2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-4855CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Lead Management System 1.0. Affected is a...
CVE-2022-48196CRITICAL9.8Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects RAX40 before 1.0....
CVE-2022-36437CRITICAL9.1The Connection handler in Hazelcast and Hazelcast Jet allows a remote unauthenticated attacker to access and manipulate ...
CVE-2022-4779CRITICAL9.8StreamX applications from versions 6.02.01 to 6.04.34 are affected by a logic bug that allows to bypass the implemented ...
CVE-2022-4768CRITICAL9.8A vulnerability was found in Dropbox merou. It has been classified as critical. Affected is the function add_public_key ...
CVE-2022-46442CRITICAL9.8dedecms <=V5.7.102 is vulnerable to SQL Injection. In sys_ sql_ n query.php there are no restrictions on the sql query.
CVE-2022-45963CRITICAL9.8h3c firewall <= 3.10 ESS6703 has a privilege bypass vulnerability.
CVE-2022-45778CRITICAL9.8https://www.hillstonenet.com.cn/ Hillstone Firewall SG-6000 <= 5.0.4.0 is vulnerable to Incorrect Access Control. There ...
CVE-2022-4726CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Sanitization Management System 1.0. Affected by this ...
CVE-2022-4725CRITICAL9.8A vulnerability was found in AWS SDK 2.59.0. It has been rated as critical. This issue affects the function XpathUtils o...
CVE-2022-4724CRITICAL9.8Improper Access Control in GitHub repository ikus060/rdiffweb prior to 2.5.5.
CVE-2022-4719CRITICAL9.8Business Logic Errors in GitHub repository ikus060/rdiffweb prior to 2.5.5.
CVE-2022-4748CRITICAL9.8A vulnerability was found in FlatPress. It has been classified as critical. This affects the function doItemActions of t...
CVE-2022-46764CRITICAL9.8A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows remote unauthenticated...
CVE-2022-4120CRITICAL9.8The Stop Spammers Security | Block Spam Users, Comments, Forms WordPress plugin before 2022.6 passes base64 encoded user...
CVE-2022-4117CRITICAL9.8The IWS WordPress plugin through 1.0 does not properly escape a parameter before using it in a SQL statement via an AJAX...
CVE-2022-4047CRITICAL9.8The Return Refund and Exchange For WooCommerce WordPress plugin before 4.0.9 does not validate attachment files to be up...
CVE-2022-4742CRITICAL9.8A vulnerability, which was classified as critical, has been found in json-pointer up to 0.6.1. Affected by this issue is...
CVE-2022-26969CRITICAL9.8In Directus before 9.7.0, the default settings of CORS_ORIGIN and CORS_ENABLED are true.
CVE-2022-24119CRITICAL9.8Certain General Electric Renewable Energy products have a hidden feature for unauthenticated remote access to the device...
CVE-2022-24118CRITICAL9.1Certain General Electric Renewable Energy products allow attackers to use a code to trigger a reboot into the factory de...
CVE-2022-24117CRITICAL9.8Certain General Electric Renewable Energy products download firmware without an integrity check. This affects iNET and i...
CVE-2022-24116CRITICAL9.8Certain General Electric Renewable Energy products have inadequate encryption strength. This affects iNET and iNET II be...
CVE-2022-4739CRITICAL9.8A vulnerability classified as critical was found in SourceCodester School Dormitory Management System 1.0. Affected by t...
CVE-2022-4737CRITICAL9.8A vulnerability was found in SourceCodester Blood Bank Management System 1.0. It has been rated as critical. This issue ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now