2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-27376HIGH7.5MariaDB Server v10.6.5 and below was discovered to contain an use-after-free in the component Item_args::walk_arg, which...
CVE-2022-0915HIGH7There is a Time-of-check Time-of-use (TOCTOU) Race Condition Vulnerability in Logitech Sync for Windows prior to 2.4.574...
CVE-2022-24842HIGH8.8MinIO is a High Performance Object Storage released under GNU Affero General Public License v3.0. A security issue was f...
CVE-2022-24767HIGH7.8GitHub: Git for Windows' uninstaller vulnerable to DLL hijacking when run under the SYSTEM user account.
CVE-2022-24765HIGH7.8Git for Windows is a fork of Git containing Windows-specific patches. This vulnerability affects users working on multi-...
CVE-2022-24412HIGH7.5Dell EMC PowerScale OneFS 8.2.x - 9.3.0.x contain an improper handling of value vulnerability. An unprivileged network a...
CVE-2022-24411HIGH7.8Dell PowerScale OneFS 8.2.2 and above contain an elevation of privilege vulnerability. A local attacker with ISI_PRIV_LO...
CVE-2022-24070HIGH7.5Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_sv...
CVE-2022-23161HIGH7.5Dell PowerScale OneFS versions 8.2.x - 9.3.0.x contain a denial-of-service vulnerability in SmartConnect. An unprivilege...
CVE-2022-22562HIGH7.5Dell PowerScale OneFS, versions 8.2.0-9.3.0, contain a improper handling of missing values exploit. An unauthenticated n...
CVE-2022-22559HIGH7.5Dell PowerScale OneFS, version 9.3.0, contains a use of a broken or risky cryptographic algorithm. An unprivileged netwo...
CVE-2022-22549HIGH8.1Dell PowerScale OneFS, 8.2.x-9.3.x, contains a Improper Certificate Validation. A unauthenticated remote attacker could ...
CVE-2022-28773HIGH7.5Due to an uncontrolled recursion in SAP Web Dispatcher and SAP Internet Communication Manager, the application may crash...
CVE-2022-28772HIGH7.5By overlong input values an attacker may force overwrite of the internal program stack in SAP Web Dispatcher - versions ...
CVE-2022-28213HIGH8.1When a user access SOAP Web services in SAP BusinessObjects Business Intelligence Platform - version 420, 430, it does n...
CVE-2022-27669HIGH7.5An unauthenticated user can use functions of XML Data Archiving Service of SAP NetWeaver Application Server for Java - v...
CVE-2022-27667HIGH7.5Under certain conditions, SAP BusinessObjects Business Intelligence platform, Client Management Console (CMC) - version ...
CVE-2022-27261HIGH7.5An arbitrary file write vulnerability in Express-FileUpload v1.3.1 allows attackers to upload multiple files with the sa...
CVE-2022-24812HIGH8.8Grafana is an open-source platform for monitoring and observability. When fine-grained access control is enabled and a c...
CVE-2022-24383HIGH7.8The affected product is vulnerable to an out-of-bounds read, which may result in code execution
CVE-2022-23703HIGH7.5A security vulnerability has been identified in HPE Nimble Storage Hybrid Flash Arrays, HPE Nimble Storage All Flash Arr...
CVE-2022-21228HIGH7.8The affected product is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary co...
CVE-2022-21214HIGH7.8The affected product is vulnerable to a heap-based buffer overflow, which may lead to code execution.
CVE-2022-21155HIGH7.5A specially crafted packet sent to the Fernhill SCADA Server Version 3.77 and earlier may cause an exception, causing th...
CVE-2022-21803HIGH7.5This affects the package nconf before 0.11.4. When using the memory engine, it is possible to store a nested JSON repres...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now