2022 CVE Vulnerabilities
27,543 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-35869 | CRITICAL | 9.8 | 60.3% | Jul 25, 2022 | This vulnerability allows remote attackers to bypass authentication on affected installations of Inductive Automation Ig... |
| CVE-2022-34966 | HIGH | 7.5 | 1.1% | Jul 25, 2022 | OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an HTML injection vulnerability via th... |
| CVE-2022-23000 | HIGH | 7.8 | 0.2% | Jul 25, 2022 | The Western Digital My Cloud Web App [https://os5.mycloud.com/] uses a weak SSLContext when attempting to configure port... |
| CVE-2022-22999 | MEDIUM | 4.8 | 0.3% | Jul 25, 2022 | Western Digital My Cloud devices are vulnerable to a cross side scripting vulnerability that can allow a malicious user ... |
| CVE-2022-35288 | MEDIUM | 6.5 | 0.6% | Jul 25, 2022 | IBM Security Verify Information Queue 10.0.2 could allow a user to obtain sensitive information that could be used in fu... |
| CVE-2022-35287 | HIGH | 7.5 | 0.5% | Jul 25, 2022 | IBM Security Verify Information Queue 10.0.2 contains hard-coded credentials, such as a password or cryptographic key, w... |
| CVE-2022-35285 | HIGH | 8.8 | 0.4% | Jul 25, 2022 | IBM Security Verify Information Queue 10.0.2 is vulnerable to cross-site request forgery which could allow an attacker t... |
| CVE-2022-35284 | HIGH | 7.5 | 0.6% | Jul 25, 2022 | IBM Security Verify Information Queue 10.0.2 could disclose sensitive information due to a missing or insecure SameSite ... |
| CVE-2022-34962 | MEDIUM | 5.4 | 0.9% | Jul 25, 2022 | OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vu... |
| CVE-2022-33969 | HIGH | 7.2 | 1.0% | Jul 25, 2022 | Authenticated WordPress Options Change vulnerability in Biplob Adhikari's Flipbox plugin <= 2.6.0 at WordPress. |
| CVE-2022-2059 | MEDIUM | 4.8 | 0.4% | Jul 25, 2022 | In Pandora FMS v7.0NG.761 and below, in the agent creation section, the alias parameter is vulnerable to a Stored Cross ... |
| CVE-2022-2032 | MEDIUM | 4.8 | 0.4% | Jul 25, 2022 | In Pandora FMS v7.0NG.761 and below, in the file manager section, the dirname parameter is vulnerable to a Stored Cross ... |
| CVE-2022-24992 | HIGH | 7.5 | 1.4% | Jul 25, 2022 | A vulnerability in the component process.php of QR Code Generator v5.2.7 allows attackers to perform directory traversal... |
| CVE-2022-34965 | HIGH | 7.2 | 1.5% | Jul 25, 2022 | OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an arbitrary file upload vulnerability... |
| CVE-2022-24083 | CRITICAL | 9.8 | 0.8% | Jul 25, 2022 | Password authentication bypass vulnerability for local accounts can be used to bypass local authentication checks. |
| CVE-2022-35653 | MEDIUM | 6.1 | 3.7% | Jul 25, 2022 | A reflected XSS issue was identified in the LTI module of Moodle. The vulnerability exists due to insufficient sanitizat... |
| CVE-2022-35652 | MEDIUM | 6.1 | 0.9% | Jul 25, 2022 | An open redirect issue was found in Moodle due to improper sanitization of user-supplied data in mobile auto-login featu... |
| CVE-2022-35651 | MEDIUM | 6.1 | 0.8% | Jul 25, 2022 | A stored XSS and blind SSRF vulnerability was found in Moodle, occurs due to insufficient sanitization of user-supplied ... |
| CVE-2022-35650 | HIGH | 7.5 | 49.1% | Jul 25, 2022 | The vulnerability was found in Moodle, occurs due to input validation error when importing lesson questions. This insuff... |
| CVE-2022-35649 | CRITICAL | 9.8 | 6.3% | Jul 25, 2022 | The vulnerability was found in Moodle, occurs due to improper input validation when parsing PostScript code. An omitted ... |
| CVE-2022-34964 | MEDIUM | 4.8 | 0.7% | Jul 25, 2022 | OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vu... |
| CVE-2022-34963 | MEDIUM | 5.4 | 0.9% | Jul 25, 2022 | OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vu... |
| CVE-2022-34961 | MEDIUM | 5.4 | 0.9% | Jul 25, 2022 | OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vu... |
| CVE-2022-33965 | CRITICAL | 9.8 | 3.3% | Jul 25, 2022 | Multiple Unauthenticated SQL Injection (SQLi) vulnerabilities in Osamaesh WP Visitor Statistics plugin <= 5.7 at WordPre... |
| CVE-2022-2131 | CRITICAL | 9.8 | 0.7% | Jul 25, 2022 | OpenKM Community Edition in its 6.3.10 version and before was using XMLReader parser in XMLTextExtractor.java file witho... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now