2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-26330HIGH7.5Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exp...
CVE-2022-1976HIGH7.8A flaw was found in the Linux kernel’s implementation of IO-URING. This flaw allows an attacker with local executable pe...
CVE-2022-1888HIGH7.8Alpha7 PC Loader (All versions) is vulnerable to a stack-based buffer overflow while processing a specifically crafted p...
CVE-2022-1552HIGH8.8A flaw was found in PostgreSQL. There is an issue with incomplete efforts to operate safely when a privileged user is ma...
CVE-2022-1405HIGH7.8CNCSoft: All versions prior to 1.01.32 does not properly sanitize input while processing a specific project file, allowi...
CVE-2022-1404HIGH7.1Delta Electronics CNCSoft (All versions prior to 1.01.32) does not properly sanitize input while processing a specific p...
CVE-2022-1319HIGH7.5A flaw was found in Undertow. For an AJP 400 response, EAP 7 is improperly sending two response packets, and those packe...
CVE-2022-1271HIGH8.8An arbitrary file write vulnerability was found in GNU gzip's zgrep utility. When zgrep is applied on the attacker's cho...
CVE-2022-1259HIGH7.5A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause o...
CVE-2022-1247HIGH7An issue found in linux-kernel that leads to a race condition in rose_connect(). The rose driver uses rose_neigh->use to...
CVE-2022-36035HIGH7.8Flux is a tool for keeping Kubernetes clusters in sync with sources of configuration (like Git repositories), and automa...
CVE-2022-37022HIGH8.8Apache Geode versions up to 1.12.2 and 1.13.2 are vulnerable to a deserialization of untrusted data flaw when using JMX ...
CVE-2022-39047HIGH8.8Freeciv before 2.6.7 and before 3.0.3 is prone to a buffer overflow vulnerability in the Modpack Installer utility's han...
CVE-2022-27563HIGH7.5An unauthenticated user can overload a part of HCL VersionVault Express and cause a denial of service.
CVE-2022-3037HIGH7.8Use After Free in GitHub repository vim/vim prior to 9.0.0322.
CVE-2022-37173HIGH7.8An issue in the installer of gvim 9.0.0000 allows authenticated attackers to execute arbitrary code via a binary hijacki...
CVE-2022-37172HIGH7.8Incorrect access control in the install directory (C:\msys64) of Msys2 v20220603 and below allows authenticated attacker...
CVE-2022-36565HIGH8.8Incorrect access control in the install directory (C:\Wamp64) of Wamp v3.2.6 and below allows authenticated attackers to...
CVE-2022-36564HIGH8.8Incorrect access control in the install directory (C:\Strawberry) of StrawberryPerl v5.32.1.1 and below allows authentic...
CVE-2022-36563HIGH8.8Incorrect access control in the install directory (C:\RailsInstaller) of Rubyinstaller2 v3.1.2 and below allows authenti...
CVE-2022-36562HIGH8.8Incorrect access control in the install directory (C:\Ruby31-x64) of Rubyinstaller2 v3.1.2 and below allows authenticate...
CVE-2022-34374HIGH8.8Dell Container Storage Modules 1.2 contains an OS command injection in goiscsi and gobrick libraries. A remote authentic...
CVE-2022-37237HIGH7.5An attacker can send malicious RTMP requests to make the ZLMediaKit server crash remotely. Affected version is below com...
CVE-2022-36552HIGH7.5Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains an issue in the component /cgi-bin/DownloadFlash which ...
CVE-2022-39028HIGH7.5telnetd in GNU Inetutils through 2.3, MIT krb5-appl through 1.0.3, and derivative works has a NULL pointer dereference v...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now