2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-32203 | CRITICAL | 9.8 | 1.1% | Dec 20, 2024 | There is a command injection vulnerability in Huawei terminal printer product. Successful exploitation could result in t... |
| CVE-2022-46838 | CRITICAL | 9.1 | 0.7% | Dec 13, 2024 | Missing Authorization vulnerability in JS Help Desk JS Help Desk – Best Help Desk & Support Plugin allows Exploiting Inc... |
| CVE-2022-45806 | CRITICAL | 9.8 | 0.5% | Dec 13, 2024 | Missing Authorization vulnerability in Strategy11 Form Builder Team Formidable Forms allows Exploiting Incorrectly Confi... |
| CVE-2022-38946 | CRITICAL | 9.8 | 0.8% | Dec 9, 2024 | Arbitrary File Upload vulnerability in Doctor-Appointment version 1.0 in /Frontend/signup_com.php, allows attackers to e... |
| CVE-2022-38947 | CRITICAL | 9.8 | 0.6% | Dec 9, 2024 | SQL Injection vulnerability in Flipkart-Clone-PHP version 1.0 in entry.php in product_title parameter, allows attackers ... |
| CVE-2022-1884 | CRITICAL | 9.8 | 1.8% | Nov 15, 2024 | A remote command execution vulnerability exists in gogs/gogs versions <=0.12.7 when deployed on a Windows server. The vu... |
| CVE-2022-45157 | CRITICAL | 9.1 | 0.4% | Nov 13, 2024 | A vulnerability has been identified in the way that Rancher stores vSphere's CPI (Cloud Provider Interface) and CSI (Con... |
| CVE-2022-30355 | CRITICAL | 9.8 | 0.5% | Oct 25, 2024 | OvalEdge 5.2.8.0 and earlier is affected by an Account Takeover vulnerability via a POST request to /profile/updateProfi... |
| CVE-2022-25769 | CRITICAL | 9.1 | 0.5% | Sep 18, 2024 | ImpactThe default .htaccess file has some restrictions in the access to PHP files to only allow specific PHP files to be... |
| CVE-2022-33162 | CRITICAL | 9.8 | 0.4% | Aug 16, 2024 | IBM Security Directory Integrator 7.2.0 and Security Verify Directory Integrator 10.0.0 does not perform any authenticat... |
| CVE-2022-45832 | CRITICAL | 9.8 | 0.4% | Jun 19, 2024 | Missing Authorization vulnerability in Hennessey Digital Attorney.This issue affects Attorney: from n/a through 3. |
| CVE-2022-44581 | CRITICAL | 9.8 | 0.7% | May 17, 2024 | Insecure Storage of Sensitive Information vulnerability in WPMU DEV Defender Security allows : Screen Temporary Files fo... |
| CVE-2022-32504 | CRITICAL | 9.8 | 1.6% | May 14, 2024 | An issue was discovered on certain Nuki Home Solutions devices. The code used to parse the JSON objects received from th... |
| CVE-2022-40218 | CRITICAL | 9.8 | 0.5% | May 8, 2024 | Missing Authorization vulnerability in ThemeHunk Advance WordPress Search Plugin.This issue affects Advance WordPress Se... |
| CVE-2022-48697 | CRITICAL | 9.8 | 0.2% | May 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix a use-after-free Fix the following use-... |
| CVE-2022-48666 | CRITICAL | 9.8 | 0.2% | Apr 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: scsi: core: Fix a use-after-free There are two .ex... |
| CVE-2022-43216 | CRITICAL | 9.1 | 0.5% | Apr 8, 2024 | AbrhilSoft Employee's Portal before v5.6.2 was discovered to contain a SQL injection vulnerability in the login page. |
| CVE-2022-38057 | CRITICAL | 9.8 | 0.6% | Mar 25, 2024 | Missing Authorization vulnerability in ThemeHunk Advance WordPress Search Plugin.This issue affects Advance WordPress Se... |
| CVE-2022-36407 | CRITICAL | 9.9 | 0.5% | Mar 25, 2024 | Insertion of Sensitive Information into Log File vulnerability in Hitachi Virtual Storage Platform, Hitachi Virtual Stor... |
| CVE-2022-4963 | CRITICAL | 9.8 | 0.6% | Mar 21, 2024 | A vulnerability was found in Folio Spring Module Core up to 1.1.5. It has been rated as critical. Affected by this issue... |
| CVE-2022-47036 | CRITICAL | 9.8 | 0.5% | Mar 18, 2024 | Siklu TG Terragraph devices before approximately 2.1.1 have a hardcoded root password that has been revealed via a brute... |
| CVE-2022-32257 | CRITICAL | 9.8 | 0.8% | Mar 12, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2). The affected application cons... |
| CVE-2022-34270 | CRITICAL | 9.8 | 0.9% | Feb 29, 2024 | An issue was discovered in RWS WorldServer before 11.7.3. Regular users can create users with the Administrator role via... |
| CVE-2022-43842 | CRITICAL | 9.1 | 0.5% | Feb 23, 2024 | IBM Aspera Console 3.4.0 through 3.4.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQ... |
| CVE-2022-42443 | CRITICAL | 9.8 | 0.5% | Feb 17, 2024 | An undisclosed issue in Trusteer iOS SDK for mobile versions prior to 5.7 and Trusteer Android SDK for mobile versions p... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now