2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-26309HIGH8.8Pandora FMS v7.0NG.759 allows Cross-Site Request Forgery in Bulk operation (User operation) resulting in elevation of pr...
CVE-2022-1585HIGH7.5The Project Source Code Download WordPress plugin through 1.0.0 does not protect its backup generation and download func...
CVE-2022-36799HIGH7.2This issue exists to document that a security improvement in the way that Jira Server and Data Center use templates has ...
CVE-2022-31776HIGH8.8IBM DataPower Gateway 10.0.2.0 through 10.0.4.0, 10.0.1.0 through 10.0.1.8, 10.5.0.0, and 2018.4.1.0 through 2018.4.1.21...
CVE-2022-30616HIGH7.2IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 could allow a privileged user to elevate their privilege to pl...
CVE-2022-2591HIGH7.5A vulnerability classified as critical has been found in TEM FLEX-1085 1.6.0. Affected is an unknown function of the fil...
CVE-2022-22505HIGH7.5IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 contains a vulnerability that could allow IBM tenant credentia...
CVE-2022-36336HIGH7.8A link following vulnerability in the scanning function of Trend Micro Apex One and Worry-Free Business Security agents ...
CVE-2022-35234HIGH7.1Trend Micro Security 2021 and 2022 (Consumer) is vulnerable to an Out-Of-Bounds Read Information Disclosure Vulnerabilit...
CVE-2022-33158HIGH7.8Trend Micro VPN Proxy Pro version 5.2.1026 and below contains a vulnerability involving some overly permissive folders i...
CVE-2022-34528HIGH8.8D-Link DSL-3782 v1.03 and below was discovered to contain a stack overflow via the function getAttrValue.
CVE-2022-34527HIGH8.8D-Link DSL-3782 v1.03 and below was discovered to contain a command injection vulnerability via the function byte_4C0160...
CVE-2022-36447HIGH7.5An inflation issue was discovered in Chia Network CAT1 Standard 1.0.0. Previously minted tokens minted on the Chia block...
CVE-2022-2324HIGH7.5Improperly Implemented Security Check vulnerability in the SonicWall Hosted Email Security leads to bypass of Capture AT...
CVE-2022-2323HIGH8.8Improper neutralization of special elements used in a user input allows an authenticated malicious user to perform remot...
CVE-2022-27866HIGH7.8A maliciously crafted TIFF file when consumed through DesignReview.exe application can be forced to read beyond allocate...
CVE-2022-27865HIGH7.8A maliciously crafted TGA or PCX file may be used to write beyond the allocated buffer through DesignReview.exe applicat...
CVE-2022-27864HIGH8.8A Double Free vulnerability allows remote attackers to execute arbitrary code through DesignReview.exe application on PD...
CVE-2022-2414HIGH7.5Access to external entities when parsing XML documents can lead to XML external entity (XXE) attacks. This flaw allows a...
CVE-2022-33881HIGH7.8Parsing a maliciously crafted PRT file can force Autodesk AutoCAD 2023 to read beyond allocated boundaries. This vulnera...
CVE-2022-2577HIGH8.8A vulnerability classified as critical was found in SourceCodester Garage Management System 1.0. This vulnerability affe...
CVE-2022-27873HIGH7.8An attacker can force the victim’s device to perform arbitrary HTTP requests in WAN through a malicious SVG file being p...
CVE-2022-36123HIGH7.8The Linux kernel before 5.18.13 lacks a certain clear operation for the block starting symbol (.bss). This allows Xen PV...
CVE-2022-2576HIGH7.5In Eclipse Californium version 2.0.0 to 2.7.2 and 3.0.0-3.5.0 a DTLS resumption handshake falls back to a DTLS full hand...
CVE-2022-24912HIGH7.5The package github.com/runatlantis/atlantis/server/controllers/events before 0.19.7 are vulnerable to Timing Attack in t...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now