2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-27272CRITICAL9.8InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution...
CVE-2022-27271CRITICAL9.8InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution...
CVE-2022-27270CRITICAL9.8InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution...
CVE-2022-27269CRITICAL9.8InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution...
CVE-2022-27268CRITICAL9.8InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution...
CVE-2022-27133CRITICAL9.1zbzcms v1.0 was discovered to contain an arbitrary file deletion vulnerability via /include/up.php.
CVE-2022-27131CRITICAL9.8An arbitrary file upload vulnerability at /zbzedit/php/zbz.php in zbzcms v1.0 allows attackers to execute arbitrary code...
CVE-2022-27129CRITICAL9.8An arbitrary file upload vulnerability at /admin/ajax.php in zbzcms v1.0 allows attackers to execute arbitrary code via ...
CVE-2022-27128CRITICAL9.8An incorrect access control issue at /admin/run_ajax.php in zbzcms v1.0 allows attackers to arbitrarily add administrato...
CVE-2022-27126CRITICAL9.8zbzcms v1.0 was discovered to contain a SQL injection vulnerability via the art parameter at /include/make.php.
CVE-2022-1286CRITICAL9.8heap-buffer-overflow in mrb_vm_exec in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary cod...
CVE-2022-1276CRITICAL9.8Out-of-bounds Read in mrb_get_args in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if b...
CVE-2022-1287CRITICAL9.8A vulnerability classified as critical was found in School Club Application System 1.0. This vulnerability affects a req...
CVE-2022-26854CRITICAL9.8Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms. A remote unprivileged malicious att...
CVE-2022-26852CRITICAL9.8Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a predictable seed in pseudo-random number generator. A remote unau...
CVE-2022-26851CRITICAL9.1Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability. An unprivilege...
CVE-2022-27047CRITICAL9.8mogu_blog_cms 5.2 suffers from upload arbitrary files without any limitation.
CVE-2022-28001CRITICAL9.8Movie Seat Reservation v1 was discovered to contain a SQL injection vulnerability at /index.php?page=reserve via the id ...
CVE-2022-27357CRITICAL9.8Ecommerce-Website v1 was discovered to contain an arbitrary file upload vulnerability via /customer_register.php. This v...
CVE-2022-27351CRITICAL9.8Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacan...
CVE-2022-28805CRITICAL9.1singlevar in lparser.c in Lua from (including) 5.4.0 up to (excluding) 5.4.4 lacks a certain luaK_exp2anyregup call, lea...
CVE-2022-26676CRITICAL9.8aEnrich a+HRD has inadequate privilege restrictions, an unauthenticated remote attacker can use the API function to uplo...
CVE-2022-26612CRITICAL9.8In Apache Hadoop, The unTar function uses unTarUsingJava function on Windows and the built-in tar utility on Unix and ot...
CVE-2022-27022CRITICAL9.8There is a stack overflow vulnerability in the SetSysTimeCfg() function in the httpd service of Tenda AC9 V15.03.2.21_cn...
CVE-2022-27016CRITICAL9.8There is a stack overflow vulnerability in the SetStaticRouteCfg() function in the httpd service of Tenda AC9 15.03.2.21...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now