2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-30288 | HIGH | 7.5 | 1.5% | May 4, 2022 | Agoo before 2.14.3 does not reject GraphQL fragment spreads that form cycles, leading to an application crash. NOTE: the... |
| CVE-2022-23724 | HIGH | 8.1 | 0.4% | May 4, 2022 | Use of static encryption key material allows forging an authentication token to other users within a tenant organization... |
| CVE-2022-20801 | HIGH | 7.2 | 1.8% | May 4, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 and RV345 Routers could all... |
| CVE-2022-20799 | HIGH | 7.2 | 1.5% | May 4, 2022 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 and RV345 Routers could all... |
| CVE-2022-20785 | HIGH | 7.5 | 6.2% | May 4, 2022 | On April 20, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 a... |
| CVE-2022-20780 | HIGH | 7.4 | 10.9% | May 4, 2022 | Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from ... |
| CVE-2022-20779 | HIGH | 8.8 | 10.2% | May 4, 2022 | Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an attacker to escape from ... |
| CVE-2022-20771 | HIGH | 7.5 | 5.1% | May 4, 2022 | On April 20, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 a... |
| CVE-2022-20770 | HIGH | 7.5 | 6.2% | May 4, 2022 | On April 20, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 a... |
| CVE-2022-20764 | HIGH | 8.1 | 0.9% | May 4, 2022 | Multiple vulnerabilities in the web engine of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS S... |
| CVE-2022-20753 | HIGH | 7.2 | 1.9% | May 4, 2022 | A vulnerability in web-based management interface of Cisco Small Business RV340 and RV345 Routers could allow an authent... |
| CVE-2022-28940 | HIGH | 7.5 | 1.1% | May 4, 2022 | In H3C MagicR100 <=V100R005, the / Ajax / ajaxget interface can be accessed without authorization. It sends a large amou... |
| CVE-2022-28556 | HIGH | 7.5 | 1.0% | May 4, 2022 | Tenda AC15 US_AC15V1.0BR_V15.03.05.20_multi_TDE01.bin is vulnerable to Buffer Overflow. The stack overflow vulnerability... |
| CVE-2022-23443 | HIGH | 7.5 | 1.2% | May 4, 2022 | An improper access control in Fortinet FortiSOAR before 7.2.0 allows unauthenticated attackers to access gateway API dat... |
| CVE-2022-28806 | HIGH | 7.8 | 0.4% | May 4, 2022 | An issue was discovered on certain Fujitsu LIEFBOOK devices (A3510, U9310, U7511/U7411/U7311, U9311, E5510/E5410, U7510/... |
| CVE-2022-28552 | HIGH | 8.8 | 0.8% | May 4, 2022 | Cscms 4.1 is vulnerable to SQL Injection. Log into the background, open the song module, create a new song, delete it to... |
| CVE-2022-28488 | HIGH | 7.5 | 1.1% | May 4, 2022 | The function wav_format_write in libwav.c in libwav through 2017-04-20 has an Use of Uninitialized Variable vulnerabilit... |
| CVE-2022-28487 | HIGH | 7.5 | 1.9% | May 4, 2022 | Tcpreplay version 4.4.1 contains a memory leakage flaw in fix_ipv6_checksums() function. The highest threat from this vu... |
| CVE-2022-28099 | HIGH | 8.8 | 1.6% | May 4, 2022 | Poultry Farm Management System v1.0 was discovered to contain a SQL injection vulnerability via the Item parameter at /f... |
| CVE-2022-28076 | HIGH | 7.2 | 2.0% | May 4, 2022 | Seacms v11.6 was discovered to contain a remote command execution (RCE) vulnerability via the Mail Server Settings. |
| CVE-2022-28067 | HIGH | 8.6 | 0.8% | May 4, 2022 | An incorrect access control issue in Sandboxie Classic v5.55.13 allows attackers to cause a Denial of Service (DoS) in t... |
| CVE-2022-27903 | HIGH | 8.8 | 2.5% | May 4, 2022 | An OS Command Injection vulnerability in the configuration parser of Eve-NG Professional through 4.0.1-65 and Eve-NG Com... |
| CVE-2022-25785 | HIGH | 7.2 | 0.9% | May 4, 2022 | Stack-based Buffer Overflow vulnerability in SiteManager allows logged-in or local user to cause arbitrary code executio... |
| CVE-2022-25778 | HIGH | 8.8 | 0.3% | May 4, 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Web UI of Secomea GateManager allows phishing attacker to issue get r... |
| CVE-2022-28096 | HIGH | 7.2 | 19.1% | May 4, 2022 | Skycaiji v2.4 was discovered to contain a remote code execution (RCE) vulnerability via /SkycaijiApp/admin/controller/De... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now