2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-34917HIGH7.5A security vulnerability has been identified in Apache Kafka. It affects all releases since 2.8.0. The vulnerability all...
CVE-2022-39958HIGH7.5The OWASP ModSecurity Core Rule Set (CRS) is affected by a response body bypass to sequentially exfiltrate small and und...
CVE-2022-39957HIGH7.5The OWASP ModSecurity Core Rule Set (CRS) is affected by a response body bypass. A client can issue an HTTP Accept heade...
CVE-2022-38532HIGH7.8Micro-Star International Co., Ltd MSI Center 1.0.50.0 was discovered to contain a vulnerability in the component C_Featu...
CVE-2022-38351HIGH8.8A vulnerability in Suprema BioStar (aka Bio Star) 2 v2.8.16 allows attackers to escalate privileges to System Administra...
CVE-2022-28204HIGH7.5A denial-of-service issue was discovered in MediaWiki 1.37.x before 1.37.2. Rendering of w/index.php?title=Special%3AWha...
CVE-2022-28203HIGH7.5A denial-of-service issue was discovered in MediaWiki before 1.35.6, 1.36.x before 1.36.4, and 1.37.x before 1.37.2. Whe...
CVE-2022-3239HIGH7.8A flaw use after free in the Linux kernel video4linux driver was found in the way user triggers em28xx_usb_probe() for t...
CVE-2022-38576HIGH7.2Interview Management System v1.0 was discovered to contain a SQL injection vulnerability via the component /interview/de...
CVE-2022-2995HIGH7.1Incorrect handling of the supplementary groups in the CRI-O container engine might lead to sensitive information disclos...
CVE-2022-23766HIGH8.8An improper input validation vulnerability leading to arbitrary file execution was discovered in BigFileAgent. In order ...
CVE-2022-40608HIGH7.5IBM Spectrum Protect Plus 10.1.6 through 10.1.11 Microsoft File Systems restore operation can download any file on the t...
CVE-2022-40143HIGH7.3A link following local privilege escalation vulnerability in Trend Micro Apex One and Trend Micro Apex One as a Service ...
CVE-2022-40142HIGH7.8A security link following local privilege escalation vulnerability in Trend Micro Apex One and Trend Micro Apex One as a...
CVE-2022-40141HIGH7.5A vulnerability in Trend Micro Apex One and Apex One as a Service could allow an attacker to intercept and decode certai...
CVE-2022-40139HIGH7.2Improper validation of some components used by the rollback mechanism in Trend Micro Apex One and Trend Micro Apex One a...
CVE-2022-38764HIGH7.8A vulnerability on Trend Micro HouseCall version 1.62.1.1133 and below could allow a local attacker to escalate privlieg...
CVE-2022-34893HIGH7.8Trend Micro Security 2022 (consumer) has a link following vulnerability where an attacker with lower privileges could ma...
CVE-2022-40468HIGH7.5Potential leak of left-over heap data if custom error page templates containing special non-standard variables are used....
CVE-2022-38333HIGH7.5Openwrt before v21.02.3 and Openwrt v22.03.0-rc6 were discovered to contain two skip loops in the function header_value(...
CVE-2022-40978HIGH7.8The installer of JetBrains IntelliJ IDEA before 2022.2.2 was vulnerable to EXE search order hijacking
CVE-2022-38618HIGH8.8SmartVista SVFE2 v2.2.22 was discovered to contain a SQL injection vulnerability via the UserForm:j_id88, UserForm:j_id9...
CVE-2022-38577HIGH8.8ProcessMaker before v3.5.4 was discovered to contain insecure permissions in the user profile page. This vulnerability a...
CVE-2022-37700HIGH7.5Zentao Demo15 is vulnerable to Directory Traversal. The impact is: obtain sensitive information (remote). The component ...
CVE-2022-35708HIGH7.8Adobe Bridge version 12.0.2 (and earlier) and 11.1.3 (and earlier) are affected by a Heap-based Buffer Overflow vulnerab...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now