2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-34535 | HIGH | 7.5 | 0.7% | Jul 19, 2022 | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows unauthenticated attackers to view internal paths and scrip... |
| CVE-2022-34534 | HIGH | 7.5 | 2.1% | Jul 19, 2022 | Digital Watchdog DW Spectrum Server 4.2.0.32842 allows attackers to access sensitive infromation via a crafted API call. |
| CVE-2022-2122 | HIGH | 7.8 | 0.4% | Jul 19, 2022 | DOS / potential heap overwrite in qtdemux using zlib decompression. Integer overflow in qtdemux element in qtdemux_infla... |
| CVE-2022-1925 | HIGH | 7.8 | 0.4% | Jul 19, 2022 | DOS / potential heap overwrite in mkv demuxing using HEADERSTRIP decompression. Integer overflow in matroskaparse elemen... |
| CVE-2022-1924 | HIGH | 7.8 | 0.4% | Jul 19, 2022 | DOS / potential heap overwrite in mkv demuxing using lzo decompression. Integer overflow in matroskademux element in lzo... |
| CVE-2022-1923 | HIGH | 7.8 | 0.4% | Jul 19, 2022 | DOS / potential heap overwrite in mkv demuxing using bzip decompression. Integer overflow in matroskademux element in bz... |
| CVE-2022-1922 | HIGH | 7.8 | 0.4% | Jul 19, 2022 | DOS / potential heap overwrite in mkv demuxing using zlib decompression. Integer overflow in matroskademux element in gs... |
| CVE-2022-1921 | HIGH | 7.8 | 0.5% | Jul 19, 2022 | Integer overflow in avidemux element in gst_avi_demux_invert function which allows a heap overwrite while parsing avi fi... |
| CVE-2022-1920 | HIGH | 7.8 | 0.5% | Jul 19, 2022 | Integer overflow in matroskademux element in gst_matroska_demux_add_wvpk_header function which allows a heap overwrite w... |
| CVE-2022-34169 | HIGH | 7.5 | 17.7% | Jul 19, 2022 | The Apache Xalan Java XSLT library is vulnerable to an integer truncation issue when processing malicious XSLT styleshee... |
| CVE-2022-34024 | HIGH | 7.2 | 1.1% | Jul 19, 2022 | Barangay Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the resident module... |
| CVE-2022-27373 | HIGH | 8.8 | 2.7% | Jul 19, 2022 | Shanghai Feixun Data Communication Technology Co., Ltd router fir302b A2 was discovered to contain a remote command exec... |
| CVE-2022-22360 | HIGH | 8.8 | 1.4% | Jul 19, 2022 | IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 could allow a remote authenticated attacker to c... |
| CVE-2022-22358 | HIGH | 7.1 | 1.0% | Jul 19, 2022 | IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 is vulnerable to an XML External Entity Injectio... |
| CVE-2022-2469 | HIGH | 8.1 | 1.1% | Jul 19, 2022 | GNU SASL libgsasl server-side read-out-of-bounds with malicious authenticated GSS-API client |
| CVE-2022-27580 | HIGH | 7.8 | 0.3% | Jul 19, 2022 | A deserialization vulnerability in a .NET framework class used and not properly checked by Safety Designer all versions ... |
| CVE-2022-27579 | HIGH | 7.8 | 0.3% | Jul 19, 2022 | A deserialization vulnerability in a .NET framework class used and not properly checked by Flexi Soft Designer in all ve... |
| CVE-2022-2193 | HIGH | 8.8 | 0.7% | Jul 19, 2022 | Insecure Direct Object Reference vulnerability in HYPR Server before version 6.14.1 allows remote authenticated attacker... |
| CVE-2022-2192 | HIGH | 8.8 | 0.8% | Jul 19, 2022 | Forced Browsing vulnerability in HYPR Server version 6.10 to 6.15.1 allows remote attackers with a valid one-time recove... |
| CVE-2022-1984 | HIGH | 7.8 | 0.2% | Jul 19, 2022 | This issue affects: HYPR Windows WFA versions prior to 7.2; Unsafe Deserialization vulnerability in HYPR Workforce Acces... |
| CVE-2022-30302 | HIGH | 8.1 | 0.8% | Jul 19, 2022 | Multiple relative path traversal vulnerabilities [CWE-23] in FortiDeceptor management interface 1.0.0 through 3.2.x, 3.3... |
| CVE-2022-2454 | HIGH | 7.8 | 0.4% | Jul 19, 2022 | Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.1-DEV. |
| CVE-2022-2453 | HIGH | 7.8 | 0.4% | Jul 19, 2022 | Use After Free in GitHub repository gpac/gpac prior to 2.1-DEV. |
| CVE-2022-29060 | HIGH | 8.1 | 0.6% | Jul 19, 2022 | A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiDDoS API 5.5.0 through 5.5.1, 5.4.0 through 5.4.2,... |
| CVE-2022-27483 | HIGH | 7.2 | 2.1% | Jul 19, 2022 | A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiManager ve... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now