2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-43221HIGH7.5open5gs v2.4.11 was discovered to contain a memory leak in the component src/upf/pfcp-path.c. This vulnerability allows ...
CVE-2022-43127HIGH7.2Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramete...
CVE-2022-43126HIGH7.2Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramete...
CVE-2022-43125HIGH7.2Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramete...
CVE-2022-43124HIGH7.2Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramete...
CVE-2022-43085HIGH7.2An arbitrary file upload vulnerability in add_product.php of Restaurant POS System v1.0 allows attackers to execute arbi...
CVE-2022-43083HIGH7.2An arbitrary file upload vulnerability in admin-add-vehicle.php of Vehicle Booking System v1.0 allows attackers to execu...
CVE-2022-43081HIGH7.5Fast Food Ordering System v1.0 was discovered to contain a SQL injection vulnerability via the component /fastfood/purch...
CVE-2022-42327HIGH7.1x86: unintended memory sharing between guests On Intel systems that support the "virtualize APIC accesses" feature, a gu...
CVE-2022-42320HIGH7Xenstore: Guests can get access to Xenstore nodes of deleted domains Access rights of Xenstore nodes are per domid. When...
CVE-2022-42309HIGH8.8Xenstore: Guests can crash xenstored Due to a bug in the fix of XSA-115 a malicious guest can cause xenstored to use a w...
CVE-2022-42252HIGH7.5If Apache Tomcat 8.5.0 to 8.5.82, 9.0.0-M1 to 9.0.67, 10.0.0-M1 to 10.0.26 or 10.1.0-M1 to 10.1.0 was configured to igno...
CVE-2022-25892HIGH7.5The package muhammara before 2.6.1, from 3.0.0 and before 3.1.1; all versions of package hummus are vulnerable to Denial...
CVE-2022-25885HIGH7.5The package muhammara before 2.6.0; all versions of package hummus are vulnerable to Denial of Service (DoS) when PDFStr...
CVE-2022-3373HIGH8.8Out of bounds write in V8 in Google Chrome prior to 106.0.5249.91 allowed a remote attacker to perform an out of bounds ...
CVE-2022-3370HIGH8.8Use after free in Custom Elements in Google Chrome prior to 106.0.5249.91 allowed a remote attacker to potentially explo...
CVE-2022-43355HIGH7.2Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php...
CVE-2022-43354HIGH7.2Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /adm...
CVE-2022-43353HIGH7.2Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /adm...
CVE-2022-43752HIGH7.8Oracle Solaris version 10 1/13, when using the Common Desktop Environment (CDE), is vulnerable to a privilege escalation...
CVE-2022-40294HIGH8.8 The application was identified to have an CSV injection in data export functionality, allowing for malicious code to be...
CVE-2022-40291HIGH8.8 The application was vulnerable to Cross-Site Request Forgery (CSRF) attacks, allowing an attacker to coerce users into ...
CVE-2022-3785HIGH7.8A vulnerability, which was classified as critical, has been found in Axiomatic Bento4. Affected by this issue is the fun...
CVE-2022-3784HIGH7.8A vulnerability classified as critical was found in Axiomatic Bento4 5e7bb34. Affected by this vulnerability is the func...
CVE-2022-3059HIGH7.5 The application was vulnerable to multiple instances of SQL injection (authenticated and unauthenticated) through a vul...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now