2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-42972 | HIGH | 7.8 | 0.2% | Feb 1, 2023 | A CWE-732: Incorrect Permission Assignment for Critical Resource vulnerability exists that could cause local privilege e... |
| CVE-2022-42971 | CRITICAL | 9.8 | 1.1% | Feb 1, 2023 | A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists that could cause remote code execution w... |
| CVE-2022-42970 | CRITICAL | 9.8 | 0.7% | Feb 1, 2023 | A CWE-306: Missing Authentication for Critical Function The software does not perform any authentication for functionali... |
| CVE-2022-2329 | CRITICAL | 9.8 | 2.1% | Feb 1, 2023 | A CWE-190: Integer Overflow or Wraparound vulnerability exists that could cause heap-based buffer overflow, leading to d... |
| CVE-2022-24324 | CRITICAL | 9.8 | 1.2% | Feb 1, 2023 | A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo... |
| CVE-2022-4206 | MEDIUM | 6.5 | 0.6% | Feb 1, 2023 | A sensitive information leak issue has been discovered in all versions of DAST API scanner from 1.6.50 prior to 2.0.102,... |
| CVE-2022-47770 | CRITICAL | 9.8 | 1.0% | Feb 1, 2023 | Serenissima Informatica Fast Checkin version v1.0 is vulnerable to Unauthenticated SQL Injection. |
| CVE-2022-47769 | CRITICAL | 9.8 | 1.2% | Feb 1, 2023 | An arbitrary file write vulnerability in Serenissima Informatica Fast Checkin v1.0 allows unauthenticated attackers to u... |
| CVE-2022-47768 | HIGH | 7.5 | 1.2% | Feb 1, 2023 | Serenissima Informatica Fast Checkin 1.0 is vulnerable to Directory Traversal. |
| CVE-2022-31902 | MEDIUM | 5.5 | 0.6% | Feb 1, 2023 | Notepad++ v8.4.1 was discovered to contain a stack overflow via the component Finder::add(). |
| CVE-2022-48161 | HIGH | 7.5 | 0.8% | Feb 1, 2023 | Easy Images v2.0 was discovered to contain an arbitrary file download vulnerability via the component /application/down.... |
| CVE-2022-47873 | CRITICAL | 9.8 | 0.8% | Jan 31, 2023 | Netcad KEOS 1.0 is vulnerable to XML External Entity (XXE) resulting in SSRF with XXE (remote). |
| CVE-2022-45494 | HIGH | 7.8 | 0.4% | Jan 31, 2023 | Buffer overflow vulnerability in function json_parse_object in sheredom json.h before commit 0825301a07cbf51653882bf2b15... |
| CVE-2022-45297 | CRITICAL | 9.8 | 2.8% | Jan 31, 2023 | EQ v1.5.31 to v2.2.0 was discovered to contain a SQL injection vulnerability via the UserPwd parameter. |
| CVE-2022-37708 | — | — | — | Jan 31, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2022-32984 | HIGH | 7.5 | 1.0% | Jan 31, 2023 | BTCPay Server 1.3.0 through 1.5.3 allows a remote attacker to obtain sensitive information when a public Point of Sale a... |
| CVE-2022-47854 | CRITICAL | 9.8 | 0.9% | Jan 31, 2023 | i-librarian 4.10 is vulnerable to Arbitrary file upload in ajaxsupplement.php. |
| CVE-2022-47701 | MEDIUM | 6.1 | 0.4% | Jan 31, 2023 | COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 is vulnerable to Cross... |
| CVE-2022-47700 | HIGH | 7.5 | 0.5% | Jan 31, 2023 | COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 and before is vulnerab... |
| CVE-2022-47699 | CRITICAL | 9.8 | 0.6% | Jan 31, 2023 | COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 is vulnerable to Incor... |
| CVE-2022-47698 | MEDIUM | 6.1 | 0.4% | Jan 31, 2023 | COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 is vulnerable to Cross... |
| CVE-2022-47697 | CRITICAL | 9.8 | 0.6% | Jan 31, 2023 | COMFAST (Shenzhen Sihai Zhonglian Network Technology Co., Ltd) CF-WR623N Router firmware V2.3.0.1 and before is vulnerab... |
| CVE-2022-45172 | CRITICAL | 9.8 | 1.1% | Jan 31, 2023 | An issue was discovered in LIVEBOX Collaboration vDesk before v018. Broken Access Control can occur under the /api/v1/re... |
| CVE-2022-47780 | CRITICAL | 9.8 | 0.9% | Jan 31, 2023 | SQL Injection vulnerability in Bangresto 1.0 via the itemID parameter. |
| CVE-2022-47035 | CRITICAL | 9.8 | 1.2% | Jan 31, 2023 | Buffer Overflow Vulnerability in D-Link DIR-825 v1.33.0.44ebdd4-embedded and below allows attacker to execute arbitrary ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now