2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-42012 | MEDIUM | 6.5 | 1.3% | Oct 10, 2022 | An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authentic... |
| CVE-2022-42011 | MEDIUM | 6.5 | 1.3% | Oct 10, 2022 | An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authentic... |
| CVE-2022-42010 | MEDIUM | 6.5 | 0.8% | Oct 10, 2022 | An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authentic... |
| CVE-2022-42703 | MEDIUM | 5.5 | 1.0% | Oct 9, 2022 | mm/rmap.c in the Linux kernel before 5.19.7 has a use-after-free related to leaf anon_vma double reuse. |
| CVE-2022-3436 | HIGH | 7.5 | 0.5% | Oct 9, 2022 | A vulnerability classified as critical was found in SourceCodester Web-Based Student Clearance System 1.0. Affected by t... |
| CVE-2022-3435 | MEDIUM | 4.3 | 3.7% | Oct 8, 2022 | A vulnerability classified as problematic has been found in Linux Kernel. This affects the function fib_nh_match of the ... |
| CVE-2022-3434 | MEDIUM | 5.4 | 0.5% | Oct 8, 2022 | A vulnerability was found in SourceCodester Web-Based Student Clearance System. It has been rated as problematic. Affect... |
| CVE-2022-39281 | MEDIUM | 6.5 | 1.4% | Oct 8, 2022 | fat_free_crm is a an open source, Ruby on Rails customer relationship management platform (CRM). In versions prior to 0.... |
| CVE-2022-36635 | HIGH | 8.8 | 16.6% | Oct 7, 2022 | ZKteco ZKBioSecurity V5000 4.1.3 was discovered to contain a SQL injection vulnerability via the component /baseOpLog.do... |
| CVE-2022-41442 | MEDIUM | 6.1 | 0.4% | Oct 7, 2022 | PicUploader v2.6.3 was discovered to contain cross-site scripting (XSS) vulnerability via the setStorageParams function ... |
| CVE-2022-39959 | HIGH | 7.8 | 0.6% | Oct 7, 2022 | Panini Everest Engine 2.0.4 allows unprivileged users to create a file named Everest.exe in the %PROGRAMDATA%\Panini fol... |
| CVE-2022-41574 | HIGH | 7.5 | 0.6% | Oct 7, 2022 | An access-control vulnerability in Gradle Enterprise 2022.4 through 2022.3.1 allows remote attackers to prevent backups ... |
| CVE-2022-3276 | HIGH | 8.8 | 1.6% | Oct 7, 2022 | Command injection is possible in the puppetlabs-mysql module prior to version 13.0.0. A malicious actor is able to explo... |
| CVE-2022-3275 | CRITICAL | 9.8 | 2.1% | Oct 7, 2022 | Command injection is possible in the puppetlabs-apt module prior to version 9.0.0. A malicious actor is able to exploit ... |
| CVE-2022-39291 | MEDIUM | 5.4 | 5.1% | Oct 7, 2022 | ZoneMinder is a free, open source Closed-circuit television software application. Affected versions of zoneminder are su... |
| CVE-2022-39290 | MEDIUM | 6.5 | 5.4% | Oct 7, 2022 | ZoneMinder is a free, open source Closed-circuit television software application. In affected versions authenticated use... |
| CVE-2022-39289 | HIGH | 7.5 | 0.8% | Oct 7, 2022 | ZoneMinder is a free, open source Closed-circuit television software application. In affected versions the ZoneMinder AP... |
| CVE-2022-39285 | MEDIUM | 5.4 | 3.7% | Oct 7, 2022 | ZoneMinder is a free, open source Closed-circuit television software application The file parameter is vulnerable to a c... |
| CVE-2022-31681 | MEDIUM | 6.5 | 0.2% | Oct 7, 2022 | VMware ESXi contains a null-pointer deference vulnerability. A malicious actor with privileges within the VMX process on... |
| CVE-2022-31680 | CRITICAL | 9.1 | 33.1% | Oct 7, 2022 | The vCenter Server contains an unsafe deserialisation vulnerability in the PSC (Platform services controller). A malicio... |
| CVE-2022-39287 | MEDIUM | 6.5 | 0.4% | Oct 7, 2022 | tiny-csrf is a Node.js cross site request forgery (CSRF) protection middleware. In versions prior to 1.1.0 cookies were ... |
| CVE-2022-36634 | HIGH | 8.8 | 1.3% | Oct 7, 2022 | An access control issue in ZKTeco ZKBioSecurity V5000 3.0.5_r allows attackers to arbitrarily create admin users via a c... |
| CVE-2022-32593 | MEDIUM | 6.7 | 0.1% | Oct 7, 2022 | In vowe, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p... |
| CVE-2022-32592 | MEDIUM | 6.7 | 0.1% | Oct 7, 2022 | In cpu dvfs, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation ... |
| CVE-2022-32591 | HIGH | 7.5 | 0.6% | Oct 7, 2022 | In ril, there is a possible system crash due to an incorrect bounds check. This could lead to remote denial of service w... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now