2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-47770CRITICAL9.8Serenissima Informatica Fast Checkin version v1.0 is vulnerable to Unauthenticated SQL Injection.
CVE-2022-47769CRITICAL9.8An arbitrary file write vulnerability in Serenissima Informatica Fast Checkin v1.0 allows unauthenticated attackers to u...
CVE-2022-47873CRITICAL9.8Netcad KEOS 1.0 is vulnerable to XML External Entity (XXE) resulting in SSRF with XXE (remote).
CVE-2022-45297CRITICAL9.8EQ v1.5.31 to v2.2.0 was discovered to contain a SQL injection vulnerability via the UserPwd parameter.
CVE-2022-47854CRITICAL9.8i-librarian 4.10 is vulnerable to Arbitrary file upload in ajaxsupplement.php.
CVE-2022-47699CRITICAL9.8COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 is vulnerable to Incor...
CVE-2022-47697CRITICAL9.8COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 and before is vulnerab...
CVE-2022-45172CRITICAL9.8An issue was discovered in LIVEBOX Collaboration vDesk before v018. Broken Access Control can occur under the /api/v1/re...
CVE-2022-47780CRITICAL9.8SQL Injection vulnerability in Bangresto 1.0 via the itemID parameter.
CVE-2022-47035CRITICAL9.8Buffer Overflow Vulnerability in D-Link DIR-825 v1.33.0.44ebdd4-embedded and below allows attacker to execute arbitrary ...
CVE-2022-28331CRITICAL9.8On Windows, Apache Portable Runtime 1.7.0 and earlier may write beyond the end of a stack based buffer in apr_socket_sen...
CVE-2022-24963CRITICAL9.8Integer Overflow or Wraparound vulnerability in apr_encode functions of Apache Portable Runtime (APR) allows an attacker...
CVE-2022-39060CRITICAL9.8ChangingTech MegaServiSignAdapter component has a vulnerability of improper input validation. An unauthenticated remote ...
CVE-2022-45789CRITICAL9.8A CWE-294: Authentication Bypass by Capture-replay vulnerability exists that could cause execution of unauthorized Modbu...
CVE-2022-21129CRITICAL9.8Versions of the package nemo-appium before 0.0.9 are vulnerable to Command Injection due to improper input sanitization ...
CVE-2022-48175CRITICAL9.8Rukovoditel v3.2.1 was discovered to contain a remote code execution (RCE) vulnerability in the component /rukovoditel/i...
CVE-2022-32529CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32528CRITICAL9.1 A CWE-306: Missing Authentication for Critical Function vulnerability exists that could cause access to manipulate and ...
CVE-2022-32527CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32526CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32525CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32524CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32523CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32522CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32520CRITICAL9.8A CWE-522: Insufficiently Protected Credentials vulnerability exists that could result in unwanted access to a DCE insta...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now