2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-28962 | CRITICAL | 9.8 | 1.6% | May 19, 2022 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/classes/Users.php?f=delete_client. |
| CVE-2022-28927 | CRITICAL | 9.8 | 33.6% | May 19, 2022 | A remote code execution (RCE) vulnerability in Subconverter v0.7.2 allows attackers to execute arbitrary code via crafte... |
| CVE-2022-22978 | CRITICAL | 9.8 | 10.0% | May 19, 2022 | In spring security versions prior to 5.4.11+, 5.5.7+ , 5.6.4+ and older unsupported versions, RegexRequestMatcher can ea... |
| CVE-2022-28350 | CRITICAL | 9.8 | 1.4% | May 19, 2022 | Arm Mali GPU Kernel Driver allows improper GPU operations in Valhall r29p0 through r36p0 before r37p0 to reach a use-aft... |
| CVE-2022-28349 | CRITICAL | 9.8 | 1.2% | May 19, 2022 | Arm Mali GPU Kernel Driver has a use-after-free: Midgard r28p0 through r29p0 before r30p0, Bifrost r17p0 through r23p0 b... |
| CVE-2022-28348 | CRITICAL | 9.8 | 1.3% | May 19, 2022 | Arm Mali GPU Kernel Driver (Midgard r4p0 through r31p0, Bifrost r0p0 through r36p0 before r37p0, and Valhall r19p0 throu... |
| CVE-2022-30600 | CRITICAL | 9.8 | 4.9% | May 18, 2022 | A flaw was found in moodle where logic used to count failed login attempts could result in the account lockout threshold... |
| CVE-2022-30599 | CRITICAL | 9.8 | 1.3% | May 18, 2022 | A flaw was found in moodle where an SQL injection risk was identified in Badges code relating to configuring criteria. |
| CVE-2022-30105 | CRITICAL | 9.8 | 2.8% | May 18, 2022 | In Belkin N300 Firmware 1.00.08, the script located at /setting_hidden.asp, which is accessible before and after configu... |
| CVE-2022-22785 | CRITICAL | 9.1 | 3.5% | May 18, 2022 | The Zoom Client for Meetings (for Android, iOS, Linux, MacOS, and Windows) before version 5.10.0 failed to properly cons... |
| CVE-2022-29516 | CRITICAL | 9.8 | 1.9% | May 18, 2022 | The web console of FUJITSU Network IPCOM series (IPCOM EX2 IN(3200, 3500), IPCOM EX2 LB(1100, 3200, 3500), IPCOM EX2 SC(... |
| CVE-2022-1795 | CRITICAL | 9.8 | 1.0% | May 18, 2022 | Use After Free in GitHub repository gpac/gpac prior to v2.1.0-DEV. |
| CVE-2022-29645 | CRITICAL | 9.8 | 1.3% | May 18, 2022 | TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a hard coded password for... |
| CVE-2022-29644 | CRITICAL | 9.8 | 1.5% | May 18, 2022 | TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a hard coded password for... |
| CVE-2022-28956 | CRITICAL | 9.8 | 22.4% | May 18, 2022 | An issue in the getcfg.php component of D-Link DIR816L_FW206b01 allows attackers to access the device via a crafted payl... |
| CVE-2022-28616 | CRITICAL | 9.8 | 1.3% | May 17, 2022 | A remote server-side request forgery (ssrf) vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE ha... |
| CVE-2022-1360 | CRITICAL | 9.8 | 1.7% | May 17, 2022 | The affected On-Premise cnMaestro is vulnerable to execution of code on the cnMaestro hosting server. This could allow a... |
| CVE-2022-1357 | CRITICAL | 9.8 | 1.6% | May 17, 2022 | The affected On-Premise cnMaestro allows an unauthenticated attacker to access the cnMaestro server and execute arbitrar... |
| CVE-2022-30054 | CRITICAL | 9.8 | 1.2% | May 17, 2022 | In Covid 19 Travel Pass Management 1.0, the code parameter is vulnerable to SQL injection attacks. |
| CVE-2022-30053 | CRITICAL | 9.8 | 1.2% | May 17, 2022 | In Toll Tax Management System 1.0, the id parameter appears to be vulnerable to SQL injection attacks. |
| CVE-2022-30052 | CRITICAL | 9.8 | 1.2% | May 17, 2022 | In Home Clean Service System 1.0, the password parameter is vulnerable to SQL injection attacks. |
| CVE-2022-28617 | CRITICAL | 9.8 | 1.9% | May 17, 2022 | A remote bypass security restrictions vulnerability was discovered in HPE OneView version(s): Prior to 7.0. HPE has prov... |
| CVE-2022-28181 | CRITICAL | 9.9 | 1.0% | May 17, 2022 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged... |
| CVE-2022-24108 | CRITICAL | 9.8 | 33.0% | May 17, 2022 | The Skyoftech So Listing Tabs module 2.2.0 for OpenCart allows a remote attacker to inject a serialized PHP object via t... |
| CVE-2022-1587 | CRITICAL | 9.1 | 2.4% | May 16, 2022 | An out-of-bounds read vulnerability was discovered in the PCRE2 library in the get_recurse_data_length() function of the... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now