2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-30820 | HIGH | 8.8 | 1.1% | Jun 2, 2022 | In Wedding Management v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "users_edit.p... |
| CVE-2022-30819 | HIGH | 8.8 | 1.1% | Jun 2, 2022 | In Wedding Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "photo... |
| CVE-2022-30818 | HIGH | 7.2 | 1.0% | Jun 2, 2022 | Wedding Management System v1.0 is vulnerable to SQL injection via /Wedding-Management/admin/blog_events_edit.php?id=31. |
| CVE-2022-30799 | HIGH | 7.2 | 1.0% | Jun 2, 2022 | Online Ordering System v1.0 by oretnom23 has SQL injection via store/orderpage.php. |
| CVE-2022-30798 | HIGH | 7.2 | 1.0% | Jun 2, 2022 | Online Ordering System v1.0 by oretnom23 is vulnerable to SQL Injection via admin/viewreport.php. |
| CVE-2022-30795 | HIGH | 7.2 | 1.0% | Jun 2, 2022 | Online Ordering System v1.0 by oretnom23 is vulnerable to SQL Injection via admin/editproductimage.php. |
| CVE-2022-30794 | HIGH | 7.2 | 0.8% | Jun 2, 2022 | Online Ordering System v1.0 by oretnom23 is vulnerable to SQL Injection via admin/editproductetails.php. |
| CVE-2022-30540 | HIGH | 7.8 | 0.9% | Jun 2, 2022 | The affected product is vulnerable to a heap-based buffer overflow via uninitialized pointer, which may allow an attacke... |
| CVE-2022-30496 | HIGH | 7.5 | 1.2% | Jun 2, 2022 | SQL injection in Logon Page of IDCE MV's application, version 1.0, allows an attacker to inject SQL payloads in the user... |
| CVE-2022-30425 | HIGH | 8.8 | 19.1% | Jun 2, 2022 | Tenda Technology Co.,Ltd HG6 3.3.0-210926 was discovered to contain a command injection vulnerability via the pingAddr a... |
| CVE-2022-30034 | HIGH | 8.6 | 1.3% | Jun 2, 2022 | Flower, a web UI for the Celery Python RPC framework, all versions as of 05-02-2022 is vulnerable to an OAuth authentica... |
| CVE-2022-29735 | HIGH | 8.8 | 0.9% | Jun 2, 2022 | Delta Controls enteliTOUCH 3.40.3935, 3.40.3706, and 3.33.4005 allows attackers to execute arbitrary commands via a craf... |
| CVE-2022-29729 | HIGH | 7.5 | 1.4% | Jun 2, 2022 | Verizon 4G LTE Network Extender GA4.38 - V0.4.038.2131 utilizes a weak default admin password generation algorithm which... |
| CVE-2022-29725 | HIGH | 8.8 | 1.3% | Jun 2, 2022 | An arbitrary file upload in the image upload component of wityCMS v0.6.2 allows attackers to execute arbitrary code via ... |
| CVE-2022-29695 | HIGH | 7.5 | 1.1% | Jun 2, 2022 | Unicorn Engine v2.0.0-rc7 contains memory leaks caused by an incomplete unicorn engine initialization. |
| CVE-2022-29694 | HIGH | 7.5 | 1.8% | Jun 2, 2022 | Unicorn Engine v2.0.0-rc7 and below was discovered to contain a NULL pointer dereference via qemu_ram_free. |
| CVE-2022-29693 | HIGH | 7.5 | 1.2% | Jun 2, 2022 | Unicorn Engine v2.0.0-rc7 and below was discovered to contain a memory leak via the function uc_close at /my/unicorn/uc.... |
| CVE-2022-29692 | HIGH | 7.8 | 0.8% | Jun 2, 2022 | Unicorn Engine v1.0.3 was discovered to contain a use-after-free vulnerability via the hook function. |
| CVE-2022-29647 | HIGH | 8.8 | 0.6% | Jun 2, 2022 | An issue was discovered in MCMS 5.2.7. There is a CSRF vulnerability that can add an administrator account via ms/basic/... |
| CVE-2022-29624 | HIGH | 8.8 | 1.2% | Jun 2, 2022 | An arbitrary file upload vulnerability in the Add File function of TPCMS v3.2 allows attackers to execute arbitrary code... |
| CVE-2022-29488 | HIGH | 7.8 | 0.8% | Jun 2, 2022 | The affected product is vulnerable to an out-of-bounds read via uninitialized pointer, which may allow an attacker to ex... |
| CVE-2022-29483 | HIGH | 7.8 | 0.3% | Jun 2, 2022 | Incorrect Default Permissions vulnerability in ABB e-Design allows attacker to install malicious software executing with... |
| CVE-2022-28799 | HIGH | 8.8 | 15.5% | Jun 2, 2022 | The TikTok application before 23.7.3 for Android allows account takeover. A crafted URL (unvalidated deeplink) can force... |
| CVE-2022-28690 | HIGH | 7.8 | 0.8% | Jun 2, 2022 | The affected product is vulnerable to an out-of-bounds write via uninitialized pointer, which may allow an attacker to e... |
| CVE-2022-27782 | HIGH | 7.5 | 2.6% | Jun 2, 2022 | libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should ha... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now