2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-29661HIGH7.2CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /ad...
CVE-2022-29660CRITICAL9.8CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.ph...
CVE-2022-20821MEDIUM6.5A vulnerability in the health check RPM of Cisco IOS XR Software could allow an unauthenticated, remote attacker to acce...
CVE-2022-20809MEDIUM6.5Multiple vulnerabilities in the API and web-based management interfaces of Cisco Expressway Series and Cisco TelePresenc...
CVE-2022-1664CRITICAL9.8Dpkg::Source::Archive in dpkg, the Debian package management system, before version 1.21.8, 1.20.10, 1.19.8, 1.18.26 is ...
CVE-2022-29721HIGH7.574cmsSE v3.5.1 was discovered to contain a SQL injection vulnerability via the keyword parameter at /home/jobfairol/resu...
CVE-2022-29720HIGH7.574cmsSE v3.5.1 was discovered to contain an arbitrary file read vulnerability via the component \index\controller\Downlo...
CVE-2022-31651MEDIUM5.5In SoX 14.4.2, there is an assertion failure in rate_init in rate.c in libsox.a.
CVE-2022-31650MEDIUM5.5In SoX 14.4.2, there is a floating-point exception in lsx_aiffstartwrite in aiff.c in libsox.a.
CVE-2022-29256MEDIUM6.7sharp is an application for Node.js image processing. Prior to version 0.30.5, there is a possible vulnerability in logi...
CVE-2022-31624MEDIUM5.5MariaDB Server before 10.7 is vulnerable to Denial of Service. While executing the plugin/server_audit/server_audit.c me...
CVE-2022-31623MEDIUM5.5MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs...
CVE-2022-31622MEDIUM5.5MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs...
CVE-2022-31621MEDIUM5.5MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_xbstream.cc, when an error occurs...
CVE-2022-31620MEDIUM6.5In libjpeg before 1.64, BitStream<false>::Get in bitstream.hpp has an assertion failure that may cause denial of service...
CVE-2022-29253LOW2.7XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting with v...
CVE-2022-29252MEDIUM6.1XWiki Platform Wiki UI Main Wiki is a package for managing subwikis. Starting with version 5.3-milestone-2, XWiki Platfo...
CVE-2022-29251MEDIUM6.1XWiki Platform Flamingo Theme UI is a tool that allows customization and preview of any Flamingo-based skin. Starting wi...
CVE-2022-27169HIGH7.5An information disclosure vulnerability exists in the OAS Engine SecureBrowseFile functionality of Open Automation Softw...
CVE-2022-26833CRITICAL9.4An improper authentication vulnerability exists in the REST API functionality of Open Automation Software OAS Platform V...
CVE-2022-26303HIGH7.5An external config control vulnerability exists in the OAS Engine SecureAddUser functionality of Open Automation Softwar...
CVE-2022-26082CRITICAL9.8A file write vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Pl...
CVE-2022-26077HIGH7.5A cleartext transmission of sensitive information vulnerability exists in the OAS Engine configuration communications fu...
CVE-2022-26067HIGH7.5An information disclosure vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation So...
CVE-2022-26043HIGH7.5An external config control vulnerability exists in the OAS Engine SecureAddSecurity functionality of Open Automation Sof...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now