2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-34424 | HIGH | 7.5 | 0.6% | Sep 28, 2022 | Networking OS10, versions 10.5.1.x, 10.5.2.x, and 10.5.3.x contain a vulnerability that could allow an attacker to cause... |
| CVE-2022-3215 | HIGH | 7.5 | 0.5% | Sep 28, 2022 | NIOHTTP1 and projects using it for generating HTTP responses can be subject to a HTTP Response Injection attack. This oc... |
| CVE-2022-39251 | HIGH | 7.5 | 0.9% | Sep 28, 2022 | Matrix Javascript SDK is the Matrix Client-Server SDK for JavaScript. Prior to version 19.7.0, an attacker cooperating w... |
| CVE-2022-39249 | HIGH | 7.5 | 0.9% | Sep 28, 2022 | Matrix Javascript SDK is the Matrix Client-Server SDK for JavaScript. Prior to version 19.7.0, an attacker cooperating w... |
| CVE-2022-39248 | HIGH | 7.5 | 0.7% | Sep 28, 2022 | matrix-android-sdk2 is the Matrix SDK for Android. Prior to version 1.5.1, an attacker cooperating with a malicious home... |
| CVE-2022-1270 | HIGH | 7.8 | 0.4% | Sep 28, 2022 | In GraphicsMagick, a heap buffer overflow was found when parsing MIFF. |
| CVE-2022-3354 | HIGH | 7.5 | 0.7% | Sep 28, 2022 | A vulnerability has been found in Open5GS up to 2.4.10 and classified as problematic. This vulnerability affects unknown... |
| CVE-2022-36448 | HIGH | 8.2 | 0.3% | Sep 28, 2022 | An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. There is an SMM memory corruption vulnerability... |
| CVE-2022-40082 | HIGH | 7.5 | 0.9% | Sep 28, 2022 | Hertz v0.3.0 ws discovered to contain a path traversal vulnerability via the normalizePath function. |
| CVE-2022-39261 | HIGH | 7.5 | 1.5% | Sep 28, 2022 | Twig is a template language for PHP. Versions 1.x prior to 1.44.7, 2.x prior to 2.15.3, and 3.x prior to 3.4.3 encounter... |
| CVE-2022-28813 | HIGH | 7.5 | 0.8% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a remote, unauthenticated attacker... |
| CVE-2022-22525 | HIGH | 7.2 | 1.0% | Sep 28, 2022 | In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 an remote attacker with admin righ... |
| CVE-2022-22523 | HIGH | 7.5 | 0.6% | Sep 28, 2022 | An improper authentication vulnerability exists in the Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server... |
| CVE-2022-40486 | HIGH | 8.8 | 1.5% | Sep 28, 2022 | TP Link Archer AX10 V1 Firmware Version 1.3.1 Build 20220401 Rel. 57450(5553) was discovered to allow authenticated atta... |
| CVE-2022-32168 | HIGH | 7.8 | 0.7% | Sep 28, 2022 | Notepad++ versions 8.4.1 and before are vulnerable to DLL hijacking where an attacker can replace the vulnerable dll (Ux... |
| CVE-2022-39032 | HIGH | 8.8 | 0.7% | Sep 28, 2022 | Smart eVision has an improper privilege management vulnerability. A remote attacker with general user privilege can expl... |
| CVE-2022-39030 | HIGH | 7.5 | 0.7% | Sep 28, 2022 | smart eVision has inadequate authorization for system information query function. An unauthenticated remote attacker, wh... |
| CVE-2022-40497 | HIGH | 8.8 | 1.2% | Sep 28, 2022 | Wazuh v3.6.1 - v3.13.5, v4.0.0 - v4.2.7, and v4.3.0 - v4.3.7 were discovered to contain an authenticated remote code exe... |
| CVE-2022-41604 | HIGH | 8.8 | 0.6% | Sep 27, 2022 | Check Point ZoneAlarm Extreme Security before 15.8.211.19229 allows local users to escalate privileges. This occurs beca... |
| CVE-2022-40878 | HIGH | 8.8 | 23.2% | Sep 27, 2022 | In Exam Reviewer Management System 1.0, an authenticated attacker can upload a web-shell php file in profile page to ach... |
| CVE-2022-40354 | HIGH | 7.2 | 0.8% | Sep 27, 2022 | Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet... |
| CVE-2022-40353 | HIGH | 7.2 | 0.8% | Sep 27, 2022 | Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet... |
| CVE-2022-40352 | HIGH | 7.2 | 0.7% | Sep 27, 2022 | Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet... |
| CVE-2022-3324 | HIGH | 7.8 | 0.5% | Sep 27, 2022 | Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0598. |
| CVE-2022-3323 | HIGH | 7.5 | 30.7% | Sep 27, 2022 | An SQL injection vulnerability in Advantech iView 5.7.04.6469. The specific flaw exists within the ConfigurationServlet ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now