2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26309 | HIGH | 8.8 | 0.2% | Aug 1, 2022 | Pandora FMS v7.0NG.759 allows Cross-Site Request Forgery in Bulk operation (User operation) resulting in elevation of pr... |
| CVE-2022-1585 | HIGH | 7.5 | 0.9% | Aug 1, 2022 | The Project Source Code Download WordPress plugin through 1.0.0 does not protect its backup generation and download func... |
| CVE-2022-36799 | HIGH | 7.2 | 44.6% | Aug 1, 2022 | This issue exists to document that a security improvement in the way that Jira Server and Data Center use templates has ... |
| CVE-2022-31776 | HIGH | 8.8 | 0.4% | Aug 1, 2022 | IBM DataPower Gateway 10.0.2.0 through 10.0.4.0, 10.0.1.0 through 10.0.1.8, 10.5.0.0, and 2018.4.1.0 through 2018.4.1.21... |
| CVE-2022-30616 | HIGH | 7.2 | 0.8% | Aug 1, 2022 | IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could allow a privileged user to elevate their privilege to pl... |
| CVE-2022-2591 | HIGH | 7.5 | 6.4% | Aug 1, 2022 | A vulnerability classified as critical has been found in TEM FLEX-1085 1.6.0. Affected is an unknown function of the fil... |
| CVE-2022-22505 | HIGH | 7.5 | 0.7% | Aug 1, 2022 | IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 contains a vulnerability that could allow IBM tenant credentia... |
| CVE-2022-36336 | HIGH | 7.8 | 0.5% | Jul 30, 2022 | A link following vulnerability in the scanning function of Trend Micro Apex One and Worry-Free Business Security agents ... |
| CVE-2022-35234 | HIGH | 7.1 | 0.3% | Jul 30, 2022 | Trend Micro Security 2021 and 2022 (Consumer) is vulnerable to an Out-Of-Bounds Read Information Disclosure Vulnerabilit... |
| CVE-2022-33158 | HIGH | 7.8 | 0.3% | Jul 30, 2022 | Trend Micro VPN Proxy Pro version 5.2.1026 and below contains a vulnerability involving some overly permissive folders i... |
| CVE-2022-34528 | HIGH | 8.8 | 1.3% | Jul 29, 2022 | D-Link DSL-3782 v1.03 and below was discovered to contain a stack overflow via the function getAttrValue. |
| CVE-2022-34527 | HIGH | 8.8 | 4.1% | Jul 29, 2022 | D-Link DSL-3782 v1.03 and below was discovered to contain a command injection vulnerability via the function byte_4C0160... |
| CVE-2022-36447 | HIGH | 7.5 | 0.7% | Jul 29, 2022 | An inflation issue was discovered in Chia Network CAT1 Standard 1.0.0. Previously minted tokens minted on the Chia block... |
| CVE-2022-2324 | HIGH | 7.5 | 0.5% | Jul 29, 2022 | Improperly Implemented Security Check vulnerability in the SonicWall Hosted Email Security leads to bypass of Capture AT... |
| CVE-2022-2323 | HIGH | 8.8 | 1.2% | Jul 29, 2022 | Improper neutralization of special elements used in a user input allows an authenticated malicious user to perform remot... |
| CVE-2022-27866 | HIGH | 7.8 | 0.2% | Jul 29, 2022 | A maliciously crafted TIFF file when consumed through DesignReview.exe application can be forced to read beyond allocate... |
| CVE-2022-27865 | HIGH | 7.8 | 0.2% | Jul 29, 2022 | A maliciously crafted TGA or PCX file may be used to write beyond the allocated buffer through DesignReview.exe applicat... |
| CVE-2022-27864 | HIGH | 8.8 | 0.9% | Jul 29, 2022 | A Double Free vulnerability allows remote attackers to execute arbitrary code through DesignReview.exe application on PD... |
| CVE-2022-2414 | HIGH | 7.5 | 85.3% | Jul 29, 2022 | Access to external entities when parsing XML documents can lead to XML external entity (XXE) attacks. This flaw allows a... |
| CVE-2022-33881 | HIGH | 7.8 | 0.4% | Jul 29, 2022 | Parsing a maliciously crafted PRT file can force Autodesk AutoCAD 2023 to read beyond allocated boundaries. This vulnera... |
| CVE-2022-2577 | HIGH | 8.8 | 0.6% | Jul 29, 2022 | A vulnerability classified as critical was found in SourceCodester Garage Management System 1.0. This vulnerability affe... |
| CVE-2022-27873 | HIGH | 7.8 | 0.2% | Jul 29, 2022 | An attacker can force the victim’s device to perform arbitrary HTTP requests in WAN through a malicious SVG file being p... |
| CVE-2022-36123 | HIGH | 7.8 | 0.8% | Jul 29, 2022 | The Linux kernel before 5.18.13 lacks a certain clear operation for the block starting symbol (.bss). This allows Xen PV... |
| CVE-2022-2576 | HIGH | 7.5 | 0.5% | Jul 29, 2022 | In Eclipse Californium version 2.0.0 to 2.7.2 and 3.0.0-3.5.0 a DTLS resumption handshake falls back to a DTLS full hand... |
| CVE-2022-24912 | HIGH | 7.5 | 0.9% | Jul 29, 2022 | The package github.com/runatlantis/atlantis/server/controllers/events before 0.19.7 are vulnerable to Timing Attack in t... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now