2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-45934 | HIGH | 7.8 | 0.8% | Nov 27, 2022 | An issue was discovered in the Linux kernel through 6.0.10. l2cap_config_req in net/bluetooth/l2cap_core.c has an intege... |
| CVE-2022-45932 | HIGH | 7.5 | 0.6% | Nov 27, 2022 | A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/... |
| CVE-2022-45931 | HIGH | 7.5 | 0.5% | Nov 27, 2022 | A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/... |
| CVE-2022-45930 | HIGH | 7.5 | 0.7% | Nov 27, 2022 | A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/... |
| CVE-2022-45919 | HIGH | 7 | 0.3% | Nov 27, 2022 | An issue was discovered in the Linux kernel through 6.0.10. In drivers/media/dvb-core/dvb_ca_en50221.c, a use-after-free... |
| CVE-2022-24999 | HIGH | 7.5 | 14.7% | Nov 26, 2022 | qs before 6.10.3, as used in Express before 4.17.3 and other products, allows attackers to cause a Node process hang for... |
| CVE-2022-41156 | HIGH | 7.8 | 0.2% | Nov 25, 2022 | Remote code execution vulnerability due to insufficient verification of URLs, etc. in OndiskPlayerAgent. A remote attack... |
| CVE-2022-44860 | HIGH | 7.2 | 0.7% | Nov 25, 2022 | Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /... |
| CVE-2022-44859 | HIGH | 7.2 | 0.7% | Nov 25, 2022 | Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /... |
| CVE-2022-44858 | HIGH | 7.2 | 0.8% | Nov 25, 2022 | Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /... |
| CVE-2022-41958 | HIGH | 7.8 | 0.4% | Nov 25, 2022 | super-xray is a web vulnerability scanning tool. Versions prior to 0.7 assumed trusted input for the program config whic... |
| CVE-2022-41706 | HIGH | 8.2 | 0.6% | Nov 25, 2022 | Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files. This is possible becaus... |
| CVE-2022-43984 | HIGH | 8.2 | 0.6% | Nov 25, 2022 | Browsershot version 3.57.3 allows an external attacker to remotely obtain arbitrary local files. This is possible becaus... |
| CVE-2022-43983 | HIGH | 8.2 | 0.6% | Nov 25, 2022 | Browsershot version 3.57.2 allows an external attacker to remotely obtain arbitrary local files. This is possible becaus... |
| CVE-2022-38813 | HIGH | 8.1 | 1.5% | Nov 25, 2022 | PHPGurukul Blood Donor Management System 1.0 does not properly restrict access to admin/dashboard.php, which allows atta... |
| CVE-2022-23044 | HIGH | 8.8 | 0.4% | Nov 25, 2022 | Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to persuade users to perform unintended action... |
| CVE-2022-45039 | HIGH | 7.2 | 1.0% | Nov 25, 2022 | An arbitrary file upload vulnerability in the Server Settings module of WBCE CMS v1.5.4 allows attackers to execute arbi... |
| CVE-2022-44411 | HIGH | 7.5 | 0.4% | Nov 25, 2022 | Web Based Quiz System v1.0 transmits user passwords in plaintext during the authentication process, allowing attackers t... |
| CVE-2022-38767 | HIGH | 7.5 | 1.0% | Nov 25, 2022 | An issue was discovered in Wind River VxWorks 6.9 and 7, that allows a specifically crafted packet sent by a Radius serv... |
| CVE-2022-38166 | HIGH | 7.5 | 0.7% | Nov 25, 2022 | In F-Secure Endpoint Protection for Windows and macOS before channel with Capricorn database 2022-11-22_07, the aerdl.dl... |
| CVE-2022-4141 | HIGH | 7.8 | 0.4% | Nov 25, 2022 | Heap based buffer overflow in vim/vim 9.0.0946 and below by allowing an attacker to CTRL-W gf in the expression used in ... |
| CVE-2022-40282 | HIGH | 8.8 | 4.0% | Nov 25, 2022 | The web server of Hirschmann BAT-C2 before 09.13.01.00R04 allows authenticated command injection. This allows an authent... |
| CVE-2022-2721 | HIGH | 7.5 | 0.6% | Nov 25, 2022 | In affected versions of Octopus Server it is possible for target discovery to print certain values marked as sensitive t... |
| CVE-2022-45886 | HIGH | 7 | 0.3% | Nov 25, 2022 | An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_net.c has a .disconnect versus dvb... |
| CVE-2022-45885 | HIGH | 7 | 0.3% | Nov 25, 2022 | An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_frontend.c has a race condition th... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now