2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-25375 | MEDIUM | 5.5 | 1.1% | Feb 20, 2022 | An issue was discovered in drivers/usb/gadget/function/rndis.c in the Linux kernel before 5.16.10. The RNDIS USB gadget ... |
| CVE-2022-23054 | MEDIUM | 6.1 | 0.6% | Feb 20, 2022 | Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via the “Summary Widget” element, that allows the inje... |
| CVE-2022-23053 | MEDIUM | 6.1 | 0.6% | Feb 20, 2022 | Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via the “Condition Widget” element, that allows the in... |
| CVE-2022-22126 | MEDIUM | 6.1 | 0.6% | Feb 20, 2022 | Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via the “Web Page” element, that allows the injection ... |
| CVE-2022-0688 | MEDIUM | 4.9 | 0.9% | Feb 20, 2022 | Business Logic Errors in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-0690 | MEDIUM | 6.1 | 1.1% | Feb 19, 2022 | Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-23376 | MEDIUM | 6.1 | 0.8% | Feb 19, 2022 | WikiDocs version 0.1.18 has multiple reflected XSS vulnerabilities on different pages. |
| CVE-2022-0689 | MEDIUM | 5.3 | 1.0% | Feb 19, 2022 | Use multiple time the one-time coupon in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-0632 | MEDIUM | 5.5 | 0.8% | Feb 19, 2022 | NULL Pointer Dereference in Homebrew mruby prior to 3.2. |
| CVE-2022-0678 | MEDIUM | 6.1 | 2.3% | Feb 19, 2022 | Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-24979 | MEDIUM | 5.3 | 0.7% | Feb 19, 2022 | An issue was discovered in the Varnishcache extension before 2.0.1 for TYPO3. The Edge Site Includes (ESI) content eleme... |
| CVE-2022-25256 | MEDIUM | 6.1 | 1.2% | Feb 19, 2022 | SAS Web Report Studio 4.4 allows XSS. /SASWebReportStudio/logonAndRender.do has two parameters: saspfs_request_backlabel... |
| CVE-2022-25358 | MEDIUM | 5.3 | 1.1% | Feb 18, 2022 | A ..%2F path traversal vulnerability exists in the path handler of awful-salmonella-tar before 0.0.4. Attackers can only... |
| CVE-2022-23645 | MEDIUM | 5.5 | 0.4% | Feb 18, 2022 | swtpm is a libtpms-based TPM emulator with socket, character device, and Linux CUSE interface. Versions prior to 0.5.3, ... |
| CVE-2022-24370 | MEDIUM | 6.5 | 1.8% | Feb 18, 2022 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Read... |
| CVE-2022-24368 | MEDIUM | 6.5 | 2.0% | Feb 18, 2022 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Read... |
| CVE-2022-24061 | MEDIUM | 5.5 | 1.4% | Feb 18, 2022 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Sante DICOM Vi... |
| CVE-2022-24060 | MEDIUM | 5.5 | 1.4% | Feb 18, 2022 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Sante DICOM Vi... |
| CVE-2022-24055 | MEDIUM | 5.5 | 1.4% | Feb 18, 2022 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Sante DICOM Vi... |
| CVE-2022-25336 | MEDIUM | 5.3 | 0.7% | Feb 18, 2022 | Ibexa DXP ezsystems/ezpublish-kernel 7.5.x before 7.5.26 and 1.3.x before 1.3.12 allows Insecure Direct Object Reference... |
| CVE-2022-23981 | MEDIUM | 4.3 | 0.6% | Feb 18, 2022 | The vulnerability allows Subscriber+ level users to create brands in WordPress Perfect Brands for WooCommerce plugin (ve... |
| CVE-2022-21800 | MEDIUM | 6.5 | 0.5% | Feb 18, 2022 | MMP: All versions prior to v1.0.3, PTP C-series: Device versions prior to v2.8.6.1, and PTMP C-series and A5x: Device ve... |
| CVE-2022-0673 | MEDIUM | 6.5 | 1.0% | Feb 18, 2022 | A flaw was found in LemMinX in versions prior to 0.19.0. Cache poisoning of external schema files due to directory trave... |
| CVE-2022-0672 | MEDIUM | 5.5 | 0.3% | Feb 18, 2022 | A flaw was found in LemMinX in versions prior to 0.19.0. Insecure redirect could allow unauthorized access to sensitive ... |
| CVE-2022-0585 | MEDIUM | 6.5 | 2.4% | Feb 18, 2022 | Large loops in multiple protocol dissectors in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allow denial of service via ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now