2022 CVE Vulnerabilities

27,538 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-33634HIGH8.1Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
CVE-2022-30198HIGH8.1Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
CVE-2022-24504HIGH8.1Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
CVE-2022-22035HIGH8.1Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
CVE-2022-42238HIGH8.8A Vertical Privilege Escalation issue in Merchandise Online Store v.1.0 allows an attacker to get access to the admin da...
CVE-2022-42236MEDIUM5.4A Stored XSS issue in Merchandise Online Store v.1.0 allows to injection of Arbitrary JavaScript in edit account form.
CVE-2022-42235MEDIUM5.4A Stored XSS issue in Student Clearance System v.1.0 allows the injection of arbitrary JavaScript in the Student registr...
CVE-2022-42230HIGH7.2Simple Cold Storage Management System v1.0 is vulnerable to SQL Injection via /csms/admin/?page=user/manage_user&id=.
CVE-2022-42229HIGH8.8Wedding Planner v1.0 is vulnerable to Arbitrary code execution via package_edit.php.
CVE-2022-42034HIGH8.8Wedding Planner v1.0 is vulnerable to arbitrary code execution via users_profile.php.
CVE-2022-3453MEDIUM5.4A vulnerability was found in SourceCodester Book Store Management System 1.0. It has been rated as problematic. This iss...
CVE-2022-3452MEDIUM5.4A vulnerability was found in SourceCodester Book Store Management System 1.0. It has been declared as problematic. This ...
CVE-2022-39296HIGH7.5MelisAssetManager provides deliveries of Melis Platform's assets located in every module's public folder. Attackers can ...
CVE-2022-41376MEDIUM6.1Metro UI v4.4.0 to v4.5.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Javascr...
CVE-2022-34434MEDIUM6.7Cloud Mobility for Dell Storage versions 1.3.0 and earlier contains an Improper Access Control vulnerability within the ...
CVE-2022-34432HIGH8.2Dell Hybrid Client below 1.8 version contains a gedit vulnerability. A guest attacker could potentially exploit this vul...
CVE-2022-34431MEDIUM6.5Dell Hybrid Client below 1.8 version contains a guest user profile corruption vulnerability. A WMS privilege attacker co...
CVE-2022-34430HIGH7.5Dell Hybrid Client below 1.8 version contains a Zip Bomb Vulnerability in UI. A guest privilege attacker could potential...
CVE-2022-34427HIGH8.8Dell Container Storage Modules 1.2 contains an OS Command Injection in goiscsi and gobrick libraries. A remote unauthent...
CVE-2022-34426HIGH8.8Dell Container Storage Modules 1.2 contains an Improper Limitation of a Pathname to a Restricted Directory in goiscsi an...
CVE-2022-33978MEDIUM6.1Reflected Cross-Site Scripting (XSS) vulnerability FontMeister plugin <= 1.08 at WordPress.
CVE-2022-32492HIGH8.8Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl...
CVE-2022-32486HIGH8.8Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl...
CVE-2022-38388MEDIUM5.5IBM Navigator Mobile Android 3.4.1.1 and 3.4.1.2 app could allow a local user to obtain sensitive information due to imp...
CVE-2022-3358HIGH7.5OpenSSL supports creating a custom cipher via the legacy EVP_CIPHER_meth_new() function and associated function calls. T...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now