2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-31050 | HIGH | 7.2 | 1.2% | Jun 14, 2022 | TYPO3 is an open source web content management system. Prior to versions 9.5.34 ELTS, 10.4.29, and 11.5.11, Admin Tool s... |
| CVE-2022-31049 | MEDIUM | 5.4 | 0.7% | Jun 14, 2022 | TYPO3 is an open source web content management system. Prior to versions 9.5.34 ELTS, 10.4.29, and 11.5.11, user submitt... |
| CVE-2022-31048 | MEDIUM | 5.4 | 0.7% | Jun 14, 2022 | TYPO3 is an open source web content management system. Prior to versions 8.7.47 ELTS, 9.5.34 ELTS, 10.4.29, and 11.5.11,... |
| CVE-2022-31047 | MEDIUM | 6.5 | 1.0% | Jun 14, 2022 | TYPO3 is an open source web content management system. Prior to versions 7.6.57 ELTS, 8.7.47 ELTS, 9.5.34 ELTS, 10.4.29,... |
| CVE-2022-31046 | MEDIUM | 4.3 | 0.6% | Jun 14, 2022 | TYPO3 is an open source web content management system. Prior to versions 7.6.57 ELTS, 8.7.47 ELTS, 9.5.34 ELTS, 10.4.29,... |
| CVE-2022-29241 | HIGH | 8.8 | 0.8% | Jun 14, 2022 | Jupyter Server provides the backend (i.e. the core services, APIs, and REST endpoints) for Jupyter web applications like... |
| CVE-2022-32239 | MEDIUM | 5.5 | 0.6% | Jun 14, 2022 | When a user opens manipulated JPEG 2000 (.jp2, jp2k.x3d) files received from untrusted sources in SAP 3D Visual Enterpri... |
| CVE-2022-32238 | MEDIUM | 5.5 | 0.6% | Jun 14, 2022 | When a user opens manipulated Encapsulated Post Script (.eps, ai.x3d) files received from untrusted sources in SAP 3D Vi... |
| CVE-2022-32237 | MEDIUM | 5.5 | 0.5% | Jun 14, 2022 | When a user opens manipulated Computer Graphics Metafile (.cgm, CgmCore.dll) files received from untrusted sources in SA... |
| CVE-2022-32236 | MEDIUM | 5.5 | 0.7% | Jun 14, 2022 | When a user opens manipulated Windows Bitmap (.bmp, 2d.x3d) files received from untrusted sources in SAP 3D Visual Enter... |
| CVE-2022-31059 | MEDIUM | 5.4 | 0.7% | Jun 14, 2022 | Discourse Calendar is a calendar plugin for Discourse, an open-source messaging app. Prior to version 1.0.1, parsing and... |
| CVE-2022-32235 | MEDIUM | 5.5 | 0.5% | Jun 14, 2022 | When a user opens manipulated AutoCAD (.dwg, TeighaTranslator.exe) files received from untrusted sources in SAP 3D Visua... |
| CVE-2022-31595 | HIGH | 8.8 | 0.7% | Jun 14, 2022 | SAP Financial Consolidation - version 1010,�does not perform necessary authorization checks for an authenticated user, r... |
| CVE-2022-31594 | MEDIUM | 6.7 | 0.2% | Jun 14, 2022 | A highly privileged user can exploit SUID-root program to escalate his privileges to root on a local Unix system. |
| CVE-2022-31590 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | SAP PowerDesigner Proxy - version 16.7, allows an attacker with low privileges and has local access, with the ability to... |
| CVE-2022-31589 | MEDIUM | 6.5 | 0.6% | Jun 14, 2022 | Due to improper authorization check, business users who are using Israeli File from SHAAM program (/ATL/VQ23 transaction... |
| CVE-2022-29618 | MEDIUM | 6.1 | 1.0% | Jun 14, 2022 | Due to insufficient input validation, SAP NetWeaver Development Infrastructure (Design Time Repository) - versions 7.30,... |
| CVE-2022-29615 | LOW | 3.4 | 0.2% | Jun 14, 2022 | SAP NetWeaver Developer Studio (NWDS) - version 7.50, is based on Eclipse, which contains the logging framework log4j in... |
| CVE-2022-29614 | MEDIUM | 5 | 0.4% | Jun 14, 2022 | SAP startservice - of SAP NetWeaver Application Server ABAP, Application Server Java, ABAP Platform and HANA Database - ... |
| CVE-2022-32367 | HIGH | 7.2 | 0.9% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=inquiries/view_inquiry&id=. |
| CVE-2022-32366 | HIGH | 7.2 | 0.9% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/fields/view_field.php?id=. |
| CVE-2022-32365 | HIGH | 7.2 | 0.9% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/fields/manage_field.php?id=. |
| CVE-2022-32364 | HIGH | 7.2 | 0.9% | Jun 14, 2022 | Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=products/manage_product&id=. |
| CVE-2022-30903 | MEDIUM | 4.8 | 0.5% | Jun 14, 2022 | Nokia "G-2425G-A" Bharti Airtel Routers Hardware version "3FE48299DEAA" Software Version "3FE49362IJHK42" is vulnerable ... |
| CVE-2022-29238 | MEDIUM | 4.3 | 1.0% | Jun 14, 2022 | Jupyter Notebook is a web-based notebook environment for interactive computing. Prior to version 6.4.12, authenticated r... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now