2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-45934HIGH7.8An issue was discovered in the Linux kernel through 6.0.10. l2cap_config_req in net/bluetooth/l2cap_core.c has an intege...
CVE-2022-45932HIGH7.5A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/...
CVE-2022-45931HIGH7.5A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/...
CVE-2022-45930HIGH7.5A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/...
CVE-2022-45919HIGH7An issue was discovered in the Linux kernel through 6.0.10. In drivers/media/dvb-core/dvb_ca_en50221.c, a use-after-free...
CVE-2022-24999HIGH7.5qs before 6.10.3, as used in Express before 4.17.3 and other products, allows attackers to cause a Node process hang for...
CVE-2022-41156HIGH7.8Remote code execution vulnerability due to insufficient verification of URLs, etc. in OndiskPlayerAgent. A remote attack...
CVE-2022-44860HIGH7.2Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /...
CVE-2022-44859HIGH7.2Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /...
CVE-2022-44858HIGH7.2Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /...
CVE-2022-41958HIGH7.8super-xray is a web vulnerability scanning tool. Versions prior to 0.7 assumed trusted input for the program config whic...
CVE-2022-41706HIGH8.2Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files. This is possible becaus...
CVE-2022-43984HIGH8.2Browsershot version 3.57.3 allows an external attacker to remotely obtain arbitrary local files. This is possible becaus...
CVE-2022-43983HIGH8.2Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files. This is possible becaus...
CVE-2022-38813HIGH8.1PHPGurukul Blood Donor Management System 1.0 does not properly restrict access to admin/dashboard.php, which allows atta...
CVE-2022-23044HIGH8.8Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to persuade users to perform unintended action...
CVE-2022-45039HIGH7.2An arbitrary file upload vulnerability in the Server Settings module of WBCE CMS v1.5.4 allows attackers to execute arbi...
CVE-2022-44411HIGH7.5Web Based Quiz System v1.0 transmits user passwords in plaintext during the authentication process, allowing attackers t...
CVE-2022-38767HIGH7.5An issue was discovered in Wind River VxWorks 6.9 and 7, that allows a specifically crafted packet sent by a Radius serv...
CVE-2022-38166HIGH7.5In F-Secure Endpoint Protection for Windows and macOS before channel with Capricorn database 2022-11-22_07, the aerdl.dl...
CVE-2022-4141HIGH7.8Heap based buffer overflow in vim/vim 9.0.0946 and below by allowing an attacker to CTRL-W gf in the expression used in ...
CVE-2022-40282HIGH8.8The web server of Hirschmann BAT-C2 before 09.13.01.00R04 allows authenticated command injection. This allows an authent...
CVE-2022-2721HIGH7.5In affected versions of Octopus Server it is possible for target discovery to print certain values marked as sensitive t...
CVE-2022-45886HIGH7An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_net.c has a .disconnect versus dvb...
CVE-2022-45885HIGH7An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_frontend.c has a race condition th...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now