2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-34424HIGH7.5Networking OS10, versions 10.5.1.x, 10.5.2.x, and 10.5.3.x contain a vulnerability that could allow an attacker to cause...
CVE-2022-3215HIGH7.5NIOHTTP1 and projects using it for generating HTTP responses can be subject to a HTTP Response Injection attack. This oc...
CVE-2022-39251HIGH7.5Matrix Javascript SDK is the Matrix Client-Server SDK for JavaScript. Prior to version 19.7.0, an attacker cooperating w...
CVE-2022-39249HIGH7.5Matrix Javascript SDK is the Matrix Client-Server SDK for JavaScript. Prior to version 19.7.0, an attacker cooperating w...
CVE-2022-39248HIGH7.5matrix-android-sdk2 is the Matrix SDK for Android. Prior to version 1.5.1, an attacker cooperating with a malicious home...
CVE-2022-1270HIGH7.8In GraphicsMagick, a heap buffer overflow was found when parsing MIFF.
CVE-2022-3354HIGH7.5A vulnerability has been found in Open5GS up to 2.4.10 and classified as problematic. This vulnerability affects unknown...
CVE-2022-36448HIGH8.2An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. There is an SMM memory corruption vulnerability...
CVE-2022-40082HIGH7.5Hertz v0.3.0 ws discovered to contain a path traversal vulnerability via the normalizePath function.
CVE-2022-39261HIGH7.5Twig is a template language for PHP. Versions 1.x prior to 1.44.7, 2.x prior to 2.15.3, and 3.x prior to 3.4.3 encounter...
CVE-2022-28813HIGH7.5In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a remote, unauthenticated attacker...
CVE-2022-22525HIGH7.2In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 an remote attacker with admin righ...
CVE-2022-22523HIGH7.5An improper authentication vulnerability exists in the Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server...
CVE-2022-40486HIGH8.8TP Link Archer AX10 V1 Firmware Version 1.3.1 Build 20220401 Rel. 57450(5553) was discovered to allow authenticated atta...
CVE-2022-32168HIGH7.8Notepad++ versions 8.4.1 and before are vulnerable to DLL hijacking where an attacker can replace the vulnerable dll (Ux...
CVE-2022-39032HIGH8.8Smart eVision has an improper privilege management vulnerability. A remote attacker with general user privilege can expl...
CVE-2022-39030HIGH7.5smart eVision has inadequate authorization for system information query function. An unauthenticated remote attacker, wh...
CVE-2022-40497HIGH8.8Wazuh v3.6.1 - v3.13.5, v4.0.0 - v4.2.7, and v4.3.0 - v4.3.7 were discovered to contain an authenticated remote code exe...
CVE-2022-41604HIGH8.8Check Point ZoneAlarm Extreme Security before 15.8.211.19229 allows local users to escalate privileges. This occurs beca...
CVE-2022-40878HIGH8.8In Exam Reviewer Management System 1.0, an authenticated attacker can upload a web-shell php file in profile page to ach...
CVE-2022-40354HIGH7.2Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet...
CVE-2022-40353HIGH7.2Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet...
CVE-2022-40352HIGH7.2Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet...
CVE-2022-3324HIGH7.8Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0598.
CVE-2022-3323HIGH7.5An SQL injection vulnerability in Advantech iView 5.7.04.6469. The specific flaw exists within the ConfigurationServlet ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now