2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29661 | HIGH | 7.2 | 0.9% | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /ad... |
| CVE-2022-29660 | CRITICAL | 9.8 | 11.4% | May 26, 2022 | CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.ph... |
| CVE-2022-20821 | MEDIUM | 6.5 | 11.8% | May 26, 2022 | A vulnerability in the health check RPM of Cisco IOS XR Software could allow an unauthenticated, remote attacker to acce... |
| CVE-2022-20809 | MEDIUM | 6.5 | 0.9% | May 26, 2022 | Multiple vulnerabilities in the API and web-based management interfaces of Cisco Expressway Series and Cisco TelePresenc... |
| CVE-2022-1664 | CRITICAL | 9.8 | 2.9% | May 26, 2022 | Dpkg::Source::Archive in dpkg, the Debian package management system, before version 1.21.8, 1.20.10, 1.19.8, 1.18.26 is ... |
| CVE-2022-29721 | HIGH | 7.5 | 1.0% | May 26, 2022 | 74cmsSE v3.5.1 was discovered to contain a SQL injection vulnerability via the keyword parameter at /home/jobfairol/resu... |
| CVE-2022-29720 | HIGH | 7.5 | 0.9% | May 26, 2022 | 74cmsSE v3.5.1 was discovered to contain an arbitrary file read vulnerability via the component \index\controller\Downlo... |
| CVE-2022-31651 | MEDIUM | 5.5 | 1.1% | May 25, 2022 | In SoX 14.4.2, there is an assertion failure in rate_init in rate.c in libsox.a. |
| CVE-2022-31650 | MEDIUM | 5.5 | 1.1% | May 25, 2022 | In SoX 14.4.2, there is a floating-point exception in lsx_aiffstartwrite in aiff.c in libsox.a. |
| CVE-2022-29256 | MEDIUM | 6.7 | 0.4% | May 25, 2022 | sharp is an application for Node.js image processing. Prior to version 0.30.5, there is a possible vulnerability in logi... |
| CVE-2022-31624 | MEDIUM | 5.5 | 0.2% | May 25, 2022 | MariaDB Server before 10.7 is vulnerable to Denial of Service. While executing the plugin/server_audit/server_audit.c me... |
| CVE-2022-31623 | MEDIUM | 5.5 | 0.2% | May 25, 2022 | MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs... |
| CVE-2022-31622 | MEDIUM | 5.5 | 0.2% | May 25, 2022 | MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_compress.cc, when an error occurs... |
| CVE-2022-31621 | MEDIUM | 5.5 | 0.2% | May 25, 2022 | MariaDB Server before 10.7 is vulnerable to Denial of Service. In extra/mariabackup/ds_xbstream.cc, when an error occurs... |
| CVE-2022-31620 | MEDIUM | 6.5 | 1.3% | May 25, 2022 | In libjpeg before 1.64, BitStream<false>::Get in bitstream.hpp has an assertion failure that may cause denial of service... |
| CVE-2022-29253 | LOW | 2.7 | 1.0% | May 25, 2022 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting with v... |
| CVE-2022-29252 | MEDIUM | 6.1 | 0.9% | May 25, 2022 | XWiki Platform Wiki UI Main Wiki is a package for managing subwikis. Starting with version 5.3-milestone-2, XWiki Platfo... |
| CVE-2022-29251 | MEDIUM | 6.1 | 1.3% | May 25, 2022 | XWiki Platform Flamingo Theme UI is a tool that allows customization and preview of any Flamingo-based skin. Starting wi... |
| CVE-2022-27169 | HIGH | 7.5 | 1.6% | May 25, 2022 | An information disclosure vulnerability exists in the OAS Engine SecureBrowseFile functionality of Open Automation Softw... |
| CVE-2022-26833 | CRITICAL | 9.4 | 37.6% | May 25, 2022 | An improper authentication vulnerability exists in the REST API functionality of Open Automation Software OAS Platform V... |
| CVE-2022-26303 | HIGH | 7.5 | 1.2% | May 25, 2022 | An external config control vulnerability exists in the OAS Engine SecureAddUser functionality of Open Automation Softwar... |
| CVE-2022-26082 | CRITICAL | 9.8 | 18.6% | May 25, 2022 | A file write vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Pl... |
| CVE-2022-26077 | HIGH | 7.5 | 1.1% | May 25, 2022 | A cleartext transmission of sensitive information vulnerability exists in the OAS Engine configuration communications fu... |
| CVE-2022-26067 | HIGH | 7.5 | 1.2% | May 25, 2022 | An information disclosure vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation So... |
| CVE-2022-26043 | HIGH | 7.5 | 1.2% | May 25, 2022 | An external config control vulnerability exists in the OAS Engine SecureAddSecurity functionality of Open Automation Sof... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now