2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29473 | HIGH | 7.5 | 0.7% | May 5, 2022 | On F5 BIG-IP 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, and 13.1.x versions prior to 13.1.5, ... |
| CVE-2022-29263 | HIGH | 7.8 | 0.2% | May 5, 2022 | On F5 BIG-IP APM 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6... |
| CVE-2022-28716 | HIGH | 8.8 | 0.7% | May 5, 2022 | On 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versi... |
| CVE-2022-28714 | HIGH | 7.8 | 0.3% | May 5, 2022 | On F5 BIG-IP APM 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6... |
| CVE-2022-28706 | HIGH | 7.5 | 0.7% | May 5, 2022 | On F5 BIG-IP 16.1.x versions prior to 16.1.2 and 15.1.x versions prior to 15.1.5.1, when the DNS resolver configuration ... |
| CVE-2022-28705 | HIGH | 7.5 | 0.9% | May 5, 2022 | On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, an... |
| CVE-2022-28701 | HIGH | 7.5 | 0.9% | May 5, 2022 | On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, when the stream profile is configured on a virtual server, undisclosed r... |
| CVE-2022-28695 | HIGH | 7.2 | 0.8% | May 5, 2022 | On F5 BIG-IP AFM 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6... |
| CVE-2022-28691 | HIGH | 7.5 | 0.9% | May 5, 2022 | On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5, 14.1.x versions prior to 14.1.4.6, and ... |
| CVE-2022-28080 | HIGH | 8.8 | 57.3% | May 5, 2022 | Royal Event Management System v1.0 was discovered to contain a SQL injection vulnerability via the todate parameter. |
| CVE-2022-28079 | HIGH | 8.8 | 28.3% | May 5, 2022 | College Management System v1.0 was discovered to contain a SQL injection vulnerability via the course_code parameter. |
| CVE-2022-27806 | HIGH | 7.2 | 1.5% | May 5, 2022 | On all versions of 16.1.x, 15.1.x, 14.1.x, 13.1.x, 12.1.x, and 11.6.x of F5 BIG-IP Advanced WAF, ASM, and ASM, and F5 BI... |
| CVE-2022-27634 | HIGH | 7.2 | 1.3% | May 5, 2022 | On 16.1.x versions prior to 16.1.2.2 and 15.1.x versions prior to 15.1.5.1, BIG-IP APM does not properly validate config... |
| CVE-2022-27189 | HIGH | 7.5 | 0.9% | May 5, 2022 | On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13... |
| CVE-2022-26890 | HIGH | 7.5 | 0.9% | May 5, 2022 | On F5 BIG-IP Advanced WAF, ASM, and APM 16.1.x versions prior to 16.1.2.1, 15.1.x versions prior to 15.1.5, 14.1.x versi... |
| CVE-2022-26517 | HIGH | 7.5 | 0.7% | May 5, 2022 | On F5 BIG-IP 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, and 13.1.x versions prior to 13.1.5, ... |
| CVE-2022-26372 | HIGH | 7.5 | 0.8% | May 5, 2022 | On F5 BIG-IP 15.1.x versions prior to 15.1.0.2, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior to 13.1.5, and ... |
| CVE-2022-26370 | HIGH | 7.5 | 0.7% | May 5, 2022 | On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5, and 14.1.x versions prior to 14.1.4.6, ... |
| CVE-2022-26071 | HIGH | 7.5 | 1.0% | May 5, 2022 | On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13... |
| CVE-2022-22433 | HIGH | 7.5 | 1.0% | May 5, 2022 | IBM Robotic Process Automation 21.0.1 and 21.0.2 is vulnerable to External Service Interaction attack, caused by imprope... |
| CVE-2022-29340 | HIGH | 7.5 | 1.1% | May 5, 2022 | GPAC 2.1-DEV-rev87-g053aae8-master. has a Null Pointer Dereference vulnerability in gf_isom_parse_movie_boxes_internal d... |
| CVE-2022-29339 | HIGH | 7.5 | 1.1% | May 5, 2022 | In GPAC 2.1-DEV-rev87-g053aae8-master, function BS_ReadByte() in utils/bitstream.c has a failed assertion, which causes ... |
| CVE-2022-28462 | HIGH | 7.5 | 1.0% | May 5, 2022 | novel-plus 3.6.0 suffers from an Arbitrary file reading vulnerability. |
| CVE-2022-29938 | HIGH | 8.8 | 1.4% | May 5, 2022 | In LibreHealth EHR 2.0.0, lack of sanitization of the GET parameter payment_id in interface\billing\new_payment.php via ... |
| CVE-2022-1592 | HIGH | 8.2 | 1.1% | May 5, 2022 | Server-Side Request Forgery in scout in GitHub repository clinical-genomics/scout prior to v4.42. An attacker could make... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now