2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-36642 | CRITICAL | 9.8 | 9.0% | Sep 2, 2022 | A local file disclosure vulnerability in /appConfig/userDB.json of Telos Alliance Omnia MPX Node through 1.0.0-1.4.9 all... |
| CVE-2022-36640 | CRITICAL | 9.8 | 2.0% | Sep 2, 2022 | influxData influxDB before v1.8.10 contains no authentication mechanism or controls, allowing unauthenticated attackers ... |
| CVE-2022-36639 | MEDIUM | 5.4 | 0.5% | Sep 2, 2022 | A stored cross-site scripting (XSS) vulnerability in /client.php of Garage Management System v1.0 allows attackers to ex... |
| CVE-2022-36638 | MEDIUM | 5.3 | 0.7% | Sep 2, 2022 | An access control issue in the component print.php of Garage Management System v1.0 allows unauthenticated attackers to ... |
| CVE-2022-31176 | HIGH | 8.1 | 0.9% | Sep 2, 2022 | Grafana Image Renderer is a Grafana backend plugin that handles rendering of panels & dashboards to PNGs using a headles... |
| CVE-2022-35933 | MEDIUM | 6.1 | 0.4% | Sep 2, 2022 | This package is a PrestaShop module that allows users to post reviews and rate products. There is a vulnerability where ... |
| CVE-2022-31196 | HIGH | 7.5 | 0.8% | Sep 2, 2022 | Databasir is a database metadata management platform. Databasir <= 1.06 has Server-Side Request Forgery (SSRF) vulnerabi... |
| CVE-2022-31152 | HIGH | 7.5 | 0.9% | Sep 2, 2022 | Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. The Matrix specificatio... |
| CVE-2022-3065 | HIGH | 7.5 | 1.0% | Sep 2, 2022 | Improper Access Control in GitHub repository jgraph/drawio prior to 20.2.8. |
| CVE-2022-36071 | HIGH | 8.1 | 0.4% | Sep 2, 2022 | SFTPGo is configurable SFTP server with optional HTTP/S, FTP/S and WebDAV support. SFTPGo WebAdmin and WebClient support... |
| CVE-2022-34382 | HIGH | 7.8 | 0.2% | Sep 2, 2022 | Dell Command Update, Dell Update and Alienware Update versions prior to 4.6.0 contains a Local Privilege Escalation Vuln... |
| CVE-2022-34378 | MEDIUM | 5.5 | 0.2% | Sep 2, 2022 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.20, 9.2.1.13, 9.3.0.6, and 9.4.0.3, contain a relative p... |
| CVE-2022-34371 | CRITICAL | 9.8 | 0.5% | Sep 2, 2022 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.3, contain an unprotect... |
| CVE-2022-34369 | HIGH | 7.5 | 0.5% | Sep 2, 2022 | Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.20, 9.2.1.13, 9.3.0.6, and 9.4.0.3 , contain an insertio... |
| CVE-2022-36078 | HIGH | 7.5 | 0.9% | Sep 2, 2022 | Binary provides encoding/decoding in Borsh and other formats. The vulnerability is a memory allocation vulnerability tha... |
| CVE-2022-36076 | HIGH | 7.5 | 0.4% | Sep 2, 2022 | NodeBB Forum Software is powered by Node.js and supports either Redis, MongoDB, or a PostgreSQL database. Due to an unne... |
| CVE-2022-37458 | HIGH | 7.2 | 1.1% | Sep 2, 2022 | Discourse through 2.8.7 allows admins to send invitations to arbitrary email addresses at an unlimited rate. |
| CVE-2022-25680 | HIGH | 7.8 | 0.1% | Sep 2, 2022 | Memory corruption in multimedia due to buffer overflow while processing count variable from client in Snapdragon Auto |
| CVE-2022-25668 | CRITICAL | 9.8 | 0.3% | Sep 2, 2022 | Memory corruption in video driver due to double free while parsing ASF clip in Snapdragon Auto, Snapdragon Compute, Snap... |
| CVE-2022-25659 | CRITICAL | 9.8 | 0.3% | Sep 2, 2022 | Memory corruption due to buffer overflow while parsing MKV clips with invalid bitmap size in Snapdragon Auto, Snapdragon... |
| CVE-2022-25658 | CRITICAL | 9.8 | 0.3% | Sep 2, 2022 | Memory corruption due to incorrect pointer arithmetic when attempting to change the endianness in video parser function ... |
| CVE-2022-25657 | CRITICAL | 9.8 | 0.3% | Sep 2, 2022 | Memory corruption due to buffer overflow occurs while processing invalid MKV clip which has invalid seek header in Snapd... |
| CVE-2022-22106 | HIGH | 7.8 | 0.1% | Sep 2, 2022 | Memory corruption in multimedia due to improper length check while copying the data in Snapdragon Auto |
| CVE-2022-22104 | HIGH | 7.8 | 0.1% | Sep 2, 2022 | Memory corruption in multimedia due to improper check on the messages received. in Snapdragon Auto |
| CVE-2022-22102 | HIGH | 7.8 | 0.1% | Sep 2, 2022 | Memory corruption in multimedia due to incorrect type conversion while adding data in Snapdragon Auto |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now