2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-31050HIGH7.2TYPO3 is an open source web content management system. Prior to versions 9.5.34 ELTS, 10.4.29, and 11.5.11, Admin Tool s...
CVE-2022-31049MEDIUM5.4TYPO3 is an open source web content management system. Prior to versions 9.5.34 ELTS, 10.4.29, and 11.5.11, user submitt...
CVE-2022-31048MEDIUM5.4TYPO3 is an open source web content management system. Prior to versions 8.7.47 ELTS, 9.5.34 ELTS, 10.4.29, and 11.5.11,...
CVE-2022-31047MEDIUM6.5TYPO3 is an open source web content management system. Prior to versions 7.6.57 ELTS, 8.7.47 ELTS, 9.5.34 ELTS, 10.4.29,...
CVE-2022-31046MEDIUM4.3TYPO3 is an open source web content management system. Prior to versions 7.6.57 ELTS, 8.7.47 ELTS, 9.5.34 ELTS, 10.4.29,...
CVE-2022-29241HIGH8.8Jupyter Server provides the backend (i.e. the core services, APIs, and REST endpoints) for Jupyter web applications like...
CVE-2022-32239MEDIUM5.5When a user opens manipulated JPEG 2000 (.jp2, jp2k.x3d) files received from untrusted sources in SAP 3D Visual Enterpri...
CVE-2022-32238MEDIUM5.5When a user opens manipulated Encapsulated Post Script (.eps, ai.x3d) files received from untrusted sources in SAP 3D Vi...
CVE-2022-32237MEDIUM5.5When a user opens manipulated Computer Graphics Metafile (.cgm, CgmCore.dll) files received from untrusted sources in SA...
CVE-2022-32236MEDIUM5.5When a user opens manipulated Windows Bitmap (.bmp, 2d.x3d) files received from untrusted sources in SAP 3D Visual Enter...
CVE-2022-31059MEDIUM5.4Discourse Calendar is a calendar plugin for Discourse, an open-source messaging app. Prior to version 1.0.1, parsing and...
CVE-2022-32235MEDIUM5.5When a user opens manipulated AutoCAD (.dwg, TeighaTranslator.exe) files received from untrusted sources in SAP 3D Visua...
CVE-2022-31595HIGH8.8SAP Financial Consolidation - version 1010,�does not perform necessary authorization checks for an authenticated user, r...
CVE-2022-31594MEDIUM6.7A highly privileged user can exploit SUID-root program to escalate his privileges to root on a local Unix system.
CVE-2022-31590HIGH7.8SAP PowerDesigner Proxy - version 16.7, allows an attacker with low privileges and has local access, with the ability to...
CVE-2022-31589MEDIUM6.5Due to improper authorization check, business users who are using Israeli File from SHAAM program (/ATL/VQ23 transaction...
CVE-2022-29618MEDIUM6.1Due to insufficient input validation, SAP NetWeaver Development Infrastructure (Design Time Repository) - versions 7.30,...
CVE-2022-29615LOW3.4SAP NetWeaver Developer Studio (NWDS) - version 7.50, is based on Eclipse, which contains the logging framework log4j in...
CVE-2022-29614MEDIUM5SAP startservice - of SAP NetWeaver Application Server ABAP, Application Server Java, ABAP Platform and HANA Database - ...
CVE-2022-32367HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=inquiries/view_inquiry&id=.
CVE-2022-32366HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/fields/view_field.php?id=.
CVE-2022-32365HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/fields/manage_field.php?id=.
CVE-2022-32364HIGH7.2Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=products/manage_product&id=.
CVE-2022-30903MEDIUM4.8Nokia "G-2425G-A" Bharti Airtel Routers Hardware version "3FE48299DEAA" Software Version "3FE49362IJHK42" is vulnerable ...
CVE-2022-29238MEDIUM4.3Jupyter Notebook is a web-based notebook environment for interactive computing. Prior to version 6.4.12, authenticated r...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now