2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-48651HIGH7.7In the Linux kernel, the following vulnerability has been resolved: ipvlan: Fix out-of-bound bugs caused by unset skb->...
CVE-2022-48649HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/slab_common: fix possible double free of kmem_ca...
CVE-2022-48637HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bnxt: prevent skb UAF after handing over to PTP wor...
CVE-2022-48636HIGH7.8In the Linux kernel, the following vulnerability has been resolved: s390/dasd: fix Oops in dasd_alias_get_start_dev due...
CVE-2022-48632HIGH7.8In the Linux kernel, the following vulnerability has been resolved: i2c: mlxbf: prevent stack overflow in mlxbf_i2c_smb...
CVE-2022-48684HIGH8.8An issue was discovered in Logpoint before 7.1.1. Template injection was seen in the search template. The search templat...
CVE-2022-48611HIGH7.8A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.4 for Windows. A local attacker ma...
CVE-2022-35503HIGH7.5Improper verification of a user input in Open Source MANO v7-v12 allows an authenticated attacker to execute arbitrary c...
CVE-2022-34560HIGH7.1A cross-site scripting (XSS) vulnerability in PHPFox v4.8.9 allows attackers to execute arbitrary web scripts or HTML vi...
CVE-2022-47151HIGH8.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JS Help Desk JS He...
CVE-2022-24810HIGH8.8net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with ...
CVE-2022-24805HIGH8.8net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a buffer ove...
CVE-2022-45356HIGH8.8Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1.
CVE-2022-47037HIGH7.5Siklu TG Terragraph devices before 2.1.1 allow attackers to discover valid, randomly generated credentials via GetCreden...
CVE-2022-34321HIGH8.2Improper Authentication vulnerability in Apache Pulsar Proxy allows an attacker to connect to the /proxy-stats endpoint ...
CVE-2022-46070HIGH7.5GV-ASManager V6.0.1.0 contains a Local File Inclusion vulnerability in GeoWebServer via Path.
CVE-2022-46499HIGH8.8Hospital Management System 1.0 was discovered to contain a SQL injection vulnerability via the pat_number parameter at h...
CVE-2022-46497HIGH8.1Hospital Management System 1.0 was discovered to contain a SQL injection vulnerability via the pat_number parameter at h...
CVE-2022-43890HIGH7.5IBM Security Verify Privilege On-Premises 11.5 could disclose sensitive information through an HTTP request that could a...
CVE-2022-34269HIGH8.8An issue was discovered in RWS WorldServer before 11.7.3. An authenticated, remote attacker can perform a ws-legacy/load...
CVE-2022-48626HIGH7.8In the Linux kernel, the following vulnerability has been resolved: moxart: fix potential use-after-free on remove path...
CVE-2022-25377HIGH7.5The ACME-challenge endpoint in Appwrite 0.5.0 through 0.12.x before 0.12.2 allows remote attackers to read arbitrary loc...
CVE-2022-45177HIGH7.5An issue was discovered in LIVEBOX Collaboration vDesk through v031. An Observable Response Discrepancy can occur under ...
CVE-2022-48625HIGH7.5Yealink Config Encrypt Tool add RSA before 1.2 has a built-in RSA key pair, and thus there is a risk of decryption by an...
CVE-2022-48624HIGH7.8close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now