2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-41591HIGH7.5The backup module has a path traversal vulnerability. Successful exploitation of this vulnerability causes unauthorized ...
CVE-2022-41590MEDIUM5.5Some smartphones have authentication-related (including session management) vulnerabilities as the setup wizard is bypas...
CVE-2022-39166MEDIUM4.9 IBM Security Guardium 11.4 could allow a privileged user to obtain sensitive information inside of an HTTP response. IB...
CVE-2022-38733HIGH8.6OnCommand Insight versions 7.3.1 through 7.3.14 are susceptible to an authentication bypass vulnerability in the Data Wa...
CVE-2022-38391HIGH7.5 IBM Spectrum Control 5.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt hig...
CVE-2022-23542CRITICAL9.8OpenFGA is an authorization/permission engine built for developers and inspired by Google Zanzibar. During an internal s...
CVE-2022-46914HIGH8.8An issue in the firmware update process of TP-LINK TL-WA801N / TL-WA801ND V1 v3.12.16 and earlier allows attackers to ex...
CVE-2022-46912HIGH8.8An issue in the firmware update process of TP-Link TL-WR841N / TL-WA841ND V7 3.13.9 and earlier allows attackers to exec...
CVE-2022-46910HIGH8.8An issue in the firmware update process of TP-Link TL-WA901ND V1 up to v3.11.2 and TL-WA901N V2 up to v3.12.16 allows at...
CVE-2022-46771MEDIUM4.6 IBM UrbanCode Deploy (UCD) 6.2.0.0 through 6.2.7.18, 7.0.5.0 through 7.0.5.13, 7.1.0.0 through 7.1.2.9, 7.2.0.0 through...
CVE-2022-46435HIGH8.8An issue in the firmware update process of TP-Link TL-WR941ND V2/V3 up to 3.13.9 and TL-WR941ND V4 up to 3.12.8 allows a...
CVE-2022-46434HIGH7.5An issue in the firmware update process of TP-Link TL-WA7510N v1 v3.12.6 and earlier allows attackers to execute arbitra...
CVE-2022-46432HIGH7.5An exploitable firmware modification vulnerability was discovered on TP-Link TL-WR743ND V1. An attacker can conduct a MI...
CVE-2022-46430MEDIUM4.8TP-Link TL-WR740N V1 and V2 v3.12.4 and earlier allows authenticated attackers to execute arbitrary code or cause a Deni...
CVE-2022-46428MEDIUM4.8TP-Link TL-WR1043ND V1 3.13.15 and earlier allows authenticated attackers to execute arbitrary code or cause a Denial of...
CVE-2022-46424HIGH8.1An exploitable firmware modification vulnerability was discovered on the Netgear XWN5001 Powerline 500 WiFi Access Point...
CVE-2022-46423HIGH8.1An exploitable firmware modification vulnerability was discovered on the Netgear WNR2000v1 router. An attacker can condu...
CVE-2022-46422MEDIUM4.8An issue in Netgear WNR2000 v1 1.2.3.7 and earlier allows authenticated attackers to cause a Denial of Service (DoS) via...
CVE-2022-46139MEDIUM6.5TP-Link TL-WR940N V4 3.16.9 and earlier allows authenticated attackers to cause a Denial of Service (DoS) via uploading ...
CVE-2022-39304MEDIUM4.7ghinstallation provides transport, which implements http.RoundTripper to provide authentication as an installation for G...
CVE-2022-38873HIGH7.5D-Link devices DAP-2310 v2.10rc036 and earlier, DAP-2330 v1.06rc020 and earlier, DAP-2360 v2.10rc050 and earlier, DAP-25...
CVE-2022-4579Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2022-4515HIGH7.8A flaw was found in Exuberant Ctags in the way it handles the "-o" option. This option specifies the tag filename. A cra...
CVE-2022-43875MEDIUM5.5IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4 could allow an authenticated user to lock ...
CVE-2022-43872MEDIUM5.3 IBM Financial Transaction Manager 3.2.4 authorization checks are done incorrectly for some HTTP requests which allows g...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now