2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-25154 | HIGH | 7.3 | 0.2% | Apr 5, 2022 | A DLL hijacking vulnerability in Samsung portable SSD T5 PC software before 1.6.9 could allow a local attacker to escala... |
| CVE-2022-23909 | HIGH | 7.8 | 1.0% | Apr 5, 2022 | There is an unquoted service path in Sherpa Connector Service (SherpaConnectorService.exe) 2020.2.20328.2050. This might... |
| CVE-2022-1213 | HIGH | 8.1 | 0.6% | Apr 5, 2022 | SSRF filter bypass port 80, 433 in GitHub repository livehelperchat/livehelperchat prior to 3.67v. An attacker could mak... |
| CVE-2022-1212 | CRITICAL | 9.8 | 1.7% | Apr 5, 2022 | Use-After-Free in str_escape in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execu... |
| CVE-2022-26615 | MEDIUM | 5.4 | 0.5% | Apr 5, 2022 | A cross-site scripting (XSS) vulnerability in College Website Content Management System v1.0 allows attackers to execute... |
| CVE-2022-26281 | HIGH | 7.5 | 1.1% | Apr 5, 2022 | BigAnt Server v5.6.06 was discovered to contain an incorrect access control issue. |
| CVE-2022-25356 | MEDIUM | 5.3 | 5.9% | Apr 5, 2022 | Alt-N MDaemon Security Gateway through 8.5.0 allows SecurityGateway.dll?view=login XML Injection. |
| CVE-2022-24231 | CRITICAL | 9.8 | 1.7% | Apr 5, 2022 | Simple Student Information System v1.0 was discovered to contain a SQL injection vulnerability via add/Student. |
| CVE-2022-26619 | HIGH | 7.5 | 0.9% | Apr 5, 2022 | Halo Blog CMS v1.4.17 was discovered to allow attackers to upload arbitrary files via the Attachment Upload function. |
| CVE-2022-26585 | CRITICAL | 9.8 | 5.6% | Apr 5, 2022 | Mingsoft MCMS v5.2.7 was discovered to contain a SQL injection vulnerability via /cms/content/list. |
| CVE-2022-25584 | HIGH | 7.5 | 1.2% | Apr 5, 2022 | Seyeon Tech Co., Ltd FlexWATCH FW3170-PS-E Network Video System 4.23-3000_GY allows attackers to access sensitive inform... |
| CVE-2022-0809 | HIGH | 8.8 | 1.0% | Apr 5, 2022 | Out of bounds memory access in WebXR in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to potentially exp... |
| CVE-2022-0808 | HIGH | 8.8 | 0.9% | Apr 5, 2022 | Use after free in Chrome OS Shell in Google Chrome on Chrome OS prior to 99.0.4844.51 allowed a remote attacker who conv... |
| CVE-2022-0807 | MEDIUM | 6.5 | 0.9% | Apr 5, 2022 | Inappropriate implementation in Autofill in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to bypass navi... |
| CVE-2022-0806 | MEDIUM | 6.5 | 1.0% | Apr 5, 2022 | Data leak in Canvas in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user to engage in s... |
| CVE-2022-0805 | HIGH | 8.8 | 0.9% | Apr 5, 2022 | Use after free in Browser Switcher in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user... |
| CVE-2022-0804 | MEDIUM | 6.5 | 0.9% | Apr 5, 2022 | Inappropriate implementation in Full screen mode in Google Chrome on Android prior to 99.0.4844.51 allowed a remote atta... |
| CVE-2022-0803 | MEDIUM | 6.5 | 0.8% | Apr 5, 2022 | Inappropriate implementation in Permissions in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to tamper w... |
| CVE-2022-0802 | MEDIUM | 6.5 | 0.9% | Apr 5, 2022 | Inappropriate implementation in Full screen mode in Google Chrome on Android prior to 99.0.4844.51 allowed a remote atta... |
| CVE-2022-0800 | HIGH | 8.8 | 1.0% | Apr 5, 2022 | Heap buffer overflow in Cast UI in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user to... |
| CVE-2022-0799 | HIGH | 8.8 | 1.0% | Apr 5, 2022 | Insufficient policy enforcement in Installer in Google Chrome on Windows prior to 99.0.4844.51 allowed a remote attacker... |
| CVE-2022-0798 | HIGH | 8.8 | 0.7% | Apr 5, 2022 | Use after free in MediaStream in Google Chrome prior to 99.0.4844.51 allowed an attacker who convinced a user to install... |
| CVE-2022-0797 | HIGH | 8.8 | 1.7% | Apr 5, 2022 | Out of bounds memory access in Mojo in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to perform an out o... |
| CVE-2022-0796 | HIGH | 8.8 | 1.0% | Apr 5, 2022 | Use after free in Media in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to potentially exploit heap cor... |
| CVE-2022-0795 | HIGH | 8.8 | 1.0% | Apr 5, 2022 | Type confusion in Blink Layout in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to potentially exploit h... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now