2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-33639HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-33638HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-33042HIGH7.2Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /...
CVE-2022-30192HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-34043HIGH7.3Incorrect permissions for the folder C:\ProgramData\NoMachine\var\uninstall of Nomachine v7.9.2 allows attackers to perf...
CVE-2022-33037HIGH7.8A binary hijack in Orwell-Dev-Cpp v5.11 allows attackers to execute arbitrary code via a crafted .exe file.
CVE-2022-33036HIGH7.8A binary hijack in Embarcadero Dev-CPP v6.3 allows attackers to execute arbitrary code via a crafted .exe file.
CVE-2022-33035HIGH7.8XLPD v7.0.0094 and below contains an unquoted service path vulnerability which allows local users to launch processes wi...
CVE-2022-33023HIGH7.5CVA6 commit 909d85a gives incorrect permission to use special multiplication units when the format of instructions is wr...
CVE-2022-33021HIGH7.5CVA6 commit 909d85a accesses invalid memory when reading the value of MHPMCOUNTER30.
CVE-2022-31883HIGH8.8Marval MSM v14.19.0.12476 is has an Insecure Direct Object Reference (IDOR) vulnerability. A low privilege user is able ...
CVE-2022-2145HIGH7.8Cloudflare WARP client for Windows (up to v. 2022.5.309.0) allowed creation of mount points from its ProgramData folder....
CVE-2022-28621HIGH7.5A remote disclosure of sensitive information vulnerability was discovered in HPE NonStop DSM/SCM version: T6031H03^ADP. ...
CVE-2022-33108HIGH7.8XPDF v4.04 was discovered to contain a stack overflow vulnerability via the Object::Copy class of object.cc files.
CVE-2022-30563HIGH7.4When an attacker uses a man-in-the-middle attack to sniff the request packets with success logging in through ONVIF, he ...
CVE-2022-30560HIGH7.4When an attacker obtaining the administrative account and password, or through a man-in-the-middle attack, the attacker ...
CVE-2022-23763HIGH8.8Origin validation error vulnerability in NeoRS’s ActiveX moudle allows attackers to download and execute arbitrary files...
CVE-2022-34750HIGH7.5An issue was discovered in MediaWiki through 1.38.1. The lemma length of a Wikibase lexeme is currently capped at a thou...
CVE-2022-30997HIGH7.2Use of hard-coded credentials vulnerability exists in STARDOM FCN Controller and FCJ Controller R4.10 to R4.31, which ma...
CVE-2022-30707HIGH8.8Violation of secure design principles exists in the communication of CAMS for HIS. Affected products and versions are CE...
CVE-2022-29519HIGH7.5Cleartext transmission of sensitive information vulnerability exists in STARDOM FCN Controller and FCJ Controller R1.01 ...
CVE-2022-0624HIGH7.3Authorization Bypass Through User-Controlled Key in GitHub repository ionicabizau/parse-path prior to 5.0.0.
CVE-2022-34134HIGH8.8Jorani v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /application/controllers/Use...
CVE-2022-31103HIGH7.5lettersanitizer is a DOM-based HTML email sanitizer for in-browser email rendering. All versions of lettersanitizer belo...
CVE-2022-31101HIGH8.8prestashop/blockwishlist is a prestashop extension which adds a block containing the customer's wishlists. In affected v...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now