2022 CVE Vulnerabilities

27,538 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-41530HIGH7.2Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at...
CVE-2022-41408CRITICAL9.8Online Pet Shop We App v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page...
CVE-2022-41407HIGH7.2Online Pet Shop We App v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page...
CVE-2022-41406HIGH7.2An arbitrary file upload vulnerability in the /admin/admin_pic.php component of Church Management System v1.0 allows att...
CVE-2022-40921HIGH7.2DedeCMS V5.7.99 was discovered to contain an arbitrary file upload vulnerability via the component /dede/file_manage_con...
CVE-2022-40440MEDIUM6.1mxGraph v4.2.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the setTooltips() function.
CVE-2022-28866HIGH8.8Multiple Improper Access Control was discovered in Nokia AirFrame BMC Web GUI < R18 Firmware v4.13.00. It does not prope...
CVE-2022-42717HIGH7.8An issue was discovered in Hashicorp Packer before 2.3.1. The recommended sudoers configuration for Vagrant on Linux is ...
CVE-2022-41404HIGH7.5An issue in the fetch() method in the BasicProfile class of org.ini4j through version v0.5.4 allows attackers to cause a...
CVE-2022-40777HIGH8.8Interspire Email Marketer through 6.5.0 allows arbitrary file upload via a surveys_submit.php "create survey and submit ...
CVE-2022-37617CRITICAL9.8Prototype pollution vulnerability in function resolveShims in resolve-shims.js in thlorenz browserify-shim 3.8.15 via th...
CVE-2022-42044CRITICAL9.8The d8s-asns package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a thir...
CVE-2022-42043CRITICAL9.8The d8s-xml package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third...
CVE-2022-42042CRITICAL9.8The d8s-networking package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by ...
CVE-2022-42041CRITICAL9.8The d8s-file-system package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by...
CVE-2022-42040CRITICAL9.8The d8s-algorithms package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by ...
CVE-2022-42039CRITICAL9.8The d8s-lists package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a thi...
CVE-2022-42038CRITICAL9.8The d8s-ip-addresses package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted b...
CVE-2022-42037CRITICAL9.8The d8s-asns package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a thir...
CVE-2022-42036CRITICAL9.8The d8s-urls package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a thir...
CVE-2022-41550MEDIUM6.5GNU oSIP v5.3.0 was discovered to contain an integer overflow via the component osip_body_parse_header.
CVE-2022-41387CRITICAL9.8The d8s-pdfs package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a thir...
CVE-2022-41386CRITICAL9.8The d8s-utility package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a t...
CVE-2022-41385CRITICAL9.8The d8s-html package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a thir...
CVE-2022-41384CRITICAL9.8The d8s-domains package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a t...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now