2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29567 | HIGH | 7.5 | 0.9% | May 24, 2022 | The default configuration of a TreeGrid component uses Object::toString as a key on the client-side and server communica... |
| CVE-2022-29246 | CRITICAL | 9.8 | 2.2% | May 24, 2022 | Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack. Prior to version 6.1.11, he USBX DFU UPLOAD f... |
| CVE-2022-29242 | HIGH | 7.5 | 1.6% | May 24, 2022 | GOST engine is a reference implementation of the Russian GOST crypto algorithms for OpenSSL. TLS clients using GOST engi... |
| CVE-2022-29237 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Opencast is a free and open source solution for automated video capture and distribution at scale. Prior to Opencast 10.... |
| CVE-2022-29223 | CRITICAL | 9.8 | 1.1% | May 24, 2022 | Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack. In versions prior to 6.1.10, an attacker can ... |
| CVE-2022-29221 | HIGH | 8.8 | 4.5% | May 24, 2022 | Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic. Prio... |
| CVE-2022-29219 | HIGH | 7.5 | 1.2% | May 24, 2022 | Lodestar is a TypeScript implementation of the Ethereum Consensus specification. Prior to version 0.36.0, there is a pos... |
| CVE-2022-29217 | HIGH | 7.5 | 1.2% | May 24, 2022 | PyJWT is a Python implementation of RFC 7519. PyJWT supports multiple different JWT signing algorithms. With JWT, an att... |
| CVE-2022-22306 | MEDIUM | 5.3 | 0.2% | May 24, 2022 | An improper certificate validation vulnerability [CWE-295] in FortiOS 6.0.0 through 6.0.14, 6.2.0 through 6.2.10, 6.4.0 ... |
| CVE-2022-1850 | HIGH | 8.1 | 1.0% | May 24, 2022 | Path Traversal in GitHub repository filegator/filegator prior to 7.8.0. |
| CVE-2022-30837 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Toll-tax-management-system v1.0 is vulnerable to Cross Site Scripting (XSS) via /ttms/classes/Master.php?f=save_recipien... |
| CVE-2022-30464 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | ChatBot App with Suggestion in PHP/OOP v1.0 is vulnerable to Cross Site Scripting (XSS) via /simple_chat_bot/classes/Mas... |
| CVE-2022-30463 | HIGH | 8.8 | 0.9% | May 24, 2022 | Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/classes/Master.php?f=delete_product. |
| CVE-2022-30462 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Water-billing-management-system v1.0 is affected by: Cross Site Scripting (XSS) via /wbms/classes/Users.php?f=save, firs... |
| CVE-2022-30461 | CRITICAL | 9.8 | 1.0% | May 24, 2022 | Water-billing-management-system v1.0 is vulnerable to SQL Injection via /wbms/classes/Master.php?f=delete_client, id |
| CVE-2022-30460 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Simple Social Networking Site v1.0 is vulnerable to Cross Site Scripting (XSS) via /sns/classes/Users.php?f=save, firstn... |
| CVE-2022-30459 | HIGH | 8.8 | 0.9% | May 24, 2022 | ChatBot App with Suggestion in PHP/OOP v1.0 is vulnerable to SQL Injection via /simple_chat_bot/classes/Master.php?f=del... |
| CVE-2022-30458 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Automotive Shop Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via /asms/classes/Master.php?f=save_p... |
| CVE-2022-30456 | MEDIUM | 5.4 | 0.5% | May 24, 2022 | Badminton Center Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via /bcms/classes/Master.php?f=save_c... |
| CVE-2022-30455 | CRITICAL | 9.8 | 1.0% | May 24, 2022 | Badminton Center Management System 1.0 is vulnerable to SQL Injection via /bcms/classes/Master.php?f=delete_court_rental... |
| CVE-2022-30454 | CRITICAL | 9.8 | 1.0% | May 24, 2022 | Merchandise Online Store 1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_product. |
| CVE-2022-1848 | MEDIUM | 5.3 | 1.0% | May 24, 2022 | Business Logic Errors in GitHub repository erudika/para prior to 1.45.11. |
| CVE-2022-26532 | HIGH | 7.8 | 4.8% | May 24, 2022 | A argument injection vulnerability in the 'packet-trace' CLI command of Zyxel USG/ZyWALL series firmware versions 4.09 t... |
| CVE-2022-26531 | HIGH | 7.8 | 5.8% | May 24, 2022 | Multiple improper input validation flaws were identified in some CLI commands of Zyxel USG/ZyWALL series firmware versio... |
| CVE-2022-1840 | MEDIUM | 4.8 | 0.6% | May 24, 2022 | A vulnerability, which was classified as problematic, has been found in Home Clean Services Management System 1.0. This ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now