2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-23831HIGH7.5Insufficient validation of the IOCTL input buffer in AMD μProf may allow an attacker to send an arbitrary buffer leading...
CVE-2022-42966HIGH7.5An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the cleo PyPI package, when an attacker ...
CVE-2022-42965HIGH7.5An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the snowflake-connector-python PyPI pack...
CVE-2022-42964HIGH7.5An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the pymatgen PyPI package, when an attac...
CVE-2022-3450HIGH8.8Use after free in Peer Connection in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially expl...
CVE-2022-3449HIGH8.8Use after free in Safe Browsing in Google Chrome prior to 106.0.5249.119 allowed an attacker who convinced a user to ins...
CVE-2022-3448HIGH8.8Use after free in Permissions API in Google Chrome prior to 106.0.5249.119 allowed a remote attacker who convinced a use...
CVE-2022-3446HIGH8.8Heap buffer overflow in WebSQL in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit...
CVE-2022-3445HIGH8.8Use after free in Skia in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap co...
CVE-2022-32588HIGH7.8An out-of-bounds write vulnerability exists in the PICT parsing pctwread_14841 functionality of Accusoft ImageGear 20.0....
CVE-2022-30543HIGH8.8A leftover debug code vulnerability exists in the console infct functionality of InHand Networks InRouter302 V3.5.45. A ...
CVE-2022-29888HIGH8.1A leftover debug code vulnerability exists in the httpd port 4444 upload.cgi functionality of InHand Networks InRouter30...
CVE-2022-28689HIGH8.8A leftover debug code vulnerability exists in the console support functionality of InHand Networks InRouter302 V3.5.45. ...
CVE-2022-43278HIGH7.2Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the categoriesId parameter at...
CVE-2022-43277HIGH7.2Canteen Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via ip/youthappam/php_ac...
CVE-2022-43292HIGH7.2Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /youthapp...
CVE-2022-43291HIGH7.2Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /youthapp...
CVE-2022-43290HIGH7.2Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /youthapp...
CVE-2022-31253HIGH7.8A Untrusted Search Path vulnerability in openldap2 of openSUSE Factory allows local attackers with control of the ldap u...
CVE-2022-45061HIGH7.5An issue was discovered in Python before 3.11.1. An unnecessary quadratic algorithm exists in one path when processing s...
CVE-2022-45060HIGH7.5An HTTP Request Forgery issue was discovered in Varnish Cache 5.x and 6.x before 6.0.11, 7.x before 7.1.2, and 7.2.x bef...
CVE-2022-45059HIGH7.5An issue was discovered in Varnish Cache 7.x before 7.1.2 and 7.2.x before 7.2.1. A request smuggling attack can be perf...
CVE-2022-3889HIGH8.8Type confusion in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corr...
CVE-2022-3888HIGH8.8Use after free in WebCodecs in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit he...
CVE-2022-3887HIGH8.8Use after free in Web Workers in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now