2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-36715 | CRITICAL | 9.8 | 0.8% | Aug 25, 2022 | Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the name parameter at /admin/... |
| CVE-2022-36697 | CRITICAL | 9.8 | 0.9% | Aug 25, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-36696 | CRITICAL | 9.8 | 0.9% | Aug 25, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-36695 | CRITICAL | 9.8 | 0.9% | Aug 25, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-36693 | CRITICAL | 9.8 | 0.8% | Aug 25, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-36692 | CRITICAL | 9.8 | 0.8% | Aug 25, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-31269 | HIGH | 8.2 | 5.1% | Aug 25, 2022 | Nortek Linear eMerge E3-Series devices through 0.32-09c place admin credentials in /test.txt that allow an attacker to o... |
| CVE-2022-36703 | HIGH | 8.8 | 0.8% | Aug 25, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-36701 | HIGH | 8.8 | 0.8% | Aug 25, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-36700 | HIGH | 8.8 | 0.8% | Aug 25, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-36699 | HIGH | 8.8 | 0.8% | Aug 25, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-36698 | HIGH | 8.8 | 0.9% | Aug 25, 2022 | Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at... |
| CVE-2022-2997 | HIGH | 8 | 0.7% | Aug 25, 2022 | Session Fixation in GitHub repository snipe/snipe-it prior to 6.0.10. |
| CVE-2022-2982 | HIGH | 7.8 | 0.8% | Aug 25, 2022 | Use After Free in GitHub repository vim/vim prior to 9.0.0260. |
| CVE-2022-2980 | MEDIUM | 5.5 | 0.7% | Aug 25, 2022 | NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0259. |
| CVE-2022-36527 | MEDIUM | 5.4 | 0.4% | Aug 25, 2022 | Jfinal CMS v5.1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the post... |
| CVE-2022-20921 | HIGH | 8.8 | 1.0% | Aug 25, 2022 | A vulnerability in the API implementation of Cisco ACI Multi-Site Orchestrator (MSO) could allow an authenticated, remot... |
| CVE-2022-20865 | MEDIUM | 6.7 | 0.3% | Aug 25, 2022 | A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to inject arbitrary comma... |
| CVE-2022-20824 | HIGH | 8.8 | 0.4% | Aug 25, 2022 | A vulnerability in the Cisco Discovery Protocol feature of Cisco FXOS Software and Cisco NX-OS Software could allow an u... |
| CVE-2022-20823 | HIGH | 8.6 | 1.0% | Aug 25, 2022 | A vulnerability in the OSPF version 3 (OSPFv3) feature of Cisco NX-OS Software could allow an unauthenticated, remote at... |
| CVE-2022-37953 | MEDIUM | 6.1 | 0.3% | Aug 25, 2022 | An HTTP response splitting vulnerability exists in the AM Gateway Challenge-Response dialog of WorkstationST (<v07.09.15... |
| CVE-2022-37952 | MEDIUM | 6.1 | 0.3% | Aug 25, 2022 | A reflected cross-site scripting (XSS) vulnerability exists in the iHistorian Data Display of WorkstationST (<v07.09.15)... |
| CVE-2022-36358 | MEDIUM | 4.3 | 0.2% | Aug 25, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in SEO Scout plugin <= 0.9.83 at WordPress allows attackers to trick use... |
| CVE-2022-32746 | MEDIUM | 5.4 | 1.1% | Aug 25, 2022 | A flaw was found in the Samba AD LDAP server. The AD DC database audit logging module can access LDAP message values fre... |
| CVE-2022-32745 | HIGH | 8.1 | 0.9% | Aug 25, 2022 | A flaw was found in Samba. Samba AD users can cause the server to access uninitialized data with an LDAP add or modify t... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now