2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-27272 | CRITICAL | 9.8 | 3.2% | Apr 10, 2022 | InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution... |
| CVE-2022-27271 | CRITICAL | 9.8 | 3.2% | Apr 10, 2022 | InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution... |
| CVE-2022-27270 | CRITICAL | 9.8 | 3.2% | Apr 10, 2022 | InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution... |
| CVE-2022-27269 | CRITICAL | 9.8 | 3.5% | Apr 10, 2022 | InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution... |
| CVE-2022-27268 | CRITICAL | 9.8 | 3.5% | Apr 10, 2022 | InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution... |
| CVE-2022-27133 | CRITICAL | 9.1 | 1.0% | Apr 10, 2022 | zbzcms v1.0 was discovered to contain an arbitrary file deletion vulnerability via /include/up.php. |
| CVE-2022-27131 | CRITICAL | 9.8 | 1.4% | Apr 10, 2022 | An arbitrary file upload vulnerability at /zbzedit/php/zbz.php in zbzcms v1.0 allows attackers to execute arbitrary code... |
| CVE-2022-27129 | CRITICAL | 9.8 | 1.4% | Apr 10, 2022 | An arbitrary file upload vulnerability at /admin/ajax.php in zbzcms v1.0 allows attackers to execute arbitrary code via ... |
| CVE-2022-27128 | CRITICAL | 9.8 | 1.1% | Apr 10, 2022 | An incorrect access control issue at /admin/run_ajax.php in zbzcms v1.0 allows attackers to arbitrarily add administrato... |
| CVE-2022-27126 | CRITICAL | 9.8 | 1.0% | Apr 10, 2022 | zbzcms v1.0 was discovered to contain a SQL injection vulnerability via the art parameter at /include/make.php. |
| CVE-2022-1286 | CRITICAL | 9.8 | 1.1% | Apr 10, 2022 | heap-buffer-overflow in mrb_vm_exec in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary cod... |
| CVE-2022-1276 | CRITICAL | 9.8 | 1.4% | Apr 10, 2022 | Out-of-bounds Read in mrb_get_args in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if b... |
| CVE-2022-1287 | CRITICAL | 9.8 | 0.7% | Apr 9, 2022 | A vulnerability classified as critical was found in School Club Application System 1.0. This vulnerability affects a req... |
| CVE-2022-26854 | CRITICAL | 9.8 | 0.7% | Apr 8, 2022 | Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms. A remote unprivileged malicious att... |
| CVE-2022-26852 | CRITICAL | 9.8 | 1.2% | Apr 8, 2022 | Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a predictable seed in pseudo-random number generator. A remote unau... |
| CVE-2022-26851 | CRITICAL | 9.1 | 0.9% | Apr 8, 2022 | Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability. An unprivilege... |
| CVE-2022-27047 | CRITICAL | 9.8 | 1.1% | Apr 8, 2022 | mogu_blog_cms 5.2 suffers from upload arbitrary files without any limitation. |
| CVE-2022-28001 | CRITICAL | 9.8 | 1.8% | Apr 8, 2022 | Movie Seat Reservation v1 was discovered to contain a SQL injection vulnerability at /index.php?page=reserve via the id ... |
| CVE-2022-27357 | CRITICAL | 9.8 | 3.3% | Apr 8, 2022 | Ecommerce-Website v1 was discovered to contain an arbitrary file upload vulnerability via /customer_register.php. This v... |
| CVE-2022-27351 | CRITICAL | 9.8 | 3.2% | Apr 8, 2022 | Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacan... |
| CVE-2022-28805 | CRITICAL | 9.1 | 2.9% | Apr 8, 2022 | singlevar in lparser.c in Lua from (including) 5.4.0 up to (excluding) 5.4.4 lacks a certain luaK_exp2anyregup call, lea... |
| CVE-2022-26676 | CRITICAL | 9.8 | 1.3% | Apr 7, 2022 | aEnrich a+HRD has inadequate privilege restrictions, an unauthenticated remote attacker can use the API function to uplo... |
| CVE-2022-26612 | CRITICAL | 9.8 | 4.3% | Apr 7, 2022 | In Apache Hadoop, The unTar function uses unTarUsingJava function on Windows and the built-in tar utility on Unix and ot... |
| CVE-2022-27022 | CRITICAL | 9.8 | 1.7% | Apr 7, 2022 | There is a stack overflow vulnerability in the SetSysTimeCfg() function in the httpd service of Tenda AC9 V15.03.2.21_cn... |
| CVE-2022-27016 | CRITICAL | 9.8 | 1.7% | Apr 7, 2022 | There is a stack overflow vulnerability in the SetStaticRouteCfg() function in the httpd service of Tenda AC9 15.03.2.21... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now