2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-3004 | MEDIUM | 5.4 | 0.5% | Sep 20, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. |
| CVE-2022-34917 | HIGH | 7.5 | 1.2% | Sep 20, 2022 | A security vulnerability has been identified in Apache Kafka. It affects all releases since 2.8.0. The vulnerability all... |
| CVE-2022-3000 | MEDIUM | 5.4 | 0.5% | Sep 20, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. |
| CVE-2022-39958 | HIGH | 7.5 | 0.9% | Sep 20, 2022 | The OWASP ModSecurity Core Rule Set (CRS) is affected by a response body bypass to sequentially exfiltrate small and und... |
| CVE-2022-39957 | HIGH | 7.5 | 0.8% | Sep 20, 2022 | The OWASP ModSecurity Core Rule Set (CRS) is affected by a response body bypass. A client can issue an HTTP Accept heade... |
| CVE-2022-39956 | CRITICAL | 9.8 | 0.9% | Sep 20, 2022 | The OWASP ModSecurity Core Rule Set (CRS) is affected by a partial rule set bypass for HTTP multipart requests by submit... |
| CVE-2022-39955 | CRITICAL | 9.8 | 1.1% | Sep 20, 2022 | The OWASP ModSecurity Core Rule Set (CRS) is affected by a partial rule set bypass by submitting a specially crafted HTT... |
| CVE-2022-2924 | MEDIUM | 5.4 | 0.6% | Sep 20, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.3. |
| CVE-2022-34746 | MEDIUM | 5.9 | 0.3% | Sep 20, 2022 | An insufficient entropy vulnerability caused by the improper use of randomness sources with low entropy for RSA key pair... |
| CVE-2022-38550 | MEDIUM | 5.4 | 0.4% | Sep 19, 2022 | A stored cross-site scripting (XSS) vulnerability in the /weibo/list component of Jeesns v2.0.0 allows attackers to exec... |
| CVE-2022-38545 | CRITICAL | 9.6 | 32.9% | Sep 19, 2022 | Valine v1.4.18 was discovered to contain a remote code execution (RCE) vulnerability which allows attackers to execute a... |
| CVE-2022-38532 | HIGH | 7.8 | 0.5% | Sep 19, 2022 | Micro-Star International Co., Ltd MSI Center 1.0.50.0 was discovered to contain a vulnerability in the component C_Featu... |
| CVE-2022-38527 | MEDIUM | 6.1 | 0.5% | Sep 19, 2022 | UCMS v1.6.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Import function under the Site ... |
| CVE-2022-38509 | CRITICAL | 9.8 | 0.8% | Sep 19, 2022 | Wedding Planner v1.0 was discovered to contain a SQL injection vulnerability via the booking_id parameter at /admin/budg... |
| CVE-2022-38339 | MEDIUM | 6.1 | 0.5% | Sep 19, 2022 | Safe Software FME Server v2021.2.5, v2022.0.0.2 and below contains a cross-site scripting (XSS) vulnerability which allo... |
| CVE-2022-37032 | CRITICAL | 9.1 | 1.5% | Sep 19, 2022 | An out-of-bounds read in the BGP daemon of FRRouting FRR before 8.4 may lead to a segmentation fault and denial of servi... |
| CVE-2022-35070 | MEDIUM | 6.5 | 0.7% | Sep 19, 2022 | OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x65fc97. |
| CVE-2022-35069 | MEDIUM | 6.5 | 0.7% | Sep 19, 2022 | OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b544e. |
| CVE-2022-35068 | MEDIUM | 6.5 | 0.7% | Sep 19, 2022 | OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e420d. |
| CVE-2022-35067 | MEDIUM | 6.5 | 0.7% | Sep 19, 2022 | OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e41b0. |
| CVE-2022-35066 | MEDIUM | 6.5 | 0.7% | Sep 19, 2022 | OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e41b8. |
| CVE-2022-35065 | MEDIUM | 6.5 | 0.7% | Sep 19, 2022 | OTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x65f724. |
| CVE-2022-35064 | MEDIUM | 6.5 | 0.7% | Sep 19, 2022 | OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x4adcdb in __asan_mems... |
| CVE-2022-35063 | MEDIUM | 6.5 | 0.7% | Sep 19, 2022 | OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e41a8. |
| CVE-2022-35062 | MEDIUM | 6.5 | 0.7% | Sep 19, 2022 | OTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6c0bc3. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now