2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-2128CRITICAL9.8Unrestricted Upload of File with Dangerous Type in GitHub repository polonel/trudesk prior to 1.2.4.
CVE-2022-22318CRITICAL9.8IBM Curam Social Program Management 8.0.0 and 8.0.1 does not invalidate session after logout which could allow an authen...
CVE-2022-22317CRITICAL9.8IBM Curam Social Program Management 8.0.0 and 8.0.1 does not invalidate session after logout which could allow an authen...
CVE-2022-31795CRITICAL9.8An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04. The vulnera...
CVE-2022-31794CRITICAL9.8An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04. The vulnera...
CVE-2022-1905CRITICAL9.8The Events Made Easy WordPress plugin before 2.2.81 does not properly sanitise and escape a parameter before using it in...
CVE-2022-2023CRITICAL9.8Incorrect Use of Privileged APIs in GitHub repository polonel/trudesk prior to 1.2.4.
CVE-2022-34005CRITICAL9.8An issue was discovered in TitanFTP (aka Titan FTP) NextGen before 1.2.1050. There is Remote Code Execution due to a har...
CVE-2022-31874CRITICAL9.8ASUS RT-N53 3.0.0.4.376.3754 has a command injection vulnerability in the SystemCmd parameter of the apply.cgi interface...
CVE-2022-31941CRITICAL9.8Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via \rdms\admin?page=user\manage_user&id=.
CVE-2022-29496CRITICAL9.8A stack-based buffer overflow vulnerability exists in the BlynkConsole.h runCommand functionality of Blynk -Library v1.0...
CVE-2022-21806CRITICAL9.8A use-after-free vulnerability exists in the mips_collector appsrv_server functionality of Anker Eufy Homebase 2 2.1.8.5...
CVE-2022-30422CRITICAL9.8Proietti Tech srl Planet Time Enterprise 4.2.0.1,4.2.0.0,4.1.0.0,4.0.0.0,3.3.1.0,3.3.0.0 is vulnerable to Remote code ex...
CVE-2022-22485CRITICAL9.8In some cases, an unsuccessful attempt to log into IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.14.000 d...
CVE-2022-31357CRITICAL9.8Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/admin/inventory/inde...
CVE-2022-31356CRITICAL9.8Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/admin/store/index.ph...
CVE-2022-31355CRITICAL9.8Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/index.php?q=category...
CVE-2022-31784CRITICAL9.8A vulnerability in the management interface of MiVoice Business through 9.3 PR1 and MiVoice Business Express through 8.0...
CVE-2022-31296CRITICAL9.8Online Discussion Forum Site 1 was discovered to contain a blind SQL injection vulnerability via the component /odfs/pos...
CVE-2022-30329CRITICAL9.8An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. An OS injection vulnerability exists within the web...
CVE-2022-33754CRITICAL9.8CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that cou...
CVE-2022-33752CRITICAL9.8CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that cou...
CVE-2022-33750CRITICAL9.8CA Automic Automation 12.2 and 12.3 contain an authentication error vulnerability in the Automic agent that could allow ...
CVE-2022-24562CRITICAL9.8In IOBit IOTransfer 4.3.1.1561, an unauthenticated attacker can send GET and POST requests to Airserv and gain arbitrary...
CVE-2022-31384CRITICAL9.8Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the fullname parameter in a...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now