2022 CVE Vulnerabilities

27,531 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-43066HIGH7.2Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramete...
CVE-2022-3845MEDIUM6.1A vulnerability has been found in phpipam and classified as problematic. Affected by this vulnerability is an unknown fu...
CVE-2022-3844MEDIUM6.1A vulnerability, which was classified as problematic, was found in Webmin 2.001. Affected is an unknown function of the ...
CVE-2022-2904MEDIUM5.4A cross-site scripting issue has been discovered in GitLab CE/EE affecting all versions starting from 15.2 before 15.2.5...
CVE-2022-24936CRITICAL9.1Out-of-Bounds error in GBL parser in Silicon Labs Gecko Bootloader version 4.0.1 and earlier allows attacker to overwrit...
CVE-2022-43227HIGH7.2Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramete...
CVE-2022-43226HIGH8.8Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramete...
CVE-2022-3575CRITICAL9.8Frauscher Sensortechnik GmbH FDS102 for FAdC R2 and FAdCi R2 v2.8.0 to v2.9.1 are vulnerable to malicious code upload wi...
CVE-2022-39378MEDIUM5.3Discourse is a platform for community discussion. Under certain conditions, a user badge may have been awarded based on ...
CVE-2022-39356HIGH8.8Discourse is a platform for community discussion. Users who receive an invitation link that is not scoped to a single em...
CVE-2022-39353CRITICAL9.8xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) `DOMParser` and `XMLSerializer` module. xmldom par...
CVE-2022-39241MEDIUM4.9Discourse is a platform for community discussion. A malicious admin could use this vulnerability to perform port enumera...
CVE-2022-41716HIGH7.5Due to unsanitized NUL values, attackers may be able to maliciously set environment variables on Windows. In syscall.Sta...
CVE-2022-41551HIGH7.2Garage Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /garage/ed...
CVE-2022-39381MEDIUM5.5Muhammara is a node module with c/cpp bindings to modify PDF with js for node or electron (based/replacement on/of galkh...
CVE-2022-43995HIGH7.1Sudo 1.8.0 through 1.9.12, with the crypt() password backend, contains a plugins/sudoers/auth/passwd.c array-out-of-boun...
CVE-2022-43255MEDIUM5.5GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a memory leak via the component gf_odf_new_iod at odf/o...
CVE-2022-43254MEDIUM5.5GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a memory leak via the component gf_list_new at utils/li...
CVE-2022-43253MEDIUM6.5Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_unweighted_pred_16_fallback in fa...
CVE-2022-43252MEDIUM6.5Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_epel_16_fallback in fallback-moti...
CVE-2022-43250MEDIUM6.5Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_qpel_0_0_fallback_16 in fallback-...
CVE-2022-43249MEDIUM6.5Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_epel_hv_fallback<unsigned short> ...
CVE-2022-43248MEDIUM6.5Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_weighted_pred_avg_16_fallback in ...
CVE-2022-43245MEDIUM6.5Libde265 v1.0.8 was discovered to contain a segmentation violation via apply_sao_internal<unsigned short> in sao.cc. Thi...
CVE-2022-43244MEDIUM6.5Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now