2022 CVE Vulnerabilities
27,528 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-21799 | MEDIUM | 5.2 | 0.3% | Feb 8, 2022 | Cross-site scripting vulnerability in ELECOM LAN router WRC-300FEBK-R firmware v1.13 and earlier allows an attacker on t... |
| CVE-2022-0508 | MEDIUM | 5.3 | 0.9% | Feb 8, 2022 | Server-Side Request Forgery (SSRF) in GitHub repository chocobozzz/peertube prior to f33e515991a32885622b217bf2ed1d1b0d9... |
| CVE-2022-0506 | MEDIUM | 5.4 | 0.6% | Feb 8, 2022 | Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-0505 | MEDIUM | 6.5 | 0.7% | Feb 8, 2022 | Cross-Site Request Forgery (CSRF) in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-0504 | MEDIUM | 6.5 | 1.1% | Feb 8, 2022 | Generation of Error Message Containing Sensitive Information in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-21816 | MEDIUM | 5.5 | 0.2% | Feb 7, 2022 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (nvidia.ko), where a user in the guest OS can c... |
| CVE-2022-21815 | MEDIUM | 5.5 | 0.2% | Feb 7, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for priva... |
| CVE-2022-21814 | MEDIUM | 6.1 | 0.2% | Feb 7, 2022 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver package, where improper handling of in... |
| CVE-2022-21813 | MEDIUM | 6.1 | 0.2% | Feb 7, 2022 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficie... |
| CVE-2022-22931 | MEDIUM | 4.3 | 1.7% | Feb 7, 2022 | Fix of CVE-2021-40525 do not prepend delimiters upon valid directory validations. Affected implementations include: - ma... |
| CVE-2022-23262 | MEDIUM | 6.3 | 1.2% | Feb 7, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-23261 | MEDIUM | 5.3 | 1.5% | Feb 7, 2022 | Microsoft Edge (Chromium-based) Tampering Vulnerability |
| CVE-2022-0149 | MEDIUM | 6.1 | 2.3% | Feb 7, 2022 | The WooCommerce Stored Exporter WordPress plugin before 2.7.1 was affected by a Reflected Cross-Site Scripting (XSS) vul... |
| CVE-2022-0148 | MEDIUM | 5.4 | 1.6% | Feb 7, 2022 | The All-in-one Floating Contact Form, Call, Chat, and 50+ Social Icon Tabs WordPress plugin before 2.0.4 was vulnerable ... |
| CVE-2022-0473 | MEDIUM | 4.8 | 0.5% | Feb 7, 2022 | OTRS administrators can configure dynamic field and inject malicious JavaScript code in the error message of the regular... |
| CVE-2022-23184 | MEDIUM | 6.1 | 0.6% | Feb 7, 2022 | In affected Octopus Server versions when the server HTTP and HTTPS bindings are configured to localhost, Octopus Server ... |
| CVE-2022-22679 | MEDIUM | 4.9 | 1.1% | Feb 7, 2022 | Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in support service manageme... |
| CVE-2022-0502 | MEDIUM | 5.4 | 0.6% | Feb 6, 2022 | Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat prior to 3.93v. |
| CVE-2022-0501 | MEDIUM | 6.1 | 0.9% | Feb 5, 2022 | Cross-site Scripting (XSS) - Reflected in Packagist ptrofimov/beanstalk_console prior to 1.7.12. |
| CVE-2022-0437 | MEDIUM | 6.1 | 15.2% | Feb 5, 2022 | Cross-site Scripting (XSS) - DOM in NPM karma prior to 6.3.14. |
| CVE-2022-23980 | MEDIUM | 6.1 | 0.8% | Feb 4, 2022 | Cross-Site Scripting (XSS) vulnerability discovered in Yasr – Yet Another Stars Rating WordPress plugin (versions <= 2.9... |
| CVE-2022-23600 | MEDIUM | 6.5 | 0.9% | Feb 4, 2022 | fleet is an open source device management, built on osquery. Versions prior to 4.9.1 expose a limited ability to spoof S... |
| CVE-2022-23595 | MEDIUM | 6.5 | 0.8% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. When building an XLA compilation cache, if default settings are... |
| CVE-2022-23594 | MEDIUM | 5.5 | 0.1% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. The TFG dialect of TensorFlow (MLIR) makes several assumptions ... |
| CVE-2022-23589 | MEDIUM | 6.5 | 1.1% | Feb 4, 2022 | Tensorflow is an Open Source Machine Learning Framework. Under certain scenarios, Grappler component of TensorFlow can t... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now