2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-3640 | HIGH | 8.8 | 1.1% | Oct 21, 2022 | A vulnerability, which was classified as critical, was found in Linux Kernel. Affected is the function l2cap_conn_del of... |
| CVE-2022-42189 | HIGH | 7.2 | 1.4% | Oct 21, 2022 | Emlog Pro 1.6.0 plugins upload suffers from a remote code execution (RCE) vulnerability. |
| CVE-2022-41575 | HIGH | 7.5 | 0.7% | Oct 21, 2022 | A credential-exposure vulnerability in the support-bundle mechanism in Gradle Enterprise 2022.3 through 2022.3.3 allows ... |
| CVE-2022-36122 | HIGH | 7.8 | 0.2% | Oct 21, 2022 | The Automox Agent before 40 on Windows incorrectly sets permissions on key files. |
| CVE-2022-3636 | HIGH | 7.8 | 0.3% | Oct 21, 2022 | A vulnerability was identified in Linux Kernel 33fc42de33278b2b3ec6f3390512987bc29a62b7. This affects the function __mtk... |
| CVE-2022-3635 | HIGH | 7 | 0.4% | Oct 21, 2022 | A vulnerability, which was classified as critical, has been found in Linux Kernel. Affected by this issue is the functio... |
| CVE-2022-3625 | HIGH | 7.8 | 0.3% | Oct 21, 2022 | A vulnerability was found in Linux Kernel. It has been classified as critical. This affects the function devlink_param_s... |
| CVE-2022-39823 | HIGH | 7.5 | 0.6% | Oct 20, 2022 | An issue was discovered in Softing OPC UA C++ SDK 5.66 through 6.x before 6.10. An OPC/UA browse request exceeding the s... |
| CVE-2022-38108 | HIGH | 7.2 | 69.5% | Oct 20, 2022 | SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversa... |
| CVE-2022-37453 | HIGH | 7.5 | 0.7% | Oct 20, 2022 | An issue was discovered in Softing OPC UA C++ SDK before 6.10. A buffer overflow or an excess allocation happens due to ... |
| CVE-2022-36958 | HIGH | 8.8 | 82.7% | Oct 20, 2022 | SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversa... |
| CVE-2022-36957 | HIGH | 7.2 | 12.3% | Oct 20, 2022 | SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversa... |
| CVE-2022-3623 | HIGH | 7.5 | 0.7% | Oct 20, 2022 | A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the fu... |
| CVE-2022-42344 | HIGH | 8.8 | 1.1% | Oct 20, 2022 | Adobe Commerce versions 2.4.3-p2 (and earlier), 2.3.7-p3 (and earlier) and 2.4.4 (and earlier) are affected by an Incorr... |
| CVE-2022-3577 | HIGH | 7.8 | 0.2% | Oct 20, 2022 | An out-of-bounds memory write flaw was found in the Linux kernel’s Kid-friendly Wired Controller driver. This flaw allow... |
| CVE-2022-2069 | HIGH | 7.8 | 0.4% | Oct 20, 2022 | The APDFL.dll in Siemens JT2Go prior to V13.3.0.5 and Siemens Teamcenter Visualization prior to V14.0.0.2 contains an ou... |
| CVE-2022-42176 | HIGH | 7.8 | 0.3% | Oct 20, 2022 | In PCTechSoft PCSecure V5.0.8.xw, use of Hard-coded Credentials in configuration files leads to admin panel access. |
| CVE-2022-42201 | HIGH | 7.2 | 1.0% | Oct 20, 2022 | Simple Exam Reviewer Management System v1.0 is vulnerable to Insecure file upload. |
| CVE-2022-42199 | HIGH | 8.8 | 0.5% | Oct 20, 2022 | Simple Exam Reviewer Management System v1.0 is vulnerable to Cross Site Request Forgery (CSRF) via the Exam List. |
| CVE-2022-42198 | HIGH | 8.8 | 1.0% | Oct 20, 2022 | In Simple Exam Reviewer Management System v1.0 the User List function suffers from insecure file upload. |
| CVE-2022-31366 | HIGH | 7.2 | 1.1% | Oct 20, 2022 | An arbitrary file upload vulnerability in the apiImportLabs function in api_labs.php of EVE-NG 2.0.3-112 Community allow... |
| CVE-2022-3576 | HIGH | 7.5 | 0.9% | Oct 20, 2022 | A vulnerability regarding out-of-bounds read is found in the session processing functionality of Out-of-Band (OOB) Manag... |
| CVE-2022-27626 | HIGH | 8.1 | 1.0% | Oct 20, 2022 | A vulnerability regarding concurrent execution using shared resource with improper synchronization ('Race Condition') is... |
| CVE-2022-41836 | HIGH | 7.5 | 0.6% | Oct 19, 2022 | When an 'Attack Signature False Positive Mode' enabled security policy is configured on a virtual server, undisclosed re... |
| CVE-2022-41835 | HIGH | 8.8 | 0.1% | Oct 19, 2022 | In F5OS-A version 1.x before 1.1.0 and F5OS-C version 1.x before 1.5.0, excessive file permissions in F5OS allows an aut... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now