2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-30990 | HIGH | 7.5 | 0.8% | May 18, 2022 | Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber ... |
| CVE-2022-30033 | HIGH | 7.5 | 1.1% | May 18, 2022 | Tenda TX9 Pro V22.03.02.10 is vulnerable to Buffer Overflow via the functtion setIPv6Status() in httpd module. |
| CVE-2022-29445 | HIGH | 7.2 | 1.0% | May 18, 2022 | Authenticated (administrator or higher role) Local File Inclusion (LFI) vulnerability in Wow-Company's Popup Box plugin ... |
| CVE-2022-25161 | HIGH | 8.6 | 3.7% | May 18, 2022 | Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,... |
| CVE-2022-22787 | HIGH | 7.5 | 3.8% | May 18, 2022 | The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.10.0 fails to properly valid... |
| CVE-2022-22778 | HIGH | 8.8 | 0.4% | May 18, 2022 | The Web Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management contains an easily ... |
| CVE-2022-1734 | HIGH | 7 | 0.5% | May 18, 2022 | A flaw in Linux Kernel found in nfcmrvl_nci_unregister_dev() in drivers/nfc/nfcmrvl/main.c can lead to use after free bo... |
| CVE-2022-0883 | HIGH | 7.8 | 0.2% | May 18, 2022 | SLM has an issue with Windows Unquoted/Trusted Service Paths Security Issue. All installations version 9.x.x prior to 9.... |
| CVE-2022-28917 | HIGH | 7.5 | 8.8% | May 18, 2022 | Tenda AX12 v22.03.01.21_cn was discovered to contain a stack overflow via the lanIp parameter in /goform/AdvSetLanIp. |
| CVE-2022-22786 | HIGH | 8.8 | 1.5% | May 18, 2022 | The Zoom Client for Meetings for Windows before version 5.10.0 and Zoom Rooms for Conference Room for Windows before ver... |
| CVE-2022-22784 | HIGH | 8.1 | 4.0% | May 18, 2022 | The Zoom Client for Meetings (for Android, iOS, Linux, MacOS, and Windows) before version 5.10.0 failed to properly pars... |
| CVE-2022-1767 | HIGH | 7.5 | 1.7% | May 18, 2022 | Server-Side Request Forgery (SSRF) in GitHub repository jgraph/drawio prior to 18.0.7. |
| CVE-2022-30065 | HIGH | 7.8 | 1.2% | May 18, 2022 | A use-after-free in Busybox 1.35-x's awk applet leads to denial of service and possibly code execution when processing a... |
| CVE-2022-29518 | HIGH | 7 | 0.2% | May 18, 2022 | Screen Creator Advance2, HMI GC-A2 series, and Real time remote monitoring and control tool Screen Creator Advance2 vers... |
| CVE-2022-27632 | HIGH | 8.8 | 0.5% | May 18, 2022 | Cross-site request forgery (CSRF) vulnerability in Rebooter(WATCH BOOT nino RPC-M2C [End of Sale] all firmware versions,... |
| CVE-2022-23067 | HIGH | 8.8 | 1.2% | May 18, 2022 | ToolJet versions v0.5.0 to v1.2.2 are vulnerable to token leakage via Referer header that leads to account takeover . If... |
| CVE-2022-1727 | HIGH | 8.8 | 1.4% | May 18, 2022 | Improper Input Validation in GitHub repository jgraph/drawio prior to 18.0.6. |
| CVE-2022-1430 | HIGH | 7.5 | 1.3% | May 18, 2022 | Cross-site Scripting (XSS) - DOM in GitHub repository octoprint/octoprint prior to 1.8.0. |
| CVE-2022-29643 | HIGH | 7.5 | 1.1% | May 18, 2022 | TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a stack overflow via the ... |
| CVE-2022-29642 | HIGH | 7.5 | 1.1% | May 18, 2022 | TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a stack overflow via the ... |
| CVE-2022-29641 | HIGH | 7.5 | 1.3% | May 18, 2022 | TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a stack overflow via the ... |
| CVE-2022-29640 | HIGH | 7.5 | 1.1% | May 18, 2022 | TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a stack overflow via the ... |
| CVE-2022-29639 | HIGH | 8.1 | 1.8% | May 18, 2022 | TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a command injection vulne... |
| CVE-2022-29638 | HIGH | 7.5 | 1.1% | May 18, 2022 | TOTOLINK A3100R V4.1.2cu.5050_B20200504 and V4.1.2cu.5247_B20211129 were discovered to contain a stack overflow via the ... |
| CVE-2022-28955 | HIGH | 7.5 | 38.3% | May 18, 2022 | An access control issue in D-Link DIR816L_FW206b01 allows unauthenticated attackers to access folders folder_view.php an... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now