2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26330 | HIGH | 7.5 | 0.5% | Aug 31, 2022 | Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exp... |
| CVE-2022-1976 | HIGH | 7.8 | 0.2% | Aug 31, 2022 | A flaw was found in the Linux kernel’s implementation of IO-URING. This flaw allows an attacker with local executable pe... |
| CVE-2022-1888 | HIGH | 7.8 | 0.3% | Aug 31, 2022 | Alpha7 PC Loader (All versions) is vulnerable to a stack-based buffer overflow while processing a specifically crafted p... |
| CVE-2022-1552 | HIGH | 8.8 | 11.7% | Aug 31, 2022 | A flaw was found in PostgreSQL. There is an issue with incomplete efforts to operate safely when a privileged user is ma... |
| CVE-2022-1405 | HIGH | 7.8 | 2.2% | Aug 31, 2022 | CNCSoft: All versions prior to 1.01.32 does not properly sanitize input while processing a specific project file, allowi... |
| CVE-2022-1404 | HIGH | 7.1 | 0.3% | Aug 31, 2022 | Delta Electronics CNCSoft (All versions prior to 1.01.32) does not properly sanitize input while processing a specific p... |
| CVE-2022-1319 | HIGH | 7.5 | 1.2% | Aug 31, 2022 | A flaw was found in Undertow. For an AJP 400 response, EAP 7 is improperly sending two response packets, and those packe... |
| CVE-2022-1271 | HIGH | 8.8 | 4.1% | Aug 31, 2022 | An arbitrary file write vulnerability was found in GNU gzip's zgrep utility. When zgrep is applied on the attacker's cho... |
| CVE-2022-1259 | HIGH | 7.5 | 1.0% | Aug 31, 2022 | A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause o... |
| CVE-2022-1247 | HIGH | 7 | 0.3% | Aug 31, 2022 | An issue found in linux-kernel that leads to a race condition in rose_connect(). The rose driver uses rose_neigh->use to... |
| CVE-2022-36035 | HIGH | 7.8 | 0.3% | Aug 31, 2022 | Flux is a tool for keeping Kubernetes clusters in sync with sources of configuration (like Git repositories), and automa... |
| CVE-2022-37022 | HIGH | 8.8 | 1.2% | Aug 31, 2022 | Apache Geode versions up to 1.12.2 and 1.13.2 are vulnerable to a deserialization of untrusted data flaw when using JMX ... |
| CVE-2022-39047 | HIGH | 8.8 | 1.0% | Aug 31, 2022 | Freeciv before 2.6.7 and before 3.0.3 is prone to a buffer overflow vulnerability in the Modpack Installer utility's han... |
| CVE-2022-27563 | HIGH | 7.5 | 0.7% | Aug 30, 2022 | An unauthenticated user can overload a part of HCL VersionVault Express and cause a denial of service. |
| CVE-2022-3037 | HIGH | 7.8 | 0.5% | Aug 30, 2022 | Use After Free in GitHub repository vim/vim prior to 9.0.0322. |
| CVE-2022-37173 | HIGH | 7.8 | 0.2% | Aug 30, 2022 | An issue in the installer of gvim 9.0.0000 allows authenticated attackers to execute arbitrary code via a binary hijacki... |
| CVE-2022-37172 | HIGH | 7.8 | 0.2% | Aug 30, 2022 | Incorrect access control in the install directory (C:\msys64) of Msys2 v20220603 and below allows authenticated attacker... |
| CVE-2022-36565 | HIGH | 8.8 | 0.8% | Aug 30, 2022 | Incorrect access control in the install directory (C:\Wamp64) of Wamp v3.2.6 and below allows authenticated attackers to... |
| CVE-2022-36564 | HIGH | 8.8 | 0.8% | Aug 30, 2022 | Incorrect access control in the install directory (C:\Strawberry) of StrawberryPerl v5.32.1.1 and below allows authentic... |
| CVE-2022-36563 | HIGH | 8.8 | 0.8% | Aug 30, 2022 | Incorrect access control in the install directory (C:\RailsInstaller) of Rubyinstaller2 v3.1.2 and below allows authenti... |
| CVE-2022-36562 | HIGH | 8.8 | 0.8% | Aug 30, 2022 | Incorrect access control in the install directory (C:\Ruby31-x64) of Rubyinstaller2 v3.1.2 and below allows authenticate... |
| CVE-2022-34374 | HIGH | 8.8 | 1.4% | Aug 30, 2022 | Dell Container Storage Modules 1.2 contains an OS command injection in goiscsi and gobrick libraries. A remote authentic... |
| CVE-2022-37237 | HIGH | 7.5 | 0.7% | Aug 30, 2022 | An attacker can send malicious RTMP requests to make the ZLMediaKit server crash remotely. Affected version is below com... |
| CVE-2022-36552 | HIGH | 7.5 | 0.7% | Aug 30, 2022 | Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains an issue in the component /cgi-bin/DownloadFlash which ... |
| CVE-2022-39028 | HIGH | 7.5 | 1.6% | Aug 30, 2022 | telnetd in GNU Inetutils through 2.3, MIT krb5-appl through 1.0.3, and derivative works has a NULL pointer dereference v... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now