2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-1114HIGH7.1A heap-use-after-free flaw was found in ImageMagick's RelinquishDCMInfo() function of dcm.c file. This vulnerability is ...
CVE-2022-1048HIGH7A use-after-free flaw was found in the Linux kernel’s sound subsystem in the way a user triggers concurrent calls of PCM...
CVE-2022-24900HIGH8.6Piano LED Visualizer is software that allows LED lights to light up as a person plays a piano connected to a computer. V...
CVE-2022-1534HIGH7.1Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the progr...
CVE-2022-1533HIGH7.8Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. This vulnerability is capable of arbitrary cod...
CVE-2022-29555HIGH8.8The Deviceconnect microservice through 1.3.0 in Northern.tech Mender Enterprise before 3.2.2. allows Cross-Origin Websoc...
CVE-2022-28060HIGH7.5SQL Injection vulnerability in Victor CMS v1.0, via the user_name parameter to /includes/login.php.
CVE-2022-29410HIGH8.8Authenticated SQL Injection (SQLi) vulnerability in Mufeng's Hermit 音乐播放器 plugin <= 3.1.6 on WordPress allows attackers ...
CVE-2022-29585HIGH7.5In Mahara before 20.10.5, 21.04.4, 21.10.2, and 22.04.0, a site using Isolated Institutions is vulnerable if more than t...
CVE-2022-28892HIGH8.8Mahara before 20.10.5, 21.04.4, 21.10.2, and 22.04.0 is vulnerable to Cross Site Request Forgery (CSRF) because randomly...
CVE-2022-24892HIGH7.5Shopware is an open source e-commerce software platform. Starting with version 5.0.4 and before version 5.7.9, multiple ...
CVE-2022-24879HIGH7.5Shopware is an open source e-commerce software platform. Versions prior to 5.7.9 are vulnerable to malfunction of cross-...
CVE-2022-22783HIGH7.5A vulnerability in Zoom On-Premise Meeting Connector Controller version 4.8.102.20220310 and On-Premise Meeting Connecto...
CVE-2022-22782HIGH7.1The Zoom Client for Meetings for Windows prior to version 5.9.7, Zoom Rooms for Conference Room for Windows prior to ver...
CVE-2022-22781HIGH7.5The Zoom Client for Meetings for MacOS (Standard and for IT Admin) prior to version 5.9.6 failed to properly check the p...
CVE-2022-24935HIGH7.5Lexmark products through 2022-02-10 have Incorrect Access Control.
CVE-2022-29821HIGH7.7In JetBrains Rider before 2022.1 local code execution via links in ReSharper Quick Documentation was possible
CVE-2022-29819HIGH7.7In JetBrains IntelliJ IDEA before 2022.1 local code execution via links in Quick Documentation was possible
CVE-2022-29818HIGH7.1In JetBrains IntelliJ IDEA before 2022.1 origin checks in the internal web server were flawed
CVE-2022-29814HIGH7.7In JetBrains IntelliJ IDEA before 2022.1 local code execution via HTML descriptions in custom JSON schemas was possible
CVE-2022-1509HIGH8.8Command Injection Vulnerability in GitHub repository hestiacp/hestiacp prior to 1.5.12. An authenticated remote attacker...
CVE-2022-24735HIGH7.8Redis is an in-memory database that persists on disk. By exploiting weaknesses in the Lua script execution environment, ...
CVE-2022-22315HIGH8.8IBM UrbanCode Deploy (UCD) 7.2.2.1 could allow an authenticated user with special permissions to obtain elevated privile...
CVE-2022-22278HIGH7.5A vulnerability in SonicOS CFS (Content filtering service) returns a large 403 forbidden HTTP response message to the so...
CVE-2022-22275HIGH7.5Improper Restriction of TCP Communication Channel in HTTP/S inbound traffic from WAN to DMZ bypassing security policy un...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now