2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-50666CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix QP destroy to wait for all references...
CVE-2022-50596CRITICAL9.8D-Link DIR-1260 Wi-Fi router firmware versions up to and including v1.20B05 contain a command injection vulnerability wi...
CVE-2022-50593CRITICAL9.8Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP management tool that allows...
CVE-2022-50591CRITICAL9.8Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP management tool that allows...
CVE-2022-50589CRITICAL9.8SuiteCRM versions prior to 7.12.6 contain a SQL injection vulnerability within the processing of the ‘uid’ parameter wit...
CVE-2022-4980CRITICAL9.3General Bytes Crypto Application Server (CAS) beginning with version 20201208 prior to 20220531.38 (backport) and 202207...
CVE-2022-38696CRITICAL9.8In BootRom, there's a possible missing payload size check. This could lead to memory buffer overflow without requiring a...
CVE-2022-38693CRITICAL9.8In FDL1, there is a possible missing payload size check. This could lead to memory buffer overflow without requiring add...
CVE-2022-38692CRITICAL9.8In BootROM, there is a missing size check for RSA keys in Certificate Type 0 validation. This could lead to memory buffe...
CVE-2022-43110CRITICAL9.8Voltronic Power ViewPower through 1.04-21353 and PowerShield Netguard before 1.04-23292 allows a remote attacker to conf...
CVE-2022-31491CRITICAL10Voltronic Power ViewPower through 1.04-24215, ViewPower Pro through 2.0-22165, and PowerShield Netguard before 1.04-2329...
CVE-2022-45134CRITICAL9.8Mahara 21.10 before 21.10.6, 22.04 before 22.04.4, and 22.10 before 22.10.1 deserializes user input unsafely during skin...
CVE-2022-4978CRITICAL9.3Remote Control Server, maintained by Steppschuh, 3.1.1.12 allows unauthenticated remote code execution when authenticati...
CVE-2022-4976CRITICAL9.8Archive::Unzip::Burst from 0.01 through 0.09 for Perl contains a bundled InfoZip library that is affected by several vul...
CVE-2022-49362CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix potential use-after-free in nfsd_file_put...
CVE-2022-49093CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: skbuff: fix coalescing for page_pool fragment recyc...
CVE-2022-31631CRITICAL9.1In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote u...
CVE-2022-3180CRITICAL9.8The WPGateway Plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 3.5. This all...
CVE-2022-40916CRITICAL9.8Tiny File Manager v2.4.7 and below is vulnerable to session fixation.
CVE-2022-1736CRITICAL9.8Ubuntu's configuration of gnome-control-center allowed Remote Desktop Sharing to be enabled by default.
CVE-2022-43916CRITICAL9.1IBM App Connect Enterprise Certified Container 7.1, 7.2, 8.0, 8.1, 8.2, 9.0, 9.1, 9.2, 10.0, 10.1, 11.0, 11.1, 11.2, 11....
CVE-2022-3365CRITICAL9.8Due to reliance on a trivial substitution cipher, sent in cleartext, and the reliance on a default password when the use...
CVE-2022-41573CRITICAL9.8An issue was discovered in Ovidentia 8.3. The file upload feature does not prevent the uploading of executable files. A ...
CVE-2022-41572CRITICAL9.8An issue was discovered in EyesOfNetwork (EON) through 5.3.11. Privilege escalation can be accomplished on the server be...
CVE-2022-45830CRITICAL9.8Missing Authorization vulnerability in Analytify.This issue affects Analytify: from n/a through 4.2.3.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now