2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-30661 | HIGH | 7.8 | 5.9% | Jun 16, 2022 | Adobe InDesign versions 17.2.1 (and earlier) and 16.4.1 (and earlier) are affected by a Heap-based Buffer Overflow vulne... |
| CVE-2022-30660 | HIGH | 7.8 | 1.9% | Jun 16, 2022 | Adobe InDesign versions 17.2.1 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds write vulnerabili... |
| CVE-2022-30659 | HIGH | 7.8 | 1.9% | Jun 16, 2022 | Adobe InDesign versions 17.2.1 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds write vulnerabili... |
| CVE-2022-30658 | HIGH | 7.8 | 5.9% | Jun 16, 2022 | Adobe InDesign versions 17.2.1 (and earlier) and 16.4.1 (and earlier) are affected by a Heap-based Buffer Overflow vulne... |
| CVE-2022-29865 | HIGH | 7.5 | 1.5% | Jun 16, 2022 | OPC UA .NET Standard Stack allows a remote attacker to bypass the application authentication check via crafted fake cred... |
| CVE-2022-29862 | HIGH | 7.5 | 1.4% | Jun 16, 2022 | An infinite loop in OPC UA .NET Standard Stack 1.04.368 allows a remote attackers to cause the application to hang via a... |
| CVE-2022-1642 | HIGH | 7.5 | 0.6% | Jun 16, 2022 | A program using swift-corelibs-foundation is vulnerable to a denial of service attack caused by a potentially malicious ... |
| CVE-2022-31914 | MEDIUM | 5.4 | 0.5% | Jun 16, 2022 | Zoo Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via zms/admin/public_html/save_animal?an_id=24. |
| CVE-2022-31291 | HIGH | 7.5 | 1.0% | Jun 16, 2022 | An issue in dlt_config_file_parser.c of dlt-daemon v2.18.8 allows attackers to cause a double free via crafted TCP packe... |
| CVE-2022-27532 | HIGH | 7.8 | 1.0% | Jun 16, 2022 | A maliciously crafted TIF file in Autodesk 3ds Max 2022 and 2021 can be used to write beyond the allocated buffer while ... |
| CVE-2022-27531 | HIGH | 7.8 | 0.7% | Jun 16, 2022 | A maliciously crafted TIF file can be forced to read beyond allocated boundaries in Autodesk 3ds Max 2022, and 2021 when... |
| CVE-2022-22953 | MEDIUM | 6.5 | 0.7% | Jun 16, 2022 | VMware HCX update addresses an information disclosure vulnerability. A malicious actor with network user access to the V... |
| CVE-2022-31913 | MEDIUM | 4.8 | 0.5% | Jun 16, 2022 | Online Discussion Forum Site v1.0 is vulnerable to Cross Site Scripting (XSS) via /odfs/classes/Master.php?f=save_catego... |
| CVE-2022-31912 | HIGH | 7.2 | 0.9% | Jun 16, 2022 | Online Tutor Portal Site v1.0 is vulnerable to SQL Injection via /otps/classes/Master.php?f=delete_team. |
| CVE-2022-31911 | HIGH | 7.2 | 0.9% | Jun 16, 2022 | Online Discussion Forum Site v1.0 is vulnerable to SQL Injection via /odfs/classes/Master.php?f=delete_team. |
| CVE-2022-31910 | MEDIUM | 4.8 | 0.5% | Jun 16, 2022 | Online Tutor Portal Site v1.0 is vulnerable to Cross Site Scripting (XSS). via /otps/classes/Master.php. |
| CVE-2022-31908 | HIGH | 7.2 | 0.9% | Jun 16, 2022 | Student Registration and Fee Payment System v1.0 is vulnerable to SQL Injection via /scms/student.php. |
| CVE-2022-31906 | MEDIUM | 4.8 | 0.5% | Jun 16, 2022 | Online Fire Reporting System v1.0 is vulnerable to Cross Site Scripting (XSS) via /ofrs/classes/Master.php. |
| CVE-2022-31849 | HIGH | 8.8 | 1.8% | Jun 16, 2022 | MERCURY MIPC451-4 1.0.22 Build 220105 Rel.55642n was discovered to contain a remote code execution (RCE) vulnerability w... |
| CVE-2022-31300 | MEDIUM | 5.4 | 1.1% | Jun 16, 2022 | A cross-site scripting vulnerability in the DM Section component of Haraj v3.7 allows attackers to execute arbitrary web... |
| CVE-2022-31277 | HIGH | 8.8 | 0.6% | Jun 16, 2022 | Xiaomi Lamp 1 v2.0.4_0066 was discovered to be vulnerable to replay attacks. This allows attackers to to bypass the expe... |
| CVE-2022-30023 | HIGH | 8.8 | 43.6% | Jun 16, 2022 | Tenda ONT GPON AC1200 Dual band WiFi HG9 v1.0.1 is vulnerable to Command Injection via the Ping function. |
| CVE-2022-31372 | HIGH | 7.5 | 1.2% | Jun 16, 2022 | Wiris Mathtype v7.28.0 was discovered to contain a path traversal vulnerability in the resourceFile parameter. This vuln... |
| CVE-2022-2098 | CRITICAL | 9.8 | 1.0% | Jun 16, 2022 | Weak Password Requirements in GitHub repository kromitgmbh/titra prior to 0.78.1. |
| CVE-2022-31626 | HIGH | 8.8 | 58.4% | Jun 16, 2022 | In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when pdo_mysql extension with mysqlnd dri... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now