2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-45041 | HIGH | 7.5 | 0.8% | Dec 19, 2022 | SQL Injection exits in xinhu < 2.5.0 |
| CVE-2022-43883 | HIGH | 7.5 | 0.6% | Dec 19, 2022 | IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could be vulnerable to a Log Injection attack by constructing URLs from... |
| CVE-2022-41418 | HIGH | 7.2 | 1.2% | Dec 19, 2022 | An issue in the component BlogEngine/BlogEngine.NET/AppCode/Api/UploadController.cs of BlogEngine.NET v3.3.8.0 allows at... |
| CVE-2022-3775 | HIGH | 7.1 | 0.9% | Dec 19, 2022 | When rendering certain unicode sequences, grub2's font code doesn't proper validate if the informed glyph's width and he... |
| CVE-2022-43289 | HIGH | 7.8 | 0.4% | Dec 19, 2022 | Deark v.1.6.2 was discovered to contain a stack overflow via the do_prism_read_palette() function at /modules/atari-img.... |
| CVE-2022-42947 | HIGH | 7.8 | 0.3% | Dec 19, 2022 | A maliciously crafted X_B file when parsed through Autodesk Maya 2023 and 2022 can be used to write beyond the allocated... |
| CVE-2022-42946 | HIGH | 7.1 | 0.3% | Dec 19, 2022 | Parsing a maliciously crafted X_B and PRT file can force Autodesk Maya 2023 and 2022 to read beyond allocated buffer. Th... |
| CVE-2022-42945 | HIGH | 7.8 | 0.3% | Dec 19, 2022 | DWG TrueViewTM 2023 version has a DLL Search Order Hijacking vulnerability. Successful exploitation by a malicious attac... |
| CVE-2022-4106 | HIGH | 7.5 | 0.9% | Dec 19, 2022 | The Wholesale Market for WooCommerce WordPress plugin before 1.0.7 does not have authorisation check, as well as does no... |
| CVE-2022-4061 | HIGH | 7.5 | 1.4% | Dec 19, 2022 | The JobBoardWP WordPress plugin before 1.2.2 does not properly validate file names and types in its file upload function... |
| CVE-2022-44755 | HIGH | 7.8 | 0.7% | Dec 19, 2022 | HCL Notes is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView. This could ... |
| CVE-2022-44754 | HIGH | 7.8 | 0.6% | Dec 19, 2022 | HCL Domino is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView. This could... |
| CVE-2022-44753 | HIGH | 7.8 | 0.6% | Dec 19, 2022 | HCL Notes is susceptible to a stack based buffer overflow vulnerability in wp6sr.dll in Micro Focus KeyView. This could... |
| CVE-2022-44752 | HIGH | 7.8 | 0.6% | Dec 19, 2022 | HCL Domino is susceptible to a stack based buffer overflow vulnerability in wp6sr.dll in Micro Focus KeyView. This coul... |
| CVE-2022-44751 | HIGH | 7.8 | 0.6% | Dec 19, 2022 | HCL Notes is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView. This could ... |
| CVE-2022-44750 | HIGH | 7.8 | 0.6% | Dec 19, 2022 | HCL Domino is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView. This could... |
| CVE-2022-3875 | HIGH | 7.5 | 1.0% | Dec 19, 2022 | A vulnerability classified as critical was found in Click Studios Passwordstate and Passwordstate Browser Extension Chro... |
| CVE-2022-38659 | HIGH | 7.8 | 0.1% | Dec 19, 2022 | In specific scenarios, on Windows the operator credentials may be encrypted in a manner that is not completely machine-d... |
| CVE-2022-32749 | HIGH | 7.5 | 1.3% | Dec 19, 2022 | Improper Check for Unusual or Exceptional Conditions vulnerability handling requests in Apache Traffic Server allows an... |
| CVE-2022-43443 | HIGH | 8.8 | 0.8% | Dec 19, 2022 | OS command injection vulnerability in Buffalo network devices allows an network-adjacent attacker to execute an arbitrar... |
| CVE-2022-4604 | HIGH | 8.8 | 0.3% | Dec 18, 2022 | A vulnerability classified as problematic was found in wp-english-wp-admin Plugin up to 1.5.1. Affected by this vulnerab... |
| CVE-2022-47521 | HIGH | 7.8 | 0.3% | Dec 18, 2022 | An issue was discovered in the Linux kernel before 6.0.11. Missing validation of IEEE80211_P2P_ATTR_CHANNEL_LIST in driv... |
| CVE-2022-47520 | HIGH | 7.1 | 0.3% | Dec 18, 2022 | An issue was discovered in the Linux kernel before 6.0.11. Missing offset validation in drivers/net/wireless/microchip/w... |
| CVE-2022-47519 | HIGH | 7.8 | 0.3% | Dec 18, 2022 | An issue was discovered in the Linux kernel before 6.0.11. Missing validation of IEEE80211_P2P_ATTR_OPER_CHANNEL in driv... |
| CVE-2022-47518 | HIGH | 7.8 | 0.3% | Dec 18, 2022 | An issue was discovered in the Linux kernel before 6.0.11. Missing validation of the number of channels in drivers/net/w... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now