2022 CVE Vulnerabilities
27,527 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-21703 | HIGH | 8.8 | 2.3% | Feb 8, 2022 | Grafana is an open-source platform for monitoring and observability. Affected versions are subject to a cross site reque... |
| CVE-2022-0523 | HIGH | 7.8 | 1.1% | Feb 8, 2022 | Use After Free in GitHub repository radareorg/radare2 prior to 5.6.2. |
| CVE-2022-0522 | HIGH | 7.1 | 0.9% | Feb 8, 2022 | Access of Memory Location Before Start of Buffer in NPM radare2.js prior to 5.6.2. |
| CVE-2022-0521 | HIGH | 7.1 | 0.9% | Feb 8, 2022 | Access of Memory Location After End of Buffer in GitHub repository radareorg/radare2 prior to 5.6.2. |
| CVE-2022-0520 | HIGH | 7.8 | 1.1% | Feb 8, 2022 | Use After Free in NPM radare2.js prior to 5.6.2. |
| CVE-2022-0519 | HIGH | 7.1 | 0.9% | Feb 8, 2022 | Buffer Access with Incorrect Length Value in GitHub repository radareorg/radare2 prior to 5.6.2. |
| CVE-2022-0518 | HIGH | 7.1 | 1.0% | Feb 8, 2022 | Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.2. |
| CVE-2022-23331 | HIGH | 8.8 | 1.2% | Feb 8, 2022 | In DataEase v1.6.1, an authenticated user can gain unauthorized access to all user information and can change the admini... |
| CVE-2022-21193 | HIGH | 7.5 | 2.0% | Feb 8, 2022 | Directory traversal vulnerability in TransmitMail 2.5.0 to 2.6.1 allows a remote unauthenticated attacker to obtain an a... |
| CVE-2022-21173 | HIGH | 8.8 | 0.4% | Feb 8, 2022 | Hidden functionality vulnerability in ELECOM LAN routers (WRH-300BK3 firmware v1.05 and earlier, WRH-300WH3 firmware v1.... |
| CVE-2022-24450 | HIGH | 8.8 | 1.3% | Feb 8, 2022 | NATS nats-server before 2.7.2 has Incorrect Access Control. Any authenticated user can obtain the privileges of the Syst... |
| CVE-2022-23624 | HIGH | 8.8 | 1.2% | Feb 7, 2022 | Frourio-express is a minimal full stack framework, for TypeScript. Frourio-express users who uses frourio-express versio... |
| CVE-2022-23623 | HIGH | 8.8 | 1.2% | Feb 7, 2022 | Frourio is a full stack framework, for TypeScript. Frourio users who uses frourio version prior to v0.26.0 and integrati... |
| CVE-2022-23613 | HIGH | 7.8 | 0.5% | Feb 7, 2022 | xrdp is an open source remote desktop protocol (RDP) server. In affected versions an integer underflow leading to a heap... |
| CVE-2022-21712 | HIGH | 7.5 | 1.4% | Feb 7, 2022 | twisted is an event-driven networking engine written in Python. In affected versions twisted exposes cookies and authori... |
| CVE-2022-23263 | HIGH | 7.7 | 0.8% | Feb 7, 2022 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2022-23320 | HIGH | 7.5 | 1.7% | Feb 7, 2022 | XMPie uStore 12.3.7244.0 allows for administrators to generate reports based on raw SQL queries. Since the application s... |
| CVE-2022-22680 | HIGH | 7.5 | 1.1% | Feb 7, 2022 | Exposure of sensitive information to an unauthorized actor vulnerability in Web Server in Synology DiskStation Manager (... |
| CVE-2022-22833 | HIGH | 7.5 | 11.5% | Feb 6, 2022 | An issue was discovered in Servisnet Tessa 0.0.2. An attacker can obtain sensitive information via a /js/app.js request. |
| CVE-2022-24551 | HIGH | 8.8 | 0.9% | Feb 6, 2022 | A flaw was found in StarWind Stack. The endpoint for setting a new password doesn’t check the current username and old p... |
| CVE-2022-23206 | HIGH | 7.5 | 1.9% | Feb 6, 2022 | In Apache Traffic Control Traffic Ops prior to 6.1.0 or 5.1.6, an unprivileged user who can reach Traffic Ops over HTTPS... |
| CVE-2022-24115 | HIGH | 7.8 | 0.2% | Feb 4, 2022 | Local privilege escalation due to unrestricted loading of unsigned libraries. The following products are affected: Acron... |
| CVE-2022-24114 | HIGH | 7 | 0.2% | Feb 4, 2022 | Local privilege escalation due to race condition on application startup. The following products are affected: Acronis Cy... |
| CVE-2022-24113 | HIGH | 7.8 | 0.2% | Feb 4, 2022 | Local privilege escalation due to excessive permissions assigned to child processes. The following products are affected... |
| CVE-2022-23947 | HIGH | 7.8 | 1.4% | Feb 4, 2022 | A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon DCodeNumber parsing function... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now