2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-36115HIGH7.1An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...
CVE-2022-36721HIGH8.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the Textbook parameter at /ad...
CVE-2022-36720HIGH8.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/mo...
CVE-2022-31269HIGH8.2Nortek Linear eMerge E3-Series devices through 0.32-09c place admin credentials in /test.txt that allow an attacker to o...
CVE-2022-36703HIGH8.8Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at...
CVE-2022-36701HIGH8.8Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at...
CVE-2022-36700HIGH8.8Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at...
CVE-2022-36699HIGH8.8Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at...
CVE-2022-36698HIGH8.8Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at...
CVE-2022-2997HIGH8Session Fixation in GitHub repository snipe/snipe-it prior to 6.0.10.
CVE-2022-2982HIGH7.8Use After Free in GitHub repository vim/vim prior to 9.0.0260.
CVE-2022-20921HIGH8.8A vulnerability in the API implementation of Cisco ACI Multi-Site Orchestrator (MSO) could allow an authenticated, remot...
CVE-2022-20824HIGH8.8A vulnerability in the Cisco Discovery Protocol feature of Cisco FXOS Software and Cisco NX-OS Software could allow an u...
CVE-2022-20823HIGH8.6A vulnerability in the OSPF version 3 (OSPFv3) feature of Cisco NX-OS Software could allow an unauthenticated, remote at...
CVE-2022-32745HIGH8.1A flaw was found in Samba. Samba AD users can cause the server to access uninitialized data with an LDAP add or modify t...
CVE-2022-32744HIGH8.8A flaw was found in Samba. The KDC accepts kpasswd requests encrypted with any key known to it. By encrypting forged kpa...
CVE-2022-2959HIGH7A race condition was found in the Linux kernel's watch queue due to a missing lock in pipe_resize_ring(). The specific f...
CVE-2022-2465HIGH7.8Rockwell Automation ISaGRAF Workbench software versions 6.0 through 6.6.9 are affected by a Deserialization of Untrusted...
CVE-2022-2464HIGH7.8Rockwell Automation ISaGRAF Workbench software versions 6.0 through 6.6.9 are affected by a Path Traversal vulnerability...
CVE-2022-2463HIGH7.8Rockwell Automation ISaGRAF Workbench software versions 6.0 through 6.6.9 are affected by a Path Traversal vulnerability...
CVE-2022-2255HIGH7.5A vulnerability was found in mod_wsgi. The X-Client-IP header is not removed from a request from an untrusted proxy, all...
CVE-2022-2031HIGH8.8A flaw was found in Samba. The security vulnerability occurs when KDC and the kpasswd service share a single account and...
CVE-2022-0135HIGH7.8An out-of-bounds write issue was found in the VirGL virtual OpenGL renderer (virglrenderer). This flaw allows a maliciou...
CVE-2022-37824HIGH7.8Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the shareSpeed parameter in the function fromSetWif...
CVE-2022-37823HIGH7.8Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function formSetVirtualSe...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now