2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48651 | HIGH | 7.7 | 0.3% | Apr 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: ipvlan: Fix out-of-bound bugs caused by unset skb->... |
| CVE-2022-48649 | HIGH | 7.8 | 0.2% | Apr 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm/slab_common: fix possible double free of kmem_ca... |
| CVE-2022-48637 | HIGH | 7.8 | 0.2% | Apr 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: bnxt: prevent skb UAF after handing over to PTP wor... |
| CVE-2022-48636 | HIGH | 7.8 | 0.2% | Apr 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: s390/dasd: fix Oops in dasd_alias_get_start_dev due... |
| CVE-2022-48632 | HIGH | 7.8 | 0.3% | Apr 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: i2c: mlxbf: prevent stack overflow in mlxbf_i2c_smb... |
| CVE-2022-48684 | HIGH | 8.8 | 0.6% | Apr 27, 2024 | An issue was discovered in Logpoint before 7.1.1. Template injection was seen in the search template. The search templat... |
| CVE-2022-48611 | HIGH | 7.8 | 0.2% | Apr 26, 2024 | A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.4 for Windows. A local attacker ma... |
| CVE-2022-35503 | HIGH | 7.5 | 0.5% | Apr 22, 2024 | Improper verification of a user input in Open Source MANO v7-v12 allows an authenticated attacker to execute arbitrary c... |
| CVE-2022-34560 | HIGH | 7.1 | 0.3% | Apr 22, 2024 | A cross-site scripting (XSS) vulnerability in PHPFox v4.8.9 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2022-47151 | HIGH | 8.6 | 0.4% | Apr 17, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JS Help Desk JS He... |
| CVE-2022-24810 | HIGH | 8.8 | 1.1% | Apr 16, 2024 | net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with ... |
| CVE-2022-24805 | HIGH | 8.8 | 1.3% | Apr 16, 2024 | net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a buffer ove... |
| CVE-2022-45356 | HIGH | 8.8 | 0.5% | Mar 25, 2024 | Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1. |
| CVE-2022-47037 | HIGH | 7.5 | 0.5% | Mar 18, 2024 | Siklu TG Terragraph devices before 2.1.1 allow attackers to discover valid, randomly generated credentials via GetCreden... |
| CVE-2022-34321 | HIGH | 8.2 | 1.8% | Mar 12, 2024 | Improper Authentication vulnerability in Apache Pulsar Proxy allows an attacker to connect to the /proxy-stats endpoint ... |
| CVE-2022-46070 | HIGH | 7.5 | 0.5% | Mar 11, 2024 | GV-ASManager V6.0.1.0 contains a Local File Inclusion vulnerability in GeoWebServer via Path. |
| CVE-2022-46499 | HIGH | 8.8 | 0.5% | Mar 7, 2024 | Hospital Management System 1.0 was discovered to contain a SQL injection vulnerability via the pat_number parameter at h... |
| CVE-2022-46497 | HIGH | 8.1 | 0.5% | Mar 7, 2024 | Hospital Management System 1.0 was discovered to contain a SQL injection vulnerability via the pat_number parameter at h... |
| CVE-2022-43890 | HIGH | 7.5 | 0.4% | Mar 4, 2024 | IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information through an HTTP request that could a... |
| CVE-2022-34269 | HIGH | 8.8 | 1.7% | Feb 29, 2024 | An issue was discovered in RWS WorldServer before 11.7.3. An authenticated, remote attacker can perform a ws-legacy/load... |
| CVE-2022-48626 | HIGH | 7.8 | 0.3% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: moxart: fix potential use-after-free on remove path... |
| CVE-2022-25377 | HIGH | 7.5 | 0.8% | Feb 22, 2024 | The ACME-challenge endpoint in Appwrite 0.5.0 through 0.12.x before 0.12.2 allows remote attackers to read arbitrary loc... |
| CVE-2022-45177 | HIGH | 7.5 | 0.5% | Feb 21, 2024 | An issue was discovered in LIVEBOX Collaboration vDesk through v031. An Observable Response Discrepancy can occur under ... |
| CVE-2022-48625 | HIGH | 7.5 | 0.4% | Feb 20, 2024 | Yealink Config Encrypt Tool add RSA before 1.2 has a built-in RSA key pair, and thus there is a risk of decryption by an... |
| CVE-2022-48624 | HIGH | 7.8 | 1.1% | Feb 19, 2024 | close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now