2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-34535HIGH7.5Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows unauthenticated attackers to view internal paths and scrip...
CVE-2022-34534HIGH7.5Digital Watchdog DW Spectrum Server 4.2.0.32842 allows attackers to access sensitive infromation via a crafted API call.
CVE-2022-2122HIGH7.8DOS / potential heap overwrite in qtdemux using zlib decompression. Integer overflow in qtdemux element in qtdemux_infla...
CVE-2022-1925HIGH7.8DOS / potential heap overwrite in mkv demuxing using HEADERSTRIP decompression. Integer overflow in matroskaparse elemen...
CVE-2022-1924HIGH7.8DOS / potential heap overwrite in mkv demuxing using lzo decompression. Integer overflow in matroskademux element in lzo...
CVE-2022-1923HIGH7.8DOS / potential heap overwrite in mkv demuxing using bzip decompression. Integer overflow in matroskademux element in bz...
CVE-2022-1922HIGH7.8DOS / potential heap overwrite in mkv demuxing using zlib decompression. Integer overflow in matroskademux element in gs...
CVE-2022-1921HIGH7.8Integer overflow in avidemux element in gst_avi_demux_invert function which allows a heap overwrite while parsing avi fi...
CVE-2022-1920HIGH7.8Integer overflow in matroskademux element in gst_matroska_demux_add_wvpk_header function which allows a heap overwrite w...
CVE-2022-34169HIGH7.5The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT styleshee...
CVE-2022-34024HIGH7.2Barangay Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the resident module...
CVE-2022-27373HIGH8.8Shanghai Feixun Data Communication Technology Co., Ltd router fir302b A2 was discovered to contain a remote command exec...
CVE-2022-22360HIGH8.8IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 could allow a remote authenticated attacker to c...
CVE-2022-22358HIGH7.1IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 is vulnerable to an XML External Entity Injectio...
CVE-2022-2469HIGH8.1GNU SASL libgsasl server-side read-out-of-bounds with malicious authenticated GSS-API client
CVE-2022-27580HIGH7.8A deserialization vulnerability in a .NET framework class used and not properly checked by Safety Designer all versions ...
CVE-2022-27579HIGH7.8A deserialization vulnerability in a .NET framework class used and not properly checked by Flexi Soft Designer in all ve...
CVE-2022-2193HIGH8.8Insecure Direct Object Reference vulnerability in HYPR Server before version 6.14.1 allows remote authenticated attacker...
CVE-2022-2192HIGH8.8Forced Browsing vulnerability in HYPR Server version 6.10 to 6.15.1 allows remote attackers with a valid one-time recove...
CVE-2022-1984HIGH7.8This issue affects: HYPR Windows WFA versions prior to 7.2; Unsafe Deserialization vulnerability in HYPR Workforce Acces...
CVE-2022-30302HIGH8.1Multiple relative path traversal vulnerabilities [CWE-23] in FortiDeceptor management interface 1.0.0 through 3.2.x, 3.3...
CVE-2022-2454HIGH7.8Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.1-DEV.
CVE-2022-2453HIGH7.8Use After Free in GitHub repository gpac/gpac prior to 2.1-DEV.
CVE-2022-29060HIGH8.1A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiDDoS API 5.5.0 through 5.5.1, 5.4.0 through 5.4.2,...
CVE-2022-27483HIGH7.2A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiManager ve...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now