2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-30990HIGH7.5Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber ...
CVE-2022-30033HIGH7.5Tenda TX9 Pro V22.03.02.10 is vulnerable to Buffer Overflow via the functtion setIPv6Status() in httpd module.
CVE-2022-29445HIGH7.2Authenticated (administrator or higher role) Local File Inclusion (LFI) vulnerability in Wow-Company's Popup Box plugin ...
CVE-2022-25161HIGH8.6Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,...
CVE-2022-22787HIGH7.5The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.10.0 fails to properly valid...
CVE-2022-22778HIGH8.8The Web Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management contains an easily ...
CVE-2022-1734HIGH7A flaw in Linux Kernel found in nfcmrvl_nci_unregister_dev() in drivers/nfc/nfcmrvl/main.c can lead to use after free bo...
CVE-2022-0883HIGH7.8SLM has an issue with Windows Unquoted/Trusted Service Paths Security Issue. All installations version 9.x.x prior to 9....
CVE-2022-28917HIGH7.5Tenda AX12 v22.03.01.21_cn was discovered to contain a stack overflow via the lanIp parameter in /goform/AdvSetLanIp.
CVE-2022-22786HIGH8.8The Zoom Client for Meetings for Windows before version 5.10.0 and Zoom Rooms for Conference Room for Windows before ver...
CVE-2022-22784HIGH8.1The Zoom Client for Meetings (for Android, iOS, Linux, MacOS, and Windows) before version 5.10.0 failed to properly pars...
CVE-2022-1767HIGH7.5Server-Side Request Forgery (SSRF) in GitHub repository jgraph/drawio prior to 18.0.7.
CVE-2022-30065HIGH7.8A use-after-free in Busybox 1.35-x's awk applet leads to denial of service and possibly code execution when processing a...
CVE-2022-29518HIGH7Screen Creator Advance2, HMI GC-A2 series, and Real time remote monitoring and control tool Screen Creator Advance2 vers...
CVE-2022-27632HIGH8.8Cross-site request forgery (CSRF) vulnerability in Rebooter(WATCH BOOT nino RPC-M2C [End of Sale] all firmware versions,...
CVE-2022-23067HIGH8.8ToolJet versions v0.5.0 to v1.2.2 are vulnerable to token leakage via Referer header that leads to account takeover . If...
CVE-2022-1727HIGH8.8Improper Input Validation in GitHub repository jgraph/drawio prior to 18.0.6.
CVE-2022-1430HIGH7.5Cross-site Scripting (XSS) - DOM in GitHub repository octoprint/octoprint prior to 1.8.0.
CVE-2022-29643HIGH7.5TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a stack overflow via the ...
CVE-2022-29642HIGH7.5TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a stack overflow via the ...
CVE-2022-29641HIGH7.5TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a stack overflow via the ...
CVE-2022-29640HIGH7.5TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a stack overflow via the ...
CVE-2022-29639HIGH8.1TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a command injection vulne...
CVE-2022-29638HIGH7.5TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a stack overflow via the ...
CVE-2022-28955HIGH7.5An access control issue in D-Link DIR816L_FW206b01 allows unauthenticated attackers to access folders folder_view.php an...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now