2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-32221CRITICAL9.8When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data t...
CVE-2022-30123CRITICAL10A sequence injection vulnerability exists in Rack <2.0.9.1, <2.1.4.1 and <2.2.3.1 which could allow is a possible shell ...
CVE-2022-27773CRITICAL9.8A privilege escalation vulnerability is identified in Ivanti EPM (LANDesk Management Suite) that allows a user to execut...
CVE-2022-46169CRITICAL9.8Cacti is an open source platform which provides a robust and extensible operational monitoring and fault management fram...
CVE-2022-46164CRITICAL9.8NodeBB is an open source Node.js based forum software. Due to a plain object with a prototype being used in socket.io me...
CVE-2022-45481CRITICAL9.8The default configuration of Lazy Mouse does not require a password, allowing remote unauthenticated users to execute ar...
CVE-2022-45479CRITICAL9.8PC Keyboard allows remote unauthenticated users to send instructions to the server to execute arbitrary code without any...
CVE-2022-44039CRITICAL9.8Franklin Fueling System FFS Colibri 1.9.22.8925 is affected by: File system overwrite. The impact is: File system rewrit...
CVE-2022-43516CRITICAL9.8A Firewall Rule which allows all incoming TCP connections to all programs from any source and to all ports is created in...
CVE-2022-43515CRITICAL9.8Zabbix Frontend provides a feature that allows admins to maintain the installation and ensure that only certain IP addre...
CVE-2022-45477CRITICAL9.8Telepad allows remote unauthenticated users to send instructions to the server to execute arbitrary code without any pre...
CVE-2022-45315CRITICAL9.8Mikrotik RouterOs before stable v7.6 was discovered to contain an out-of-bounds read in the snmp process. This vulnerabi...
CVE-2022-45822CRITICAL9.8Unauth. SQL Injection (SQLi) vulnerability in Advanced Booking Calendar plugin <= 1.7.1 on WordPress.
CVE-2022-42496CRITICAL9.8OS command injection vulnerability in Nako3edit, editor component of nadesiko3 (PC Version) v3.3.74 and earlier allows a...
CVE-2022-41642CRITICAL9.8OS command injection vulnerability in Nadesiko3 (PC Version) v3.3.61 and earlier allows a remote attacker to execute an ...
CVE-2022-35508CRITICAL9.8Proxmox Virtual Environment (PVE) and Proxmox Mail Gateway (PMG) are vulnerable to SSRF when proxying HTTP requests betw...
CVE-2022-46414CRITICAL9.8An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. Unauthenticate...
CVE-2022-4277CRITICAL9.8A vulnerability was found in Shaoxing Background Management System. It has been declared as critical. This vulnerability...
CVE-2022-4276CRITICAL9.8A vulnerability was found in House Rental System and classified as critical. Affected by this issue is some unknown func...
CVE-2022-4275CRITICAL9.8A vulnerability has been found in House Rental System and classified as critical. Affected by this vulnerability is an u...
CVE-2022-4274CRITICAL9.8A vulnerability, which was classified as critical, was found in House Rental System. Affected is an unknown function of ...
CVE-2022-4273CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Human Resource Management System 1.0...
CVE-2022-4272CRITICAL9.8A vulnerability, which was classified as critical, has been found in FeMiner wms. Affected by this issue is some unknown...
CVE-2022-44945CRITICAL9.8Rukovoditel v3.2.1 was discovered to contain a SQL injection vulnerability via the heading_field_id parameter.
CVE-2022-44291CRITICAL9.8webTareas 2.4p5 was discovered to contain a SQL injection vulnerability via the id parameter in phasesets.php.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now