2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-30288HIGH7.5Agoo before 2.14.3 does not reject GraphQL fragment spreads that form cycles, leading to an application crash. NOTE: the...
CVE-2022-23724HIGH8.1Use of static encryption key material allows forging an authentication token to other users within a tenant organization...
CVE-2022-20801HIGH7.2Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 and RV345 Routers could all...
CVE-2022-20799HIGH7.2Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 and RV345 Routers could all...
CVE-2022-20785HIGH7.5On April 20, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 a...
CVE-2022-20780HIGH7.4Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from ...
CVE-2022-20779HIGH8.8Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from ...
CVE-2022-20771HIGH7.5On April 20, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 a...
CVE-2022-20770HIGH7.5On April 20, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 a...
CVE-2022-20764HIGH8.1Multiple vulnerabilities in the web engine of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS S...
CVE-2022-20753HIGH7.2A vulnerability in web-based management interface of Cisco Small Business RV340 and RV345 Routers could allow an authent...
CVE-2022-28940HIGH7.5In H3C MagicR100 <=V100R005, the / Ajax / ajaxget interface can be accessed without authorization. It sends a large amou...
CVE-2022-28556HIGH7.5Tenda AC15 US_AC15V1.0BR_V15.03.05.20_multi_TDE01.bin is vulnerable to Buffer Overflow. The stack overflow vulnerability...
CVE-2022-23443HIGH7.5An improper access control in Fortinet FortiSOAR before 7.2.0 allows unauthenticated attackers to access gateway API dat...
CVE-2022-28806HIGH7.8An issue was discovered on certain Fujitsu LIEFBOOK devices (A3510, U9310, U7511/U7411/U7311, U9311, E5510/E5410, U7510/...
CVE-2022-28552HIGH8.8Cscms 4.1 is vulnerable to SQL Injection. Log into the background, open the song module, create a new song, delete it to...
CVE-2022-28488HIGH7.5The function wav_format_write in libwav.c in libwav through 2017-04-20 has an Use of Uninitialized Variable vulnerabilit...
CVE-2022-28487HIGH7.5Tcpreplay version 4.4.1 contains a memory leakage flaw in fix_ipv6_checksums() function. The highest threat from this vu...
CVE-2022-28099HIGH8.8Poultry Farm Management System v1.0 was discovered to contain a SQL injection vulnerability via the Item parameter at /f...
CVE-2022-28076HIGH7.2Seacms v11.6 was discovered to contain a remote command execution (RCE) vulnerability via the Mail Server Settings.
CVE-2022-28067HIGH8.6An incorrect access control issue in Sandboxie Classic v5.55.13 allows attackers to cause a Denial of Service (DoS) in t...
CVE-2022-27903HIGH8.8An OS Command Injection vulnerability in the configuration parser of Eve-NG Professional through 4.0.1-65 and Eve-NG Com...
CVE-2022-25785HIGH7.2Stack-based Buffer Overflow vulnerability in SiteManager allows logged-in or local user to cause arbitrary code executio...
CVE-2022-25778HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Web UI of Secomea GateManager allows phishing attacker to issue get r...
CVE-2022-28096HIGH7.2Skycaiji v2.4 was discovered to contain a remote code execution (RCE) vulnerability via /SkycaijiApp/admin/controller/De...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now