2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-26251HIGH7.2The HTTP interface of Synaman v5.1 and below was discovered to allow authenticated attackers to execute arbitrary code a...
CVE-2022-26250HIGH7.8Synaman v5.1 and below was discovered to contain weak file permissions which allows authenticated attackers to escalate ...
CVE-2022-28468CRITICAL9.8Payroll Management System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter.
CVE-2022-28467CRITICAL9.8Online Student Admission v1.0 was discovered to contain a SQL injection vulnerability via the txtapplicationID parameter...
CVE-2022-28116CRITICAL9.8Online Banking System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter.
CVE-2022-28115CRITICAL9.8Online Sports Complex Booking v1.0 was discovered to contain a SQL injection vulnerability via the id parameter.
CVE-2022-27304CRITICAL9.8Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via the user parameter.
CVE-2022-27124CRITICAL9.8Insurance Management System 1.0 was discovered to contain a SQL injection vulnerability via the username parameter.
CVE-2022-27123CRITICAL9.8Employee Performance Evaluation v1.0 was discovered to contain a SQL injection vulnerability via the email parameter.
CVE-2022-26912HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-26909HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-26908HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-26900HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-26895HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-26894HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-26891HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-26628CRITICAL9.8Matrimony v1.0 was discovered to contain a SQL injection vulnerability via the Password parameter.
CVE-2022-24523MEDIUM4.3Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2022-24475HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-23974HIGH7.5In 0.9.3 or older versions of Apache Pinot segment upload path allowed segment directories to be imported into pinot tab...
CVE-2022-28219CRITICAL9.8Cewolf in Zoho ManageEngine ADAudit Plus before 7060 is vulnerable to an unauthenticated XXE attack that leads to Remote...
CVE-2022-25373MEDIUM5.4Zoho ManageEngine SupportCenter Plus before 11020 allows Stored XSS in the request history.
CVE-2022-25245MEDIUM5.3Zoho ManageEngine ServiceDesk Plus before 13001 allows anyone to know the organisation's default currency name.
CVE-2022-24978HIGH8.8Zoho ManageEngine ADAudit Plus before 7055 allows authenticated Privilege Escalation on Integrated products. This occurs...
CVE-2022-24811MEDIUM5.4Combodi iTop is a web based IT Service Management tool. Prior to versions 2.7.6 and 3.0.0, cross-site scripting is possi...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now