2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48615 | HIGH | 7.1 | 0.3% | Dec 12, 2023 | An improper access control vulnerability exists in a Huawei datacom product. Attackers can exploit this vulnerability to... |
| CVE-2022-48614 | MEDIUM | 6.1 | 0.4% | Dec 10, 2023 | Special:Ask in Semantic MediaWiki before 4.0.2 allows Reflected XSS. |
| CVE-2022-45362 | MEDIUM | 6.5 | 38.9% | Dec 7, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Paytm Paytm Payment Gateway.This issue affects Paytm Payment Gateway... |
| CVE-2022-24403 | MEDIUM | 4.3 | 0.1% | Dec 5, 2023 | The TETRA TA61 identity encryption function internally uses a 64-bit value derived exclusively from the SCK (Class 2 net... |
| CVE-2022-47531 | HIGH | 8.8 | 1.0% | Dec 5, 2023 | An issue was discovered in Ericsson Evolved Packet Gateway (EPG) versions 3.x before 3.25 and 2.x before 2.16, allows au... |
| CVE-2022-46480 | HIGH | 8.1 | 0.5% | Dec 5, 2023 | Incorrect Session Management and Credential Re-use in the Bluetooth LE stack of the Ultraloq UL3 2nd Gen Smart Lock Firm... |
| CVE-2022-48464 | MEDIUM | 5.5 | 0.1% | Dec 4, 2023 | In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial ... |
| CVE-2022-48463 | MEDIUM | 5.5 | 0.1% | Dec 4, 2023 | In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial ... |
| CVE-2022-48462 | MEDIUM | 5.5 | 0.1% | Dec 4, 2023 | In wifi service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial ... |
| CVE-2022-4957 | MEDIUM | 6.1 | 0.6% | Dec 3, 2023 | A vulnerability was found in librespeed speedtest up to 5.2.4. It has been declared as problematic. Affected by this vul... |
| CVE-2022-45135 | CRITICAL | 9.8 | 1.1% | Nov 30, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Cocoon.This... |
| CVE-2022-42541 | CRITICAL | 9.8 | 0.5% | Nov 29, 2023 | Remote code execution |
| CVE-2022-42540 | CRITICAL | 9.8 | 0.3% | Nov 29, 2023 | Elevation of privilege |
| CVE-2022-42539 | HIGH | 7.5 | 0.3% | Nov 29, 2023 | Information disclosure |
| CVE-2022-42538 | CRITICAL | 9.8 | 0.3% | Nov 29, 2023 | Elevation of privilege |
| CVE-2022-42537 | CRITICAL | 9.8 | 0.5% | Nov 29, 2023 | Remote code execution |
| CVE-2022-42536 | CRITICAL | 9.8 | 0.5% | Nov 29, 2023 | Remote code execution |
| CVE-2022-41678 | HIGH | 8.8 | 85.8% | Nov 28, 2023 | Once an user is authenticated on Jolokia, he can potentially trigger arbitrary code execution. In details, in ActiveMQ... |
| CVE-2022-41951 | CRITICAL | 9.8 | 0.9% | Nov 27, 2023 | OroPlatform is a PHP Business Application Platform (BAP) designed to make development of custom business applications ea... |
| CVE-2022-44011 | MEDIUM | 6.5 | 0.7% | Nov 23, 2023 | An issue was discovered in ClickHouse before 22.9.1.2603. An authenticated user (with the ability to load data) could ca... |
| CVE-2022-44010 | HIGH | 7.5 | 1.0% | Nov 23, 2023 | An issue was discovered in ClickHouse before 22.9.1.2603. An attacker could send a crafted HTTP request to the HTTP Endp... |
| CVE-2022-36777 | MEDIUM | 6.5 | 0.6% | Nov 22, 2023 | IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.11.0 and IBM QRadar Suite Software 1.10.12.0 through 1.10.16.0co... |
| CVE-2022-35638 | HIGH | 8.8 | 0.3% | Nov 22, 2023 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.8 and 6.1.0.0 through 6.1.2.1 is vulnerable to cross-... |
| CVE-2022-46337 | CRITICAL | 9.8 | 1.4% | Nov 20, 2023 | A cleverly devised username might bypass LDAP authentication checks. In LDAP-authenticated Derby installations, this co... |
| CVE-2022-45781 | HIGH | 8.8 | 0.7% | Nov 14, 2023 | Buffer Overflow vulnerability in Tenda AX1803 v1.0.0.1_2994 and earlier allows attackers to run arbitrary code via /gofo... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now