2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-29236MEDIUM4.3BigBlueButton is an open source web conferencing system. Starting in version 2.2 and prior to versions 2.3.18 and 2.4-rc...
CVE-2022-29235MEDIUM5.3BigBlueButton is an open source web conferencing system. Starting in version 2.2 and prior to versions 2.3.18 and 2.4-rc...
CVE-2022-29234MEDIUM4.3BigBlueButton is an open source web conferencing system. Starting in version 2.2 and prior to versions 2.3.18 and 2.4.1,...
CVE-2022-29233MEDIUM4.3BigBlueButton is an open source web conferencing system. In BigBlueButton starting with 2.2 but before 2.3.18 and 2.4-rc...
CVE-2022-29232MEDIUM6.5BigBlueButton is an open source web conferencing system. Starting with version 2.2 and prior to versions 2.3.9 and 2.4-b...
CVE-2022-29169HIGH7.5BigBlueButton is an open source web conferencing system. Versions starting with 2.2 and prior to 2.3.19, 2.4.7, and 2.5....
CVE-2022-31022MEDIUM5.5Bleve is a text indexing library for go. Bleve includes HTTP utilities under bleve/http package, that are used by its sa...
CVE-2022-30190HIGH7.8A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such ...
CVE-2022-30128HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-30127HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-26905MEDIUM4.3Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2022-31000MEDIUM4.3solidus_backend is the admin interface for the Solidus e-commerce framework. Versions prior to 3.1.6, 3.0.6, and 2.11.16...
CVE-2022-24848HIGH8.8DHIS2 is an information system for data capture, management, validation, analytics and visualization. A SQL injection se...
CVE-2022-29098HIGH7.5Dell PowerScale OneFS versions 8.2.0.x through 9.3.0.x, contain a weak password requirement vulnerability. An administra...
CVE-2022-29875CRITICAL9.8A vulnerability has been identified in Biograph Horizon PET/CT Systems (All VJ30 versions < VJ30C-UD01), MAGNETOM Family...
CVE-2022-1285MEDIUM6.5Server-Side Request Forgery (SSRF) in GitHub repository gogs/gogs prior to 0.12.8.
CVE-2022-31015MEDIUM5.9Waitress is a Web Server Gateway Interface server for Python 2 and 3. Waitress versions 2.1.0 and 2.1.1 may terminate ea...
CVE-2022-31013CRITICAL9.8Chat Server is the chat server for Vartalap, an open-source messaging application. Versions 2.3.2 until 2.6.0 suffer fro...
CVE-2022-1947MEDIUM6.5Use of Incorrect Operator in GitHub repository polonel/trudesk prior to 1.2.3.
CVE-2022-1893MEDIUM5.3Improper Removal of Sensitive Information Before Storage or Transfer in GitHub repository polonel/trudesk prior to 1.2.3...
CVE-2022-1808HIGH8.8Execution with Unnecessary Privileges in GitHub repository polonel/trudesk prior to 1.2.3.
CVE-2022-31011HIGH7.8TiDB is an open-source NewSQL database that supports Hybrid Transactional and Analytical Processing (HTAP) workloads. Un...
CVE-2022-31007HIGH7.2eLabFTW is an electronic lab notebook manager for research teams. Prior to version 4.3.0, a vulnerability allows an auth...
CVE-2022-31005HIGH7.5Vapor is an HTTP web framework for Swift. Users of Vapor prior to version 4.60.3 with FileMiddleware enabled are vulnera...
CVE-2022-31003CRITICAL9.8Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, when parsing ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now