2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32796 | HIGH | 7.8 | 1.0% | Sep 23, 2022 | A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.5. An a... |
| CVE-2022-32792 | HIGH | 8.8 | 1.9% | Sep 23, 2022 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15... |
| CVE-2022-32790 | HIGH | 7.5 | 1.7% | Sep 23, 2022 | This issue was addressed with improved checks. This issue is fixed in tvOS 15.5, watchOS 8.6, iOS 15.5 and iPadOS 15.5, ... |
| CVE-2022-32787 | HIGH | 8.8 | 1.2% | Sep 23, 2022 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.6 and iPadOS 15.... |
| CVE-2022-32211 | HIGH | 8.8 | 1.1% | Sep 23, 2022 | A SQL injection vulnerability exists in Rocket.Chat <v3.18.6, <v4.4.4 and <v4.7.3 which can allow an attacker to retriev... |
| CVE-2022-26700 | HIGH | 8.8 | 1.2% | Sep 23, 2022 | A memory corruption issue was addressed with improved state management. This issue is fixed in tvOS 15.5, watchOS 8.6, i... |
| CVE-2022-22637 | HIGH | 8.8 | 0.6% | Sep 23, 2022 | A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, wat... |
| CVE-2022-22628 | HIGH | 8.8 | 1.0% | Sep 23, 2022 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3, Safari... |
| CVE-2022-22624 | HIGH | 8.8 | 1.0% | Sep 23, 2022 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3, iOS 15... |
| CVE-2022-22610 | HIGH | 8.8 | 1.0% | Sep 23, 2022 | A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safa... |
| CVE-2022-40629 | HIGH | 7.5 | 1.3% | Sep 23, 2022 | This vulnerability exists in Tacitine Firewall, all versions of EN6200-PRIME QUAD-35 and EN6200-PRIME QUAD-100 between 1... |
| CVE-2022-36338 | HIGH | 8.2 | 0.4% | Sep 23, 2022 | An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. An SMM callout vulnerability in the SMM driver ... |
| CVE-2022-34348 | HIGH | 7.1 | 1.4% | Sep 23, 2022 | IBM Sterling Partner Engagement Manager 6.1 is vulnerable to an XML External Entity Injection (XXE) attack when processi... |
| CVE-2022-40194 | HIGH | 7.5 | 0.7% | Sep 23, 2022 | Unauthenticated Sensitive Information Disclosure vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at Wo... |
| CVE-2022-40188 | HIGH | 7.5 | 1.5% | Sep 23, 2022 | Knot Resolver before 5.5.3 allows remote attackers to cause a denial of service (CPU consumption) because of algorithmic... |
| CVE-2022-38470 | HIGH | 8.8 | 0.3% | Sep 23, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at WordPress. |
| CVE-2022-38134 | HIGH | 8.8 | 0.8% | Sep 23, 2022 | Authenticated (subscriber+) Broken Access Control vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at W... |
| CVE-2022-2973 | HIGH | 7.5 | 0.8% | Sep 23, 2022 | MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10... |
| CVE-2022-2971 | HIGH | 7.5 | 0.8% | Sep 23, 2022 | MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10... |
| CVE-2022-40861 | HIGH | 7.2 | 0.9% | Sep 23, 2022 | Tenda AC18 router V15.03.05.19 contains a stack overflow vulnerability in the formSetQosBand->FUN_0007db78 function with... |
| CVE-2022-38085 | HIGH | 8.8 | 0.3% | Sep 23, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Read more By Adam plugin <= 1.1.8 at WordPress. |
| CVE-2022-36388 | HIGH | 8.8 | 0.3% | Sep 23, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in YDS Support Ticket System plugin <= 1.0 at WordPress. |
| CVE-2022-40093 | HIGH | 7.2 | 0.9% | Sep 23, 2022 | Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet... |
| CVE-2022-40092 | HIGH | 7.2 | 0.9% | Sep 23, 2022 | Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet... |
| CVE-2022-40091 | HIGH | 7.2 | 0.9% | Sep 23, 2022 | Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now