2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-31414 | HIGH | 7.5 | 1.7% | Sep 7, 2022 | D-Link DIR-1960 firmware DIR-1960_A1_1.11 was discovered to contain a buffer overflow via srtcat in prog.cgi. This vulne... |
| CVE-2022-3152 | HIGH | 8.8 | 0.7% | Sep 7, 2022 | Unverified Password Change in GitHub repository phpfusion/phpfusion prior to 9.10.20. |
| CVE-2022-37730 | HIGH | 8.8 | 0.3% | Sep 7, 2022 | In ftcms 2.1, there is a Cross Site Request Forgery (CSRF) vulnerability in the PHP page, which causes the attacker to f... |
| CVE-2022-37108 | HIGH | 7.2 | 1.0% | Sep 7, 2022 | An injection vulnerability in the syslog-ng configuration wizard in Securonix Snypr 6.4 allows an application user with ... |
| CVE-2022-36271 | HIGH | 7.8 | 0.5% | Sep 7, 2022 | Outbyte PC Repair Installation File 1.7.112.7856 is vulnerable to Dll Hijacking. iertutil.dll is missing so an attacker ... |
| CVE-2022-35513 | HIGH | 7.5 | 4.1% | Sep 7, 2022 | The Blink1Control2 application <= 2.2.7 uses weak password encryption and an insecure method of storage. |
| CVE-2022-31166 | HIGH | 8.8 | 1.1% | Sep 7, 2022 | XWiki Platform Old Core is a core package for XWiki Platform, a generic wiki platform. Starting in versions 11.3.7, 11.0... |
| CVE-2022-40023 | HIGH | 7.5 | 1.7% | Sep 7, 2022 | Sqlalchemy mako before 1.2.2 is vulnerable to Regular expression Denial of Service when using the Lexer class to parse. ... |
| CVE-2022-37189 | HIGH | 7.5 | 1.1% | Sep 7, 2022 | DDMAL MEI2Volpiano 0.8.2 is vulnerable to XML External Entity (XXE), leading to a Denial of Service. This occurs due to ... |
| CVE-2022-38530 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | GPAC v2.1-DEV-rev232-gfcaa01ebb-master was discovered to contain a stack overflow when processing ISOM_IOD. |
| CVE-2022-38529 | HIGH | 7.8 | 0.3% | Sep 6, 2022 | tinyexr commit 0647fb3 was discovered to contain a heap-buffer overflow via the component rleUncompress. |
| CVE-2022-38176 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | An issue was discovered in YSoft SAFEQ 6 before 6.0.72. Incorrect privileges were configured as part of the installer pa... |
| CVE-2022-36065 | HIGH | 7.5 | 1.1% | Sep 6, 2022 | GrowthBook is an open-source platform for feature flagging and A/B testing. With some self-hosted configurations in vers... |
| CVE-2022-36064 | HIGH | 7.5 | 1.1% | Sep 6, 2022 | Shescape is a shell escape package for JavaScript. An Inefficient Regular Expression Complexity vulnerability impacts us... |
| CVE-2022-26861 | HIGH | 7.8 | 0.2% | Sep 6, 2022 | Dell BIOS versions contain an Insecure Automated Optimization vulnerability. A local authenticated malicious user could ... |
| CVE-2022-26860 | HIGH | 7.8 | 0.2% | Sep 6, 2022 | Dell BIOS versions contain a stack-based buffer overflow vulnerability. A local attacker could exploit this vulnerabilit... |
| CVE-2022-26859 | HIGH | 7 | 0.1% | Sep 6, 2022 | Dell BIOS contains a race condition vulnerability. A local attacker could exploit this vulnerability by sending maliciou... |
| CVE-2022-26858 | HIGH | 7.8 | 0.2% | Sep 6, 2022 | Dell BIOS versions contain an Improper Authentication vulnerability. A locally authenticated malicious user could potent... |
| CVE-2022-3134 | HIGH | 7.8 | 0.5% | Sep 6, 2022 | Use After Free in GitHub repository vim/vim prior to 9.0.0389. |
| CVE-2022-37185 | HIGH | 7.5 | 0.7% | Sep 6, 2022 | SQL injection vulnerability exists in the school information query interface (repschoolproj.php) of the EMS 6.2 system o... |
| CVE-2022-36058 | HIGH | 7.5 | 1.0% | Sep 6, 2022 | Elrond go is the go implementation for the Elrond Network protocol. In versions prior to 1.3.34, anyone who uses elrond-... |
| CVE-2022-36044 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ... |
| CVE-2022-36043 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ... |
| CVE-2022-36041 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ... |
| CVE-2022-36040 | HIGH | 7.8 | 0.4% | Sep 6, 2022 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now