2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-41953 | HIGH | 7.8 | 6.8% | Jan 17, 2023 | Git GUI is a convenient graphical tool that comes with Git for Windows. Its target audience is users who are uncomfortab... |
| CVE-2022-43975 | HIGH | 7.5 | 0.9% | Jan 17, 2023 | An issue was discovered in FC46-WebBridge on GE Grid Solutions MS3000 devices before 3.7.6.25p0_3.2.2.17p0_4.7p0. A vuln... |
| CVE-2022-40319 | HIGH | 7.5 | 7.2% | Jan 17, 2023 | The LISTSERV 17 web interface allows remote attackers to conduct Insecure Direct Object References (IDOR) attacks via a ... |
| CVE-2022-2251 | HIGH | 8 | 1.2% | Jan 17, 2023 | Improper sanitization of branch names in GitLab Runner affecting all versions prior to 15.3.5, 15.4 prior to 15.4.4, and... |
| CVE-2022-23538 | HIGH | 7.6 | 0.7% | Jan 17, 2023 | github.com/sylabs/scs-library-client is the Go client for the Singularity Container Services (SCS) Container Library Ser... |
| CVE-2022-4891 | HIGH | 7.5 | 1.3% | Jan 17, 2023 | A vulnerability has been found in Sisimai up to 4.25.14p11 and classified as problematic. This vulnerability affects the... |
| CVE-2022-3650 | HIGH | 7.8 | 0.3% | Jan 17, 2023 | A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root... |
| CVE-2022-41860 | HIGH | 7.5 | 1.2% | Jan 17, 2023 | In freeradius, when an EAP-SIM supplicant sends an unknown SIM option, the server will try to look that option up in the... |
| CVE-2022-41859 | HIGH | 7.5 | 0.9% | Jan 17, 2023 | In freeradius, the EAP-PWD function compute_password_element() leaks information about the password which allows an atta... |
| CVE-2022-41858 | HIGH | 7.1 | 0.3% | Jan 17, 2023 | A flaw was found in the Linux kernel. A NULL pointer dereference may occur while a slip driver is in progress to detach ... |
| CVE-2022-4621 | HIGH | 8.8 | 0.3% | Jan 17, 2023 | Panasonic Sanyo CCTV Network Cameras versions 1.02-05 and 2.03-0x are vulnerable to CSRFs that can be exploited to allo... |
| CVE-2022-3091 | HIGH | 7.5 | 0.6% | Jan 17, 2023 | RONDS EPM version 1.19.5 has a vulnerability in which a function could allow unauthenticated users to leak credentials.... |
| CVE-2022-47318 | HIGH | 8 | 1.4% | Jan 17, 2023 | ruby-git versions prior to v1.13.0 allows a remote authenticated attacker to execute an arbitrary ruby code by having a ... |
| CVE-2022-46648 | HIGH | 8 | 1.4% | Jan 17, 2023 | ruby-git versions prior to v1.13.0 allows a remote authenticated attacker to execute an arbitrary ruby code by having a ... |
| CVE-2022-46891 | HIGH | 8.8 | 0.8% | Jan 17, 2023 | An issue was discovered in the Arm Mali GPU Kernel Driver. There is a use-after-free. A non-privileged user can make imp... |
| CVE-2022-43462 | HIGH | 7.2 | 0.7% | Jan 17, 2023 | Auth. SQL Injection (SQLi) vulnerability in Adeel Ahmed's IP Blacklist Cloud plugin <= 5.00 versions. |
| CVE-2022-30544 | HIGH | 8.8 | 0.3% | Jan 17, 2023 | Cross-Site Request Forgery (CSRF) in MiKa's OSM – OpenStreetMap plugin <= 6.0.1 versions. |
| CVE-2022-3087 | HIGH | 7.8 | 0.3% | Jan 17, 2023 | Fuji Electric Tellus Lite V-Simulator versions 4.0.12.0 and prior are vulnerable to an out-of-bounds write which may al... |
| CVE-2022-4547 | HIGH | 7.2 | 0.9% | Jan 16, 2023 | The Conditional Payment Methods for WooCommerce WordPress plugin through 1.0 does not properly sanitise and escape a par... |
| CVE-2022-47630 | HIGH | 7.4 | 0.6% | Jan 16, 2023 | Trusted Firmware-A through 2.8 has an out-of-bounds read in the X.509 parser for parsing boot certificates. This affects... |
| CVE-2022-43719 | HIGH | 8.8 | 0.6% | Jan 16, 2023 | Two legacy REST API endpoints for approval and request access are vulnerable to cross site request forgery. This issue a... |
| CVE-2022-4258 | HIGH | 7.8 | 0.2% | Jan 16, 2023 | In multiple versions of HIMA PC based Software an unquoted Windows search path vulnerability might allow local users to ... |
| CVE-2022-45353 | HIGH | 8.1 | 0.5% | Jan 14, 2023 | Broken Access Control in Betheme theme <= 26.6.1 on WordPress. |
| CVE-2022-41955 | HIGH | 8.8 | 1.5% | Jan 14, 2023 | Autolab is a course management service, initially developed by a team of students at Carnegie Mellon University, that en... |
| CVE-2022-41721 | HIGH | 7.5 | 1.8% | Jan 13, 2023 | A request smuggling attack is possible when using MaxBytesHandler. When using MaxBytesHandler, the body of an HTTP reque... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now