2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-32796HIGH7.8A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.5. An a...
CVE-2022-32792HIGH8.8An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15...
CVE-2022-32790HIGH7.5This issue was addressed with improved checks. This issue is fixed in tvOS 15.5, watchOS 8.6, iOS 15.5 and iPadOS 15.5, ...
CVE-2022-32787HIGH8.8An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.6 and iPadOS 15....
CVE-2022-32211HIGH8.8A SQL injection vulnerability exists in Rocket.Chat <v3.18.6, <v4.4.4 and <v4.7.3 which can allow an attacker to retriev...
CVE-2022-26700HIGH8.8A memory corruption issue was addressed with improved state management. This issue is fixed in tvOS 15.5, watchOS 8.6, i...
CVE-2022-22637HIGH8.8A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, wat...
CVE-2022-22628HIGH8.8A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3, Safari...
CVE-2022-22624HIGH8.8A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3, iOS 15...
CVE-2022-22610HIGH8.8A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safa...
CVE-2022-40629HIGH7.5This vulnerability exists in Tacitine Firewall, all versions of EN6200-PRIME QUAD-35 and EN6200-PRIME QUAD-100 between 1...
CVE-2022-36338HIGH8.2An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. An SMM callout vulnerability in the SMM driver ...
CVE-2022-34348HIGH7.1IBM Sterling Partner Engagement Manager 6.1 is vulnerable to an XML External Entity Injection (XXE) attack when processi...
CVE-2022-40194HIGH7.5Unauthenticated Sensitive Information Disclosure vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at Wo...
CVE-2022-40188HIGH7.5Knot Resolver before 5.5.3 allows remote attackers to cause a denial of service (CPU consumption) because of algorithmic...
CVE-2022-38470HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at WordPress.
CVE-2022-38134HIGH8.8Authenticated (subscriber+) Broken Access Control vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at W...
CVE-2022-2973HIGH7.5MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10...
CVE-2022-2971HIGH7.5MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10...
CVE-2022-40861HIGH7.2Tenda AC18 router V15.03.05.19 contains a stack overflow vulnerability in the formSetQosBand->FUN_0007db78 function with...
CVE-2022-38085HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Read more By Adam plugin <= 1.1.8 at WordPress.
CVE-2022-36388HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in YDS Support Ticket System plugin <= 1.0 at WordPress.
CVE-2022-40093HIGH7.2Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet...
CVE-2022-40092HIGH7.2Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet...
CVE-2022-40091HIGH7.2Online Tours & Travels Management System v1.0 was discovered to contain a SQL injection vulnerability via the id paramet...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now