2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26251 | HIGH | 7.2 | 2.2% | Apr 6, 2022 | The HTTP interface of Synaman v5.1 and below was discovered to allow authenticated attackers to execute arbitrary code a... |
| CVE-2022-26250 | HIGH | 7.8 | 0.3% | Apr 6, 2022 | Synaman v5.1 and below was discovered to contain weak file permissions which allows authenticated attackers to escalate ... |
| CVE-2022-28468 | CRITICAL | 9.8 | 1.6% | Apr 5, 2022 | Payroll Management System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter. |
| CVE-2022-28467 | CRITICAL | 9.8 | 1.1% | Apr 5, 2022 | Online Student Admission v1.0 was discovered to contain a SQL injection vulnerability via the txtapplicationID parameter... |
| CVE-2022-28116 | CRITICAL | 9.8 | 1.2% | Apr 5, 2022 | Online Banking System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter. |
| CVE-2022-28115 | CRITICAL | 9.8 | 1.2% | Apr 5, 2022 | Online Sports Complex Booking v1.0 was discovered to contain a SQL injection vulnerability via the id parameter. |
| CVE-2022-27304 | CRITICAL | 9.8 | 1.3% | Apr 5, 2022 | Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via the user parameter. |
| CVE-2022-27124 | CRITICAL | 9.8 | 1.1% | Apr 5, 2022 | Insurance Management System 1.0 was discovered to contain a SQL injection vulnerability via the username parameter. |
| CVE-2022-27123 | CRITICAL | 9.8 | 1.3% | Apr 5, 2022 | Employee Performance Evaluation v1.0 was discovered to contain a SQL injection vulnerability via the email parameter. |
| CVE-2022-26912 | HIGH | 8.3 | 1.7% | Apr 5, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-26909 | HIGH | 8.3 | 1.7% | Apr 5, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-26908 | HIGH | 8.3 | 1.7% | Apr 5, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-26900 | HIGH | 8.3 | 1.7% | Apr 5, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-26895 | HIGH | 8.3 | 1.7% | Apr 5, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-26894 | HIGH | 8.3 | 1.7% | Apr 5, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-26891 | HIGH | 8.3 | 1.7% | Apr 5, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-26628 | CRITICAL | 9.8 | 1.4% | Apr 5, 2022 | Matrimony v1.0 was discovered to contain a SQL injection vulnerability via the Password parameter. |
| CVE-2022-24523 | MEDIUM | 4.3 | 1.3% | Apr 5, 2022 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2022-24475 | HIGH | 8.3 | 1.7% | Apr 5, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-23974 | HIGH | 7.5 | 2.0% | Apr 5, 2022 | In 0.9.3 or older versions of Apache Pinot segment upload path allowed segment directories to be imported into pinot tab... |
| CVE-2022-28219 | CRITICAL | 9.8 | 97.0% | Apr 5, 2022 | Cewolf in Zoho ManageEngine ADAudit Plus before 7060 is vulnerable to an unauthenticated XXE attack that leads to Remote... |
| CVE-2022-25373 | MEDIUM | 5.4 | 1.1% | Apr 5, 2022 | Zoho ManageEngine SupportCenter Plus before 11020 allows Stored XSS in the request history. |
| CVE-2022-25245 | MEDIUM | 5.3 | 1.3% | Apr 5, 2022 | Zoho ManageEngine ServiceDesk Plus before 13001 allows anyone to know the organisation's default currency name. |
| CVE-2022-24978 | HIGH | 8.8 | 1.1% | Apr 5, 2022 | Zoho ManageEngine ADAudit Plus before 7055 allows authenticated Privilege Escalation on Integrated products. This occurs... |
| CVE-2022-24811 | MEDIUM | 5.4 | 0.7% | Apr 5, 2022 | Combodi iTop is a web based IT Service Management tool. Prior to versions 2.7.6 and 3.0.0, cross-site scripting is possi... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now