2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-27807 | MEDIUM | 4.3 | 0.6% | Jul 4, 2022 | Improper input validation vulnerability in Link of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker t... |
| CVE-2022-27803 | MEDIUM | 4.3 | 0.6% | Jul 4, 2022 | Improper input validation vulnerability in Space of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker ... |
| CVE-2022-27661 | MEDIUM | 4.3 | 0.7% | Jul 4, 2022 | Operation restriction bypass vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated att... |
| CVE-2022-27627 | MEDIUM | 6.1 | 0.6% | Jul 4, 2022 | Cross-site scripting vulnerability in Organization's Information of Cybozu Garoon 4.10.2 to 5.5.1 allows a remote attack... |
| CVE-2022-26368 | MEDIUM | 5.4 | 0.6% | Jul 4, 2022 | Browse restriction bypass and operation restriction bypass vulnerability in Cabinet of Cybozu Garoon 4.0.0 to 5.5.1 allo... |
| CVE-2022-26054 | MEDIUM | 4.3 | 0.7% | Jul 4, 2022 | Operation restriction bypass vulnerability in Link of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacke... |
| CVE-2022-26051 | MEDIUM | 4.3 | 0.7% | Jul 4, 2022 | Operation restriction bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attac... |
| CVE-2022-34151 | HIGH | 8.1 | 1.1% | Jul 4, 2022 | Use of hard-coded credentials vulnerability exists in Machine automation controller NJ series all models V 1.48 and earl... |
| CVE-2022-33971 | HIGH | 7.5 | 1.0% | Jul 4, 2022 | Authentication bypass by capture-replay vulnerability exists in Machine automation controller NX7 series all models V1.2... |
| CVE-2022-33948 | HIGH | 8.8 | 1.0% | Jul 4, 2022 | HOME SPOT CUBE2 V102 contains an OS command injection vulnerability due to improper processing of data received from DHC... |
| CVE-2022-33208 | HIGH | 8.1 | 1.6% | Jul 4, 2022 | Authentication bypass by capture-replay vulnerability exists in Machine automation controller NJ series all models V 1.4... |
| CVE-2022-32284 | HIGH | 7.5 | 2.5% | Jul 4, 2022 | Use of insufficiently random values vulnerability exists in Vnet/IP communication module VI461 of YOKOGAWA Wide Area Com... |
| CVE-2022-2289 | HIGH | 7.8 | 1.0% | Jul 3, 2022 | Use After Free in GitHub repository vim/vim prior to 9.0. |
| CVE-2022-2288 | HIGH | 7.8 | 1.2% | Jul 3, 2022 | Out-of-bounds Write in GitHub repository vim/vim prior to 9.0. |
| CVE-2022-2290 | MEDIUM | 6.1 | 2.6% | Jul 3, 2022 | Cross-site Scripting (XSS) - Reflected in GitHub repository zadam/trilium prior to 0.52.4, 0.53.1-beta. |
| CVE-2022-2287 | HIGH | 7.1 | 1.1% | Jul 2, 2022 | Out-of-bounds Read in GitHub repository vim/vim prior to 9.0. |
| CVE-2022-34913 | CRITICAL | 9.8 | 2.0% | Jul 2, 2022 | md2roff 1.7 has a stack-based buffer overflow via a Markdown file containing a large number of consecutive characters to... |
| CVE-2022-34912 | MEDIUM | 6.1 | 0.9% | Jul 2, 2022 | An issue was discovered in MediaWiki before 1.37.3 and 1.38.x before 1.38.1. The contributions-title, used on Special:Co... |
| CVE-2022-34911 | MEDIUM | 6.1 | 0.9% | Jul 2, 2022 | An issue was discovered in MediaWiki before 1.35.7, 1.36.x and 1.37.x before 1.37.3, and 1.38.x before 1.38.1. XSS can o... |
| CVE-2022-2286 | HIGH | 7.8 | 1.1% | Jul 2, 2022 | Out-of-bounds Read in GitHub repository vim/vim prior to 9.0. |
| CVE-2022-2285 | HIGH | 7.8 | 1.1% | Jul 2, 2022 | Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0. |
| CVE-2022-2284 | HIGH | 7.8 | 1.1% | Jul 2, 2022 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0. |
| CVE-2022-33016 | — | — | — | Jul 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2022-33015 | — | — | — | Jul 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2022-33014 | — | — | — | Jul 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now