2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-4583HIGH8.8A vulnerability was found in jLEMS. It has been declared as critical. Affected by this vulnerability is the function unp...
CVE-2022-4582MEDIUM6.1A vulnerability was found in starter-public-edition-4 up to 4.6.10. It has been classified as problematic. Affected is a...
CVE-2022-4581MEDIUM6.1A vulnerability was found in 1j01 mind-map and classified as problematic. This issue affects some unknown processing of ...
CVE-2022-4567HIGH8.1Improper Access Control in GitHub repository openemr/openemr prior to 7.0.0.2.
CVE-2022-4572HIGH7.1A vulnerability, which was classified as problematic, has been found in UBI Reader up to 0.8.0. Affected by this issue i...
CVE-2022-23488HIGH7.5BigBlueButton is an open source web conferencing system. Versions prior to 2.4-rc-6 are vulnerable to Insertion of Sensi...
CVE-2022-23531HIGH7.8GuardDog is a CLI tool to identify malicious PyPI packages. Versions prior to 0.1.5 are vulnerable to Relative Path Trav...
CVE-2022-38756MEDIUM4.3A vulnerability has been identified in Micro Focus GroupWise Web in versions prior to 18.4.2. The GW Web component makes...
CVE-2022-23530MEDIUM6.5GuardDog is a CLI tool to identify malicious PyPI packages. Versions prior to v0.1.8 are vulnerable to arbitrary file wr...
CVE-2022-37832CRITICAL9.8Mutiny 7.2.0-10788 suffers from Hardcoded root password.
CVE-2022-26582HIGH7.8PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow an attacker to gain root access through command ...
CVE-2022-26581MEDIUM6.8PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow an unauthorized attacker to perform privileged a...
CVE-2022-26580MEDIUM6.8PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow the execution of specific command injections on ...
CVE-2022-26579MEDIUM6PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow a root privileged attacker to install unsigned p...
CVE-2022-23490MEDIUM4.3BigBlueButton is an open source web conferencing system. Versions prior to 2.4.0 expose sensitive information to Unautho...
CVE-2022-46670MEDIUM6.1 Rockwell Automation was made aware of a vulnerability by a security researcher from Georgia Institute of Technology tha...
CVE-2022-3157HIGH7.5 A vulnerability exists in the Rockwell Automation controllers that allows a malformed CIP request to cause a major non-...
CVE-2022-47210HIGH7.8The default console presented to users over telnet (when enabled) is restricted to a subset of commands. Commands issued...
CVE-2022-47209HIGH8.8A support user exists on the device and appears to be a backdoor for Technical Support staff. The default password for t...
CVE-2022-47208HIGH8.8The “puhttpsniff” service, which runs by default, is susceptible to command injection due to improperly sanitized user i...
CVE-2022-3166HIGH7.5 Rockwell Automation was made aware that the webservers of the Micrologix 1100 and 1400 controllers contain a vulnerabil...
CVE-2022-2966HIGH7.5Out-of-bounds Read vulnerability in Delta Electronics DOPSoft.This issue affects DOPSoft: All Versions.
CVE-2022-4566CRITICAL9.8A vulnerability, which was classified as critical, has been found in y_project RuoYi 4.7.5. This issue affects some unkn...
CVE-2022-4565HIGH7.5A vulnerability classified as problematic was found in Dromara HuTool up to 5.8.10. This vulnerability affects unknown c...
CVE-2022-41972MEDIUM6.5Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. Versions prior to 4.9 con...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now