsing, which makes it is p... |
| CVE-2022-25601 | MEDIUM | 6.1 | 1.0% | Mar 11, 2022 | Reflected Cross-Site Scripting (XSS) vulnerability affecting parameter &tab discovered in Contact Form X WordPress plugi... |
| CVE-2022-24090 | MEDIUM | 5.5 | 2.0% | Mar 11, 2022 | Adobe Photoshop versions 23.1.1 (and earlier) and 22.5.5 (and earlier) are affected by an out-of-bounds read vulnerabili... |
| CVE-2022-23625 | MEDIUM | 6.5 | 1.2% | Mar 11, 2022 | Wire-ios is a messaging application using the wire protocol on apple's ios platform. In versions prior to 3.95 malformed... |
| CVE-2022-0924 | MEDIUM | 5.5 | 1.3% | Mar 11, 2022 | Out-of-bounds Read error in tiffcp in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff fil... |
| CVE-2022-0921 | MEDIUM | 6.7 | 2.1% | Mar 11, 2022 | Abusing Backup/Restore feature to achieve Remote Code Execution in GitHub repository microweber/microweber prior to 1.2.... |
| CVE-2022-0909 | MEDIUM | 5.5 | 1.3% | Mar 11, 2022 | Divide By Zero error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file.... |
| CVE-2022-0908 | MEDIUM | 5.5 | 1.3% | Mar 11, 2022 | Null source pointer passed as an argument to memcpy() function within TIFFFetchNormalTag () in tif_dirread.c in libtiff ... |
| CVE-2022-0907 | MEDIUM | 5.5 | 1.3% | Mar 11, 2022 | Unchecked Return Value to NULL Pointer Dereference in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-se... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now