2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-39406HIGH8.1Vulnerability in the PeopleSoft Enterprise Common Components product of Oracle PeopleSoft (component: Approval Framework...
CVE-2022-21634HIGH7.5Vulnerability in the Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: LLVM Interpreter). Supporte...
CVE-2022-21623HIGH7.5Vulnerability in the Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Application Confi...
CVE-2022-21622HIGH7.5Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (component: Adapters). Supported versions that...
CVE-2022-21620HIGH7.5Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that ar...
CVE-2022-21615HIGH7.4Vulnerability in the Oracle Enterprise Data Quality product of Oracle Fusion Middleware (component: Dashboard). Supporte...
CVE-2022-21614HIGH7.5Vulnerability in the Oracle Enterprise Data Quality product of Oracle Fusion Middleware (component: Dashboard). Supporte...
CVE-2022-21613HIGH8.8Vulnerability in the Oracle Enterprise Data Quality product of Oracle Fusion Middleware (component: Dashboard). Supporte...
CVE-2022-21612HIGH8.1Vulnerability in the Oracle Enterprise Data Quality product of Oracle Fusion Middleware (component: Dashboard). Supporte...
CVE-2022-21603HIGH7.2Vulnerability in the Oracle Database - Sharding component of Oracle Database Server. Supported versions that are affecte...
CVE-2022-21600HIGH7.2Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are af...
CVE-2022-21598HIGH7.5Vulnerability in the Siebel Core - DB Deployment and Configuration product of Oracle Siebel CRM (component: Repository U...
CVE-2022-21596HIGH7.2Vulnerability in the Oracle Database - Advanced Queuing component of Oracle Database Server. The supported version that ...
CVE-2022-21593HIGH7.1Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (component: OHS Config MBeans). Supported ve...
CVE-2022-21590HIGH7.6Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: Core Formatting API). Supported...
CVE-2022-42188HIGH7.5In Lavalite 9.0.0, the XSRF-TOKEN cookie is vulnerable to path traversal attacks, enabling read access to arbitrary file...
CVE-2022-43259HIGH7.5Tenda AC15 V15.03.05.18 was discovered to contain a stack overflow via the timeZone parameter in the form_fast_setting_w...
CVE-2022-41547HIGH7.5Mobile Security Framework (MobSF) v0.9.2 and below was discovered to contain a local file inclusion (LFI) vulnerability ...
CVE-2022-41541HIGH8.1TP-Link AX10v1 V1_211117 allows attackers to execute a replay attack by using a previously transmitted encrypted authent...
CVE-2022-41537HIGH7.2Online Tours & Travels Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the c...
CVE-2022-29055HIGH7.5A access of uninitialized pointer in Fortinet FortiOS version 7.2.0, 7.0.0 through 7.0.5, 6.4.0 through 6.4.8, 6.2.0 thr...
CVE-2022-41504HIGH7.2An arbitrary file upload vulnerability in the component /php_action/editProductImage.php of Billing System Project v1.0 ...
CVE-2022-41479HIGH7.5The DevExpress Resource Handler (ASPxHttpHandlerModule) in DevExpress ASP.NET Web Forms Build v19.2.3 does not verify th...
CVE-2022-35844HIGH7.2An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface ...
CVE-2022-36438HIGH7.8AsusSwitch.exe on ASUS personal computers (running Windows) sets weak file permissions, leading to local privilege escal...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now