2022 CVE Vulnerabilities
27,528 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-0245 | MEDIUM | 4.3 | 0.4% | Jan 18, 2022 | Cross-Site Request Forgery (CSRF) in GitHub repository livehelperchat/livehelperchat prior to 2.0. |
| CVE-2022-22703 | MEDIUM | 5.5 | 0.2% | Jan 17, 2022 | In Stormshield SSO Agent 2.x before 2.1.1 and 3.x before 3.0.2, the cleartext user password and PSK are contained in the... |
| CVE-2022-0257 | MEDIUM | 5.4 | 1.5% | Jan 17, 2022 | pimcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2022-0256 | MEDIUM | 5.4 | 0.6% | Jan 17, 2022 | pimcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2022-0253 | MEDIUM | 5.4 | 0.8% | Jan 17, 2022 | livehelperchat is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2022-0184 | MEDIUM | 4.3 | 0.3% | Jan 17, 2022 | Insufficiently protected credentials vulnerability in 'TEPRA' PRO SR5900P Ver.1.080 and earlier and 'TEPRA' PRO SR-R7900... |
| CVE-2022-0183 | MEDIUM | 4.6 | 0.1% | Jan 17, 2022 | Missing encryption of sensitive data vulnerability in 'MIRUPASS' PW10 firmware all versions and 'MIRUPASS' PW20 firmware... |
| CVE-2022-0182 | MEDIUM | 5.4 | 1.0% | Jan 17, 2022 | Stored cross-site scripting vulnerability in Quiz And Survey Master versions prior to 7.3.7 allows a remote authenticate... |
| CVE-2022-0181 | MEDIUM | 6.1 | 1.3% | Jan 17, 2022 | Reflected cross-site scripting vulnerability in Quiz And Survey Master versions prior to 7.3.7 allows a remote attacker ... |
| CVE-2022-0235 | MEDIUM | 6.1 | 1.6% | Jan 16, 2022 | node-fetch is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor |
| CVE-2022-0238 | MEDIUM | 4.3 | 0.8% | Jan 16, 2022 | phoronix-test-suite is vulnerable to Cross-Site Request Forgery (CSRF) |
| CVE-2022-22529 | MEDIUM | 6.1 | 0.6% | Jan 14, 2022 | SAP Enterprise Threat Detection (ETD) - version 2.0, does not sufficiently encode user-controlled inputs which may lead ... |
| CVE-2022-22290 | MEDIUM | 6.5 | 0.8% | Jan 14, 2022 | Incorrect download source UI in Downloads in Samsung Internet prior to 16.0.6.23 allows attackers to perform domain spoo... |
| CVE-2022-0226 | MEDIUM | 4.3 | 0.4% | Jan 14, 2022 | livehelperchat is vulnerable to Cross-Site Request Forgery (CSRF) |
| CVE-2022-21685 | MEDIUM | 6.5 | 1.3% | Jan 14, 2022 | Frontier is Substrate's Ethereum compatibility layer. Prior to commit number `8a93fdc6c9f4eb1d2f2a11b7ff1d12d70bf5a664`,... |
| CVE-2022-21677 | MEDIUM | 5.3 | 1.2% | Jan 14, 2022 | Discourse is an open source discussion platform. Discourse groups can be configured with varying visibility levels for t... |
| CVE-2022-0213 | MEDIUM | 6.6 | 1.2% | Jan 14, 2022 | vim is vulnerable to Heap-based Buffer Overflow |
| CVE-2022-0231 | MEDIUM | 6.5 | 0.5% | Jan 14, 2022 | livehelperchat is vulnerable to Cross-Site Request Forgery (CSRF) |
| CVE-2022-22054 | MEDIUM | 6.5 | 0.5% | Jan 14, 2022 | ASUS RT-AX56U’s login function contains a path traversal vulnerability due to its inadequate filtering for special chara... |
| CVE-2022-20660 | MEDIUM | 4.6 | 0.4% | Jan 14, 2022 | A vulnerability in the information storage architecture of several Cisco IP Phone models could allow an unauthenticated,... |
| CVE-2022-20647 | MEDIUM | 6.1 | 0.8% | Jan 14, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated,... |
| CVE-2022-20646 | MEDIUM | 6.1 | 0.8% | Jan 14, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated,... |
| CVE-2022-20645 | MEDIUM | 6.1 | 0.8% | Jan 14, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated,... |
| CVE-2022-20644 | MEDIUM | 6.1 | 0.8% | Jan 14, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated,... |
| CVE-2022-20643 | MEDIUM | 6.1 | 0.8% | Jan 14, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Security Manager could allow an unauthenticated,... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now