2022 CVE Vulnerabilities

27,541 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-2656CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Multi Language Hotel Management Software. Affect...
CVE-2022-35216HIGH7.5OMICARD EDM’s mail image relay function has a path traversal vulnerability. An unauthenticated remote attacker can explo...
CVE-2022-32965CRITICAL9.8OMICARD EDM has a hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized ...
CVE-2022-32964CRITICAL9.8OMICARD EDM’s API function has insufficient validation for user input. An unauthenticated remote attacker can inject arb...
CVE-2022-32963HIGH7.5OMICARD EDM’s mail file relay function has a path traversal vulnerability. An unauthenticated remote attacker can exploi...
CVE-2022-2653MEDIUM6.5With this vulnerability an attacker can read many sensitive files like configuration files, or the /proc/self/environ fi...
CVE-2022-2652MEDIUM6Depending on the way the format strings in the card label are crafted it's possible to leak kernel stack memory. There i...
CVE-2022-2651CRITICAL9.8Authentication Bypass by Primary Weakness in GitHub repository bookwyrm-social/bookwyrm prior to 0.4.5.
CVE-2022-2648CRITICAL9.8A vulnerability was found in SourceCodester Multi Language Hotel Management Software. It has been rated as critical. Thi...
CVE-2022-2647CRITICAL9.8A vulnerability was found in jeecg-boot. It has been declared as critical. This vulnerability affects unknown code of th...
CVE-2022-2646MEDIUM6.1A vulnerability, which was classified as problematic, was found in SourceCodester Online Admission System. Affected is a...
CVE-2022-2645MEDIUM6.1A vulnerability has been found in SourceCodester Garage Management System and classified as problematic. Affected by thi...
CVE-2022-2644CRITICAL9.8A vulnerability was found in SourceCodester Online Admission System and classified as critical. This issue affects some ...
CVE-2022-2643CRITICAL9.8A vulnerability has been found in SourceCodester Online Admission System and classified as critical. This vulnerability ...
CVE-2022-34158HIGH8.8A carefully crafted invocation on the Image plugin could trigger an CSRF vulnerability on Apache JSPWiki before 2.11.3, ...
CVE-2022-28732MEDIUM6.1A carefully crafted request on WeblogPlugin could trigger an XSS vulnerability on Apache JSPWiki, which could allow the ...
CVE-2022-28731MEDIUM6.5A carefully crafted request on UserPreferences.jsp could trigger an CSRF vulnerability on Apache JSPWiki before 2.11.3, ...
CVE-2022-28730MEDIUM6.1A carefully crafted request on AJAXPreview.jsp could trigger an XSS vulnerability on Apache JSPWiki, which could allow t...
CVE-2022-27166MEDIUM6.1A carefully crafted request on XHRHtml2Markup.jsp could trigger an XSS vulnerability on Apache JSPWiki up to and includi...
CVE-2022-35506HIGH7.5TripleCross v0.1.0 was discovered to contain a stack overflow which occurs because there is no limit to the length of pr...
CVE-2022-35505HIGH7.5A segmentation fault in TripleCross v0.1.0 occurs when sending a control command from the client to the server. This occ...
CVE-2022-35161CRITICAL9.8GVRET Stable Release as of Aug 15, 2015 was discovered to contain a buffer overflow via the handleConfigCmd function at ...
CVE-2022-35158HIGH7.5A vulnerability in the lua parser of TscanCode tsclua v2.15.01 allows attackers to cause a Denial of Service (DoS) via a...
CVE-2022-35928MEDIUM5.5AES Crypt is a file encryption software for multiple platforms. AES Crypt for Linux built using the source on GitHub and...
CVE-2022-27551MEDIUM6.5HCL Launch could allow an authenticated user to obtain sensitive information in some instances due to improper security ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now