2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29820 | LOW | 3.5 | 0.4% | Apr 28, 2022 | In JetBrains PyCharm before 2022.1 exposure of the debugger port to the internal network was possible |
| CVE-2022-29819 | HIGH | 7.7 | 0.2% | Apr 28, 2022 | In JetBrains IntelliJ IDEA before 2022.1 local code execution via links in Quick Documentation was possible |
| CVE-2022-29818 | HIGH | 7.1 | 0.1% | Apr 28, 2022 | In JetBrains IntelliJ IDEA before 2022.1 origin checks in the internal web server were flawed |
| CVE-2022-29817 | MEDIUM | 6.1 | 0.4% | Apr 28, 2022 | In JetBrains IntelliJ IDEA before 2022.1 reflected XSS via error messages in internal web server was possible |
| CVE-2022-29816 | LOW | 3.2 | 0.3% | Apr 28, 2022 | In JetBrains IntelliJ IDEA before 2022.1 HTML injection into IDE messages was possible |
| CVE-2022-29815 | MEDIUM | 6.7 | 0.2% | Apr 28, 2022 | In JetBrains IntelliJ IDEA before 2022.1 local code execution via workspace settings was possible |
| CVE-2022-29814 | HIGH | 7.7 | 0.2% | Apr 28, 2022 | In JetBrains IntelliJ IDEA before 2022.1 local code execution via HTML descriptions in custom JSON schemas was possible |
| CVE-2022-29813 | MEDIUM | 6.7 | 0.2% | Apr 28, 2022 | In JetBrains IntelliJ IDEA before 2022.1 local code execution via custom Pandoc path was possible |
| CVE-2022-29812 | LOW | 2.3 | 0.2% | Apr 28, 2022 | In JetBrains IntelliJ IDEA before 2022.1 notification mechanisms about using Unicode directionality formatting character... |
| CVE-2022-29811 | MEDIUM | 4.8 | 0.5% | Apr 28, 2022 | In JetBrains Hub before 2022.1.14638 stored XSS via project icon was possible. |
| CVE-2022-1509 | HIGH | 8.8 | 4.5% | Apr 28, 2022 | Command Injection Vulnerability in GitHub repository hestiacp/hestiacp prior to 1.5.12. An authenticated remote attacker... |
| CVE-2022-28719 | CRITICAL | 9.8 | 4.3% | Apr 28, 2022 | Missing authentication for critical function in AssetView prior to Ver.13.2.0 allows a remote unauthenticated attacker w... |
| CVE-2022-29869 | MEDIUM | 5.3 | 1.8% | Apr 28, 2022 | cifs-utils through 6.14, with verbose logging, can cause an information leak when a file contains = (equal sign) charact... |
| CVE-2022-29859 | CRITICAL | 9.8 | 1.2% | Apr 27, 2022 | component/common/network/dhcp/dhcps.c in ambiot amb1_sdk (aka SDK for Ameba1) before 2022-03-11 mishandles data structur... |
| CVE-2022-24891 | MEDIUM | 6.1 | 1.6% | Apr 27, 2022 | ESAPI (The OWASP Enterprise Security API) is a free, open source, web application security control library. Prior to ver... |
| CVE-2022-24736 | MEDIUM | 5.5 | 1.5% | Apr 27, 2022 | Redis is an in-memory database that persists on disk. Prior to versions 6.2.7 and 7.0.0, an attacker attempting to load ... |
| CVE-2022-24735 | HIGH | 7.8 | 2.2% | Apr 27, 2022 | Redis is an in-memory database that persists on disk. By exploiting weaknesses in the Lua script execution environment, ... |
| CVE-2022-28197 | MEDIUM | 5 | 0.2% | Apr 27, 2022 | NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot ext4_mount function, where Insufficient validat... |
| CVE-2022-28196 | MEDIUM | 4.6 | 0.2% | Apr 27, 2022 | NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot blob_decompress function, where insufficient va... |
| CVE-2022-28195 | MEDIUM | 5.7 | 0.2% | Apr 27, 2022 | NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot ext4_read_file function, where insufficient val... |
| CVE-2022-28194 | MEDIUM | 5.6 | 0.3% | Apr 27, 2022 | NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot module tegrabl_cbo.c, where, if TFTP is enabled... |
| CVE-2022-28193 | MEDIUM | 5.6 | 0.3% | Apr 27, 2022 | NVIDIA Jetson Linux Driver Package contains a vulnerability in the Cboot module tegrabl_cbo.c, where insufficient valida... |
| CVE-2022-24372 | MEDIUM | 4.6 | 0.5% | Apr 27, 2022 | Linksys MR9600 devices before 2.0.5 allow attackers to read arbitrary files via a symbolic link to the root directory of... |
| CVE-2022-22315 | HIGH | 8.8 | 0.7% | Apr 27, 2022 | IBM UrbanCode Deploy (UCD) 7.2.2.1 could allow an authenticated user with special permissions to obtain elevated privile... |
| CVE-2022-23822 | MEDIUM | 6.8 | 0.3% | Apr 27, 2022 | In this physical attack, an attacker may potentially exploit the Zynq-7000 SoC First Stage Boot Loader (FSBL) by bypassi... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now