2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-20767 | HIGH | 7.5 | 1.6% | May 3, 2022 | A vulnerability in the Snort rule evaluation function of Cisco Firepower Threat Defense (FTD) Software could allow an un... |
| CVE-2022-20760 | HIGH | 7.5 | 1.6% | May 3, 2022 | A vulnerability in the DNS inspection handler of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat D... |
| CVE-2022-20759 | HIGH | 8.8 | 29.2% | May 3, 2022 | A vulnerability in the web services interface for remote access VPN features of Cisco Adaptive Security Appliance (ASA) ... |
| CVE-2022-20757 | HIGH | 7.5 | 1.2% | May 3, 2022 | A vulnerability in the connection handling function in Cisco Firepower Threat Defense (FTD) Software could allow an unau... |
| CVE-2022-20751 | HIGH | 7.5 | 1.3% | May 3, 2022 | A vulnerability in the Snort detection engine integration for Cisco Firepower Threat Defense (FTD) Software could allow ... |
| CVE-2022-20746 | HIGH | 7.5 | 1.3% | May 3, 2022 | A vulnerability in the TCP proxy functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthent... |
| CVE-2022-20745 | HIGH | 7.5 | 1.4% | May 3, 2022 | A vulnerability in the web services interface for remote access VPN features of Cisco Adaptive Security Appliance (ASA) ... |
| CVE-2022-20743 | HIGH | 8.8 | 3.7% | May 3, 2022 | A vulnerability in the web management interface of Cisco Firepower Management Center (FMC) Software could allow an authe... |
| CVE-2022-20742 | HIGH | 7.4 | 0.4% | May 3, 2022 | A vulnerability in an IPsec VPN library of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat D... |
| CVE-2022-20737 | HIGH | 7.1 | 1.1% | May 3, 2022 | A vulnerability in the handler for HTTP authentication for resources accessed through the Clientless SSL VPN portal of C... |
| CVE-2022-20730 | HIGH | 7.5 | 0.9% | May 3, 2022 | A vulnerability in the Security Intelligence feed feature of Cisco Firepower Threat Defense (FTD) Software could allow a... |
| CVE-2022-20729 | HIGH | 7.8 | 0.3% | May 3, 2022 | A vulnerability in CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to ... |
| CVE-2022-20715 | HIGH | 8.6 | 1.3% | May 3, 2022 | A vulnerability in the remote access SSL VPN features of Cisco Adaptive Security Appliance (ASA) Software and Cisco Fire... |
| CVE-2022-24897 | HIGH | 7.5 | 1.4% | May 2, 2022 | APIs to evaluate content with Velocity is a package for APIs to evaluate content with Velocity. Starting with version 2.... |
| CVE-2022-23723 | HIGH | 7.7 | 0.8% | May 2, 2022 | An MFA bypass vulnerability exists in the PingFederate PingOne MFA Integration Kit when adapter HTML templates are used ... |
| CVE-2022-28613 | HIGH | 7.5 | 0.9% | May 2, 2022 | A vulnerability exists in the HCI Modbus TCP function included in the product versions listed above. If the HCI Modbus T... |
| CVE-2022-1273 | HIGH | 7.2 | 1.4% | May 2, 2022 | The Import WP WordPress plugin before 2.4.6 does not validate the imported file in some cases, allowing high privilege u... |
| CVE-2022-1239 | HIGH | 8.8 | 1.4% | May 2, 2022 | The HubSpot WordPress plugin before 8.8.15 does not validate the proxy URL given to the proxy REST endpoint, which could... |
| CVE-2022-0952 | HIGH | 8.8 | 12.5% | May 2, 2022 | The Sitemap by click5 WordPress plugin before 1.0.36 does not have authorisation and CSRF checks when updating options v... |
| CVE-2022-27983 | HIGH | 7.5 | 0.9% | May 2, 2022 | RG-NBR-E Enterprise Gateway RG-NBR2100G-E was discovered to contain an arbitrary file read vulnerability via the url par... |
| CVE-2022-28572 | HIGH | 8.8 | 2.6% | May 2, 2022 | Tenda AX1806 v1.0.0.1 was discovered to contain a command injection vulnerability in `SetIPv6Status` function |
| CVE-2022-23064 | HIGH | 8.8 | 1.2% | May 2, 2022 | In Snipe-IT, versions v3.0-alpha to v5.3.7 are vulnerable to Host Header Injection. By sending a specially crafted host ... |
| CVE-2022-23904 | HIGH | 8 | 0.4% | May 2, 2022 | Rainworx Auctionworx < 3.1R2 is vulnerable to a Cross-Site Request Forgery (CSRF) attack that allows an authenticated us... |
| CVE-2022-29970 | HIGH | 7.5 | 1.9% | May 2, 2022 | Sinatra before 2.2.0 does not validate that the expanded path matches public_dir when serving static files. |
| CVE-2022-29968 | HIGH | 7.8 | 1.1% | May 2, 2022 | An issue was discovered in the Linux kernel through 5.17.5. io_rw_init_file in fs/io_uring.c lacks initialization of kio... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now