2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-28962CRITICAL9.8Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/classes/Users.php?f=delete_client.
CVE-2022-28927CRITICAL9.8A remote code execution (RCE) vulnerability in Subconverter v0.7.2 allows attackers to execute arbitrary code via crafte...
CVE-2022-22978CRITICAL9.8In spring security versions prior to 5.4.11+, 5.5.7+ , 5.6.4+ and older unsupported versions, RegexRequestMatcher can ea...
CVE-2022-28350CRITICAL9.8Arm Mali GPU Kernel Driver allows improper GPU operations in Valhall r29p0 through r36p0 before r37p0 to reach a use-aft...
CVE-2022-28349CRITICAL9.8Arm Mali GPU Kernel Driver has a use-after-free: Midgard r28p0 through r29p0 before r30p0, Bifrost r17p0 through r23p0 b...
CVE-2022-28348CRITICAL9.8Arm Mali GPU Kernel Driver (Midgard r4p0 through r31p0, Bifrost r0p0 through r36p0 before r37p0, and Valhall r19p0 throu...
CVE-2022-30600CRITICAL9.8A flaw was found in moodle where logic used to count failed login attempts could result in the account lockout threshold...
CVE-2022-30599CRITICAL9.8A flaw was found in moodle where an SQL injection risk was identified in Badges code relating to configuring criteria.
CVE-2022-30105CRITICAL9.8In Belkin N300 Firmware 1.00.08, the script located at /setting_hidden.asp, which is accessible before and after configu...
CVE-2022-22785CRITICAL9.1The Zoom Client for Meetings (for Android, iOS, Linux, MacOS, and Windows) before version 5.10.0 failed to properly cons...
CVE-2022-29516CRITICAL9.8The web console of FUJITSU Network IPCOM series (IPCOM EX2 IN(3200, 3500), IPCOM EX2 LB(1100, 3200, 3500), IPCOM EX2 SC(...
CVE-2022-1795CRITICAL9.8Use After Free in GitHub repository gpac/gpac prior to v2.1.0-DEV.
CVE-2022-29645CRITICAL9.8TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a hard coded password for...
CVE-2022-29644CRITICAL9.8TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a hard coded password for...
CVE-2022-28956CRITICAL9.8An issue in the getcfg.php component of D-Link DIR816L_FW206b01 allows attackers to access the device via a crafted payl...
CVE-2022-28616CRITICAL9.8A remote server-side request forgery (ssrf) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE ha...
CVE-2022-1360CRITICAL9.8The affected On-Premise cnMaestro is vulnerable to execution of code on the cnMaestro hosting server. This could allow a...
CVE-2022-1357CRITICAL9.8The affected On-Premise cnMaestro allows an unauthenticated attacker to access the cnMaestro server and execute arbitrar...
CVE-2022-30054CRITICAL9.8In Covid 19 Travel Pass Management 1.0, the code parameter is vulnerable to SQL injection attacks.
CVE-2022-30053CRITICAL9.8In Toll Tax Management System 1.0, the id parameter appears to be vulnerable to SQL injection attacks.
CVE-2022-30052CRITICAL9.8In Home Clean Service System 1.0, the password parameter is vulnerable to SQL injection attacks.
CVE-2022-28617CRITICAL9.8A remote bypass security restrictions vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has prov...
CVE-2022-28181CRITICAL9.9NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged...
CVE-2022-24108CRITICAL9.8The Skyoftech So Listing Tabs module 2.2.0 for OpenCart allows a remote attacker to inject a serialized PHP object via t...
CVE-2022-1587CRITICAL9.1An out-of-bounds read vulnerability was discovered in the PCRE2 library in the get_recurse_data_length() function of the...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now