2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-24821 | HIGH | 8.1 | 0.8% | Apr 8, 2022 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Simple users ca... |
| CVE-2022-1284 | MEDIUM | 5.5 | 0.8% | Apr 8, 2022 | heap-use-after-free in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability is capable of inducing den... |
| CVE-2022-27152 | MEDIUM | 5.7 | 0.3% | Apr 8, 2022 | Roku devices running RokuOS v9.4.0 build 4200 or earlier that uses a Realtek WiFi chip is vulnerable to Arbitrary file m... |
| CVE-2022-1283 | MEDIUM | 5.5 | 0.7% | Apr 8, 2022 | NULL Pointer Dereference in r_bin_ne_get_entrypoints function in GitHub repository radareorg/radare2 prior to 5.6.8. Thi... |
| CVE-2022-27148 | MEDIUM | 5.5 | 0.8% | Apr 8, 2022 | GPAC mp4box 1.1.0-DEV-rev1663-g881c6a94a-master is vulnerable to Integer Overflow. |
| CVE-2022-27147 | MEDIUM | 5.5 | 0.7% | Apr 8, 2022 | GPAC mp4box 1.1.0-DEV-rev1727-g8be34973d-master has a use-after-free vulnerability in function gf_node_get_attribute_by_... |
| CVE-2022-27146 | MEDIUM | 5.5 | 0.8% | Apr 8, 2022 | GPAC mp4box 1.1.0-DEV-rev1759-geb2d1e6dd-has a heap-buffer-overflow vulnerability in function gf_isom_apple_enum_tag. |
| CVE-2022-27145 | MEDIUM | 5.5 | 0.8% | Apr 8, 2022 | GPAC mp4box 1.1.0-DEV-rev1727-g8be34973d-master has a stack-overflow vulnerability in function gf_isom_get_sample_for_mo... |
| CVE-2022-27047 | CRITICAL | 9.8 | 1.1% | Apr 8, 2022 | mogu_blog_cms 5.2 suffers from upload arbitrary files without any limitation. |
| CVE-2022-22339 | HIGH | 7.3 | 0.6% | Apr 8, 2022 | IBM Planning Analytics 2.0 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker... |
| CVE-2022-27046 | HIGH | 8.8 | 1.0% | Apr 8, 2022 | libsixel 1.8.6 suffers from a Heap Use After Free vulnerability in in libsixel/src/dither.c:388. |
| CVE-2022-27044 | HIGH | 8.8 | 1.0% | Apr 8, 2022 | libsixel 1.8.6 is affected by Buffer Overflow in libsixel/src/quant.c:876. |
| CVE-2022-24229 | MEDIUM | 6.1 | 1.8% | Apr 8, 2022 | A cross-site scripting (XSS) vulnerability in ONLYOFFICE Document Server Example before v7.0.0 allows remote attackers i... |
| CVE-2022-28002 | HIGH | 7.5 | 1.7% | Apr 8, 2022 | Movie Seat Reservation v1 was discovered to contain an unauthenticated file disclosure vulnerability via /index.php?page... |
| CVE-2022-28001 | CRITICAL | 9.8 | 1.8% | Apr 8, 2022 | Movie Seat Reservation v1 was discovered to contain a SQL injection vulnerability at /index.php?page=reserve via the id ... |
| CVE-2022-28000 | HIGH | 8.8 | 1.5% | Apr 8, 2022 | Car Rental System v1.0 was discovered to contain a SQL injection vulnerability at /Car_Rental/booking.php via the id par... |
| CVE-2022-27992 | HIGH | 8.8 | 1.5% | Apr 8, 2022 | Zoo Management System v1.0 was discovered to contain a SQL injection vulnerability at /public_html/animals via the class... |
| CVE-2022-27991 | MEDIUM | 6.5 | 1.0% | Apr 8, 2022 | Online Banking System in PHP v1 was discovered to contain multiple SQL injection vulnerabilities at /staff_login.php via... |
| CVE-2022-27357 | CRITICAL | 9.8 | 3.3% | Apr 8, 2022 | Ecommerce-Website v1 was discovered to contain an arbitrary file upload vulnerability via /customer_register.php. This v... |
| CVE-2022-27352 | HIGH | 8.8 | 2.5% | Apr 8, 2022 | Simple House Rental System v1 was discovered to contain an arbitrary file upload vulnerability via /app/register.php. Th... |
| CVE-2022-27351 | CRITICAL | 9.8 | 3.2% | Apr 8, 2022 | Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacan... |
| CVE-2022-27349 | HIGH | 7.2 | 2.4% | Apr 8, 2022 | Social Codia SMS v1 was discovered to contain an arbitrary file upload vulnerability via addteacher.php. This vulnerabil... |
| CVE-2022-27348 | MEDIUM | 4.8 | 1.1% | Apr 8, 2022 | Social Codia SMS v1 was discovered to contain a stored cross-site scripting (XSS) vulnerability via add_post.php. This v... |
| CVE-2022-27346 | HIGH | 8.8 | 2.5% | Apr 8, 2022 | Ecommece-Website v1.1.0 was discovered to contain an arbitrary file upload vulnerability via /admin/index.php?slides. Th... |
| CVE-2022-27064 | HIGH | 8.8 | 2.5% | Apr 8, 2022 | Musical World v1 was discovered to contain an arbitrary file upload vulnerability via uploaded_songs.php. This vulnerabi... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now