2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29236 | MEDIUM | 4.3 | 0.8% | Jun 2, 2022 | BigBlueButton is an open source web conferencing system. Starting in version 2.2 and prior to versions 2.3.18 and 2.4-rc... |
| CVE-2022-29235 | MEDIUM | 5.3 | 1.0% | Jun 2, 2022 | BigBlueButton is an open source web conferencing system. Starting in version 2.2 and prior to versions 2.3.18 and 2.4-rc... |
| CVE-2022-29234 | MEDIUM | 4.3 | 0.8% | Jun 2, 2022 | BigBlueButton is an open source web conferencing system. Starting in version 2.2 and prior to versions 2.3.18 and 2.4.1,... |
| CVE-2022-29233 | MEDIUM | 4.3 | 1.0% | Jun 2, 2022 | BigBlueButton is an open source web conferencing system. In BigBlueButton starting with 2.2 but before 2.3.18 and 2.4-rc... |
| CVE-2022-29232 | MEDIUM | 6.5 | 1.0% | Jun 1, 2022 | BigBlueButton is an open source web conferencing system. Starting with version 2.2 and prior to versions 2.3.9 and 2.4-b... |
| CVE-2022-29169 | HIGH | 7.5 | 1.4% | Jun 1, 2022 | BigBlueButton is an open source web conferencing system. Versions starting with 2.2 and prior to 2.3.19, 2.4.7, and 2.5.... |
| CVE-2022-31022 | MEDIUM | 5.5 | 0.3% | Jun 1, 2022 | Bleve is a text indexing library for go. Bleve includes HTTP utilities under bleve/http package, that are used by its sa... |
| CVE-2022-30190 | HIGH | 7.8 | 99.4% | Jun 1, 2022 | A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such ... |
| CVE-2022-30128 | HIGH | 8.3 | 1.8% | Jun 1, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-30127 | HIGH | 8.3 | 1.8% | Jun 1, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-26905 | MEDIUM | 4.3 | 1.7% | Jun 1, 2022 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2022-31000 | MEDIUM | 4.3 | 0.4% | Jun 1, 2022 | solidus_backend is the admin interface for the Solidus e-commerce framework. Versions prior to 3.1.6, 3.0.6, and 2.11.16... |
| CVE-2022-24848 | HIGH | 8.8 | 1.1% | Jun 1, 2022 | DHIS2 is an information system for data capture, management, validation, analytics and visualization. A SQL injection se... |
| CVE-2022-29098 | HIGH | 7.5 | 1.0% | Jun 1, 2022 | Dell PowerScale OneFS versions 8.2.0.x through 9.3.0.x, contain a weak password requirement vulnerability. An administra... |
| CVE-2022-29875 | CRITICAL | 9.8 | 1.6% | Jun 1, 2022 | A vulnerability has been identified in Biograph Horizon PET/CT Systems (All VJ30 versions < VJ30C-UD01), MAGNETOM Family... |
| CVE-2022-1285 | MEDIUM | 6.5 | 1.2% | Jun 1, 2022 | Server-Side Request Forgery (SSRF) in GitHub repository gogs/gogs prior to 0.12.8. |
| CVE-2022-31015 | MEDIUM | 5.9 | 1.3% | May 31, 2022 | Waitress is a Web Server Gateway Interface server for Python 2 and 3. Waitress versions 2.1.0 and 2.1.1 may terminate ea... |
| CVE-2022-31013 | CRITICAL | 9.8 | 1.4% | May 31, 2022 | Chat Server is the chat server for Vartalap, an open-source messaging application. Versions 2.3.2 until 2.6.0 suffer fro... |
| CVE-2022-1947 | MEDIUM | 6.5 | 1.2% | May 31, 2022 | Use of Incorrect Operator in GitHub repository polonel/trudesk prior to 1.2.3. |
| CVE-2022-1893 | MEDIUM | 5.3 | 0.8% | May 31, 2022 | Improper Removal of Sensitive Information Before Storage or Transfer in GitHub repository polonel/trudesk prior to 1.2.3... |
| CVE-2022-1808 | HIGH | 8.8 | 3.4% | May 31, 2022 | Execution with Unnecessary Privileges in GitHub repository polonel/trudesk prior to 1.2.3. |
| CVE-2022-31011 | HIGH | 7.8 | 0.3% | May 31, 2022 | TiDB is an open-source NewSQL database that supports Hybrid Transactional and Analytical Processing (HTAP) workloads. Un... |
| CVE-2022-31007 | HIGH | 7.2 | 26.1% | May 31, 2022 | eLabFTW is an electronic lab notebook manager for research teams. Prior to version 4.3.0, a vulnerability allows an auth... |
| CVE-2022-31005 | HIGH | 7.5 | 1.9% | May 31, 2022 | Vapor is an HTTP web framework for Swift. Users of Vapor prior to version 4.60.3 with FileMiddleware enabled are vulnera... |
| CVE-2022-31003 | CRITICAL | 9.8 | 3.7% | May 31, 2022 | Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, when parsing ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now