2022 CVE Vulnerabilities
27,528 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23025 | HIGH | 7.5 | 0.9% | Jan 25, 2022 | On BIG-IP version 16.1.x before 16.1.1, 15.1.x before 15.1.4, 14.1.x before 14.1.4.4, and all versions of 13.1.x, when a... |
| CVE-2022-23024 | HIGH | 7.5 | 0.9% | Jan 25, 2022 | On BIG-IP AFM version 16.x before 16.1.0, 15.1.x before 15.1.4.1, 14.1.x before 14.1.4.2, and all versions of 13.1.x, wh... |
| CVE-2022-23022 | HIGH | 7.5 | 0.9% | Jan 25, 2022 | On BIG-IP version 16.1.x before 16.1.2, when an HTTP profile is configured on a virtual server, undisclosed requests can... |
| CVE-2022-23021 | HIGH | 7.5 | 0.9% | Jan 25, 2022 | On BIG-IP version 16.1.x before 16.1.2, when any of the following configurations are configured on a virtual server, und... |
| CVE-2022-23020 | HIGH | 7.5 | 1.0% | Jan 25, 2022 | On BIG-IP version 16.1.x before 16.1.2, when the 'Respond on Error' setting is enabled on the Request Logging profile an... |
| CVE-2022-23019 | HIGH | 7.5 | 0.9% | Jan 25, 2022 | On BIG-IP version 16.1.x before 16.1.2, 15.1.x before 15.1.4.1, 14.1.x before 14.1.4.4, and all versions of 13.1.x and 1... |
| CVE-2022-23018 | HIGH | 7.5 | 0.9% | Jan 25, 2022 | On BIG-IP AFM version 16.1.x before 16.1.2, 15.1.x before 15.1.4.1, 14.1.x before 14.1.4.5, and 13.1.x beginning in 13.1... |
| CVE-2022-23017 | HIGH | 7.5 | 0.9% | Jan 25, 2022 | On BIG-IP version 16.x before 16.1.0, 15.1.x before 15.1.4.1, 14.1.x before 14.1.4.5, and all versions of 13.1.x, when a... |
| CVE-2022-23016 | HIGH | 7.5 | 0.9% | Jan 25, 2022 | On versions 16.1.x before 16.1.2 and 15.1.x before 15.1.4.1, when BIG-IP SSL Forward Proxy with TLS 1.3 is configured on... |
| CVE-2022-23015 | HIGH | 7.5 | 0.6% | Jan 25, 2022 | On BIG-IP versions 16.x before 16.1.0, 15.1.x before 15.1.4.1, and 14.1.2.6-14.1.4.4, when a Client SSL profile is confi... |
| CVE-2022-23013 | HIGH | 8.8 | 0.8% | Jan 25, 2022 | On BIG-IP DNS & GTM version 16.x before 16.1.0, 15.1.x before 15.1.4, 14.1.x before 14.1.4.4, and all versions of 13.1.x... |
| CVE-2022-23012 | HIGH | 7.5 | 0.9% | Jan 25, 2022 | On BIG-IP versions 15.1.x before 15.1.4.1 and 14.1.x before 14.1.4.5, when the HTTP/2 profile is configured on a virtual... |
| CVE-2022-23011 | HIGH | 7.5 | 0.9% | Jan 25, 2022 | On certain hardware BIG-IP platforms, in version 15.1.x before 15.1.4 and 14.1.x before 14.1.3, virtual servers may stop... |
| CVE-2022-23010 | HIGH | 7.5 | 1.0% | Jan 25, 2022 | On BIG-IP versions 16.x before 16.1.0, 15.1.x before 15.1.4.1, 14.1.x before 14.1.4.4, and all versions of 13.1.x, 12.1.... |
| CVE-2022-23009 | HIGH | 7.2 | 1.1% | Jan 25, 2022 | On BIG-IQ Centralized Management 8.x before 8.1.0, an authenticated administrative role user on a BIG-IQ managed BIG-IP ... |
| CVE-2022-22789 | HIGH | 7.8 | 0.2% | Jan 25, 2022 | Charactell - FormStorm Enterprise Account takeover – An attacker can modify (add, remove and update) passwords file for ... |
| CVE-2022-0335 | HIGH | 8.8 | 0.6% | Jan 25, 2022 | A flaw was found in Moodle in versions 3.11 to 3.11.4, 3.10 to 3.10.8, 3.9 to 3.9.11 and earlier unsupported versions. T... |
| CVE-2022-0270 | HIGH | 8.8 | 0.9% | Jan 25, 2022 | Prior to v0.6.1, bored-agent failed to sanitize incoming kubernetes impersonation headers allowing a user to override as... |
| CVE-2022-0351 | HIGH | 7.8 | 0.6% | Jan 25, 2022 | Access of Memory Location Before Start of Buffer in GitHub repository vim/vim prior to 8.2. |
| CVE-2022-23033 | HIGH | 7.8 | 0.3% | Jan 25, 2022 | arm: guest_physmap_remove_page not removing the p2m mappings The functions to remove one or more entries from a guest p2... |
| CVE-2022-21697 | HIGH | 7.1 | 1.1% | Jan 25, 2022 | Jupyter Server Proxy is a Jupyter notebook server extension to proxy web services. Versions of Jupyter Server Proxy prio... |
| CVE-2022-23945 | HIGH | 7.5 | 3.8% | Jan 25, 2022 | Missing authentication on ShenYu Admin when register by HTTP. This issue affected Apache ShenYu 2.4.0 and 2.4.1. |
| CVE-2022-23223 | HIGH | 7.5 | 4.3% | Jan 25, 2022 | On Apache ShenYu versions 2.4.0 and 2.4.1, and endpoint existed that disclosed the passwords of all users. Users are rec... |
| CVE-2022-23935 | HIGH | 7.8 | 7.6% | Jan 25, 2022 | lib/Image/ExifTool.pm in ExifTool before 12.38 mishandles a $file =~ /\|$/ check, leading to command injection. |
| CVE-2022-21711 | HIGH | 7.1 | 0.9% | Jan 24, 2022 | elfspirit is an ELF static analysis and injection framework that parses, manipulates, and camouflages ELF files. When an... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now