2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-23732HIGH8.8A path traversal vulnerability was identified in GitHub Enterprise Server management console that allowed the bypass of ...
CVE-2022-0610HIGH8.8Inappropriate implementation in Gamepad API in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potenti...
CVE-2022-0609HIGH8.8Use after free in Animation in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit hea...
CVE-2022-0608HIGH8.8Integer overflow in Mojo in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap c...
CVE-2022-0607HIGH8.8Use after free in GPU in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corr...
CVE-2022-0606HIGH8.8Use after free in ANGLE in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap co...
CVE-2022-0605HIGH8.8Use after free in Webstore API in Google Chrome prior to 98.0.4758.102 allowed an attacker who convinced a user to insta...
CVE-2022-0604HIGH8.8Heap buffer overflow in Tab Groups in Google Chrome prior to 98.0.4758.102 allowed an attacker who convinced a user to i...
CVE-2022-0603HIGH8.8Use after free in File Manager in Google Chrome on Chrome OS prior to 98.0.4758.102 allowed a remote attacker to potenti...
CVE-2022-27442HIGH7.5TPCMS v3.2 allows attackers to access the ThinkPHP log directory and obtain sensitive information such as the administra...
CVE-2022-27441MEDIUM4.8A stored cross-site scripting (XSS) vulnerability in TPCMS v3.2 allows attackers to execute arbitrary web scripts or HTM...
CVE-2022-27651MEDIUM6.8A flaw was found in buildah where containers were incorrectly started with non-empty default permissions. A bug was foun...
CVE-2022-27650HIGH7.5A flaw was found in crun where containers were incorrectly started with non-empty default permissions. A vulnerability w...
CVE-2022-27649HIGH7.5A flaw was found in Podman, where containers were started incorrectly with non-empty default permissions. A vulnerabilit...
CVE-2022-27609MEDIUM6Forcepoint One Endpoint prior to version 22.01 installed on Microsoft Windows does not provide sufficient anti-tampering...
CVE-2022-27608MEDIUM6Forcepoint One Endpoint prior to version 22.01 installed on Microsoft Windows is vulnerable to registry key tampering by...
CVE-2022-25618MEDIUM4.8Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in wpDataTables (WordPress plugin) versions <= 2....
CVE-2022-25613MEDIUM5.4Authenticated Persistent Cross-Site Scripting (XSS) vulnerability in FV Flowplayer Video Player (WordPress plugin) versi...
CVE-2022-23700MEDIUM5.5A local unauthorized read access to files vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has ...
CVE-2022-23699HIGH7.8A local authentication restriction bypass vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has ...
CVE-2022-23698HIGH7.5A remote unauthenticated disclosure of information vulnerability was discovered in HPE OneView version(s): Prior to 6.6....
CVE-2022-23697MEDIUM6.1A remote cross-site scripting (xss) vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has provid...
CVE-2022-1233MEDIUM6.1URL Confusion When Scheme Not Supplied in GitHub repository medialize/uri.js prior to 1.19.11.
CVE-2022-1190MEDIUM5.4Improper handling of user input in GitLab CE/EE versions 8.3 prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14...
CVE-2022-1189MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.2 before 14.7.7, all versions start...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now