2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-1952 | CRITICAL | 9.8 | 17.6% | Jul 11, 2022 | The Free Booking Plugin for Hotels, Restaurant and Car Rental WordPress plugin before 1.1.16 suffers from insufficient i... |
| CVE-2022-1057 | CRITICAL | 9.8 | 6.7% | Jul 11, 2022 | The Pricing Deals for WooCommerce WordPress plugin through 2.0.2.02 does not properly sanitise and escape a parameter be... |
| CVE-2022-2302 | CRITICAL | 9.8 | 1.6% | Jul 11, 2022 | Multiple Lenze products of the cabinet series skip the password verification upon second login. After a user has been lo... |
| CVE-2022-2368 | CRITICAL | 9.8 | 0.9% | Jul 11, 2022 | Authentication Bypass by Spoofing in GitHub repository microweber/microweber prior to 1.2.20. |
| CVE-2022-32294 | CRITICAL | 9.8 | 2.0% | Jul 11, 2022 | Zimbra Collaboration Open Source 8.8.15 does not encrypt the initial-login randomly created password (from the "zmprove ... |
| CVE-2022-31588 | CRITICAL | 9.3 | 1.1% | Jul 11, 2022 | The zippies/testplatform repository through 2016-07-19 on GitHub allows absolute path traversal because the Flask send_f... |
| CVE-2022-31587 | CRITICAL | 9.3 | 1.1% | Jul 11, 2022 | The yuriyouzhou/KG-fashion-chatbot repository through 2018-05-22 on GitHub allows absolute path traversal because the Fl... |
| CVE-2022-31586 | CRITICAL | 9.3 | 1.1% | Jul 11, 2022 | The unizar-30226-2019-06/ChangePop-Back repository through 2019-06-04 on GitHub allows absolute path traversal because t... |
| CVE-2022-31585 | CRITICAL | 9.3 | 1.1% | Jul 11, 2022 | The umeshpatil-dev/Home__internet repository through 2020-08-28 on GitHub allows absolute path traversal because the Fla... |
| CVE-2022-31584 | CRITICAL | 9.3 | 1.2% | Jul 11, 2022 | The stonethree/s3label repository through 2019-08-14 on GitHub allows absolute path traversal because the Flask send_fil... |
| CVE-2022-31583 | CRITICAL | 9.3 | 1.2% | Jul 11, 2022 | The sravaniboinepelli/AutomatedQuizEval repository through 2020-04-27 on GitHub allows absolute path traversal because t... |
| CVE-2022-31582 | CRITICAL | 9.3 | 1.2% | Jul 11, 2022 | The shaolo1/VideoServer repository through 2019-09-21 on GitHub allows absolute path traversal because the Flask send_fi... |
| CVE-2022-31581 | CRITICAL | 9.3 | 1.2% | Jul 11, 2022 | The scorelab/OpenMF repository before 2022-05-03 on GitHub allows absolute path traversal because the Flask send_file fu... |
| CVE-2022-31580 | CRITICAL | 9.3 | 1.2% | Jul 11, 2022 | The sanojtharindu/caretakerr-api repository through 2021-05-17 on GitHub allows absolute path traversal because the Flas... |
| CVE-2022-31579 | CRITICAL | 9.3 | 1.1% | Jul 11, 2022 | The ralphjzhang/iasset repository through 2022-05-04 on GitHub allows absolute path traversal because the Flask send_fil... |
| CVE-2022-31577 | CRITICAL | 9.3 | 1.1% | Jul 11, 2022 | The longmaoteamtf/audio_aligner_app repository through 2020-01-10 on GitHub allows absolute path traversal because the F... |
| CVE-2022-31576 | CRITICAL | 9.3 | 1.2% | Jul 11, 2022 | The heidi-luong1109/shackerpanel repository through 2021-05-25 on GitHub allows absolute path traversal because the Flas... |
| CVE-2022-31575 | CRITICAL | 9.3 | 1.2% | Jul 11, 2022 | The duducosmos/livro_python repository through 2018-06-06 on GitHub allows absolute path traversal because the Flask sen... |
| CVE-2022-31574 | CRITICAL | 9.3 | 1.2% | Jul 11, 2022 | The deepaliupadhyay/RealEstate repository through 2018-11-30 on GitHub allows absolute path traversal because the Flask ... |
| CVE-2022-31573 | CRITICAL | 9.3 | 1.2% | Jul 11, 2022 | The chainer/chainerrl-visualizer repository through 0.1.1 on GitHub allows absolute path traversal because the Flask sen... |
| CVE-2022-31572 | CRITICAL | 9.3 | 1.1% | Jul 11, 2022 | The ceee-vip/cockybook repository through 2015-04-16 on GitHub allows absolute path traversal because the Flask send_fil... |
| CVE-2022-31571 | CRITICAL | 9.3 | 1.1% | Jul 11, 2022 | The akashtalole/python-flask-restful-api repository through 2019-09-16 on GitHub allows absolute path traversal because ... |
| CVE-2022-31570 | CRITICAL | 9.8 | 1.0% | Jul 11, 2022 | The adriankoczuruek/ceneo-web-scrapper repository through 2021-03-15 on GitHub allows absolute path traversal because th... |
| CVE-2022-31568 | CRITICAL | 9.3 | 1.1% | Jul 11, 2022 | The Rexians/rex-web repository through 2022-06-05 on GitHub allows absolute path traversal because the Flask send_file f... |
| CVE-2022-31567 | CRITICAL | 9.3 | 1.1% | Jul 11, 2022 | The DSABenchmark/DSAB repository through 2.1 on GitHub allows absolute path traversal because the Flask send_file functi... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now