2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-32747HIGH8.1A CWE-290: Authentication Bypass by Spoofing vulnerability exists that could cause legitimate users to be locked out of ...
CVE-2022-32529CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32528CRITICAL9.1 A CWE-306: Missing Authentication for Critical Function vulnerability exists that could cause access to manipulate and ...
CVE-2022-32527CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32526CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32525CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32524CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32523CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32522CRITICAL9.8A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflo...
CVE-2022-32521HIGH8.8A CWE 502: Deserialization of Untrusted Data vulnerability exists that could allow code to be remotely executed on the s...
CVE-2022-32520CRITICAL9.8A CWE-522: Insufficiently Protected Credentials vulnerability exists that could result in unwanted access to a DCE insta...
CVE-2022-32519CRITICAL9.8A CWE-257: Storing Passwords in a Recoverable Format vulnerability exists that could result in unwanted access to a DCE ...
CVE-2022-32518CRITICAL9.8A CWE-522: Insufficiently Protected Credentials vulnerability exists that could result in unwanted access to a DCE insta...
CVE-2022-32517MEDIUM6.5A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause an adversary to t...
CVE-2022-32516MEDIUM6.5A CWE-352: Cross-Site Request Forgery (CSRF) vulnerability exists that could cause system’s configurations override and ...
CVE-2022-32515CRITICAL9.8A CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists that could cause brute force a...
CVE-2022-32514CRITICAL9.8A CWE-287: Improper Authentication vulnerability exists that could allow an attacker to gain control of the device when ...
CVE-2022-32513CRITICAL9.8A CWE-521: Weak Password Requirements vulnerability exists that could allow an attacker to gain control of the device wh...
CVE-2022-32512HIGH7.8A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause...
CVE-2022-22732HIGH7.5A CWE-668: Exposure of Resource to Wrong Sphere vulnerability exists that could cause all remote domains to access the r...
CVE-2022-22731CRITICAL9.8A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in a funct...
CVE-2022-0223CRITICAL9.8A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could...
CVE-2022-48006CRITICAL9.8An arbitrary file upload vulnerability in taocms v3.0.2 allows attackers to execute arbitrary code via a crafted PHP fil...
CVE-2022-40137MEDIUM6.7A buffer overflow in the WMI SMI Handler in some Lenovo models may allow an attacker with local access and elevated priv...
CVE-2022-40136MEDIUM4.4An information leak vulnerability in SMI Handler used to configure platform settings over WMI in some Lenovo models may ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now