2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-0781CRITICAL9.8The Nirweb support WordPress plugin before 2.8.2 does not sanitise and escape a parameter before using it in a SQL state...
CVE-2022-1813CRITICAL9.8OS Command Injection in GitHub repository yogeshojha/rengine prior to 1.2.0.
CVE-2022-31267CRITICAL9.8Gitblit 1.9.2 allows privilege escalation via the Config User Service: a control character can be placed in a profile da...
CVE-2022-31259CRITICAL9.8The route lookup process in beego before 1.12.9 and 2.x before 2.0.3 allows attackers to bypass access control. When a /...
CVE-2022-1775CRITICAL9.8Weak Password Requirements in GitHub repository polonel/trudesk prior to 1.2.2.
CVE-2022-29186CRITICAL9.8Rundeck is an open source automation service with a web console, command line tools and a WebAPI. Rundeck community and ...
CVE-2022-28618CRITICAL9.8A command injection security vulnerability has been identified in HPE Nimble Storage Hybrid Flash Arrays, HPE Nimble Sto...
CVE-2022-22972CRITICAL9.8VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an authentication bypass vulnerability aff...
CVE-2022-28995CRITICAL9.8Rengine v1.0.2 was discovered to contain a remote code execution (RCE) vulnerability via the yaml configuration function...
CVE-2022-28531CRITICAL9.8Sourcecodester Covid-19 Directory on Vaccination System1.0 is vulnerable to SQL Injection via the admin/login.php txtuse...
CVE-2022-29165CRITICAL10Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. A critical vulnerability has been discovered i...
CVE-2022-28660CRITICAL9.8The querier component in Grafana Enterprise Logs 1.1.x through 1.3.x before 1.4.0 does not require authentication when X...
CVE-2022-30887CRITICAL9.8Pharmacy Management System v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the component ...
CVE-2022-30886CRITICAL9.8School Dormitory Management System v1.0 was discovered to contain a SQL injection vulnerability via the month parameter ...
CVE-2022-30518CRITICAL9.8ChatBot Application with a Suggestion Feature 1.0 was discovered to contain a SQL injection vulnerability via the id par...
CVE-2022-29873CRITICAL9.8A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not properly validate paramete...
CVE-2022-29023CRITICAL9.8A buffer overflow vulnerability exists in the razermouse driver of OpenRazer up to version v3.3.0 allows attackers to ca...
CVE-2022-29022CRITICAL9.8A buffer overflow vulnerability exists in the razeraccessory driver of OpenRazer up to version v3.3.0 allows attackers t...
CVE-2022-29021CRITICAL9.8A buffer overflow vulnerability exists in the razerkbd driver of OpenRazer up to version v3.3.0 allows attackers to caus...
CVE-2022-28993CRITICAL9.8Multi Store Inventory Management System v1.0 allows attackers to perform an account takeover via a crafted POST request.
CVE-2022-28106CRITICAL9.8Online Sports Complex Booking System v1.0 was discovered to allow attackers to take over user accounts via a crafted POS...
CVE-2022-28105CRITICAL9.8Online Sports Complex Booking System v1.0 was discovered to contain a blind SQL injection vulnerability via the id param...
CVE-2022-28104CRITICAL9.8Foxit PDF Editor v11.3.1 was discovered to contain an arbitrary file upload vulnerability.
CVE-2022-26633CRITICAL9.8Simple Student Quarterly Result/Grade System v1.0 was discovered to contain a SQL injection vulnerability via /sqgs/Acti...
CVE-2022-26632CRITICAL9.8Multi-Vendor Online Groceries Management System v1.0 was discovered to contain a blind SQL injection vulnerability via t...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now