2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-2128 | CRITICAL | 9.8 | 2.6% | Jun 20, 2022 | Unrestricted Upload of File with Dangerous Type in GitHub repository polonel/trudesk prior to 1.2.4. |
| CVE-2022-22318 | CRITICAL | 9.8 | 0.4% | Jun 20, 2022 | IBM Curam Social Program Management 8.0.0 and 8.0.1 does not invalidate session after logout which could allow an authen... |
| CVE-2022-22317 | CRITICAL | 9.8 | 0.5% | Jun 20, 2022 | IBM Curam Social Program Management 8.0.0 and 8.0.1 does not invalidate session after logout which could allow an authen... |
| CVE-2022-31795 | CRITICAL | 9.8 | 2.8% | Jun 20, 2022 | An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04. The vulnera... |
| CVE-2022-31794 | CRITICAL | 9.8 | 2.8% | Jun 20, 2022 | An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04. The vulnera... |
| CVE-2022-1905 | CRITICAL | 9.8 | 36.7% | Jun 20, 2022 | The Events Made Easy WordPress plugin before 2.2.81 does not properly sanitise and escape a parameter before using it in... |
| CVE-2022-2023 | CRITICAL | 9.8 | 3.0% | Jun 20, 2022 | Incorrect Use of Privileged APIs in GitHub repository polonel/trudesk prior to 1.2.4. |
| CVE-2022-34005 | CRITICAL | 9.8 | 1.6% | Jun 19, 2022 | An issue was discovered in TitanFTP (aka Titan FTP) NextGen before 1.2.1050. There is Remote Code Execution due to a har... |
| CVE-2022-31874 | CRITICAL | 9.8 | 18.7% | Jun 17, 2022 | ASUS RT-N53 3.0.0.4.376.3754 has a command injection vulnerability in the SystemCmd parameter of the apply.cgi interface... |
| CVE-2022-31941 | CRITICAL | 9.8 | 1.0% | Jun 17, 2022 | Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via \rdms\admin?page=user\manage_user&id=. |
| CVE-2022-29496 | CRITICAL | 9.8 | 1.9% | Jun 17, 2022 | A stack-based buffer overflow vulnerability exists in the BlynkConsole.h runCommand functionality of Blynk -Library v1.0... |
| CVE-2022-21806 | CRITICAL | 9.8 | 2.2% | Jun 17, 2022 | A use-after-free vulnerability exists in the mips_collector appsrv_server functionality of Anker Eufy Homebase 2 2.1.8.5... |
| CVE-2022-30422 | CRITICAL | 9.8 | 3.8% | Jun 17, 2022 | Proietti Tech srl Planet Time Enterprise 4.2.0.1,4.2.0.0,4.1.0.0,4.0.0.0,3.3.1.0,3.3.0.0 is vulnerable to Remote code ex... |
| CVE-2022-22485 | CRITICAL | 9.8 | 1.1% | Jun 17, 2022 | In some cases, an unsuccessful attempt to log into IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.14.000 d... |
| CVE-2022-31357 | CRITICAL | 9.8 | 1.0% | Jun 17, 2022 | Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/admin/inventory/inde... |
| CVE-2022-31356 | CRITICAL | 9.8 | 1.0% | Jun 17, 2022 | Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/admin/store/index.ph... |
| CVE-2022-31355 | CRITICAL | 9.8 | 1.0% | Jun 17, 2022 | Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/index.php?q=category... |
| CVE-2022-31784 | CRITICAL | 9.8 | 1.5% | Jun 17, 2022 | A vulnerability in the management interface of MiVoice Business through 9.3 PR1 and MiVoice Business Express through 8.0... |
| CVE-2022-31296 | CRITICAL | 9.8 | 2.3% | Jun 17, 2022 | Online Discussion Forum Site 1 was discovered to contain a blind SQL injection vulnerability via the component /odfs/pos... |
| CVE-2022-30329 | CRITICAL | 9.8 | 1.8% | Jun 16, 2022 | An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. An OS injection vulnerability exists within the web... |
| CVE-2022-33754 | CRITICAL | 9.8 | 1.7% | Jun 16, 2022 | CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that cou... |
| CVE-2022-33752 | CRITICAL | 9.8 | 1.7% | Jun 16, 2022 | CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that cou... |
| CVE-2022-33750 | CRITICAL | 9.8 | 1.6% | Jun 16, 2022 | CA Automic Automation 12.2 and 12.3 contain an authentication error vulnerability in the Automic agent that could allow ... |
| CVE-2022-24562 | CRITICAL | 9.8 | 53.9% | Jun 16, 2022 | In IOBit IOTransfer 4.3.1.1561, an unauthenticated attacker can send GET and POST requests to Airserv and gain arbitrary... |
| CVE-2022-31384 | CRITICAL | 9.8 | 1.9% | Jun 16, 2022 | Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the fullname parameter in a... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now