2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-31008 | HIGH | 7.5 | 0.3% | Oct 6, 2022 | RabbitMQ is a multi-protocol messaging and streaming broker. In affected versions the shovel and federation plugins perf... |
| CVE-2022-2986 | HIGH | 8.8 | 0.4% | Oct 6, 2022 | Enabling and disabling installed H5P libraries did not include the necessary token to prevent a CSRF risk. |
| CVE-2022-2637 | HIGH | 8.8 | 0.5% | Oct 6, 2022 | Incorrect Privilege Assignment vulnerability in Hitachi Hitachi Storage Plug-in for VMware vCenter allows remote authent... |
| CVE-2022-26235 | HIGH | 7.8 | 0.2% | Oct 6, 2022 | A vulnerability was discovered in the Remisol Advance v2.0.12.1 and below for the Normand Message Server. On installatio... |
| CVE-2022-42308 | HIGH | 7.1 | 0.2% | Oct 3, 2022 | An issue was discovered in Veritas NetBackup through 8.2 and related Veritas products. An attacker with local access can... |
| CVE-2022-42305 | HIGH | 7.5 | 0.6% | Oct 3, 2022 | An issue was discovered in Veritas NetBackup through 10.0.0.1 and related Veritas products. The NetBackup Primary server... |
| CVE-2022-42301 | HIGH | 8.8 | 0.5% | Oct 3, 2022 | An issue was discovered in Veritas NetBackup through 10.0.0.1 and related Veritas products. The NetBackup Primary server... |
| CVE-2022-42299 | HIGH | 7.5 | 0.6% | Oct 3, 2022 | An issue was discovered in Veritas NetBackup through 10.0.0.1 and related Veritas products. The NetBackup Primary server... |
| CVE-2022-41301 | HIGH | 7.8 | 0.4% | Oct 3, 2022 | A maliciously crafted PKT file when consumed through SubassemblyComposer.exe application could lead to memory corruption... |
| CVE-2022-40764 | HIGH | 7.8 | 0.5% | Oct 3, 2022 | Snyk CLI before 1.996.0 allows arbitrary command execution, affecting Snyk IDE plugins and the snyk npm package. Exploit... |
| CVE-2022-33890 | HIGH | 7.8 | 0.4% | Oct 3, 2022 | A maliciously crafted PCT or DWF file when consumed through DesignReview.exe application could lead to memory corruption... |
| CVE-2022-33889 | HIGH | 7.8 | 0.2% | Oct 3, 2022 | A maliciously crafted GIF or JPEG files when parsed through Autodesk Design Review 2018, and AutoCAD 2023 and 2022 could... |
| CVE-2022-33888 | HIGH | 7.8 | 0.4% | Oct 3, 2022 | A malicious crafted Dwg2Spd file when processed through Autodesk DWG application could lead to memory corruption vulnera... |
| CVE-2022-33887 | HIGH | 7.8 | 0.3% | Oct 3, 2022 | A maliciously crafted PDF file when parsed through Autodesk AutoCAD 2023 causes an unhandled exception. An attacker can ... |
| CVE-2022-33886 | HIGH | 7.8 | 0.3% | Oct 3, 2022 | A maliciously crafted MODEL and SLDPRT file can be used to write beyond the allocated buffer while parsing through Autod... |
| CVE-2022-33885 | HIGH | 7.8 | 0.3% | Oct 3, 2022 | A maliciously crafted X_B, CATIA, and PDF file when parsed through Autodesk AutoCAD 2023 and 2022 can be used to write b... |
| CVE-2022-33884 | HIGH | 7.5 | 0.7% | Oct 3, 2022 | Parsing a maliciously crafted X_B file can force Autodesk AutoCAD 2023 and 2022 to read beyond allocated boundaries. Thi... |
| CVE-2022-33883 | HIGH | 7.8 | 0.4% | Oct 3, 2022 | A malicious crafted file consumed through Moldflow Synergy, Moldflow Adviser, Moldflow Communicator, and Advanced Materi... |
| CVE-2022-41430 | HIGH | 8.8 | 0.7% | Oct 3, 2022 | Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadBit function in mp4mux. |
| CVE-2022-41429 | HIGH | 8.8 | 0.7% | Oct 3, 2022 | Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_Atom::TypeFromString function in mp4tag. |
| CVE-2022-41428 | HIGH | 8.8 | 0.7% | Oct 3, 2022 | Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadBits function in mp4mux. |
| CVE-2022-3125 | HIGH | 8.8 | 1.1% | Oct 3, 2022 | The Frontend File Manager Plugin WordPress plugin before 21.3 allows any authenticated users, such as subscriber, to ren... |
| CVE-2022-38817 | HIGH | 7.5 | 2.9% | Oct 3, 2022 | Dapr Dashboard v0.1.0 through v0.10.0 is vulnerable to Incorrect Access Control that allows attackers to obtain sensitiv... |
| CVE-2022-40886 | HIGH | 7.2 | 1.0% | Oct 3, 2022 | DedeCMS 5.7.98 has a file upload vulnerability in the background. |
| CVE-2022-41082 | HIGH | 8 | 100.0% | Oct 3, 2022 | Microsoft Exchange Server Remote Code Execution Vulnerability |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now