2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-26174CRITICAL9.8A remote code execution (RCE) vulnerability in Beekeeper Studio v3.2.0 allows attackers to execute arbitrary code via a ...
CVE-2022-26148CRITICAL9.8An issue was discovered in Grafana through 7.3.4, when integrated with Zabbix. The Zabbix password can be found in the a...
CVE-2022-24766CRITICAL9.8mitmproxy is an interactive, SSL/TLS-capable intercepting proxy. In mitmproxy 7.0.4 and below, a malicious client or ser...
CVE-2022-0760CRITICAL9.8The Simple Link Directory WordPress plugin before 7.7.2 does not validate and escape the post_id parameter before using ...
CVE-2022-0747CRITICAL9.8The Infographic Maker WordPress plugin before 4.3.8 does not validate and escape the post_id parameter before using it i...
CVE-2022-0739CRITICAL9.8The BookingPress WordPress plugin before 1.0.11 fails to properly sanitize user supplied POST data before it is used in ...
CVE-2022-0694CRITICAL9.8The Advanced Booking Calendar WordPress plugin before 1.7.0 does not validate and escape the calendar parameter before u...
CVE-2022-0591CRITICAL9.1The FormCraft WordPress plugin before 3.8.28 does not validate the URL parameter in the formcraft3_get AJAX action, lead...
CVE-2022-26960CRITICAL9.1connector.minimal.php in std42 elFinder through 2.1.60 is affected by path traversal. This allows unauthenticated remote...
CVE-2022-25505CRITICAL9.8Taocms v3.0.2 was discovered to contain a SQL injection vulnerability via the id parameter in \include\Model\Category.ph...
CVE-2022-24126CRITICAL9.8A buffer overflow in the NRSessionSearchResult parser in Bandai Namco FromSoftware Dark Souls III through 2022-03-19 all...
CVE-2022-26265CRITICAL9.8Contao Managed Edition v1.5.0 was discovered to contain a remote command execution (RCE) vulnerability via the component...
CVE-2022-25578CRITICAL9.8taocms v3.0.2 allows attackers to execute code injection via arbitrarily editing the .htaccess file.
CVE-2022-25390CRITICAL9.8DCN Firewall DCME-520 was discovered to contain a remote command execution (RCE) vulnerability via the host parameter in...
CVE-2022-27250CRITICAL9.8The UNISOC chipset through 2022-03-15 allows attackers to obtain remote control of a mobile phone, e.g., to obtain sensi...
CVE-2022-25461CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the startip parameter in the SetPptpServerCf...
CVE-2022-25460CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the endip parameter in the SetPptpServerCfg ...
CVE-2022-25459CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the S1 parameter in the SetSysTimeCfg functi...
CVE-2022-25458CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the cmdinput parameter in the exeCommand fun...
CVE-2022-25457CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the ntpserver parameter in the SetSysTimeCfg...
CVE-2022-25456CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the security_5g parameter in the WifiBasicSe...
CVE-2022-25455CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the list parameter in the SetIpMacBind funct...
CVE-2022-25454CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the loginpwd parameter in the SetFirewallCfg...
CVE-2022-25453CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the time parameter in the saveParentControlI...
CVE-2022-25452CRITICAL9.8Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the URLs parameter in the saveParentControlI...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now