2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-2608 | HIGH | 8.8 | 0.4% | Aug 12, 2022 | Use after free in Overview Mode in Google Chrome on Chrome OS prior to 104.0.5112.79 allowed a remote attacker who convi... |
| CVE-2022-2607 | HIGH | 8.8 | 0.4% | Aug 12, 2022 | Use after free in Tab Strip in Google Chrome on Chrome OS prior to 104.0.5112.79 allowed a remote attacker who convinced... |
| CVE-2022-2606 | HIGH | 8.8 | 0.6% | Aug 12, 2022 | Use after free in Managed devices API in Google Chrome prior to 104.0.5112.79 allowed a remote attacker who convinced a ... |
| CVE-2022-2605 | MEDIUM | 6.5 | 0.6% | Aug 12, 2022 | Out of bounds read in Dawn in Google Chrome prior to 104.0.5112.79 allowed a remote attacker to potentially exploit heap... |
| CVE-2022-2604 | HIGH | 8.8 | 0.6% | Aug 12, 2022 | Use after free in Safe Browsing in Google Chrome prior to 104.0.5112.79 allowed a remote attacker to potentially exploit... |
| CVE-2022-2603 | HIGH | 8.8 | 0.7% | Aug 12, 2022 | Use after free in Omnibox in Google Chrome prior to 104.0.5112.79 allowed a remote attacker to potentially exploit heap ... |
| CVE-2022-2587 | CRITICAL | 9.8 | 0.7% | Aug 12, 2022 | Out of bounds write in Chrome OS Audio Server in Google Chrome on Chrome OS prior to 102.0.5005.125 allowed a remote att... |
| CVE-2022-2797 | CRITICAL | 9.8 | 0.5% | Aug 12, 2022 | A vulnerability classified as critical was found in SourceCodester Student Information System. Affected by this vulnerab... |
| CVE-2022-35980 | HIGH | 7.5 | 0.9% | Aug 12, 2022 | OpenSearch Security is a plugin for OpenSearch that offers encryption, authentication and authorization. Versions 2.0.0.... |
| CVE-2022-35932 | MEDIUM | 5.3 | 1.1% | Aug 12, 2022 | Nextcloud Talk is a video and audio conferencing app for Nextcloud. Prior to versions 12.2.7, 13.0.7, and 14.0.3, passwo... |
| CVE-2022-35590 | MEDIUM | 4.8 | 0.6% | Aug 12, 2022 | A cross-site scripting (XSS) issue in the ForkCMS version 5.9.3 allows remote attackers to inject JavaScript via the "en... |
| CVE-2022-35589 | MEDIUM | 4.8 | 0.6% | Aug 12, 2022 | A cross-site scripting (XSS) issue in the Fork version 5.9.3 allows remote attackers to inject JavaScript via the "publi... |
| CVE-2022-35587 | MEDIUM | 4.8 | 0.7% | Aug 12, 2022 | A cross-site scripting (XSS) issue in the Fork version 5.9.3 allows remote attackers to inject JavaScript via the "publi... |
| CVE-2022-35585 | MEDIUM | 4.8 | 0.7% | Aug 12, 2022 | A stored cross-site scripting (XSS) issue in the ForkCMS version 5.9.3 allows remote attackers to inject JavaScript via ... |
| CVE-2022-37423 | HIGH | 7.5 | 1.3% | Aug 12, 2022 | Neo4j APOC (Awesome Procedures on Cypher) before 4.3.0.7 and 4.x before 4.4.0.8 allows Directory Traversal to sibling di... |
| CVE-2022-37044 | MEDIUM | 6.1 | 0.4% | Aug 12, 2022 | In Zimbra Collaboration Suite (ZCS) 8.8.15, the URL at /h/search?action accepts parameters called extra, title, and onlo... |
| CVE-2022-37043 | MEDIUM | 5.7 | 0.3% | Aug 12, 2022 | An issue was discovered in the webmail component in Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0. When using preauth,... |
| CVE-2022-37042 | CRITICAL | 9.8 | 88.8% | Aug 12, 2022 | Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts fi... |
| CVE-2022-37041 | HIGH | 7.5 | 0.5% | Aug 12, 2022 | An issue was discovered in ProxyServlet.java in the /proxy servlet in Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0. T... |
| CVE-2022-35561 | HIGH | 7.5 | 0.9% | Aug 12, 2022 | A stack overflow vulnerability exists in /goform/WifiMacFilterSet in Tenda W6 V1.0.0.9(4122) version, which can be explo... |
| CVE-2022-35560 | HIGH | 7.5 | 0.9% | Aug 12, 2022 | A stack overflow vulnerability exists in /goform/wifiSSIDset in Tenda W6 V1.0.0.9(4122) version, which can be exploited ... |
| CVE-2022-35559 | CRITICAL | 9.8 | 10.9% | Aug 12, 2022 | A stack overflow vulnerability exists in /goform/setAutoPing in Tenda W6 V1.0.0.9(4122), which allows an attacker to con... |
| CVE-2022-35558 | HIGH | 7.5 | 0.9% | Aug 12, 2022 | A stack overflow vulnerability exists in /goform/WifiMacFilterGet in Tenda W6 V1.0.0.9(4122) version, which can be explo... |
| CVE-2022-35557 | HIGH | 7.5 | 0.9% | Aug 12, 2022 | A stack overflow vulnerability exists in /goform/wifiSSIDget in Tenda W6 V1.0.0.9(4122) version, which can be exploited ... |
| CVE-2022-35555 | CRITICAL | 9.8 | 25.0% | Aug 12, 2022 | A command injection vulnerability exists in /goform/exeCommand in Tenda W6 V1.0.0.9(4122), which allows attackers to con... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now