2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-24239 | CRITICAL | 9.8 | 1.3% | Jun 2, 2022 | ACEweb Online Portal 3.5.065 was discovered to contain an unrestricted file upload vulnerability via attachments.awp. |
| CVE-2022-1660 | CRITICAL | 9.8 | 16.0% | Jun 2, 2022 | The affected products are vulnerable of untrusted data due to deserialization without prior authorization/authentication... |
| CVE-2022-29875 | CRITICAL | 9.8 | 1.6% | Jun 1, 2022 | A vulnerability has been identified in Biograph Horizon PET/CT Systems (All VJ30 versions < VJ30C-UD01), MAGNETOM Family... |
| CVE-2022-31013 | CRITICAL | 9.8 | 1.4% | May 31, 2022 | Chat Server is the chat server for Vartalap, an open-source messaging application. Versions 2.3.2 until 2.6.0 suffer fro... |
| CVE-2022-31003 | CRITICAL | 9.8 | 3.7% | May 31, 2022 | Sofia-SIP is an open-source Session Initiation Protocol (SIP) User-Agent library. Prior to version 1.13.8, when parsing ... |
| CVE-2022-1556 | CRITICAL | 9.8 | 20.4% | May 30, 2022 | The StaffList WordPress plugin before 3.1.5 does not properly sanitise and escape a parameter before using it in a SQL s... |
| CVE-2022-20797 | CRITICAL | 9.1 | 1.5% | May 27, 2022 | A vulnerability in the web-based management interface of Cisco Secure Network Analytics, formerly Cisco Stealthwatch Ent... |
| CVE-2022-29633 | CRITICAL | 9.8 | 1.1% | May 26, 2022 | An access control issue in Linglong v1.0 allows attackers to access the background of the application via a crafted cook... |
| CVE-2022-29632 | CRITICAL | 9.8 | 16.1% | May 26, 2022 | An arbitrary file upload vulnerability in the component /course/api/upload/pic of Roncoo Education v9.0.0 allows attacke... |
| CVE-2022-26776 | CRITICAL | 9.8 | 1.8% | May 26, 2022 | This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.4, macOS Big Sur 11.6.6. An atta... |
| CVE-2022-26775 | CRITICAL | 9.8 | 1.8% | May 26, 2022 | An integer overflow was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catali... |
| CVE-2022-26723 | CRITICAL | 9.8 | 1.3% | May 26, 2022 | A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.4, macO... |
| CVE-2022-26711 | CRITICAL | 9.8 | 3.5% | May 26, 2022 | An integer overflow issue was addressed with improved input validation. This issue is fixed in tvOS 15.5, iTunes 12.12.4... |
| CVE-2022-26708 | CRITICAL | 9.8 | 1.8% | May 26, 2022 | This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.4. An attacker may be able to ca... |
| CVE-2022-26694 | CRITICAL | 9.1 | 0.9% | May 26, 2022 | This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.4. A plug-in may be able to inhe... |
| CVE-2022-26693 | CRITICAL | 9.1 | 0.9% | May 26, 2022 | This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.4. A plug-in may be able to inhe... |
| CVE-2022-30516 | CRITICAL | 9.8 | 1.6% | May 26, 2022 | In Hospital-Management-System v1.0, the editid parameter in the doctor.php page is vulnerable to SQL injection attacks. |
| CVE-2022-30495 | CRITICAL | 9.8 | 1.1% | May 26, 2022 | In oretnom23 Automotive Shop Management System v1.0, the name id parameter is vulnerable to IDOR - Broken Access Control... |
| CVE-2022-30493 | CRITICAL | 9.8 | 2.1% | May 26, 2022 | In oretnom23 Automotive Shop Management System v1.0, the product id parameter suffers from a blind SQL Injection Vulnera... |
| CVE-2022-21831 | CRITICAL | 9.8 | 2.8% | May 26, 2022 | A code injection vulnerability exists in the Active Storage >= v5.2.0 that could allow an attacker to execute code via i... |
| CVE-2022-1899 | CRITICAL | 9.1 | 1.4% | May 26, 2022 | Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0. |
| CVE-2022-30500 | CRITICAL | 9.8 | 1.0% | May 26, 2022 | Jfinal cms 5.1.0 is vulnerable to SQL Injection. |
| CVE-2022-30477 | CRITICAL | 9.8 | 1.3% | May 26, 2022 | Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a stack-based buffer overflow in the httpd modu... |
| CVE-2022-30476 | CRITICAL | 9.8 | 1.3% | May 26, 2022 | Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a stack-based buffer overflow in the httpd modu... |
| CVE-2022-30474 | CRITICAL | 9.8 | 1.3% | May 26, 2022 | Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a heap overflow in the httpd module when handli... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now