2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-40643 | HIGH | 7.8 | 0.5% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 ... |
| CVE-2022-40642 | HIGH | 7.8 | 0.5% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 ... |
| CVE-2022-40641 | HIGH | 7.8 | 0.5% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 ... |
| CVE-2022-40640 | HIGH | 7.8 | 0.5% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 ... |
| CVE-2022-40639 | HIGH | 7.8 | 0.5% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 ... |
| CVE-2022-40638 | HIGH | 7.8 | 0.5% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 ... |
| CVE-2022-40637 | HIGH | 7.8 | 0.5% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 ... |
| CVE-2022-40636 | HIGH | 7.8 | 0.4% | Sep 15, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ansys SpaceClaim 2022 ... |
| CVE-2022-37262 | HIGH | 7.5 | 1.0% | Sep 15, 2022 | A Regular Expression Denial of Service (ReDoS) flaw was found in stealjs steal 2.2.4 via the source and sourceWithCommen... |
| CVE-2022-37201 | HIGH | 8.8 | 1.1% | Sep 15, 2022 | JFinal CMS 5.1.0 is vulnerable to SQL Injection. |
| CVE-2022-3001 | HIGH | 7.5 | 1.1% | Sep 15, 2022 | This vulnerability exists in Milesight Video Management Systems (VMS), all firmware versions prior to 40.7.0.79-r1, due ... |
| CVE-2022-38862 | HIGH | 7.8 | 0.3% | Sep 15, 2022 | Certain The MPlayer Project products are vulnerable to Buffer Overflow via function play() of libaf/af.c:639. This affec... |
| CVE-2022-37207 | HIGH | 8.8 | 1.1% | Sep 15, 2022 | JFinal CMS 5.1.0 is affected by: SQL Injection. These interfaces do not use the same component, nor do they have filters... |
| CVE-2022-3221 | HIGH | 8.8 | 0.5% | Sep 15, 2022 | Cross-Site Request Forgery (CSRF) in GitHub repository ikus060/rdiffweb prior to 2.4.3. |
| CVE-2022-38595 | HIGH | 7.2 | 0.7% | Sep 15, 2022 | Church Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/edi... |
| CVE-2022-38594 | HIGH | 7.2 | 0.7% | Sep 15, 2022 | Church Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/edi... |
| CVE-2022-38323 | HIGH | 7.2 | 0.9% | Sep 15, 2022 | Event Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the component /Royal_E... |
| CVE-2022-38301 | HIGH | 8.8 | 1.1% | Sep 14, 2022 | Onedev v7.4.14 contains a path traversal vulnerability which allows attackers to access restricted files and directories... |
| CVE-2022-2977 | HIGH | 7.8 | 0.2% | Sep 14, 2022 | A flaw was found in the Linux kernel implementation of proxied virtualized TPM devices. On a system where virtualized TP... |
| CVE-2022-3216 | HIGH | 8.8 | 0.5% | Sep 14, 2022 | A vulnerability has been found in Nintendo Game Boy Color and classified as problematic. This vulnerability affects unkn... |
| CVE-2022-36113 | HIGH | 8.1 | 1.0% | Sep 14, 2022 | Cargo is a package manager for the rust programming language. After a package is downloaded, Cargo extracts its source c... |
| CVE-2022-2277 | HIGH | 7.5 | 0.7% | Sep 14, 2022 | Improper Input Validation vulnerability exists in the Hitachi Energy MicroSCADA X SYS600's ICCP stack during the ICCP co... |
| CVE-2022-29922 | HIGH | 7.5 | 0.7% | Sep 14, 2022 | Improper Input Validation vulnerability in the handling of a specially crafted IEC 61850 packet with a valid data item b... |
| CVE-2022-29492 | HIGH | 7.5 | 0.6% | Sep 14, 2022 | Improper Input Validation vulnerability in the handling of a malformed IEC 104 TCP packet in the Hitachi Energy MicroSCA... |
| CVE-2022-3212 | HIGH | 7.5 | 0.8% | Sep 14, 2022 | <bytes::Bytes as axum_core::extract::FromRequest>::from_request would not, by default, set a limit for the size of the r... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now