2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-39406 | HIGH | 8.1 | 0.6% | Oct 18, 2022 | Vulnerability in the PeopleSoft Enterprise Common Components product of Oracle PeopleSoft (component: Approval Framework... |
| CVE-2022-21634 | HIGH | 7.5 | 1.3% | Oct 18, 2022 | Vulnerability in the Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: LLVM Interpreter). Supporte... |
| CVE-2022-21623 | HIGH | 7.5 | 0.6% | Oct 18, 2022 | Vulnerability in the Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Application Confi... |
| CVE-2022-21622 | HIGH | 7.5 | 0.7% | Oct 18, 2022 | Vulnerability in the Oracle SOA Suite product of Oracle Fusion Middleware (component: Adapters). Supported versions that... |
| CVE-2022-21620 | HIGH | 7.5 | 0.3% | Oct 18, 2022 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that ar... |
| CVE-2022-21615 | HIGH | 7.4 | 0.7% | Oct 18, 2022 | Vulnerability in the Oracle Enterprise Data Quality product of Oracle Fusion Middleware (component: Dashboard). Supporte... |
| CVE-2022-21614 | HIGH | 7.5 | 0.8% | Oct 18, 2022 | Vulnerability in the Oracle Enterprise Data Quality product of Oracle Fusion Middleware (component: Dashboard). Supporte... |
| CVE-2022-21613 | HIGH | 8.8 | 0.6% | Oct 18, 2022 | Vulnerability in the Oracle Enterprise Data Quality product of Oracle Fusion Middleware (component: Dashboard). Supporte... |
| CVE-2022-21612 | HIGH | 8.1 | 0.7% | Oct 18, 2022 | Vulnerability in the Oracle Enterprise Data Quality product of Oracle Fusion Middleware (component: Dashboard). Supporte... |
| CVE-2022-21603 | HIGH | 7.2 | 0.8% | Oct 18, 2022 | Vulnerability in the Oracle Database - Sharding component of Oracle Database Server. Supported versions that are affecte... |
| CVE-2022-21600 | HIGH | 7.2 | 1.2% | Oct 18, 2022 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are af... |
| CVE-2022-21598 | HIGH | 7.5 | 0.6% | Oct 18, 2022 | Vulnerability in the Siebel Core - DB Deployment and Configuration product of Oracle Siebel CRM (component: Repository U... |
| CVE-2022-21596 | HIGH | 7.2 | 0.8% | Oct 18, 2022 | Vulnerability in the Oracle Database - Advanced Queuing component of Oracle Database Server. The supported version that ... |
| CVE-2022-21593 | HIGH | 7.1 | 0.6% | Oct 18, 2022 | Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (component: OHS Config MBeans). Supported ve... |
| CVE-2022-21590 | HIGH | 7.6 | 0.6% | Oct 18, 2022 | Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: Core Formatting API). Supported... |
| CVE-2022-42188 | HIGH | 7.5 | 0.9% | Oct 18, 2022 | In Lavalite 9.0.0, the XSRF-TOKEN cookie is vulnerable to path traversal attacks, enabling read access to arbitrary file... |
| CVE-2022-43259 | HIGH | 7.5 | 0.7% | Oct 18, 2022 | Tenda AC15 V15.03.05.18 was discovered to contain a stack overflow via the timeZone parameter in the form_fast_setting_w... |
| CVE-2022-41547 | HIGH | 7.5 | 1.2% | Oct 18, 2022 | Mobile Security Framework (MobSF) v0.9.2 and below was discovered to contain a local file inclusion (LFI) vulnerability ... |
| CVE-2022-41541 | HIGH | 8.1 | 1.1% | Oct 18, 2022 | TP-Link AX10v1 V1_211117 allows attackers to execute a replay attack by using a previously transmitted encrypted authent... |
| CVE-2022-41537 | HIGH | 7.2 | 1.1% | Oct 18, 2022 | Online Tours & Travels Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the c... |
| CVE-2022-29055 | HIGH | 7.5 | 0.9% | Oct 18, 2022 | A access of uninitialized pointer in Fortinet FortiOS version 7.2.0, 7.0.0 through 7.0.5, 6.4.0 through 6.4.8, 6.2.0 thr... |
| CVE-2022-41504 | HIGH | 7.2 | 1.0% | Oct 18, 2022 | An arbitrary file upload vulnerability in the component /php_action/editProductImage.php of Billing System Project v1.0 ... |
| CVE-2022-41479 | HIGH | 7.5 | 1.1% | Oct 18, 2022 | The DevExpress Resource Handler (ASPxHttpHandlerModule) in DevExpress ASP.NET Web Forms Build v19.2.3 does not verify th... |
| CVE-2022-35844 | HIGH | 7.2 | 0.3% | Oct 18, 2022 | An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface ... |
| CVE-2022-36438 | HIGH | 7.8 | 0.2% | Oct 18, 2022 | AsusSwitch.exe on ASUS personal computers (running Windows) sets weak file permissions, leading to local privilege escal... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now