2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-2665HIGH8.8A vulnerability classified as critical was found in SourceCodester Simple E-Learning System. Affected by this vulnerabil...
CVE-2022-2636HIGH8.8Improper Control of Generation of Code ('Code Injection') in GitHub repository hestiacp/hestiacp prior to 1.6.6.
CVE-2022-2626HIGH7.2Incorrect Privilege Assignment in GitHub repository hestiacp/hestiacp prior to 1.6.6.
CVE-2022-37415HIGH7.8The Uniwill SparkIO.sys driver 1.0 is vulnerable to a stack-based buffer overflow via IOCTL 0x40002008.
CVE-2022-37030HIGH7.8Weak permissions on the configuration file in the PAM module in Grommunio Gromox 0.5 through 1.x before 1.28 allow a loc...
CVE-2022-35930HIGH8.8PolicyController is a utility used to enforce supply chain policy in Kubernetes clusters. In versions prior to 0.2.1 Pol...
CVE-2022-31793HIGH7.5do_request in request.c in muhttpd before 1.1.7 allows remote attackers to read arbitrary files by constructing a URL wi...
CVE-2022-35926HIGH7.5Contiki-NG is an open-source, cross-platform operating system for IoT devices. Because of insufficient validation of IPv...
CVE-2022-35858HIGH7.8The TEE_PopulateTransientObject and __utee_from_attr functions in Samsung mTower 0.3.0 allow a trusted application to tr...
CVE-2022-35142HIGH7.5An issue in Renato v0.17.0 allows attackers to cause a Denial of Service (DoS) via a crafted payload injected into the S...
CVE-2022-35735HIGH7.2In BIG-IP Versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and all versions of 13.1.x, a...
CVE-2022-35245HIGH7.5In BIG-IP Versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5.1, when a BIG-IP APM access ...
CVE-2022-35240HIGH7.5In BIG-IP Versions 16.1.x before 16.1.2.2, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when the Message Routing (M...
CVE-2022-35236HIGH7.5In BIG-IP Versions 16.1.x before 16.1.2.2, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when an HTTP2 profile is co...
CVE-2022-34862HIGH7.5In BIG-IP Versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, whe...
CVE-2022-34844HIGH7.5In BIG-IP Versions 16.1.x before 16.1.3.1 and 15.1.x before 15.1.6.1, and all versions of BIG-IQ 8.x, when the Data Plan...
CVE-2022-34655HIGH7.5In BIG-IP Versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when an iRule containing th...
CVE-2022-34651HIGH7.5In BIG-IP Versions 16.1.x before 16.1.3.1 and 15.1.x before 15.1.6.1, when an LTM Client or Server SSL profile with TLS ...
CVE-2022-33203HIGH7.5In BIG-IP Versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when a BIG-IP APM access poli...
CVE-2022-32455HIGH7.5In BIG-IP Versions 16.1.x before 16.1.2.2, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, whe...
CVE-2022-31473HIGH7.7In BIG-IP Versions 16.1.x before 16.1.1 and 15.1.x before 15.1.4, when running in Appliance mode, an authenticated attac...
CVE-2022-35216HIGH7.5OMICARD EDM’s mail image relay function has a path traversal vulnerability. An unauthenticated remote attacker can explo...
CVE-2022-32963HIGH7.5OMICARD EDM’s mail file relay function has a path traversal vulnerability. An unauthenticated remote attacker can exploi...
CVE-2022-34158HIGH8.8A carefully crafted invocation on the Image plugin could trigger an CSRF vulnerability on Apache JSPWiki before 2.11.3, ...
CVE-2022-35506HIGH7.5TripleCross v0.1.0 was discovered to contain a stack overflow which occurs because there is no limit to the length of pr...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now