2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-26642 | HIGH | 7.2 | 1.2% | Mar 28, 2022 | TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the X_TP_ClonedMACAddress parameter. |
| CVE-2022-26641 | HIGH | 7.2 | 1.2% | Mar 28, 2022 | TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the httpRemotePort parameter. |
| CVE-2022-26640 | HIGH | 7.2 | 1.2% | Mar 28, 2022 | TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the minAddress parameter. |
| CVE-2022-26639 | HIGH | 7.2 | 1.2% | Mar 28, 2022 | TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the DNSServers parameter. |
| CVE-2022-24789 | HIGH | 7.6 | 0.7% | Mar 28, 2022 | C1 CMS is an open-source, .NET based Content Management System (CMS). Versions prior to 6.12 allow an authenticated user... |
| CVE-2022-27658 | HIGH | 7.5 | 0.9% | Mar 28, 2022 | Under certain conditions, SAP Innovation management - version 2.0, allows an attacker to access information which could ... |
| CVE-2022-0751 | HIGH | 8.8 | 1.4% | Mar 28, 2022 | Inaccurate display of Snippet files containing special characters in all versions of GitLab CE/EE allows an attacker to ... |
| CVE-2022-0738 | HIGH | 7.5 | 0.8% | Mar 28, 2022 | An issue has been discovered in GitLab affecting all versions starting from 14.6 before 14.6.5, all versions starting fr... |
| CVE-2022-0427 | HIGH | 8.8 | 0.8% | Mar 28, 2022 | Missing sanitization of HTML attributes in Jupyter notebooks in all versions of GitLab CE/EE since version 14.5 allows a... |
| CVE-2022-0136 | HIGH | 8.1 | 0.8% | Mar 28, 2022 | A vulnerability was discovered in GitLab versions 10.5 to 14.5.4, 14.6 to 14.6.4, and 14.7 to 14.7.1. GitLab was vulnera... |
| CVE-2022-0770 | HIGH | 8.8 | 0.6% | Mar 28, 2022 | The Translate WordPress with GTranslate WordPress plugin before 2.9.9 does not have CSRF check in some files, and write ... |
| CVE-2022-0499 | HIGH | 8.8 | 0.6% | Mar 28, 2022 | The Sermon Browser WordPress plugin through 0.45.22 does not have CSRF checks in place when uploading Sermon files, and ... |
| CVE-2022-26271 | HIGH | 7.5 | 4.6% | Mar 28, 2022 | 74cmsSE v3.4.1 was discovered to contain an arbitrary file read vulnerability via the $url parameter at \index\controlle... |
| CVE-2022-26259 | HIGH | 7.8 | 2.4% | Mar 28, 2022 | A buffer over flow in Xiongmai DVR devices NBD80X16S-KL, NBD80X09S-KL, NBD80X08S-KL, NBD80X09RA-KL, AHB80X04R-MH, AHB80X... |
| CVE-2022-27947 | HIGH | 8.8 | 2.8% | Mar 26, 2022 | NETGEAR R8500 1.0.2.158 devices allow remote authenticated users to execute arbitrary commands (such as telnetd) via she... |
| CVE-2022-27946 | HIGH | 8.8 | 3.2% | Mar 26, 2022 | NETGEAR R8500 1.0.2.158 devices allow remote authenticated users to execute arbitrary commands (such as telnetd) via she... |
| CVE-2022-27945 | HIGH | 8.8 | 2.9% | Mar 26, 2022 | NETGEAR R8500 1.0.2.158 devices allow remote authenticated users to execute arbitrary commands (such as telnetd) via she... |
| CVE-2022-27942 | HIGH | 7.8 | 1.1% | Mar 26, 2022 | tcpprep in Tcpreplay 4.4.1 has a heap-based buffer over-read in parse_mpls in common/get.c. |
| CVE-2022-27941 | HIGH | 7.8 | 1.1% | Mar 26, 2022 | tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_l2len_protocol in common/get.c. |
| CVE-2022-27940 | HIGH | 7.8 | 1.1% | Mar 26, 2022 | tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_ipv6_next in common/get.c. |
| CVE-2022-1071 | HIGH | 8.2 | 0.9% | Mar 26, 2022 | User after free in mrb_vm_exec in GitHub repository mruby/mruby prior to 3.2. |
| CVE-2022-26659 | HIGH | 7.1 | 0.4% | Mar 25, 2022 | Docker Desktop installer on Windows in versions before 4.6.0 allows an attacker to overwrite any administrator writable ... |
| CVE-2022-25523 | HIGH | 8.8 | 0.6% | Mar 25, 2022 | TypesetterCMS v5.1 was discovered to contain a Cross-Site Request Forgery (CSRF) which is exploited via a crafted POST r... |
| CVE-2022-1049 | HIGH | 8.8 | 1.8% | Mar 25, 2022 | A flaw was found in the Pacemaker configuration tool (pcs). The pcs daemon was allowing expired accounts, and accounts w... |
| CVE-2022-0995 | HIGH | 7.8 | 6.2% | Mar 25, 2022 | An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now