2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-30976HIGH7.1GPAC 2.0.0 misuses a certain Unicode utf8_wcslen (renamed gf_utf8_wcslen) function in utils/utf.c, resulting in a heap-b...
CVE-2022-29174HIGH8.1countly-server is the server-side part of Countly, a product analytics solution. Prior to versions 22.03.7 and 21.11.4, ...
CVE-2022-29162HIGH7.8runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. A bug was found in r...
CVE-2022-1362HIGH7.3The affected On-Premise cnMaestro is vulnerable inside a specific route where a user can upload a crafted package to the...
CVE-2022-1361HIGH7.5The affected On-Premise cnMaestro is vulnerable to a pre-auth data exfiltration through improper neutralization of speci...
CVE-2022-1359HIGH7.5The affected On-Premise cnMaestro is vulnerable to an arbitrary file-write through improper limitation of a pathname to ...
CVE-2022-1358HIGH7.5The affected On-Premise is vulnerable to data exfiltration through improper neutralization of special elements used in a...
CVE-2022-1356HIGH7.8cnMaestro is vulnerable to a local privilege escalation. By default, a user does not have root privileges. However, a us...
CVE-2022-28185HIGH7.1NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the ECC layer, where an unprivileged regular...
CVE-2022-28184HIGH7.8NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler...
CVE-2022-28183HIGH7.1NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged...
CVE-2022-28182HIGH8.5NVIDIA GPU Display Driver for Windows contains a vulnerability in the DirectX11 user mode driver (nvwgf2um/x.dll), where...
CVE-2022-24394HIGH8.8Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web inter...
CVE-2022-24393HIGH8.8Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web inter...
CVE-2022-24392HIGH8.8Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web inter...
CVE-2022-24391HIGH8.8Vulnerability in Fidelis Network and Deception CommandPost enables SQL injection through the web interface by an attacke...
CVE-2022-24390HIGH8.8Vulnerability in rconfig “remote_text_file” enables an attacker with user level access to the CLI to inject user level c...
CVE-2022-24389HIGH8.8Vulnerability in rconfig “cert_utils” enables an attacker with user level access to the CLI to inject root level command...
CVE-2022-24388HIGH8.8Vulnerability in rconfig “date” enables an attacker with user level access to the CLI to inject root level commands into...
CVE-2022-1118HIGH7.8Connected Components Workbench (v13.00.00 and prior), ISaGRAF Workbench (v6.0 though v6.6.9), and Safety Instrumented Sy...
CVE-2022-0997HIGH7.8Improper file permissions in the CommandPost, Collector, and Sensor components of Fidelis Network and Deception enables ...
CVE-2022-0486HIGH7.8Improper file permissions in the CommandPost, Collector, Sensor, and Sandbox components of Fidelis Network and Deception...
CVE-2022-30688HIGH7.8needrestart 0.8 through 3.5 before 3.6 is prone to local privilege escalation. Regexes to detect the Perl, Python, and R...
CVE-2022-29429HIGH8.8Remote Code Execution (RCE) in Alexander Stokmann's Code Snippets Extended plugin <= 1.4.7 on WordPress via Cross-Site R...
CVE-2022-1735HIGH7.8Classic Buffer Overflow in GitHub repository vim/vim prior to 8.2.4969.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now