2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-32893HIGH8.8An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.6.1 and iPadOS 1...
CVE-2022-32840HIGH7.8This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.5, watchOS 8.7, iOS 15.6 and iPa...
CVE-2022-32837HIGH7.8This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.5, tvOS 15.6, iOS 15.6 and iPadO...
CVE-2022-32813HIGH7.8The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8,...
CVE-2022-32812HIGH7.8The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.5, macOS Big Sur 11.6.8,...
CVE-2022-32811HIGH7.8A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS Monterey 12.5, macOS...
CVE-2022-32810HIGH7.8The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.5, watchOS 8.7, iOS 15.6...
CVE-2022-32793HIGH7.5Multiple out-of-bounds write issues were addressed with improved bounds checking. This issue is fixed in macOS Monterey ...
CVE-2022-37178HIGH8.8An issue was discovered in 72crm 9.0. There is a SQL Injection vulnerability in View the task calendar.
CVE-2022-34838HIGH8.4Storing Passwords in a Recoverable Format vulnerability in ABB Zenon 8.20 allows an attacker who successfully exploit th...
CVE-2022-34836HIGH8.2Relative Path Traversal vulnerability in ABB Zenon 8.20 allows the user to access files on the Zenon system and user als...
CVE-2022-2978HIGH7.8A flaw use after free in the Linux kernel NILFS file system was found in the way user triggers function security_inode_a...
CVE-2022-2234HIGH8.8An authenticated mySCADA myPRO 8.26.0 user may be able to modify parameters to run commands directly in the operating sy...
CVE-2022-36633HIGH8.8Teleport 9.3.6 is vulnerable to Command injection leading to Remote Code Execution. An attacker can craft a malicious ss...
CVE-2022-27812HIGH7.5Flooding SNS firewall versions 3.7.0 to 3.7.29, 3.11.0 to 3.11.17, 4.2.0 to 4.2.10, and 4.3.0 to 4.3.6 with specific for...
CVE-2022-37333HIGH8.8SQL injection vulnerability in the Exment ((PHP8) exceedone/exment v5.0.2 and earlier and exceedone/laravel-admin v3.0.0...
CVE-2022-25903HIGH7.5The package opcua from 0.0.0 are vulnerable to Denial of Service (DoS) via the ExtensionObjects and Variants objects, wh...
CVE-2022-24375HIGH7.5The package node-opcua before 2.74.0 are vulnerable to Denial of Service (DoS) when bypassing the limitations for excess...
CVE-2022-38132HIGH8.8Command injection vulnerability in Linksys MR8300 router while Registration to DDNS Service. By specifying username and ...
CVE-2022-31676HIGH7.8VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with loc...
CVE-2022-2938HIGH7.8A flaw was found in the Linux kernel's implementation of Pressure Stall Information. While the feature is disabled by de...
CVE-2022-1513HIGH8.8A potential vulnerability was reported in Lenovo PCManager prior to version 5.0.10.4191 that may allow code execution wh...
CVE-2022-2946HIGH7.8Use After Free in GitHub repository vim/vim prior to 9.0.0246.
CVE-2022-36394HIGH8.8Authenticated (author+) SQL Injection (SQLi) vulnerability in Contest Gallery plugin <= 17.0.4 at WordPress.
CVE-2022-36389HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WordPlus Better Messages plugin <= 1.9.9.148 at WordPress.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now