2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-27777 | MEDIUM | 6.1 | 1.5% | May 26, 2022 | A XSS Vulnerability in Action View tag helpers >= 5.2.0 and < 5.2.0 which would allow an attacker to inject content if a... |
| CVE-2022-22577 | MEDIUM | 6.1 | 1.6% | May 26, 2022 | An XSS Vulnerability in Action Pack >= 5.2.0 and < 5.2.0 that could allow an attacker to bypass CSP for non HTML like re... |
| CVE-2022-22576 | HIGH | 8.1 | 1.9% | May 26, 2022 | An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-au... |
| CVE-2022-21831 | CRITICAL | 9.8 | 2.8% | May 26, 2022 | A code injection vulnerability exists in the Active Storage >= v5.2.0 that could allow an attacker to execute code via i... |
| CVE-2022-21827 | HIGH | 7.1 | 0.2% | May 26, 2022 | An improper privilege vulnerability has been discovered in Citrix Gateway Plug-in for Windows (Citrix Secure Access for ... |
| CVE-2022-1899 | CRITICAL | 9.1 | 1.4% | May 26, 2022 | Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0. |
| CVE-2022-1882 | HIGH | 7.8 | 0.3% | May 26, 2022 | A use-after-free flaw was found in the Linux kernel’s pipes functionality in how a user performs manipulations with the ... |
| CVE-2022-1261 | HIGH | 8.8 | 0.6% | May 26, 2022 | Matrikon, a subsidary of Honeywell Matrikon OPC Server (all versions) is vulnerable to a condition where a low privilege... |
| CVE-2022-30789 | HIGH | 7.8 | 0.4% | May 26, 2022 | A crafted NTFS image can cause a heap-based buffer overflow in ntfs_check_log_client_array in NTFS-3G through 2021.8.22. |
| CVE-2022-30788 | HIGH | 7.8 | 0.4% | May 26, 2022 | A crafted NTFS image can cause a heap-based buffer overflow in ntfs_mft_rec_alloc in NTFS-3G through 2021.8.22. |
| CVE-2022-30787 | MEDIUM | 6.7 | 0.4% | May 26, 2022 | An integer underflow in fuse_lib_readdir enables arbitrary memory read operations in NTFS-3G through 2021.8.22 when usin... |
| CVE-2022-30786 | HIGH | 7.8 | 0.4% | May 26, 2022 | A crafted NTFS image can cause a heap-based buffer overflow in ntfs_names_full_collate in NTFS-3G through 2021.8.22. |
| CVE-2022-30785 | MEDIUM | 6.7 | 0.4% | May 26, 2022 | A file handle created in fuse_lib_opendir, and later used in fuse_lib_readdir, enables arbitrary memory read and write o... |
| CVE-2022-30784 | HIGH | 7.8 | 0.4% | May 26, 2022 | A crafted NTFS image can cause heap exhaustion in ntfs_get_attribute_value in NTFS-3G through 2021.8.22. |
| CVE-2022-30783 | MEDIUM | 6.7 | 0.4% | May 26, 2022 | An invalid return code in fuse_kern_mount enables intercepting of libfuse-lite protocol traffic between NTFS-3G and the ... |
| CVE-2022-30500 | CRITICAL | 9.8 | 1.0% | May 26, 2022 | Jfinal cms 5.1.0 is vulnerable to SQL Injection. |
| CVE-2022-30477 | CRITICAL | 9.8 | 1.3% | May 26, 2022 | Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a stack-based buffer overflow in the httpd modu... |
| CVE-2022-30476 | CRITICAL | 9.8 | 1.3% | May 26, 2022 | Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a stack-based buffer overflow in the httpd modu... |
| CVE-2022-30475 | HIGH | 7.5 | 1.1% | May 26, 2022 | Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a stack-based buffer overflow in the httpd modu... |
| CVE-2022-30474 | CRITICAL | 9.8 | 1.3% | May 26, 2022 | Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a heap overflow in the httpd module when handli... |
| CVE-2022-30473 | HIGH | 7.5 | 1.1% | May 26, 2022 | Tenda AC Series Router AC18_V15.03.05.19(6318) has a stack-based buffer overflow vulnerability in function form_fast_set... |
| CVE-2022-30472 | CRITICAL | 9.8 | 1.3% | May 26, 2022 | Tenda AC Seris Router AC18_V15.03.05.19(6318) has a stack-based buffer overflow vulnerability in function fromAddressNat |
| CVE-2022-29091 | MEDIUM | 6.1 | 0.9% | May 26, 2022 | Dell Unity, Dell UnityVSA, and Dell UnityXT versions prior to 5.2.0.0.5.173 contain a Reflected Cross-Site Scripting Vul... |
| CVE-2022-29082 | MEDIUM | 4.6 | 0.3% | May 26, 2022 | Dell EMC NetWorker versions 19.1.x, 19.1.0.x, 19.1.1.x, 19.2.x, 19.2.0.x, 19.2.1.x 19.3.x, 19.3.0.x, 19.4.x, 19.4.0.x, 1... |
| CVE-2022-26865 | MEDIUM | 6.8 | 0.3% | May 26, 2022 | Dell Support Assist OS Recovery versions before 5.5.2 contain an Authentication Bypass vulnerability. An unauthenticated... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now