2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-45884HIGH7An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvbdev.c has a use-after-free, related...
CVE-2022-29831HIGH7.5Use of Hard-coded Password vulnerability in Mitsubishi Electric Corporation GX Works3 versions from 1.015R to 1.095Z all...
CVE-2022-29829HIGH7.5Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U, GT De...
CVE-2022-29828HIGH7.5Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A and later allows...
CVE-2022-29827HIGH7.5Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A and later allows...
CVE-2022-29826HIGH7.5Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.087R...
CVE-2022-29825HIGH7.5Use of Hard-coded Password vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U, GT Designer3 V...
CVE-2022-25164HIGH7.5Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z...
CVE-2022-26885HIGH7.5When using tasks to read config files, there is a risk of database password disclosure. We recommend you upgrade to vers...
CVE-2022-4090HIGH8.8A vulnerability was found in rickxy Stock Management System and classified as problematic. This issue affects some unkno...
CVE-2022-40977HIGH7.5A path traversal vulnerability was discovered in Pilz PASvisu Server before 1.12.0. An unauthenticated remote attacker c...
CVE-2022-44749HIGH7A directory traversal vulnerability in the ZIP archive extraction routines of KNIME Analytics Platform 3.2.0 and above c...
CVE-2022-44748HIGH7.5A directory traversal vulnerability in the ZIP archive extraction routines of KNIME Server since 4.3.0 can result in arb...
CVE-2022-45868HIGH7.8The web-based admin console in H2 Database Engine before 2.2.220 can be started via the CLI with the argument -webAdminP...
CVE-2022-45278HIGH8.8Jizhicms v2.3.3 was discovered to contain a SQL injection vulnerability via the /index.php/admins/Fields/get_fields.html...
CVE-2022-44789HIGH8.8A logical issue in O_getOwnPropertyDescriptor() in Artifex MuJS 1.0.0 through 1.3.x before 1.3.2 allows an attacker to a...
CVE-2022-44140HIGH8.8Jizhicms v2.3.3 was discovered to contain a SQL injection vulnerability via the /Member/memberedit.html component.
CVE-2022-41934HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any user with v...
CVE-2022-41931HIGH8.8xwiki-platform-icon-ui is vulnerable to Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injec...
CVE-2022-41930HIGH8.2org.xwiki.platform:xwiki-platform-user-profile-ui is missing authorization to enable or disable users. Any user (logged ...
CVE-2022-41928HIGH8.8XWiki Platform vulnerable to Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') in A...
CVE-2022-41927HIGH7.4XWiki Platform is vulnerable to Cross-Site Request Forgery (CSRF) that may allow attackers to delete or rename tags with...
CVE-2022-41925HIGH8.8A vulnerability identified in the Tailscale client allows a malicious website to access the peer API, which can then be ...
CVE-2022-40304HIGH7.8An issue was discovered in libxml2 before 2.10.3. Certain invalid XML entity definitions can corrupt a hash table key, p...
CVE-2022-39833HIGH7.2FileCloud Versions 20.2 and later allows remote attackers to potentially cause unauthorized remote code execution and ac...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now