2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-24690HIGH8.2An issue was discovered in DSK DSKNet 2.16.136.0 and 2.17.136.5. A PresAbs.php SQL Injection vulnerability allows unauth...
CVE-2022-24688HIGH8.8An issue was discovered in DSK DSKNet 2.16.136.0 and 2.17.136.5. The Touch settings allow unrestricted file upload (and ...
CVE-2022-36127HIGH7.5A vulnerability in Apache SkyWalking NodeJS Agent prior to 0.5.1. The vulnerability will cause NodeJS services that has ...
CVE-2022-33891HIGH8.8The Apache Spark UI offers the possibility to enable ACLs via the configuration option spark.acls.enable. With an authen...
CVE-2022-33903HIGH7.5Tor 0.4.7.x before 0.4.7.8 allows a denial of service via the wedging of RTT estimation.
CVE-2022-31213HIGH7.5An issue was discovered in dbus-broker before 31. Multiple NULL pointer dereferences can be found when supplying a malfo...
CVE-2022-31212HIGH7.5An issue was discovered in dbus-broker before 31. It depends on c-uitl/c-shquote to parse the DBus service's Exec line. ...
CVE-2022-31208HIGH8.8An issue was discovered in Infiray IRAY-A8Z3 1.0.957. The webserver contains an endpoint that can execute arbitrary comm...
CVE-2022-30981HIGH8.8An issue was discovered in Gentics CMS before 5.43.1. By uploading a malicious ZIP file, an attacker is able to deserial...
CVE-2022-28809HIGH7.8An issue was discovered in Open Design Alliance Drawings SDK before 2023.3. An Out-of-Bounds Read vulnerability exists w...
CVE-2022-28808HIGH7.8An issue was discovered in Open Design Alliance Drawings SDK before 2023.3. An Out-of-Bounds Read vulnerability exists w...
CVE-2022-28807HIGH7.8An issue was discovered in Open Design Alliance Drawings SDK before 2023.2. An Out-of-Bounds Read vulnerability exists w...
CVE-2022-26482HIGH7.2An issue was discovered in Poly EagleEye Director II before 2.2.2.1. os.system command injection can be achieved by an a...
CVE-2022-26481HIGH8.8An issue was discovered in Poly Studio before 3.7.0. Command Injection can occur via the CN field of a Create Certificat...
CVE-2022-32263HIGH7.5Pexip Infinity before 28.1 allows remote attackers to trigger a software abort via G.719.
CVE-2022-29286HIGH7.5Pexip Infinity 27 before 28.0 allows remote attackers to trigger excessive resource consumption and termination because ...
CVE-2022-30622HIGH7.3Disclosure of information - the system allows you to view usernames and passwords without permissions, thus it will be p...
CVE-2022-27937HIGH7.5Pexip Infinity before 27.3 allows remote attackers to trigger excessive resource consumption via H.264.
CVE-2022-27936HIGH7.5Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via H.323.
CVE-2022-27935HIGH7.5Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via Epic Telehealth.
CVE-2022-27934HIGH7.5Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via HTTP.
CVE-2022-27933HIGH8.2Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.
CVE-2022-27932HIGH7.5Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.
CVE-2022-27931HIGH7.5Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.
CVE-2022-27929HIGH7.5Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via HTTP.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now