2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-31414HIGH7.5D-Link DIR-1960 firmware DIR-1960_A1_1.11 was discovered to contain a buffer overflow via srtcat in prog.cgi. This vulne...
CVE-2022-3152HIGH8.8Unverified Password Change in GitHub repository phpfusion/phpfusion prior to 9.10.20.
CVE-2022-37730HIGH8.8In ftcms 2.1, there is a Cross Site Request Forgery (CSRF) vulnerability in the PHP page, which causes the attacker to f...
CVE-2022-37108HIGH7.2An injection vulnerability in the syslog-ng configuration wizard in Securonix Snypr 6.4 allows an application user with ...
CVE-2022-36271HIGH7.8Outbyte PC Repair Installation File 1.7.112.7856 is vulnerable to Dll Hijacking. iertutil.dll is missing so an attacker ...
CVE-2022-35513HIGH7.5The Blink1Control2 application <= 2.2.7 uses weak password encryption and an insecure method of storage.
CVE-2022-31166HIGH8.8XWiki Platform Old Core is a core package for XWiki Platform, a generic wiki platform. Starting in versions 11.3.7, 11.0...
CVE-2022-40023HIGH7.5Sqlalchemy mako before 1.2.2 is vulnerable to Regular expression Denial of Service when using the Lexer class to parse. ...
CVE-2022-37189HIGH7.5DDMAL MEI2Volpiano 0.8.2 is vulnerable to XML External Entity (XXE), leading to a Denial of Service. This occurs due to ...
CVE-2022-38530HIGH7.8GPAC v2.1-DEV-rev232-gfcaa01ebb-master was discovered to contain a stack overflow when processing ISOM_IOD.
CVE-2022-38529HIGH7.8tinyexr commit 0647fb3 was discovered to contain a heap-buffer overflow via the component rleUncompress.
CVE-2022-38176HIGH7.8An issue was discovered in YSoft SAFEQ 6 before 6.0.72. Incorrect privileges were configured as part of the installer pa...
CVE-2022-36065HIGH7.5GrowthBook is an open-source platform for feature flagging and A/B testing. With some self-hosted configurations in vers...
CVE-2022-36064HIGH7.5Shescape is a shell escape package for JavaScript. An Inefficient Regular Expression Complexity vulnerability impacts us...
CVE-2022-26861HIGH7.8Dell BIOS versions contain an Insecure Automated Optimization vulnerability. A local authenticated malicious user could ...
CVE-2022-26860HIGH7.8Dell BIOS versions contain a stack-based buffer overflow vulnerability. A local attacker could exploit this vulnerabilit...
CVE-2022-26859HIGH7Dell BIOS contains a race condition vulnerability. A local attacker could exploit this vulnerability by sending maliciou...
CVE-2022-26858HIGH7.8Dell BIOS versions contain an Improper Authentication vulnerability. A locally authenticated malicious user could potent...
CVE-2022-3134HIGH7.8Use After Free in GitHub repository vim/vim prior to 9.0.0389.
CVE-2022-37185HIGH7.5SQL injection vulnerability exists in the school information query interface (repschoolproj.php) of the EMS 6.2 system o...
CVE-2022-36058HIGH7.5Elrond go is the go implementation for the Elrond Network protocol. In versions prior to 1.3.34, anyone who uses elrond-...
CVE-2022-36044HIGH7.8Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ...
CVE-2022-36043HIGH7.8Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ...
CVE-2022-36041HIGH7.8Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ...
CVE-2022-36040HIGH7.8Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now