2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-22187 | HIGH | 7.8 | 0.3% | Apr 14, 2022 | An Improper Privilege Management vulnerability in the Windows Installer framework used in the Juniper Networks Juniper I... |
| CVE-2022-22186 | MEDIUM | 6.5 | 0.6% | Apr 14, 2022 | Due to an Improper Initialization vulnerability in Juniper Networks Junos OS on EX4650 devices, packets received on the ... |
| CVE-2022-22185 | HIGH | 7.5 | 0.9% | Apr 14, 2022 | A vulnerability in Juniper Networks Junos OS on SRX Series, allows a network-based unauthenticated attacker to cause a D... |
| CVE-2022-22183 | HIGH | 7.5 | 1.0% | Apr 14, 2022 | An Improper Access Control vulnerability in Juniper Networks Junos OS Evolved allows a network-based unauthenticated att... |
| CVE-2022-22182 | MEDIUM | 6.1 | 0.7% | Apr 14, 2022 | A Cross-site Scripting (XSS) vulnerability in Juniper Networks Junos OS J-Web allows an attacker to construct a URL that... |
| CVE-2022-22181 | MEDIUM | 5.4 | 0.6% | Apr 14, 2022 | A reflected Cross-site Scripting (XSS) vulnerability in J-Web of Juniper Networks Junos OS allows a network-based authen... |
| CVE-2022-27008 | HIGH | 7.5 | 1.6% | Apr 14, 2022 | nginx njs 0.7.2 is vulnerable to Buffer Overflow. Type confused in Array.prototype.concat() when a slow array appended e... |
| CVE-2022-27007 | CRITICAL | 9.8 | 1.5% | Apr 14, 2022 | nginx njs 0.7.2 is affected suffers from Use-after-free in njs_function_frame_alloc() when it try to invoke from a resto... |
| CVE-2022-1258 | HIGH | 7.2 | 0.9% | Apr 14, 2022 | A blind SQL injection vulnerability in the ePolicy Orchestrator (ePO) extension of MA prior to 5.7.6 can be exploited by... |
| CVE-2022-1257 | MEDIUM | 5.5 | 0.6% | Apr 14, 2022 | Insecure storage of sensitive information vulnerability in MA for Linux, macOS, and Windows prior to 5.7.6 allows a loca... |
| CVE-2022-1256 | HIGH | 7.8 | 0.3% | Apr 14, 2022 | A local privilege escalation vulnerability in MA for Windows prior to 5.7.6 allows a local low privileged user to gain s... |
| CVE-2022-27458 | — | — | — | Apr 14, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-27447. Reason: This candidate is a reservation d... |
| CVE-2022-27457 | HIGH | 7.5 | 1.6% | Apr 14, 2022 | MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component my_mb_wc_latin1 at /string... |
| CVE-2022-27456 | HIGH | 7.5 | 2.0% | Apr 14, 2022 | MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component VDec::VDec at /sql/sql_typ... |
| CVE-2022-27455 | HIGH | 7.5 | 1.5% | Apr 14, 2022 | MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component my_wildcmp_8bit_impl at /s... |
| CVE-2022-27452 | HIGH | 7.5 | 2.1% | Apr 14, 2022 | MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_cmpfunc.cc. |
| CVE-2022-27451 | HIGH | 7.5 | 1.6% | Apr 14, 2022 | MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/field_conv.cc. |
| CVE-2022-27449 | HIGH | 7.5 | 2.1% | Apr 14, 2022 | MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_func.cc:148. |
| CVE-2022-27448 | HIGH | 7.5 | 2.1% | Apr 14, 2022 | There is an Assertion failure in MariaDB Server v10.9 and below via 'node->pcur->rel_pos == BTR_PCUR_ON' at /row/row0mys... |
| CVE-2022-27447 | HIGH | 7.5 | 2.1% | Apr 14, 2022 | MariaDB Server v10.9 and below was discovered to contain a use-after-free via the component Binary_string::free_buffer()... |
| CVE-2022-27446 | HIGH | 7.5 | 1.5% | Apr 14, 2022 | MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_cmpfunc.h. |
| CVE-2022-27445 | HIGH | 7.5 | 2.1% | Apr 14, 2022 | MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/sql_window.cc. |
| CVE-2022-27444 | HIGH | 7.5 | 1.4% | Apr 14, 2022 | MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_subselect.cc. |
| CVE-2022-26507 | CRITICAL | 9.8 | 2.2% | Apr 14, 2022 | A heap-based buffer overflow exists in XML Decompression DecodeTreeBlock in AT&T Labs Xmill 0.7. A crafted input file ca... |
| CVE-2022-1351 | MEDIUM | 5.4 | 0.8% | Apr 14, 2022 | Stored XSS in Tooltip in GitHub repository pimcore/pimcore prior to 10.4. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now