2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-34254 | HIGH | 8.8 | 2.0% | Aug 16, 2022 | Adobe Commerce versions 2.4.3-p2 (and earlier), 2.3.7-p3 (and earlier) and 2.4.4 (and earlier) are affected by an Improp... |
| CVE-2022-34253 | HIGH | 7.2 | 4.2% | Aug 16, 2022 | Adobe Commerce versions 2.4.3-p2 (and earlier), 2.3.7-p3 (and earlier) and 2.4.4 (and earlier) are affected by an XML In... |
| CVE-2022-2833 | HIGH | 7.5 | 1.0% | Aug 16, 2022 | Endless Infinite loop in Blender-thumnailing due to logical bugs. |
| CVE-2022-2832 | HIGH | 7.5 | 1.5% | Aug 16, 2022 | A flaw was found in Blender 3.3.0. A null pointer dereference exists in source/blender/gpu/opengl/gl_backend.cc that may... |
| CVE-2022-2831 | HIGH | 7.5 | 1.3% | Aug 16, 2022 | A flaw was found in Blender 3.3.0. An interger overflow in source/blender/blendthumb/src/blendthumb_extract.cc may lead ... |
| CVE-2022-2661 | HIGH | 8.8 | 0.7% | Aug 16, 2022 | Sequi PortBloque S has an improper authorization vulnerability, which may allow a low-privileged user to perform adminis... |
| CVE-2022-37393 | HIGH | 7.8 | 1.7% | Aug 16, 2022 | Zimbra's sudo configuration permits the zimbra user to execute the zmslapd binary as root with arbitrary parameters. As ... |
| CVE-2022-38184 | HIGH | 7.5 | 0.9% | Aug 16, 2022 | There is an improper access control vulnerability in Portal for ArcGIS versions 10.8.1 and below which could allow a rem... |
| CVE-2022-38362 | HIGH | 8.8 | 1.6% | Aug 16, 2022 | Apache Airflow Docker's Provider prior to 3.0.0 shipped with an example DAG that was vulnerable to (authenticated) remot... |
| CVE-2022-36381 | HIGH | 7.2 | 1.5% | Aug 16, 2022 | OS command injection vulnerability in Nintendo Wi-Fi Network Adaptor WAP-001 All versions allows an attacker with an adm... |
| CVE-2022-36293 | HIGH | 7.2 | 1.0% | Aug 16, 2022 | Buffer overflow vulnerability in Nintendo Wi-Fi Network Adaptor WAP-001 All versions allows an attacker with an administ... |
| CVE-2022-35734 | HIGH | 7.5 | 0.6% | Aug 16, 2022 | 'Hulu / フールー' App for Android from version 3.0.47 to the version prior to 3.1.2 uses a hard-coded API key for an externa... |
| CVE-2022-35239 | HIGH | 8.8 | 1.2% | Aug 16, 2022 | The image file management page of SolarView Compact SV-CPT-MC310 Ver.7.23 and earlier, and SV-CPT-MC310F Ver.7.23 and ea... |
| CVE-2022-33939 | HIGH | 7.5 | 1.0% | Aug 16, 2022 | CENTUM VP / CS 3000 controller FCS (CP31, CP33, CP345, CP401, and CP451) contains an issue in processing communication p... |
| CVE-2022-38216 | HIGH | 7.5 | 0.7% | Aug 16, 2022 | An integer overflow exists in Mapbox's closed source gl-native library prior to version 10.6.1, which is bundled with mu... |
| CVE-2022-36312 | HIGH | 8.8 | 0.3% | Aug 16, 2022 | Airspan AirVelocity 1500 software version 15.18.00.2511 lacks CSRF protections in the eNodeB's web management UI. This i... |
| CVE-2022-36310 | HIGH | 8.8 | 1.3% | Aug 16, 2022 | Airspan AirVelocity 1500 software prior to version 15.18.00.2511 had NET-SNMP-EXTEND-MIB enabled on its snmpd service, e... |
| CVE-2022-36309 | HIGH | 8.8 | 24.1% | Aug 16, 2022 | Airspan AirVelocity 1500 software versions prior to 15.18.00.2511 have a root command injection vulnerability in the Act... |
| CVE-2022-24951 | HIGH | 7 | 0.3% | Aug 16, 2022 | A race condition exists in Eternal Terminal prior to version 6.2.0 which allows a local attacker to hijack Eternal Termi... |
| CVE-2022-24950 | HIGH | 7.5 | 1.0% | Aug 16, 2022 | A race condition exists in Eternal Terminal prior to version 6.2.0 that allows an authenticated attacker to hijack other... |
| CVE-2022-24949 | HIGH | 7.5 | 0.9% | Aug 16, 2022 | A privilege escalation to root exists in Eternal Terminal prior to version 6.2.0. This is due to the combination of a ra... |
| CVE-2022-38359 | HIGH | 8.8 | 0.4% | Aug 15, 2022 | Cross-site request forgery attacks can be carried out against the Eyes of Network web application, due to an absence of ... |
| CVE-2022-38357 | HIGH | 8.8 | 0.9% | Aug 15, 2022 | Improper neutralization of special elements leaves the Eyes of Network Web application vulnerable to an iFrame injection... |
| CVE-2022-2817 | HIGH | 7.8 | 0.5% | Aug 15, 2022 | Use After Free in GitHub repository vim/vim prior to 9.0.0213. |
| CVE-2022-28756 | HIGH | 7.8 | 0.2% | Aug 15, 2022 | The Zoom Client for Meetings for macOS (Standard and for IT Admin) starting with version 5.7.3 and before 5.11.5 contain... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now