2022 CVE Vulnerabilities
27,528 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-21708 | MEDIUM | 6.5 | 1.2% | Jan 21, 2022 | graphql-go is a GraphQL server with a focus on ease of use. In versions prior to 1.3.0 there exists a DoS vulnerability ... |
| CVE-2022-22552 | MEDIUM | 6.1 | 0.7% | Jan 21, 2022 | Dell EMC AppSync versions 3.9 to 4.3 contain a clickjacking vulnerability in AppSync. A remote unauthenticated attacker ... |
| CVE-2022-23728 | MEDIUM | 6.1 | 0.1% | Jan 21, 2022 | Attacker can reset the device with AT Command in the process of rebooting the device. The LG ID is LVE-SMP-210011. |
| CVE-2022-23130 | MEDIUM | 5.5 | 1.0% | Jan 21, 2022 | Buffer Over-read vulnerability in Mitsubishi Electric MC Works64 versions 4.00A to 4.04E, Mitsubishi Electric GENESIS64 ... |
| CVE-2022-23129 | MEDIUM | 5.5 | 0.2% | Jan 21, 2022 | Plaintext Storage of a Password vulnerability in Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior ... |
| CVE-2022-23127 | MEDIUM | 6.1 | 1.6% | Jan 21, 2022 | Cross-site Scripting vulnerability in Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior and ICONICS... |
| CVE-2022-0319 | MEDIUM | 5.5 | 1.4% | Jan 21, 2022 | Out-of-bounds Read in vim/vim prior to 8.2. |
| CVE-2022-0326 | MEDIUM | 5.5 | 0.8% | Jan 21, 2022 | NULL Pointer Dereference in Homebrew mruby prior to 3.2. |
| CVE-2022-22892 | MEDIUM | 5.5 | 0.6% | Jan 21, 2022 | There is an Assertion 'ecma_is_value_undefined (value) || ecma_is_value_null (value) || ecma_is_value_boolean (value) ||... |
| CVE-2022-22891 | MEDIUM | 5.5 | 0.6% | Jan 21, 2022 | Jerryscript 3.0.0 was discovered to contain a SEGV vulnerability via ecma_ref_object_inline in /jerry-core/ecma/base/ecm... |
| CVE-2022-22890 | MEDIUM | 5.5 | 0.8% | Jan 20, 2022 | There is an Assertion 'arguments_type != SCANNER_ARGUMENTS_PRESENT && arguments_type != SCANNER_ARGUMENTS_PRESENT_NO_REG... |
| CVE-2022-21658 | MEDIUM | 6.3 | 1.4% | Jan 20, 2022 | Rust is a multi-paradigm, general-purpose programming language designed for performance and safety, especially safe conc... |
| CVE-2022-0219 | MEDIUM | 5.5 | 1.1% | Jan 20, 2022 | Improper Restriction of XML External Entity Reference in GitHub repository skylot/jadx prior to 1.3.2. |
| CVE-2022-0285 | MEDIUM | 5.4 | 1.5% | Jan 20, 2022 | Cross-site Scripting (XSS) - Stored in Packagist pimcore/pimcore prior to 10.2.9. |
| CVE-2022-22820 | MEDIUM | 5.5 | 0.8% | Jan 20, 2022 | Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption... |
| CVE-2022-22733 | MEDIUM | 6.5 | 20.9% | Jan 20, 2022 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache ShardingSphere ElasticJob-UI allows a... |
| CVE-2022-0278 | MEDIUM | 5.4 | 0.7% | Jan 20, 2022 | Cross-site Scripting (XSS) - Stored in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-0277 | MEDIUM | 6.5 | 1.3% | Jan 20, 2022 | Incorrect Permission Assignment for Critical Resource in Packagist microweber/microweber prior to 1.2.11. |
| CVE-2022-21704 | MEDIUM | 5.5 | 0.3% | Jan 19, 2022 | log4js-node is a port of log4js to node.js. In affected versions default file permissions for log files created by the f... |
| CVE-2022-23045 | MEDIUM | 4.8 | 0.6% | Jan 19, 2022 | PhpIPAM v1.4.4 allows an authenticated admin user to inject persistent JavaScript code inside the "Site title" parameter... |
| CVE-2022-0243 | MEDIUM | 5.4 | 0.6% | Jan 19, 2022 | Cross-site Scripting (XSS) - Stored in NuGet OrchardCore.Application.Cms.Targets prior to 1.2.2. |
| CVE-2022-0274 | MEDIUM | 5.4 | 0.6% | Jan 19, 2022 | Cross-site Scripting (XSS) - Stored in NuGet OrchardCore.Application.Cms.Targets prior to 1.2.2. |
| CVE-2022-22310 | MEDIUM | 6.5 | 1.0% | Jan 19, 2022 | IBM WebSphere Application Server Liberty 21.0.0.10 through 21.0.0.12 could provide weaker than expected security. A remo... |
| CVE-2022-21403 | MEDIUM | 6.6 | 0.7% | Jan 19, 2022 | Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng... |
| CVE-2022-21402 | MEDIUM | 4.8 | 0.5% | Jan 19, 2022 | Vulnerability in the Oracle Communications Operations Monitor product of Oracle Communications (component: Mediation Eng... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now