2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23088 | CRITICAL | 9.8 | 3.6% | Feb 15, 2024 | The 802.11 beacon handling routine failed to validate the length of an IEEE 802.11s Mesh ID before copying it to a heap-... |
| CVE-2022-48623 | CRITICAL | 9.1 | 0.8% | Feb 13, 2024 | The Cpanel::JSON::XS package before 4.33 for Perl performs out-of-bounds accesses in a way that allows attackers to obta... |
| CVE-2022-34381 | CRITICAL | 9.8 | 0.8% | Feb 2, 2024 | Dell BSAFE SSL-J version 7.0 and all versions prior to 6.5, and Dell BSAFE Crypto-J versions prior to 6.2.6.1 contain a... |
| CVE-2022-47072 | CRITICAL | 9.8 | 0.6% | Jan 31, 2024 | SQL injection vulnerability in Enterprise Architect 16.0.1605 32-bit allows attackers to run arbitrary SQL commands via ... |
| CVE-2022-45790 | CRITICAL | 9.1 | 0.7% | Jan 22, 2024 | The Omron FINS protocol has an authenticated feature to prevent access to memory regions. Authentication is susceptible ... |
| CVE-2022-40700 | CRITICAL | 9.8 | 1.0% | Jan 19, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Montonio Montonio for WooCommerce, Wpopal Wpopal Core Features, AMO ... |
| CVE-2022-41786 | CRITICAL | 9.8 | 0.5% | Jan 17, 2024 | Missing Authorization vulnerability in WP Job Portal WP Job Portal – A Complete Job Board.This issue affects WP Job Port... |
| CVE-2022-36418 | CRITICAL | 9.8 | 0.7% | Jan 17, 2024 | Missing Authorization vulnerability in Vagary Digital HREFLANG Tags Lite.This issue affects HREFLANG Tags Lite: from n/a... |
| CVE-2022-1609 | CRITICAL | 9.8 | 64.3% | Jan 16, 2024 | The School Management WordPress plugin before 9.9.7 contains an obfuscated backdoor injected in it's license checking co... |
| CVE-2022-4961 | CRITICAL | 9.8 | 0.5% | Jan 12, 2024 | A vulnerability was found in Weitong Mall 1.0.0. It has been declared as critical. Affected by this vulnerability is an ... |
| CVE-2022-48620 | CRITICAL | 9.8 | 1.3% | Jan 12, 2024 | uev (aka libuev) before 2.4.1 has a buffer overflow in epoll_wait if maxevents is a large number. |
| CVE-2022-46025 | CRITICAL | 9.1 | 1.1% | Jan 10, 2024 | Totolink N200RE_V5 V9.3.5u.6255_B20211224 is vulnerable to Incorrect Access Control. The device allows remote attackers ... |
| CVE-2022-46839 | CRITICAL | 9.8 | 0.8% | Jan 5, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in JS Help Desk JS Help Desk – Best Help Desk & Support Pl... |
| CVE-2022-34268 | CRITICAL | 9.8 | 1.5% | Dec 25, 2023 | An issue was discovered in RWS WorldServer before 11.7.3. /clientLogin deserializes Java objects without authentication,... |
| CVE-2022-34267 | CRITICAL | 9.8 | 42.2% | Dec 25, 2023 | An issue was discovered in RWS WorldServer before 11.7.3. Adding a token parameter with the value of 02 bypasses all aut... |
| CVE-2022-47532 | CRITICAL | 9.8 | 0.6% | Dec 22, 2023 | FileRun 20220519 allows SQL Injection via the "dir" parameter in a /?module=users§ion=cpanel&page=list request. |
| CVE-2022-45377 | CRITICAL | 9.8 | 0.6% | Dec 21, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in Glen Don L. Mongaya Drag and Drop Multiple File Upload ... |
| CVE-2022-45135 | CRITICAL | 9.8 | 1.1% | Nov 30, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Cocoon.This... |
| CVE-2022-42541 | CRITICAL | 9.8 | 0.5% | Nov 29, 2023 | Remote code execution |
| CVE-2022-42540 | CRITICAL | 9.8 | 0.3% | Nov 29, 2023 | Elevation of privilege |
| CVE-2022-42538 | CRITICAL | 9.8 | 0.3% | Nov 29, 2023 | Elevation of privilege |
| CVE-2022-42537 | CRITICAL | 9.8 | 0.5% | Nov 29, 2023 | Remote code execution |
| CVE-2022-42536 | CRITICAL | 9.8 | 0.5% | Nov 29, 2023 | Remote code execution |
| CVE-2022-41951 | CRITICAL | 9.8 | 0.9% | Nov 27, 2023 | OroPlatform is a PHP Business Application Platform (BAP) designed to make development of custom business applications ea... |
| CVE-2022-46337 | CRITICAL | 9.8 | 1.4% | Nov 20, 2023 | A cleverly devised username might bypass LDAP authentication checks. In LDAP-authenticated Derby installations, this co... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now