2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-25865CRITICAL9.8The package workspace-tools before 0.18.4 are vulnerable to Command Injection via git argument injection. When calling t...
CVE-2022-25862HIGH7.5This affects the package sds from 0.0.0. The library could be tricked into adding or modifying properties of the Object....
CVE-2022-22282CRITICAL9.8SonicWall SMA1000 series firmware 12.4.0, 12.4.1-02965 and earlier versions incorrectly restricts access to a resource u...
CVE-2022-22281HIGH7.8A buffer overflow vulnerability in the SonicWall SSL-VPN NetExtender Windows Client (32 and 64 bit) in 10.2.322 and earl...
CVE-2022-21190CRITICAL9.8This affects the package convict before 6.2.3. This is a bypass of [CVE-2022-22143](https://security.snyk.io/vuln/SNYK-J...
CVE-2022-1702MEDIUM6.1SonicWall SMA1000 series firmware 12.4.0, 12.4.1-02965 and earlier versions accept a user-controlled input that specifie...
CVE-2022-1701HIGH7.5SonicWall SMA1000 series firmware 12.4.0, 12.4.1-02965 and earlier versions uses a shared and hard-coded encryption key ...
CVE-2022-22393MEDIUM6.5IBM WebSphere Application Server Liberty 17.0.0.3 through 22.0.0.5 , with the adminCenter-1.0 feature configured, could ...
CVE-2022-22325MEDIUM5.5IBM MQ (IBM MQ for HPE NonStop 8.1.0) can inadvertently disclose sensitive information under certain circumstances to a ...
CVE-2022-1715CRITICAL9.8Account Takeover in GitHub repository neorazorx/facturascripts prior to 2022.07.
CVE-2022-29433MEDIUM5.4Authenticated (contributor or higher role) Cross-Site Scripting (XSS) vulnerability in Donations plugin <= 1.8 on WordPr...
CVE-2022-22252HIGH7.5The DFX module has a UAF vulnerability.Successful exploitation of this vulnerability may affect system stability.
CVE-2022-30417HIGH7.2Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via ctpms/admin/?page=user/manage_user&id=.
CVE-2022-30415HIGH7.2Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/applications/update_status.p...
CVE-2022-30414HIGH7.2Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/?page=applications/view_appl...
CVE-2022-30413CRITICAL9.8Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/classes/Master.php?f=delete_applic...
CVE-2022-30412HIGH7.2Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/individuals/update_status.ph...
CVE-2022-30411HIGH7.2Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/?page=individuals/view_indiv...
CVE-2022-30408MEDIUM6.5Covid-19 Travel Pass Management System v1.0 is vulnerable to file deletion via /ctpms/classes/Master.php?f=delete_img.
CVE-2022-30407CRITICAL9.8Pharmacy Sales And Inventory System v1.0 is vulnerable to SQL Injection via /pharmacy-sales-and-inventory-system/manage_...
CVE-2022-30404HIGH7.2College Management System v1.0 is vulnerable to SQL Injection via /College_Management_System/admin/display-teacher.php?t...
CVE-2022-30403HIGH7.2Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/?p=products&c=.
CVE-2022-30402HIGH7.2Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/?page=maintenance/manage_sub_cate...
CVE-2022-30401HIGH7.2Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/?p=view_product&id=.
CVE-2022-30400HIGH7.2Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/orders/view_order.php?view=user&i...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now