2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-36536 | CRITICAL | 9.8 | 5.2% | Sep 16, 2022 | An issue in the component post_applogin.php of Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and be... |
| CVE-2022-36534 | HIGH | 8.8 | 54.2% | Sep 16, 2022 | Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and below was discovered to contain multiple remote c... |
| CVE-2022-36533 | MEDIUM | 5.4 | 42.6% | Sep 16, 2022 | Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and below was discovered to contain a cross-site scri... |
| CVE-2022-36532 | HIGH | 8.8 | 25.3% | Sep 16, 2022 | Bolt CMS contains a vulnerability in version 5.1.12 and below that allows an authenticated user with the ROLE_EDITOR pri... |
| CVE-2022-35415 | HIGH | 7.8 | 0.2% | Sep 16, 2022 | An improper input validation in NI System Configuration Manager before 22.5 may allow a privileged user to potentially e... |
| CVE-2022-34002 | MEDIUM | 6.5 | 0.9% | Sep 16, 2022 | The ‘document’ parameter of PDS Vista 7’s /application/documents/display.aspx page is vulnerable to a Local File Inclusi... |
| CVE-2022-26959 | CRITICAL | 9.8 | 0.8% | Sep 16, 2022 | There are two full (read/write) Blind/Time-based SQL injection vulnerabilities in the Northstar Club Management version ... |
| CVE-2022-39215 | MEDIUM | 5.8 | 0.8% | Sep 15, 2022 | Tauri is a framework for building binaries for all major desktop platforms. Due to missing canonicalization when `readDi... |
| CVE-2022-39213 | HIGH | 7.5 | 1.2% | Sep 15, 2022 | go-cvss is a Go module to manipulate Common Vulnerability Scoring System (CVSS). In affected versions when a full CVSS v... |
| CVE-2022-36075 | MEDIUM | 4.3 | 0.4% | Sep 15, 2022 | Nextcloud files access control is a nextcloud app to manage access control for files. Users with limited access can see ... |
| CVE-2022-36074 | HIGH | 7.5 | 0.6% | Sep 15, 2022 | Nextcloud server is an open source personal cloud product. Affected versions of this package are vulnerable to Informati... |
| CVE-2022-29240 | HIGH | 8.1 | 0.9% | Sep 15, 2022 | Scylla is a real-time big data database that is API-compatible with Apache Cassandra and Amazon DynamoDB. When decompres... |
| CVE-2022-27561 | MEDIUM | 4.8 | 0.4% | Sep 15, 2022 | There is a reflected Cross-Site Scripting vulnerability in the HCL Traveler web admin (LotusTraveler.nsf). |
| CVE-2022-38334 | MEDIUM | 5.5 | 0.4% | Sep 15, 2022 | XPDF v4.04 and earlier was discovered to contain a stack overflow via the function Catalog::countPageTree() at Catalog.c... |
| CVE-2022-38814 | MEDIUM | 5.4 | 2.5% | Sep 15, 2022 | A stored cross-site scripting (XSS) vulnerability in the auth_settings component of FiberHome AN5506-02-B vRP2521 allows... |
| CVE-2022-38326 | CRITICAL | 9.8 | 0.9% | Sep 15, 2022 | Tenda AC15 WiFi Router V15.03.05.19_multi and AC18 WiFi Router V15.03.05.19_multi were discovered to contain a buffer ov... |
| CVE-2022-38325 | CRITICAL | 9.8 | 0.9% | Sep 15, 2022 | Tenda AC15 WiFi Router V15.03.05.19_multi and AC18 WiFi Router V15.03.05.19_multi were discovered to contain a buffer ov... |
| CVE-2022-37260 | HIGH | 7.5 | 1.0% | Sep 15, 2022 | A Regular Expression Denial of Service (ReDoS) flaw was found in stealjs steal 2.2.4 via the input variable in main.js. |
| CVE-2022-39209 | MEDIUM | 6.5 | 1.6% | Sep 15, 2022 | cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. In versions prior to 0... |
| CVE-2022-38535 | HIGH | 7.2 | 1.6% | Sep 15, 2022 | TOTOLINK-720R v4.1.5cu.374 was discovered to contain a remote code execution (RCE) vulnerability via the setTracerouteCf... |
| CVE-2022-38534 | HIGH | 7.2 | 1.6% | Sep 15, 2022 | TOTOLINK-720R v4.1.5cu.374 was discovered to contain a remote code execution (RCE) vulnerability via the setdiagnosicfg ... |
| CVE-2022-40663 | HIGH | 7.8 | 0.6% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Vie... |
| CVE-2022-40662 | HIGH | 7.8 | 0.9% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Vie... |
| CVE-2022-40661 | HIGH | 7.8 | 0.8% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Vie... |
| CVE-2022-40660 | HIGH | 7.8 | 1.0% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NIKON NIS-Elements Vie... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now