2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-33032 | HIGH | 7.8 | 0.7% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a heap-buffer-overflow via the function decode_preR13_section_hdr at dec... |
| CVE-2022-33028 | HIGH | 7.8 | 0.7% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a heap buffer overflow via the function dwg_add_object at decode.c. |
| CVE-2022-33027 | HIGH | 7.8 | 0.7% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a heap-use-after-free via the function dwg_add_handleref at dwg.c. |
| CVE-2022-33026 | HIGH | 7.8 | 0.7% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a heap buffer overflow via the function bit_calc_CRC at bits.c. |
| CVE-2022-33025 | HIGH | 7.8 | 0.8% | Jun 23, 2022 | LibreDWG v0.12.4.4608 was discovered to contain a heap-use-after-free via the function decode_preR13_section at decode_r... |
| CVE-2022-33024 | HIGH | 7.5 | 1.0% | Jun 23, 2022 | There is an Assertion `int decode_preR13_entities(BITCODE_RL, BITCODE_RL, unsigned int, BITCODE_RL, BITCODE_RL, Bit_Chai... |
| CVE-2022-32554 | CRITICAL | 9.8 | 1.2% | Jun 23, 2022 | Pure Storage FlashArray products running Purity//FA 6.2.0 - 6.2.3, 6.1.0 - 6.1.12, 6.0.0 - 6.0.8, 5.3.0 - 5.3.17, 5.2.x ... |
| CVE-2022-32553 | HIGH | 8.8 | 1.0% | Jun 23, 2022 | Pure Storage FlashArray products running Purity//FA 6.2.0 - 6.2.3, 6.1.0 - 6.1.12, 6.0.0 - 6.0.8, 5.3.0 - 5.3.17, 5.2.x ... |
| CVE-2022-32552 | HIGH | 8.8 | 1.0% | Jun 23, 2022 | Pure Storage FlashArray products running Purity//FA 6.2.0 - 6.2.3, 6.1.0 - 6.1.12, 6.0.0 - 6.0.8, 5.3.0 - 5.3.17, 5.2.x ... |
| CVE-2022-32536 | HIGH | 8.8 | 1.0% | Jun 23, 2022 | The user access rights validation in the web server of the Bosch Ethernet switch PRA-ES8P2S with software version 1.01.0... |
| CVE-2022-32535 | CRITICAL | 9.8 | 0.7% | Jun 23, 2022 | The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 runs its web server with root privilege. In combinati... |
| CVE-2022-32534 | CRITICAL | 9.8 | 2.3% | Jun 23, 2022 | The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 and earlier was found to be vulnerable to command inj... |
| CVE-2022-32131 | MEDIUM | 6.1 | 0.6% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /index/notic... |
| CVE-2022-32130 | MEDIUM | 6.1 | 0.6% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /company/dow... |
| CVE-2022-32129 | MEDIUM | 6.1 | 0.6% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /company/acc... |
| CVE-2022-32128 | MEDIUM | 6.1 | 0.6% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /company/ser... |
| CVE-2022-32127 | MEDIUM | 6.1 | 0.6% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /company/vie... |
| CVE-2022-32126 | MEDIUM | 6.1 | 0.6% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /company. |
| CVE-2022-32125 | MEDIUM | 6.1 | 0.6% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /job. |
| CVE-2022-32124 | MEDIUM | 6.1 | 0.6% | Jun 23, 2022 | 74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the component /index/... |
| CVE-2022-31787 | CRITICAL | 9.8 | 1.4% | Jun 23, 2022 | IdeaTMS 2022 is vulnerable to SQL Injection via the PATH_INFO |
| CVE-2022-31395 | HIGH | 8.8 | 2.6% | Jun 23, 2022 | Algo Communication Products Ltd. 8373 IP Zone Paging Adapter Firmware 1.7.6 allows attackers to perform a directory trav... |
| CVE-2022-31362 | HIGH | 8.8 | 16.1% | Jun 23, 2022 | Docebo Community Edition v4.0.5 and below was discovered to contain an arbitrary file upload vulnerability. NOTE: This v... |
| CVE-2022-31361 | CRITICAL | 9.8 | 1.3% | Jun 23, 2022 | Docebo Community Edition v4.0.5 and below was discovered to contain a SQL injection vulnerability. NOTE: This vulnerabil... |
| CVE-2022-29526 | MEDIUM | 5.3 | 2.6% | Jun 23, 2022 | Go before 1.17.10 and 1.18.x before 1.18.2 has Incorrect Privilege Assignment. When called with a non-zero flags paramet... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now