2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-41533HIGH7.2Online Diagnostic Lab Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the co...
CVE-2022-42161HIGH8.8D-Link COVR 1200,1202,1203 v1.08 was discovered to contain a command injection vulnerability via the /SetTriggerWPS/PIN ...
CVE-2022-42160HIGH8.8D-Link COVR 1200,1202,1203 v1.08 was discovered to contain a command injection vulnerability via the system_time_timezon...
CVE-2022-42156HIGH8.8D-Link COVR 1200,1203 v1.08 was discovered to contain a command injection vulnerability via the tomography_ping_number p...
CVE-2022-41485HIGH7.5Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x47ce00 function...
CVE-2022-41484HIGH7.5Tenda AC1900 AP500(US)_V1_180320(Beta) was discovered to contain a buffer overflow in the 0x32384 function. This vulnera...
CVE-2022-41483HIGH7.5Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x4a12cc function...
CVE-2022-41482HIGH7.5Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x47c5dc function...
CVE-2022-41481HIGH7.5Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x47de1c function...
CVE-2022-41480HIGH7.5Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 was discovered to contain a buffer overflow in the 0x475dc function....
CVE-2022-3492HIGH8.8A vulnerability classified as critical was found in SourceCodester Human Resource Management System 1.0. This vulnerabil...
CVE-2022-41489HIGH8.1WAYOS LQ_09 22.03.17V was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to send craft...
CVE-2022-41475HIGH8.8RPCMS v3.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to arbitrarily add an ...
CVE-2022-37208HIGH8.8JFinal CMS 5.1.0 is vulnerable to SQL Injection. These interfaces do not use the same component, nor do they have filter...
CVE-2022-42906HIGH7.8powerline-gitstatus (aka Powerline Gitstatus) before 1.3.2 allows arbitrary code execution. git repositories can contain...
CVE-2022-42902HIGH8.8In Linaro Automated Validation Architecture (LAVA) before 2022.10, there is dynamic code execution in lava_server/lavata...
CVE-2022-42901HIGH7.8Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds and stack overflow issues when...
CVE-2022-42900HIGH7.8Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds read issues when opening craft...
CVE-2022-42899HIGH7.8Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds read and stack overflow issues...
CVE-2022-40187HIGH8Foresight GC3 Launch Monitor 1.3.15.68 ships with a Target Communication Framework (TCF) service enabled. This service l...
CVE-2022-34020HIGH8.8Cross Site Request Forgery (CSRF) vulnerability in ResIOT ResIOT IOT Platform + LoRaWAN Network Server through 4.1.10001...
CVE-2022-3171HIGH7.5A parsing issue with binary data in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can ...
CVE-2022-39283HIGH7.5FreeRDP is a free remote desktop protocol library and clients. All FreeRDP based clients when using the `/video` command...
CVE-2022-39282HIGH7.5FreeRDP is a free remote desktop protocol library and clients. FreeRDP based clients on unix systems using `/parallel` c...
CVE-2022-39299HIGH8.1Passport-SAML is a SAML 2.0 authentication provider for Passport, the Node.js authentication library. A remote attacker ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now