2022 CVE Vulnerabilities

27,527 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-21703HIGH8.8Grafana is an open-source platform for monitoring and observability. Affected versions are subject to a cross site reque...
CVE-2022-0523HIGH7.8Use After Free in GitHub repository radareorg/radare2 prior to 5.6.2.
CVE-2022-0522HIGH7.1Access of Memory Location Before Start of Buffer in NPM radare2.js prior to 5.6.2.
CVE-2022-0521HIGH7.1Access of Memory Location After End of Buffer in GitHub repository radareorg/radare2 prior to 5.6.2.
CVE-2022-0520HIGH7.8Use After Free in NPM radare2.js prior to 5.6.2.
CVE-2022-0519HIGH7.1Buffer Access with Incorrect Length Value in GitHub repository radareorg/radare2 prior to 5.6.2.
CVE-2022-0518HIGH7.1Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.2.
CVE-2022-23331HIGH8.8In DataEase v1.6.1, an authenticated user can gain unauthorized access to all user information and can change the admini...
CVE-2022-21193HIGH7.5Directory traversal vulnerability in TransmitMail 2.5.0 to 2.6.1 allows a remote unauthenticated attacker to obtain an a...
CVE-2022-21173HIGH8.8Hidden functionality vulnerability in ELECOM LAN routers (WRH-300BK3 firmware v1.05 and earlier, WRH-300WH3 firmware v1....
CVE-2022-24450HIGH8.8NATS nats-server before 2.7.2 has Incorrect Access Control. Any authenticated user can obtain the privileges of the Syst...
CVE-2022-23624HIGH8.8Frourio-express is a minimal full stack framework, for TypeScript. Frourio-express users who uses frourio-express versio...
CVE-2022-23623HIGH8.8Frourio is a full stack framework, for TypeScript. Frourio users who uses frourio version prior to v0.26.0 and integrati...
CVE-2022-23613HIGH7.8xrdp is an open source remote desktop protocol (RDP) server. In affected versions an integer underflow leading to a heap...
CVE-2022-21712HIGH7.5twisted is an event-driven networking engine written in Python. In affected versions twisted exposes cookies and authori...
CVE-2022-23263HIGH7.7Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-23320HIGH7.5XMPie uStore 12.3.7244.0 allows for administrators to generate reports based on raw SQL queries. Since the application s...
CVE-2022-22680HIGH7.5Exposure of sensitive information to an unauthorized actor vulnerability in Web Server in Synology DiskStation Manager (...
CVE-2022-22833HIGH7.5An issue was discovered in Servisnet Tessa 0.0.2. An attacker can obtain sensitive information via a /js/app.js request.
CVE-2022-24551HIGH8.8A flaw was found in StarWind Stack. The endpoint for setting a new password doesn’t check the current username and old p...
CVE-2022-23206HIGH7.5In Apache Traffic Control Traffic Ops prior to 6.1.0 or 5.1.6, an unprivileged user who can reach Traffic Ops over HTTPS...
CVE-2022-24115HIGH7.8Local privilege escalation due to unrestricted loading of unsigned libraries. The following products are affected: Acron...
CVE-2022-24114HIGH7Local privilege escalation due to race condition on application startup. The following products are affected: Acronis Cy...
CVE-2022-24113HIGH7.8Local privilege escalation due to excessive permissions assigned to child processes. The following products are affected...
CVE-2022-23947HIGH7.8A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon DCodeNumber parsing function...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now