2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-3415 | MEDIUM | 6.1 | 0.5% | Nov 14, 2022 | The Chat Bubble WordPress plugin before 2.3 does not sanitise and escape some contact parameters, which could allow unau... |
| CVE-2022-2450 | MEDIUM | 4.3 | 0.5% | Nov 14, 2022 | The reSmush.it : the only free Image Optimizer & compress plugin WordPress plugin before 0.4.4 lacks authorization in va... |
| CVE-2022-2449 | MEDIUM | 6.5 | 0.3% | Nov 14, 2022 | The reSmush.it : the only free Image Optimizer & compress plugin WordPress plugin before 0.4.4 does not perform CSRF che... |
| CVE-2022-45378 | CRITICAL | 9.8 | 2.3% | Nov 14, 2022 | In the default configuration of Apache SOAP, an RPCRouterServlet is available without authentication. This gives an atta... |
| CVE-2022-3988 | MEDIUM | 6.1 | 0.6% | Nov 14, 2022 | A vulnerability was found in Frappe. It has been rated as problematic. Affected by this issue is some unknown functional... |
| CVE-2022-40127 | HIGH | 8.8 | 85.7% | Nov 14, 2022 | A vulnerability in Example Dags of Apache Airflow allows an attacker with UI access who can trigger DAGs, to execute arb... |
| CVE-2022-27949 | HIGH | 7.5 | 1.7% | Nov 14, 2022 | A vulnerability in UI of Apache Airflow allows an attacker to view unmasked secrets in rendered template values for task... |
| CVE-2022-45184 | HIGH | 7.2 | 1.9% | Nov 14, 2022 | The Web Server in Ironman Software PowerShell Universal v3.x and v2.x allows for directory traversal outside of the conf... |
| CVE-2022-45183 | HIGH | 8.8 | 0.8% | Nov 14, 2022 | Escalation of privileges in the Web Server in Ironman Software PowerShell Universal 2.x and 3.x allows an attacker with ... |
| CVE-2022-37290 | MEDIUM | 5.5 | 0.3% | Nov 14, 2022 | GNOME Nautilus 42.2 allows a NULL pointer dereference and get_basename application crash via a pasted ZIP archive. |
| CVE-2022-45199 | HIGH | 7.5 | 1.1% | Nov 14, 2022 | Pillow before 9.3.0 allows denial of service via SAMPLESPERPIXEL. |
| CVE-2022-45198 | HIGH | 7.5 | 1.2% | Nov 14, 2022 | Pillow before 9.2.0 performs Improper Handling of Highly Compressed GIF Data (Data Amplification). |
| CVE-2022-31630 | HIGH | 7.1 | 2.2% | Nov 14, 2022 | In PHP versions prior to 7.4.33, 8.0.25 and 8.1.12, when using imageloadfont() function in gd extension, it is possible ... |
| CVE-2022-3979 | HIGH | 8.1 | 1.0% | Nov 13, 2022 | A vulnerability was found in NagVis up to 1.9.33 and classified as problematic. This issue affects the function checkAut... |
| CVE-2022-3978 | MEDIUM | 4.3 | 0.3% | Nov 13, 2022 | A vulnerability, which was classified as problematic, was found in NodeBB up to 2.5.7. This affects an unknown part of t... |
| CVE-2022-3976 | HIGH | 8.8 | 0.5% | Nov 13, 2022 | A vulnerability has been found in MZ Automation libiec61850 up to 1.4 and classified as critical. This vulnerability aff... |
| CVE-2022-3975 | MEDIUM | 6.1 | 0.5% | Nov 13, 2022 | A vulnerability, which was classified as problematic, has been found in NukeViet CMS. Affected by this issue is the func... |
| CVE-2022-3974 | HIGH | 8.8 | 0.7% | Nov 13, 2022 | A vulnerability classified as critical was found in Axiomatic Bento4. Affected by this vulnerability is the function AP4... |
| CVE-2022-3973 | CRITICAL | 9.8 | 0.6% | Nov 13, 2022 | A vulnerability classified as critical has been found in Pingkon HMS-PHP. Affected is an unknown function of the file /a... |
| CVE-2022-3972 | CRITICAL | 9.8 | 0.6% | Nov 13, 2022 | A vulnerability was found in Pingkon HMS-PHP. It has been rated as critical. This issue affects some unknown processing ... |
| CVE-2022-3971 | MEDIUM | 5.6 | 0.5% | Nov 13, 2022 | A vulnerability was found in matrix-appservice-irc up to 0.35.1. It has been declared as critical. This vulnerability af... |
| CVE-2022-3970 | HIGH | 8.8 | 1.2% | Nov 13, 2022 | A vulnerability was found in LibTIFF. It has been classified as critical. This affects the function TIFFReadRGBATileExt ... |
| CVE-2022-3969 | MEDIUM | 5.5 | 0.5% | Nov 13, 2022 | A vulnerability was found in OpenKM up to 6.3.11 and classified as problematic. Affected by this issue is the function g... |
| CVE-2022-3968 | MEDIUM | 6.1 | 0.4% | Nov 13, 2022 | A vulnerability has been found in emlog and classified as problematic. Affected by this vulnerability is an unknown func... |
| CVE-2022-3967 | HIGH | 7.8 | 0.2% | Nov 13, 2022 | A vulnerability, which was classified as critical, was found in Vesta Control Panel. Affected is an unknown function of ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now