2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-41877 | MEDIUM | 4.6 | 0.7% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input length val... |
| CVE-2022-39383 | MEDIUM | 6.5 | 0.4% | Nov 16, 2022 | KubeVela is an open source application delivery platform. Users using the VelaUX APIServer could be affected by this vul... |
| CVE-2022-39347 | MEDIUM | 5.7 | 0.9% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing path canonicaliz... |
| CVE-2022-39320 | MEDIUM | 4.6 | 0.7% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP may attempt integer addition... |
| CVE-2022-39316 | MEDIUM | 5.7 | 1.0% | Nov 16, 2022 | FreeRDP is a free remote desktop protocol library and clients. In affected versions there is an out of bound read in ZGF... |
| CVE-2022-34354 | LOW | 3.3 | 0.2% | Nov 16, 2022 | IBM Sterling Partner Engagement Manager 2.0 allows encrypted storage of client data to be stored locally which can be r... |
| CVE-2022-44073 | MEDIUM | 5.4 | 0.4% | Nov 16, 2022 | Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via svg,Users & Contacts. |
| CVE-2022-44071 | MEDIUM | 5.4 | 0.4% | Nov 16, 2022 | Zenario CMS 9.3.57186 is is vulnerable to Cross Site Scripting (XSS) via profile. |
| CVE-2022-44070 | MEDIUM | 5.4 | 0.4% | Nov 16, 2022 | Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via News articles. |
| CVE-2022-44069 | MEDIUM | 5.4 | 0.4% | Nov 16, 2022 | Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via the Nest library module. |
| CVE-2022-43264 | HIGH | 7.5 | 0.9% | Nov 16, 2022 | Arobas Music Guitar Pro for iPad and iPhone before v1.10.2 allows attackers to perform directory traversal and download ... |
| CVE-2022-43263 | MEDIUM | 6.1 | 0.5% | Nov 16, 2022 | A cross-site scripting (XSS) vulnerability in Arobas Music Guitar Pro for iPad and iPhone before v1.10.2 allows attacker... |
| CVE-2022-43262 | CRITICAL | 9.8 | 0.8% | Nov 16, 2022 | Human Resource Management System v1.0 was discovered to contain a SQL injection vulnerability via the password parameter... |
| CVE-2022-43256 | CRITICAL | 9.8 | 0.9% | Nov 16, 2022 | SeaCms before v12.6 was discovered to contain a SQL injection vulnerability via the component /js/player/dmplayer/dmku/i... |
| CVE-2022-43234 | CRITICAL | 9.8 | 0.9% | Nov 16, 2022 | An arbitrary file upload vulnerability in the /attachments component of Hoosk v1.8 allows attackers to execute arbitrary... |
| CVE-2022-4022 | MEDIUM | 5.4 | 0.4% | Nov 16, 2022 | The SVG Support plugin for WordPress defaults to insecure settings in version 2.5 and 2.5.1. SVG files containing malici... |
| CVE-2022-4021 | MEDIUM | 4.3 | 0.4% | Nov 16, 2022 | The Permalink Manager Lite plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu... |
| CVE-2022-4018 | MEDIUM | 4.3 | 0.8% | Nov 16, 2022 | Missing Authentication for Critical Function in GitHub repository ikus060/rdiffweb prior to 2.5.0a6. |
| CVE-2022-3980 | CRITICAL | 9.8 | 8.1% | Nov 16, 2022 | An XML External Entity (XEE) vulnerability allows server-side request forgery (SSRF) and potential code execution in Sop... |
| CVE-2022-24036 | HIGH | 8.6 | 0.5% | Nov 16, 2022 | Karmasis Informatics Infraskope SIEM+ has an unauthenticated access vulnerability which could allow an unauthenticated a... |
| CVE-2022-45047 | CRITICAL | 9.8 | 3.6% | Nov 16, 2022 | Class org.apache.sshd.server.keyprovider.SimpleGeneratorHostKeyProvider in Apache MINA SSHD <= 2.9.1 uses Java deseriali... |
| CVE-2022-4015 | CRITICAL | 9.8 | 0.5% | Nov 16, 2022 | A vulnerability, which was classified as critical, was found in Sports Club Management System 119. This affects an unkno... |
| CVE-2022-4014 | MEDIUM | 4.3 | 0.2% | Nov 16, 2022 | A vulnerability, which was classified as problematic, has been found in FeehiCMS. Affected by this issue is some unknown... |
| CVE-2022-4013 | HIGH | 8.8 | 0.2% | Nov 16, 2022 | A vulnerability classified as problematic was found in Hospital Management Center. Affected by this vulnerability is an ... |
| CVE-2022-4012 | CRITICAL | 9.8 | 0.5% | Nov 16, 2022 | A vulnerability classified as critical has been found in Hospital Management Center. Affected is an unknown function of ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now