2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23732 | HIGH | 8.8 | 1.7% | Apr 5, 2022 | A path traversal vulnerability was identified in GitHub Enterprise Server management console that allowed the bypass of ... |
| CVE-2022-0610 | HIGH | 8.8 | 0.8% | Apr 5, 2022 | Inappropriate implementation in Gamepad API in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potenti... |
| CVE-2022-0609 | HIGH | 8.8 | 23.5% | Apr 5, 2022 | Use after free in Animation in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit hea... |
| CVE-2022-0608 | HIGH | 8.8 | 1.1% | Apr 5, 2022 | Integer overflow in Mojo in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap c... |
| CVE-2022-0607 | HIGH | 8.8 | 0.8% | Apr 5, 2022 | Use after free in GPU in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corr... |
| CVE-2022-0606 | HIGH | 8.8 | 0.8% | Apr 5, 2022 | Use after free in ANGLE in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap co... |
| CVE-2022-0605 | HIGH | 8.8 | 0.6% | Apr 5, 2022 | Use after free in Webstore API in Google Chrome prior to 98.0.4758.102 allowed an attacker who convinced a user to insta... |
| CVE-2022-0604 | HIGH | 8.8 | 0.7% | Apr 5, 2022 | Heap buffer overflow in Tab Groups in Google Chrome prior to 98.0.4758.102 allowed an attacker who convinced a user to i... |
| CVE-2022-0603 | HIGH | 8.8 | 0.8% | Apr 5, 2022 | Use after free in File Manager in Google Chrome on Chrome OS prior to 98.0.4758.102 allowed a remote attacker to potenti... |
| CVE-2022-27442 | HIGH | 7.5 | 1.0% | Apr 4, 2022 | TPCMS v3.2 allows attackers to access the ThinkPHP log directory and obtain sensitive information such as the administra... |
| CVE-2022-27441 | MEDIUM | 4.8 | 0.4% | Apr 4, 2022 | A stored cross-site scripting (XSS) vulnerability in TPCMS v3.2 allows attackers to execute arbitrary web scripts or HTM... |
| CVE-2022-27651 | MEDIUM | 6.8 | 1.2% | Apr 4, 2022 | A flaw was found in buildah where containers were incorrectly started with non-empty default permissions. A bug was foun... |
| CVE-2022-27650 | HIGH | 7.5 | 1.1% | Apr 4, 2022 | A flaw was found in crun where containers were incorrectly started with non-empty default permissions. A vulnerability w... |
| CVE-2022-27649 | HIGH | 7.5 | 1.4% | Apr 4, 2022 | A flaw was found in Podman, where containers were started incorrectly with non-empty default permissions. A vulnerabilit... |
| CVE-2022-27609 | MEDIUM | 6 | 0.2% | Apr 4, 2022 | Forcepoint One Endpoint prior to version 22.01 installed on Microsoft Windows does not provide sufficient anti-tampering... |
| CVE-2022-27608 | MEDIUM | 6 | 0.2% | Apr 4, 2022 | Forcepoint One Endpoint prior to version 22.01 installed on Microsoft Windows is vulnerable to registry key tampering by... |
| CVE-2022-25618 | MEDIUM | 4.8 | 0.5% | Apr 4, 2022 | Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in wpDataTables (WordPress plugin) versions <= 2.... |
| CVE-2022-25613 | MEDIUM | 5.4 | 0.5% | Apr 4, 2022 | Authenticated Persistent Cross-Site Scripting (XSS) vulnerability in FV Flowplayer Video Player (WordPress plugin) versi... |
| CVE-2022-23700 | MEDIUM | 5.5 | 0.3% | Apr 4, 2022 | A local unauthorized read access to files vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has ... |
| CVE-2022-23699 | HIGH | 7.8 | 0.3% | Apr 4, 2022 | A local authentication restriction bypass vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has ... |
| CVE-2022-23698 | HIGH | 7.5 | 1.4% | Apr 4, 2022 | A remote unauthenticated disclosure of information vulnerability was discovered in HPE OneView version(s): Prior to 6.6.... |
| CVE-2022-23697 | MEDIUM | 6.1 | 0.7% | Apr 4, 2022 | A remote cross-site scripting (xss) vulnerability was discovered in HPE OneView version(s): Prior to 6.6. HPE has provid... |
| CVE-2022-1233 | MEDIUM | 6.1 | 0.8% | Apr 4, 2022 | URL Confusion When Scheme Not Supplied in GitHub repository medialize/uri.js prior to 1.19.11. |
| CVE-2022-1190 | MEDIUM | 5.4 | 87.4% | Apr 4, 2022 | Improper handling of user input in GitLab CE/EE versions 8.3 prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14... |
| CVE-2022-1189 | MEDIUM | 4.3 | 0.7% | Apr 4, 2022 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.2 before 14.7.7, all versions start... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now