2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-38567HIGH7.5Tenda M3 V1.0.0.12(4856) was discovered to contain a stack overflow vulnerability in the function formSetAdConfigInfo. T...
CVE-2022-38566HIGH7.5Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formEmailTest. T...
CVE-2022-38565HIGH7.5Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formEmailTest. T...
CVE-2022-38564HIGH7.5Tenda M3 V1.0.0.12(4856) was discovered to contain a buffer overflow vulnerability in the function formSetPicListItem. T...
CVE-2022-38563HIGH7.5Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formSetFixTools....
CVE-2022-38562HIGH7.5Tenda M3 V1.0.0.12(4856) was discovered to contain a heap buffer overflow vulnerability in the function formSetFixTools....
CVE-2022-3016HIGH7.8Use After Free in GitHub repository vim/vim prior to 9.0.0286.
CVE-2022-38794HIGH7.5Zaver through 2020-12-15 allows directory traversal via the GET /.. substring.
CVE-2022-3012HIGH8.8A vulnerability was found in oretnom23 Fast Food Ordering System. It has been rated as critical. Affected by this issue ...
CVE-2022-36546HIGH8.8Edoc-doctor-appointment-system v1.0.1 was discovered to contain a Cross-Site Request Forgery (CSRF) via /patient/setting...
CVE-2022-2915HIGH8.8A Heap-based Buffer Overflow vulnerability in the SonicWall SMA100 appliance allows a remote authenticated attacker to c...
CVE-2022-36537HIGH7.5ZK Framework v9.6.1, 9.6.0.1, 9.5.1.3, 9.0.1.2 and 8.6.4.1 allows attackers to access sensitive information via a crafte...
CVE-2022-36529HIGH8.8Kensite CMS v1.0 was discovered to contain multiple SQL injection vulnerabilities via the name and oldname parameters at...
CVE-2022-31773HIGH8.8IBM DataPower Gateway V10CD, 10.0.1, and 2018.4.1 is vulnerable to cross-site request forgery which could allow an attac...
CVE-2022-0217HIGH7.5It was discovered that an internal Prosody library to load XML based on libexpat does not properly restrict the XML feat...
CVE-2022-0084HIGH7.5A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a mess...
CVE-2022-25625HIGH8.8A malicious unauthorized PAM user can access the administration configuration data and change the values.
CVE-2022-36521HIGH7.5Insecure permissions in cskefu v7.0.1 allows unauthenticated attackers to arbitrarily add administrator accounts.
CVE-2022-37151HIGH7.5There is an unauthorized access vulnerability in Online Diagnostic Lab Management System 1.0.
CVE-2022-36226HIGH7.2SiteServerCMS 5.X has a Remote-download-Getshell-vulnerability via /SiteServer/Ajax/ajaxOtherService.aspx.
CVE-2022-36120HIGH8.1An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...
CVE-2022-35192HIGH7.5D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows unauthenticated attackers to caus...
CVE-2022-30984HIGH7.8A buffer overflow vulnerability in the Rubrik Backup Service (RBS) Agent for Linux or Unix-based systems in Rubrik CDM 7...
CVE-2022-29850HIGH8.1Various Lexmark products through 2022-04-27 allow an attacker who has already compromised an affected Lexmark device to ...
CVE-2022-36119HIGH8.8An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now