2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-21306 | CRITICAL | 9.8 | 4.1% | Jan 19, 2022 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions th... |
| CVE-2022-21276 | CRITICAL | 9.9 | 1.1% | Jan 19, 2022 | Vulnerability in the Oracle Communications Billing and Revenue Management product of Oracle Communications Applications ... |
| CVE-2022-21275 | CRITICAL | 10 | 1.8% | Jan 19, 2022 | Vulnerability in the Oracle Communications Billing and Revenue Management product of Oracle Communications Applications ... |
| CVE-2022-22167 | CRITICAL | 9.8 | 0.7% | Jan 19, 2022 | A traffic classification vulnerability in Juniper Networks Junos OS on the SRX Series Services Gateways may allow an att... |
| CVE-2022-22157 | CRITICAL | 9.3 | 0.7% | Jan 19, 2022 | A traffic classification vulnerability in Juniper Networks Junos OS on the SRX Series Services Gateways may allow an att... |
| CVE-2022-23408 | CRITICAL | 9.1 | 1.2% | Jan 18, 2022 | wolfSSL 5.x before 5.1.1 uses non-random IV values in certain situations. This affects connections (without AEAD) using ... |
| CVE-2022-23305 | CRITICAL | 9.8 | 66.5% | Jan 18, 2022 | By design, the JDBCAppender in Log4j 1.2.x accepts an SQL statement as a configuration parameter where the values to be ... |
| CVE-2022-0239 | CRITICAL | 9.8 | 1.2% | Jan 17, 2022 | corenlp is vulnerable to Improper Restriction of XML External Entity Reference |
| CVE-2022-23304 | CRITICAL | 9.8 | 1.9% | Jan 17, 2022 | The implementations of EAP-pwd in hostapd before 2.10 and wpa_supplicant before 2.10 are vulnerable to side-channel atta... |
| CVE-2022-23303 | CRITICAL | 9.8 | 2.9% | Jan 17, 2022 | The implementations of SAE in hostapd before 2.10 and wpa_supplicant before 2.10 are vulnerable to side channel attacks ... |
| CVE-2022-23178 | CRITICAL | 9.8 | 75.7% | Jan 15, 2022 | An issue was discovered on Crestron HD-MD4X2-4K-E 1.0.0.2159 devices. When the administrative web interface of the HDMI ... |
| CVE-2022-23227 | CRITICAL | 9.8 | 49.4% | Jan 14, 2022 | NUUO NVRmini2 through 3.11 allows an unauthenticated attacker to upload an encrypted TAR archive, which can be abused to... |
| CVE-2022-0224 | CRITICAL | 9.8 | 2.0% | Jan 14, 2022 | dolibarr is vulnerable to Improper Neutralization of Special Elements used in an SQL Command |
| CVE-2022-23219 | CRITICAL | 9.8 | 4.2% | Jan 14, 2022 | The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 cop... |
| CVE-2022-23218 | CRITICAL | 9.8 | 4.7% | Jan 14, 2022 | The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 ... |
| CVE-2022-22056 | CRITICAL | 9.8 | 2.3% | Jan 14, 2022 | The Le-yan dental management system contains a hard-coded credentials vulnerability in the web page source code, which a... |
| CVE-2022-22055 | CRITICAL | 9.8 | 2.5% | Jan 14, 2022 | The Le-yan dental management system contains an SQL-injection vulnerability. An unauthenticated remote attacker can inje... |
| CVE-2022-20658 | CRITICAL | 9.6 | 1.4% | Jan 14, 2022 | A vulnerability in the web-based management interface of Cisco Unified Contact Center Management Portal (Unified CCMP) a... |
| CVE-2022-22989 | CRITICAL | 9.8 | 1.3% | Jan 13, 2022 | My Cloud OS 5 was vulnerable to a pre-authenticated stack overflow vulnerability on the FTP service that could be exploi... |
| CVE-2022-22988 | CRITICAL | 9.1 | 0.7% | Jan 13, 2022 | File and directory permissions have been corrected to prevent unintended users from modifying or accessing resources. It... |
| CVE-2022-23131 | CRITICAL | 9.8 | 95.7% | Jan 13, 2022 | In the case of instances where the SAML SSO authentication is enabled (non-default), session data can be modified by a m... |
| CVE-2022-21969 | CRITICAL | 9 | 1.2% | Jan 11, 2022 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2022-21907 | CRITICAL | 9.8 | 92.8% | Jan 11, 2022 | HTTP Protocol Stack Remote Code Execution Vulnerability |
| CVE-2022-21898 | CRITICAL | 9.8 | 2.4% | Jan 11, 2022 | DirectX Graphics Kernel Remote Code Execution Vulnerability |
| CVE-2022-21874 | CRITICAL | 9.8 | 2.3% | Jan 11, 2022 | Windows Security Center API Remote Code Execution Vulnerability |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now