2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-27928HIGH7.5Pexip Infinity 27.x before 27.3 allows remote attackers to trigger a software abort via the Session Initiation Protocol.
CVE-2022-26657HIGH7.5Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via One Touch Join.
CVE-2022-26656HIGH8.2Pexip Infinity before 27.3 allows remote attackers to trigger a software abort, and possibly enumerate usernames, via On...
CVE-2022-26655HIGH7.5Pexip Infinity 27.x before 27.3 has Improper Input Validation. The client API allows remote attackers to trigger a softw...
CVE-2022-26654HIGH7.5Pexip Infinity before 27.3 allows remote attackers to force a software abort via HTTP.
CVE-2022-30550HIGH8.8An issue was discovered in the auth component in Dovecot 2.2 and 2.3 before 2.3.20. When two passdb configuration entrie...
CVE-2022-35861HIGH7.8pyenv 1.2.24 through 2.3.2 allows local users to gain privileges via a .python-version file in the current working direc...
CVE-2022-32320HIGH8.8A Cross-Site Request Forgery (CSRF) in Ferdi through 5.8.1 and Ferdium through 6.0.0-nightly.98 allows attackers to read...
CVE-2022-1672HIGH8.8The Insights from Google PageSpeed WordPress plugin before 4.0.7 does not verify for CSRF before doing various actions s...
CVE-2022-36126HIGH7.2An issue was discovered in Inductive Automation Ignition before 7.9.20 and 8.x before 8.1.17. The ScriptInvoke function ...
CVE-2022-32434HIGH7.8EIPStackGroup OpENer v2.3.0 was discovered to contain a stack overflow via /bin/posix/src/ports/POSIX/OpENer+0x56073d.
CVE-2022-30634HIGH7.5Infinite loop in Read in crypto/rand before Go 1.17.11 and Go 1.18.3 on Windows allows attacker to cause an indefinite h...
CVE-2022-25891HIGH7.5The package github.com/containrrr/shoutrrr/pkg/util before 0.6.0 are vulnerable to Denial of Service (DoS) via the util....
CVE-2022-25858HIGH7.5The package terser before 4.8.1, from 5.0.0 and before 5.14.2 are vulnerable to Regular Expression Denial of Service (Re...
CVE-2022-31158HIGH7.5LTI 1.3 Tool Library is a library used for building IMS-certified LTI 1.3 tool providers in PHP. Prior to version 5.0, t...
CVE-2022-31157HIGH7.5LTI 1.3 Tool Library is a library used for building IMS-certified LTI 1.3 tool providers in PHP. Prior to version 5.0, t...
CVE-2022-34251HIGH7.8Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by an Out-Of-Bounds Write vulnerability t...
CVE-2022-34250HIGH7.8Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by a Heap-based Buffer Overflow vulnerabi...
CVE-2022-34249HIGH7.8Adobe InCopy versions 17.2 (and earlier) and 16.4.1 (and earlier) are affected by a Heap-based Buffer Overflow vulnerabi...
CVE-2022-34247HIGH7.8Adobe InDesign versions 17.2.1 (and earlier) and 16.4.1 (and earlier) are affected by an Out-Of-Bounds Write vulnerabili...
CVE-2022-34246HIGH7.8Adobe InDesign versions 17.2.1 (and earlier) and 16.4.1 (and earlier) are affected by a Heap-based Buffer Overflow vulne...
CVE-2022-34245HIGH7.8Adobe InDesign versions 17.2.1 (and earlier) and 16.4.1 (and earlier) are affected by a Heap-based Buffer Overflow vulne...
CVE-2022-34243HIGH7.8Adobe Photoshop versions 22.5.7 (and earlier) and 23.3.2 (and earlier) are affected by a Use After Free vulnerability th...
CVE-2022-34242HIGH7.8Adobe Character Animator version 4.4.7 (and earlier) and 22.4 (and earlier) are affected by an out-of-bounds read vulner...
CVE-2022-34241HIGH7.8Adobe Character Animator version 4.4.7 (and earlier) and 22.4 (and earlier) are affected by a Heap-based Buffer Overflow...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now