2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-21125MEDIUM5.5Incomplete cleanup of microarchitectural fill buffers on some Intel(R) Processors may allow an authenticated user to pot...
CVE-2022-21123MEDIUM5.5Incomplete cleanup of multi-core shared buffers for some Intel(R) Processors may allow an authenticated user to potentia...
CVE-2022-32550MEDIUM4.8An issue was discovered in AgileBits 1Password, involving the method various 1Password apps and integrations used to cre...
CVE-2022-32433HIGH7.2itsourcecode Advanced School Management System v1.0 is vulnerable to Arbitrary code execution via ip/school/view/all_tea...
CVE-2022-32381HIGH7.2itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_admin_profile.p...
CVE-2022-32380HIGH7.2itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_student_subject...
CVE-2022-32379HIGH7.2itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_parents_profile...
CVE-2022-32378HIGH7.2itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_teacher_profile...
CVE-2022-32377HIGH7.2itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_exam_timetable....
CVE-2022-32376HIGH7.2itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_events.php?even...
CVE-2022-32375HIGH7.2itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_timetable.php?i...
CVE-2022-31219HIGH7.8Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file...
CVE-2022-31218HIGH7.8Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file...
CVE-2022-31217HIGH7.8Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file...
CVE-2022-31216HIGH7.8Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file...
CVE-2022-31070HIGH7.5NestJS Proxy is a NestJS module to decorate and proxy calls. Prior to version 0.7.0, the nestjs-proxy library did not ha...
CVE-2022-31069HIGH7.5NestJS Proxy is a NestJS module to decorate and proxy calls. Prior to version 0.7.0, the nestjs-proxy library did not ha...
CVE-2022-31044HIGH7.5Rundeck is an open source automation service with a web console, command line tools and a WebAPI. The Key Storage conver...
CVE-2022-29450HIGH8.8Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Admin Management Xtended plugin <= 2.4.4 at WordPress.
CVE-2022-29443MEDIUM5.4Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in Nicdark's ...
CVE-2022-26057HIGH7.8Vulnerabilities in the Mint WorkBench allow a low privileged attacker to create and write to a file anywhere on the file...
CVE-2022-24127MEDIUM5.4A Stored Cross-Site Scripting (XSS) vulnerability was discovered in ProjectGeneral/edit_project_settings.php in REDCap 1...
CVE-2022-24004MEDIUM5.4A Stored Cross-Site Scripting (XSS) vulnerability was discovered in Messenger/messenger_ajax.php in REDCap 12.0.11. This...
CVE-2022-20825CRITICAL9.8A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers ...
CVE-2022-20819MEDIUM6.5A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now