2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-41538 | HIGH | 8.8 | 1.0% | Oct 14, 2022 | Wedding Planner v1.0 was discovered to contain an arbitrary file upload vulnerability in the component /Wedding-Manageme... |
| CVE-2022-36803 | HIGH | 8.8 | 0.6% | Oct 14, 2022 | The MasterUserEdit API in Atlassian Jira Align Server before version 10.109.2 allows An authenticated attacker with the ... |
| CVE-2022-36802 | MEDIUM | 4.9 | 0.8% | Oct 14, 2022 | The ManageJiraConnectors API in Atlassian Jira Align before version 10.109.2 allows remote attackers to exploit this iss... |
| CVE-2022-42722 | MEDIUM | 5.5 | 0.6% | Oct 14, 2022 | In the Linux kernel 5.8 through 5.19.x before 5.19.16, local attackers able to inject WLAN frames into the mac80211 stac... |
| CVE-2022-42721 | MEDIUM | 5.5 | 0.6% | Oct 14, 2022 | A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could ... |
| CVE-2022-42720 | HIGH | 7.8 | 0.8% | Oct 14, 2022 | Various refcounting bugs in the multi-BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5... |
| CVE-2022-41674 | HIGH | 8.1 | 3.8% | Oct 14, 2022 | An issue was discovered in the Linux kernel before 5.19.16. Attackers able to inject WLAN frames could cause a buffer ov... |
| CVE-2022-39302 | MEDIUM | 5.4 | 0.4% | Oct 14, 2022 | Ree6 is a moderation bot. This vulnerability would allow other server owners to create configurations such as "Better-Au... |
| CVE-2022-42719 | HIGH | 8.8 | 1.2% | Oct 13, 2022 | A use-after-free in the mac80211 stack when parsing a multi-BSSID element in the Linux kernel 5.2 through 5.19.x before ... |
| CVE-2022-41391 | CRITICAL | 9.8 | 0.8% | Oct 13, 2022 | OcoMon v4.0 was discovered to contain a SQL injection vulnerability via the cod parameter at showImg.php. |
| CVE-2022-41390 | CRITICAL | 9.8 | 0.8% | Oct 13, 2022 | OcoMon v4.0 was discovered to contain a SQL injection vulnerability via the cod parameter at download.php. |
| CVE-2022-39303 | CRITICAL | 9.8 | 0.7% | Oct 13, 2022 | Ree6 is a moderation bot. This vulnerability allows manipulation of SQL queries. This issue has been patched in version ... |
| CVE-2022-39295 | MEDIUM | 6.1 | 0.5% | Oct 13, 2022 | Knowage is an open source suite for modern business analytics alternative over big data systems. KnowageLabs / Knowage-S... |
| CVE-2022-39278 | HIGH | 7.5 | 1.1% | Oct 13, 2022 | Istio is an open platform-independent service mesh that provides traffic management, policy enforcement, and telemetry c... |
| CVE-2022-39229 | MEDIUM | 4.3 | 0.8% | Oct 13, 2022 | Grafana is an open source data visualization platform for metrics, logs, and traces. Versions prior to 9.1.8 and 8.5.14 ... |
| CVE-2022-39201 | HIGH | 7.5 | 1.2% | Oct 13, 2022 | Grafana is an open source observability and data visualization platform. Starting with version 5.0.0-beta1 and prior to ... |
| CVE-2022-35612 | MEDIUM | 5.4 | 0.4% | Oct 13, 2022 | A cross-site scripting (XSS) vulnerability in MQTTRoute v3.3 and below allows attackers to execute arbitrary web scripts... |
| CVE-2022-35611 | MEDIUM | 4.3 | 0.3% | Oct 13, 2022 | A Cross-Site Request Forgery (CSRF) in MQTTRoute v3.3 and below allows attackers to create and remove dashboards. |
| CVE-2022-35136 | MEDIUM | 6.5 | 0.5% | Oct 13, 2022 | Boodskap IoT Platform v4.4.9-02 allows attackers to make unauthenticated API requests. |
| CVE-2022-35135 | HIGH | 8.8 | 0.8% | Oct 13, 2022 | Boodskap IoT Platform v4.4.9-02 allows attackers to escalate privileges via a crafted request sent to /api/user/upsert/<... |
| CVE-2022-35134 | MEDIUM | 5.4 | 0.4% | Oct 13, 2022 | Boodskap IoT Platform v4.4.9-02 contains a cross-site scripting (XSS) vulnerability. |
| CVE-2022-34022 | HIGH | 7.2 | 0.8% | Oct 13, 2022 | SQL injection vulnerability in ResIOT IOT Platform + LoRaWAN Network Server through 4.1.1000114 via a crafted POST reque... |
| CVE-2022-34021 | MEDIUM | 5.4 | 0.4% | Oct 13, 2022 | Multiple Cross Site Scripting (XSS) vulnerabilities in ResIOT IOT Platform + LoRaWAN Network Server through 4.1.1000114 ... |
| CVE-2022-31130 | HIGH | 7.5 | 1.0% | Oct 13, 2022 | Grafana is an open source observability and data visualization platform. Versions of Grafana for endpoints prior to 9.1.... |
| CVE-2022-39300 | HIGH | 8.1 | 0.6% | Oct 13, 2022 | node SAML is a SAML 2.0 library based on the SAML implementation of passport-saml. A remote attacker may be able to bypa... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now