2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29985 | CRITICAL | 9.8 | 1.1% | May 12, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_category. |
| CVE-2022-29984 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=client/view_client&id=. |
| CVE-2022-29983 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=invoice/view_invoice&id=. |
| CVE-2022-29982 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/maintenance/manage_service.php?id=. |
| CVE-2022-29981 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Users.php?f=delete. |
| CVE-2022-29980 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=user/manage_user&id=. |
| CVE-2022-29979 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_designation. |
| CVE-2022-29751 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_client. |
| CVE-2022-29750 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_service. |
| CVE-2022-29749 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_invoice. |
| CVE-2022-29748 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via \cms\admin?page=client/manage_client&id=. |
| CVE-2022-29747 | CRITICAL | 9.8 | 1.6% | May 12, 2022 | Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=invoice/manage_invoice&id= // Le... |
| CVE-2022-29539 | CRITICAL | 9.8 | 1.7% | May 12, 2022 | resi-calltrace in RESI Gemini-Net 4.2 is affected by OS Command Injection. It does not properly check the parameters sen... |
| CVE-2022-29538 | MEDIUM | 5.3 | 0.8% | May 12, 2022 | RESI Gemini-Net Web 4.2 is affected by Improper Access Control in authorization logic. An unauthenticated user is able t... |
| CVE-2022-30525 | CRITICAL | 9.8 | 99.9% | May 12, 2022 | A OS command injection vulnerability in the CGI program of Zyxel USG FLEX 100(W) firmware versions 5.00 through 5.21 Pat... |
| CVE-2022-28873 | MEDIUM | 4.3 | 0.5% | May 12, 2022 | A vulnerability affecting F-Secure SAFE browser was discovered. An attacker can potentially exploit Javascript window.op... |
| CVE-2022-28872 | HIGH | 8.8 | 0.5% | May 12, 2022 | A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing atta... |
| CVE-2022-1674 | MEDIUM | 5.5 | 1.5% | May 12, 2022 | NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 in GitHub repository vim/vim prior to 8.2.4938.... |
| CVE-2022-1650 | CRITICAL | 9.3 | 1.7% | May 12, 2022 | Improper Removal of Sensitive Information Before Storage or Transfer in GitHub repository eventsource/eventsource prior ... |
| CVE-2022-29930 | MEDIUM | 4.9 | 0.8% | May 12, 2022 | SHA1 implementation in JetBrains Ktor Native 2.0.0 was returning the same value. The issue was fixed in Ktor version 2.0... |
| CVE-2022-29929 | MEDIUM | 6.1 | 0.4% | May 12, 2022 | In JetBrains TeamCity before 2022.04 potential XSS via Referrer header was possible |
| CVE-2022-29928 | MEDIUM | 4.9 | 0.4% | May 12, 2022 | In JetBrains TeamCity before 2022.04 leak of secrets in TeamCity agent logs was possible |
| CVE-2022-29927 | MEDIUM | 6.1 | 1.4% | May 12, 2022 | In JetBrains TeamCity before 2022.04 reflected XSS on the Build Chain Status page was possible |
| CVE-2022-1682 | MEDIUM | 6.1 | 0.7% | May 12, 2022 | Reflected Xss using url based payload in GitHub repository neorazorx/facturascripts prior to 2022.07. Xss can use to ste... |
| CVE-2022-29885 | HIGH | 7.5 | 71.7% | May 12, 2022 | The documentation of Apache Tomcat 10.1.0-M1 to 10.1.0-M14, 10.0.0-M1 to 10.0.20, 9.0.13 to 9.0.62 and 8.5.38 to 8.5.78 ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now