2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26174 | CRITICAL | 9.8 | 2.3% | Mar 21, 2022 | A remote code execution (RCE) vulnerability in Beekeeper Studio v3.2.0 allows attackers to execute arbitrary code via a ... |
| CVE-2022-26148 | CRITICAL | 9.8 | 53.4% | Mar 21, 2022 | An issue was discovered in Grafana through 7.3.4, when integrated with Zabbix. The Zabbix password can be found in the a... |
| CVE-2022-24766 | CRITICAL | 9.8 | 1.6% | Mar 21, 2022 | mitmproxy is an interactive, SSL/TLS-capable intercepting proxy. In mitmproxy 7.0.4 and below, a malicious client or ser... |
| CVE-2022-0760 | CRITICAL | 9.8 | 10.8% | Mar 21, 2022 | The Simple Link Directory WordPress plugin before 7.7.2 does not validate and escape the post_id parameter before using ... |
| CVE-2022-0747 | CRITICAL | 9.8 | 15.3% | Mar 21, 2022 | The Infographic Maker WordPress plugin before 4.3.8 does not validate and escape the post_id parameter before using it i... |
| CVE-2022-0739 | CRITICAL | 9.8 | 37.2% | Mar 21, 2022 | The BookingPress WordPress plugin before 1.0.11 fails to properly sanitize user supplied POST data before it is used in ... |
| CVE-2022-0694 | CRITICAL | 9.8 | 1.8% | Mar 21, 2022 | The Advanced Booking Calendar WordPress plugin before 1.7.0 does not validate and escape the calendar parameter before u... |
| CVE-2022-0591 | CRITICAL | 9.1 | 20.8% | Mar 21, 2022 | The FormCraft WordPress plugin before 3.8.28 does not validate the URL parameter in the formcraft3_get AJAX action, lead... |
| CVE-2022-26960 | CRITICAL | 9.1 | 51.0% | Mar 21, 2022 | connector.minimal.php in std42 elFinder through 2.1.60 is affected by path traversal. This allows unauthenticated remote... |
| CVE-2022-25505 | CRITICAL | 9.8 | 1.1% | Mar 21, 2022 | Taocms v3.0.2 was discovered to contain a SQL injection vulnerability via the id parameter in \include\Model\Category.ph... |
| CVE-2022-24126 | CRITICAL | 9.8 | 4.4% | Mar 20, 2022 | A buffer overflow in the NRSessionSearchResult parser in Bandai Namco FromSoftware Dark Souls III through 2022-03-19 all... |
| CVE-2022-26265 | CRITICAL | 9.8 | 30.4% | Mar 18, 2022 | Contao Managed Edition v1.5.0 was discovered to contain a remote command execution (RCE) vulnerability via the component... |
| CVE-2022-25578 | CRITICAL | 9.8 | 1.8% | Mar 18, 2022 | taocms v3.0.2 allows attackers to execute code injection via arbitrarily editing the .htaccess file. |
| CVE-2022-25390 | CRITICAL | 9.8 | 3.1% | Mar 18, 2022 | DCN Firewall DCME-520 was discovered to contain a remote command execution (RCE) vulnerability via the host parameter in... |
| CVE-2022-27250 | CRITICAL | 9.8 | 1.2% | Mar 18, 2022 | The UNISOC chipset through 2022-03-15 allows attackers to obtain remote control of a mobile phone, e.g., to obtain sensi... |
| CVE-2022-25461 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the startip parameter in the SetPptpServerCf... |
| CVE-2022-25460 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the endip parameter in the SetPptpServerCfg ... |
| CVE-2022-25459 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the S1 parameter in the SetSysTimeCfg functi... |
| CVE-2022-25458 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the cmdinput parameter in the exeCommand fun... |
| CVE-2022-25457 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the ntpserver parameter in the SetSysTimeCfg... |
| CVE-2022-25456 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the security_5g parameter in the WifiBasicSe... |
| CVE-2022-25455 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the SetIpMacBind funct... |
| CVE-2022-25454 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the loginpwd parameter in the SetFirewallCfg... |
| CVE-2022-25453 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the time parameter in the saveParentControlI... |
| CVE-2022-25452 | CRITICAL | 9.8 | 1.7% | Mar 18, 2022 | Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the URLs parameter in the saveParentControlI... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now