2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-2126HIGH7.8Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
CVE-2022-2125HIGH7.8Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
CVE-2022-2124HIGH7.8Buffer Over-read in GitHub repository vim/vim prior to 8.2.
CVE-2022-25871HIGH7.5All versions of package querymen are vulnerable to Prototype Pollution if the parameters of exported function handler(ty...
CVE-2022-25856HIGH7.5The package github.com/argoproj/argo-events/sensors/artifacts before 1.7.1 are vulnerable to Directory Traversal in the ...
CVE-2022-25852HIGH7.5All versions of package pg-native; all versions of package libpq are vulnerable to Denial of Service (DoS) when the addo...
CVE-2022-25345HIGH7.5All versions of package @discordjs/opus are vulnerable to Denial of Service (DoS) when trying to encode using an encoder...
CVE-2022-22138HIGH7.5All versions of package fast-string-search are vulnerable to Denial of Service (DoS) when computations are incorrect for...
CVE-2022-21213HIGH7.5This affects all versions of package mout. The deepFillIn function can be used to 'fill missing properties recursively',...
CVE-2022-31083HIGH7.5Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version...
CVE-2022-33915HIGH7Versions of the Amazon AWS Apache Log4j hotpatch package before log4j-cve-2021-44228-hotpatch-1.3.5 are affected by a ra...
CVE-2022-33912HIGH7.8A permission issue affects users that deployed the shipped version of the Checkmk Debian package. Packages created by th...
CVE-2022-32276HIGH7.5Grafana 8.4.3 allows unauthenticated access via (for example) a /dashboard/snapshot/*?orgId=0 URI. NOTE: the vendor cons...
CVE-2022-2112HIGH8.8Improper Neutralization of Formula Elements in a CSV File in GitHub repository inventree/inventree prior to 0.7.2.
CVE-2022-2111HIGH8.8Unrestricted Upload of File with Dangerous Type in GitHub repository inventree/inventree prior to 0.7.2.
CVE-2022-30325HIGH8.8An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. The default pre-shared key for the Wi-Fi networks i...
CVE-2022-33756HIGH7.5CA Automic Automation 12.2 and 12.3 contain an entropy weakness vulnerability in the Automic AutomationEngine that could...
CVE-2022-33753HIGH8.8CA Automic Automation 12.2 and 12.3 contain an insecure file creation and handling vulnerability in the Automic agent th...
CVE-2022-33751HIGH7.5CA Automic Automation 12.2 and 12.3 contain an insecure memory handling vulnerability in the Automic agent that could al...
CVE-2022-33739HIGH7.5CA Clarity 15.8 and below and 15.9.0 contain an insecure XML parsing vulnerability that could allow a remote attacker to...
CVE-2022-26173HIGH8.8JForum v2.8.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via http://target_host:port/jforum-2.8.0/jfo...
CVE-2022-31295HIGH7.5An issue in the delete_post() function of Online Discussion Forum Site 1 allows unauthenticated attackers to arbitrarily...
CVE-2022-31464HIGH7.8Insecure permissions configuration in Adaware Protect v1.2.439.4251 allows attackers to escalate privileges via changing...
CVE-2022-27511HIGH8.1Corruption of the system by a remote, unauthenticated user. The impact of this can include the reset of the administrato...
CVE-2022-32547HIGH7.8In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'flo...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now