2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48367 | CRITICAL | 9.8 | 0.7% | Mar 12, 2023 | An issue was discovered in eZ Publish Ibexa Kernel before 7.5.28. Access control based on object state is mishandled. |
| CVE-2022-40537 | CRITICAL | 9.8 | 0.4% | Mar 10, 2023 | Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response. |
| CVE-2022-40515 | CRITICAL | 9.8 | 0.3% | Mar 10, 2023 | Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms. |
| CVE-2022-33256 | CRITICAL | 9.8 | 0.5% | Mar 10, 2023 | Memory corruption due to improper validation of array index in Multi-mode call processor. |
| CVE-2022-3760 | CRITICAL | 9.8 | 0.6% | Mar 7, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mia Technology Mia... |
| CVE-2022-45141 | CRITICAL | 9.8 | 0.5% | Mar 6, 2023 | Since the Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability was disclosed by Microsoft on Nov 8 2022 and pe... |
| CVE-2022-4328 | CRITICAL | 9.8 | 4.4% | Mar 6, 2023 | The WooCommerce Checkout Field Manager WordPress plugin before 18.0 does not validate files to be uploaded, which could ... |
| CVE-2022-46973 | CRITICAL | 9.8 | 0.8% | Mar 3, 2023 | Report v0.9.8.6 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability. |
| CVE-2022-45553 | CRITICAL | 9.8 | 1.5% | Mar 3, 2023 | An issue discovered in Shenzhen Zhibotong Electronics WBT WE1626 Router v 21.06.18 allows attacker to execute arbitrary ... |
| CVE-2022-45551 | CRITICAL | 9.8 | 25.1% | Mar 3, 2023 | An issue discovered in Shenzhen Zhiboton Electronics ZBT WE1626 Router v 21.06.18 allows attackers to escalate privilege... |
| CVE-2022-46501 | CRITICAL | 9.8 | 0.6% | Mar 2, 2023 | Accruent LLC Maintenance Connection 2021 (all) & 2022.2 was discovered to contain a SQL injection vulnerability via the ... |
| CVE-2022-37938 | CRITICAL | 9.8 | 0.6% | Mar 1, 2023 | Unauthenticated server side request forgery in HPE Serviceguard Manager |
| CVE-2022-37937 | CRITICAL | 9.8 | 0.7% | Mar 1, 2023 | Pre-auth memory corruption in HPE Serviceguard |
| CVE-2022-37936 | CRITICAL | 9.8 | 0.8% | Mar 1, 2023 | Unauthenticated Java deserialization vulnerability in Serviceguard Manager |
| CVE-2022-46723 | CRITICAL | 9.8 | 0.9% | Feb 27, 2023 | This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.6.1, macOS Big Sur 11.7.1. A rem... |
| CVE-2022-26760 | CRITICAL | 9.8 | 0.7% | Feb 27, 2023 | A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 15.5 and iPadOS 15.5.... |
| CVE-2022-48284 | CRITICAL | 9.8 | 0.5% | Feb 27, 2023 | A piece of Huawei whole-home intelligence software has an Incorrect Privilege Assignment vulnerability. Successful explo... |
| CVE-2022-48283 | CRITICAL | 9.8 | 0.5% | Feb 27, 2023 | A piece of Huawei whole-home intelligence software has an Incorrect Privilege Assignment vulnerability. Successful explo... |
| CVE-2022-48259 | CRITICAL | 9.8 | 1.0% | Feb 27, 2023 | There is a system command injection vulnerability in BiSheng-WNM FW 3.0.0.325. Successful exploitation could allow attac... |
| CVE-2022-48255 | CRITICAL | 9.8 | 1.1% | Feb 27, 2023 | There is a system command injection vulnerability in BiSheng-WNM FW 3.0.0.325. A Huawei printer has a system command inj... |
| CVE-2022-45140 | CRITICAL | 9.8 | 1.1% | Feb 27, 2023 | The configuration backend allows an unauthenticated user to write arbitrary data with root privileges to the storage, wh... |
| CVE-2022-45138 | CRITICAL | 9.8 | 0.7% | Feb 27, 2023 | The configuration backend of the web-based management can be used by unauthenticated users, although only authenticated ... |
| CVE-2022-34909 | CRITICAL | 9.1 | 0.5% | Feb 27, 2023 | An issue was discovered in the A4N (Aremis 4 Nomad) application 1.5.0 for Android. It allows SQL Injection, by which an ... |
| CVE-2022-2024 | CRITICAL | 9.8 | 97.8% | Feb 25, 2023 | OS Command Injection in GitHub repository gogs/gogs prior to 0.12.11. |
| CVE-2022-23535 | CRITICAL | 9.8 | 0.7% | Feb 24, 2023 | LiteDB is a small, fast and lightweight .NET NoSQL embedded database. Versions prior to 5.0.13 are subject to Deserializ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now