2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-37021 | CRITICAL | 9.8 | 2.3% | Aug 31, 2022 | Apache Geode versions up to 1.12.5, 1.13.4 and 1.14.0 are vulnerable to a deserialization of untrusted data flaw when us... |
| CVE-2022-39047 | HIGH | 8.8 | 1.0% | Aug 31, 2022 | Freeciv before 2.6.7 and before 3.0.3 is prone to a buffer overflow vulnerability in the Modpack Installer utility's han... |
| CVE-2022-39046 | MEDIUM | 5.3 | 1.5% | Aug 31, 2022 | An issue was discovered in the GNU C Library (glibc) 2.36. When the syslog function is passed a crafted input string lar... |
| CVE-2022-36749 | CRITICAL | 9.8 | 2.5% | Aug 30, 2022 | RPi-Jukebox-RFID v2.3.0 was discovered to contain a command injection vulnerability via the component /htdocs/utils/File... |
| CVE-2022-36748 | MEDIUM | 6.1 | 0.4% | Aug 30, 2022 | PicUploader v2.6.3 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /master/index.... |
| CVE-2022-36747 | MEDIUM | 6.1 | 0.5% | Aug 30, 2022 | Razor v0.8.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the function uploadchannel(). |
| CVE-2022-36746 | MEDIUM | 6.1 | 0.4% | Aug 30, 2022 | LibreNMS v22.6.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component oxidized-cfg-che... |
| CVE-2022-36745 | MEDIUM | 6.1 | 0.4% | Aug 30, 2022 | LibreNMS v22.6.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component print-customoid.... |
| CVE-2022-27563 | HIGH | 7.5 | 0.7% | Aug 30, 2022 | An unauthenticated user can overload a part of HCL VersionVault Express and cause a denial of service. |
| CVE-2022-27560 | MEDIUM | 6.5 | 0.4% | Aug 30, 2022 | HCL VersionVault Express exposes administrator credentials. |
| CVE-2022-3037 | HIGH | 7.8 | 0.5% | Aug 30, 2022 | Use After Free in GitHub repository vim/vim prior to 9.0.0322. |
| CVE-2022-37173 | HIGH | 7.8 | 0.2% | Aug 30, 2022 | An issue in the installer of gvim 9.0.0000 allows authenticated attackers to execute arbitrary code via a binary hijacki... |
| CVE-2022-37172 | HIGH | 7.8 | 0.2% | Aug 30, 2022 | Incorrect access control in the install directory (C:\msys64) of Msys2 v20220603 and below allows authenticated attacker... |
| CVE-2022-36735 | CRITICAL | 9.8 | 0.8% | Aug 30, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at /admi... |
| CVE-2022-36734 | CRITICAL | 9.8 | 0.8% | Aug 30, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the RollNo parameter at /admi... |
| CVE-2022-36733 | CRITICAL | 9.8 | 0.8% | Aug 30, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the M_Id parameter at /admin/... |
| CVE-2022-36732 | CRITICAL | 9.8 | 0.8% | Aug 30, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /libraria... |
| CVE-2022-36731 | CRITICAL | 9.8 | 0.8% | Aug 30, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the RollNo parameter at /libr... |
| CVE-2022-36730 | CRITICAL | 9.8 | 0.8% | Aug 30, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at /libr... |
| CVE-2022-36657 | MEDIUM | 4.8 | 0.5% | Aug 30, 2022 | Library Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /l... |
| CVE-2022-36565 | HIGH | 8.8 | 0.8% | Aug 30, 2022 | Incorrect access control in the install directory (C:\Wamp64) of Wamp v3.2.6 and below allows authenticated attackers to... |
| CVE-2022-36564 | HIGH | 8.8 | 0.8% | Aug 30, 2022 | Incorrect access control in the install directory (C:\Strawberry) of StrawberryPerl v5.32.1.1 and below allows authentic... |
| CVE-2022-36563 | HIGH | 8.8 | 0.8% | Aug 30, 2022 | Incorrect access control in the install directory (C:\RailsInstaller) of Rubyinstaller2 v3.1.2 and below allows authenti... |
| CVE-2022-36562 | HIGH | 8.8 | 0.8% | Aug 30, 2022 | Incorrect access control in the install directory (C:\Ruby31-x64) of Rubyinstaller2 v3.1.2 and below allows authenticate... |
| CVE-2022-36561 | MEDIUM | 5.5 | 0.3% | Aug 30, 2022 | XPDF v4.0.4 was discovered to contain a segmentation violation via the component /xpdf/AcroForm.cc:538. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now