2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-47517HIGH7.5An issue was discovered in the libsofia-sip fork in drachtio-server before 0.8.19. It allows remote attackers to cause a...
CVE-2022-47516HIGH7.5An issue was discovered in the libsofia-sip fork in drachtio-server before 0.8.20. It allows remote attackers to cause a...
CVE-2022-47515HIGH7.5An issue was discovered in drachtio-server before 0.8.20. It allows remote attackers to cause a denial of service (daemo...
CVE-2022-47514HIGH8.8An XML external entity (XXE) injection vulnerability in XML-RPC.NET before 2.5.0 allows remote authenticated users to co...
CVE-2022-4584HIGH8.8A vulnerability was found in Axiomatic Bento4 up to 1.6.0-639. It has been rated as critical. Affected by this issue is ...
CVE-2022-4583HIGH8.8A vulnerability was found in jLEMS. It has been declared as critical. Affected by this vulnerability is the function unp...
CVE-2022-4567HIGH8.1Improper Access Control in GitHub repository openemr/openemr prior to 7.0.0.2.
CVE-2022-4572HIGH7.1A vulnerability, which was classified as problematic, has been found in UBI Reader up to 0.8.0. Affected by this issue i...
CVE-2022-23488HIGH7.5BigBlueButton is an open source web conferencing system. Versions prior to 2.4-rc-6 are vulnerable to Insertion of Sensi...
CVE-2022-23531HIGH7.8GuardDog is a CLI tool to identify malicious PyPI packages. Versions prior to 0.1.5 are vulnerable to Relative Path Trav...
CVE-2022-26582HIGH7.8PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow an attacker to gain root access through command ...
CVE-2022-3157HIGH7.5 A vulnerability exists in the Rockwell Automation controllers that allows a malformed CIP request to cause a major non-...
CVE-2022-47210HIGH7.8The default console presented to users over telnet (when enabled) is restricted to a subset of commands. Commands issued...
CVE-2022-47209HIGH8.8A support user exists on the device and appears to be a backdoor for Technical Support staff. The default password for t...
CVE-2022-47208HIGH8.8The “puhttpsniff” service, which runs by default, is susceptible to command injection due to improperly sanitized user i...
CVE-2022-3166HIGH7.5 Rockwell Automation was made aware that the webservers of the Micrologix 1100 and 1400 controllers contain a vulnerabil...
CVE-2022-2966HIGH7.5Out-of-bounds Read vulnerability in Delta Electronics DOPSoft.This issue affects DOPSoft: All Versions.
CVE-2022-4565HIGH7.5A vulnerability classified as problematic was found in Dromara HuTool up to 5.8.10. This vulnerability affects unknown c...
CVE-2022-4564HIGH8.8A vulnerability classified as problematic has been found in University of Central Florida Materia up to 9.0.0. This affe...
CVE-2022-4563HIGH7.8A vulnerability was found in Freedom of the Press SecureDrop. It has been rated as critical. Affected by this issue is s...
CVE-2022-46109HIGH7.5Tenda AC15 V15.03.06.23 is vulnerable to Buffer Overflow via function formSetClientState.
CVE-2022-41992HIGH7.8A memory corruption vulnerability exists in the VHD File Format parsing CXSPARSE record functionality of PowerISO PowerI...
CVE-2022-46137HIGH7.5AeroCMS v0.0.1 is vulnerable to Directory Traversal. The impact is: obtain sensitive information (remote). The component...
CVE-2022-46135HIGH7.2In AeroCms v0.0.1, there is an arbitrary file upload vulnerability at /admin/posts.php?source=edit_post , through which ...
CVE-2022-45796HIGH7.2Command injection vulnerability in nw_interface.html in SHARP multifunction printers (MFPs)'s Digital Full-color Multifu...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now