2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-39261 | HIGH | 7.5 | 1.5% | Sep 28, 2022 | Twig is a template language for PHP. Versions 1.x prior to 1.44.7, 2.x prior to 2.15.3, and 3.x prior to 3.4.3 encounter... |
| CVE-2022-28816 | MEDIUM | 6.1 | 0.4% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 the Sentilo Proxy is prone to refl... |
| CVE-2022-28815 | LOW | 2.7 | 0.4% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 the Sentilo Proxy server was disco... |
| CVE-2022-28814 | CRITICAL | 9.8 | 1.1% | Sep 28, 2022 | Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 was discovered to be vulnerable to a ... |
| CVE-2022-28813 | HIGH | 7.5 | 0.8% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a remote, unauthenticated attacker... |
| CVE-2022-28812 | CRITICAL | 9.8 | 0.8% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a remote, unauthenticated attacker... |
| CVE-2022-28811 | CRITICAL | 9.8 | 1.0% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a remote, unauthenticated attacker... |
| CVE-2022-22526 | CRITICAL | 9.8 | 0.7% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a missing authentication allows fo... |
| CVE-2022-22525 | HIGH | 7.2 | 1.0% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 an remote attacker with admin righ... |
| CVE-2022-22524 | CRITICAL | 9.4 | 0.9% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 an unauthenticated remote attacker... |
| CVE-2022-22523 | HIGH | 7.5 | 0.6% | Sep 28, 2022 | An improper authentication vulnerability exists in the Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server... |
| CVE-2022-22522 | CRITICAL | 9.8 | 0.8% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a remote, unauthenticated attacker... |
| CVE-2022-40486 | HIGH | 8.8 | 1.5% | Sep 28, 2022 | TP Link Archer AX10 V1 Firmware Version 1.3.1 Build 20220401 Rel. 57450(5553) was discovered to allow authenticated atta... |
| CVE-2022-3349 | MEDIUM | 6.8 | 0.5% | Sep 28, 2022 | A vulnerability was found in Sony PS4 and PS5. It has been classified as critical. This affects the function UVFAT_readu... |
| CVE-2022-2760 | MEDIUM | 4.3 | 0.4% | Sep 28, 2022 | In affected versions of Octopus Deploy it is possible to reveal the Space ID of spaces that the user does not have acces... |
| CVE-2022-30935 | CRITICAL | 9.1 | 1.0% | Sep 28, 2022 | An authorization bypass in b2evolution allows remote, unauthenticated attackers to predict password reset tokens for any... |
| CVE-2022-32170 | MEDIUM | 4.3 | 0.5% | Sep 28, 2022 | The “Bytebase” application does not restrict low privilege user to access admin “projects“ for which an unauthorized use... |
| CVE-2022-32169 | MEDIUM | 4.3 | 0.5% | Sep 28, 2022 | The “Bytebase” application does not restrict low privilege user to access “admin issues“ for which an unauthorized user ... |
| CVE-2022-32166 | MEDIUM | 6.1 | 0.5% | Sep 28, 2022 | In ovs versions v0.90.0 through v2.5.0 are vulnerable to heap buffer over-read in flow.c. An unsafe comparison of “minim... |
| CVE-2022-3348 | MEDIUM | 4.9 | 0.8% | Sep 28, 2022 | Just like in the previous report, an attacker could steal the account of different users. But in this case, it's a littl... |
| CVE-2022-32168 | HIGH | 7.8 | 0.7% | Sep 28, 2022 | Notepad++ versions 8.4.1 and before are vulnerable to DLL hijacking where an attacker can replace the vulnerable dll (Ux... |
| CVE-2022-3333 | MEDIUM | 5.4 | 0.4% | Sep 28, 2022 | A vulnerability, which was classified as problematic, was found in Zephyr Project Manager up to 3.2.4. Affected is an un... |
| CVE-2022-3332 | CRITICAL | 9.8 | 0.6% | Sep 28, 2022 | A vulnerability classified as critical has been found in SourceCodester Food Ordering Management System. This affects an... |
| CVE-2022-39054 | MEDIUM | 6.1 | 0.5% | Sep 28, 2022 | Cowell enterprise travel management system has insufficient filtering for special characters within web URL. An unauthen... |
| CVE-2022-39053 | MEDIUM | 6.1 | 0.5% | Sep 28, 2022 | Heimavista Rpage has insufficient filtering for platform web URL. An unauthenticated remote attacker can inject JavaScri... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now