2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-25932 | CRITICAL | 9.8 | 0.6% | Nov 9, 2022 | The firmware of InHand Networks InRouter302 V3.5.45 introduces fixes for TALOS-2022-1472 and TALOS-2022-1474. The fixes ... |
| CVE-2022-45062 | CRITICAL | 9.8 | 1.4% | Nov 9, 2022 | In Xfce xfce4-settings before 4.16.4 and 4.17.x before 4.17.1, there is an argument injection vulnerability in xfce4-mim... |
| CVE-2022-40797 | CRITICAL | 9.8 | 2.6% | Nov 9, 2022 | Roxy Fileman 1.4.6 allows Remote Code Execution via a .phar upload, because the default FORBIDDEN_UPLOADS value in conf.... |
| CVE-2022-3890 | CRITICAL | 9.6 | 0.7% | Nov 9, 2022 | Heap buffer overflow in Crashpad in Google Chrome on Android prior to 107.0.5304.106 allowed a remote attacker who had c... |
| CVE-2022-37015 | CRITICAL | 9.8 | 0.7% | Nov 8, 2022 | Symantec Endpoint Detection and Response (SEDR) Appliance, prior to 4.7.0, may be susceptible to a privilege escalation ... |
| CVE-2022-34825 | CRITICAL | 9.8 | 1.2% | Nov 8, 2022 | Uncontrolled Search Path Element in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earli... |
| CVE-2022-34824 | CRITICAL | 9.8 | 1.1% | Nov 8, 2022 | Weak File and Folder Permissions vulnerability in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Win... |
| CVE-2022-34823 | CRITICAL | 9.8 | 1.2% | Nov 8, 2022 | Buffer overflow vulnerability in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earlier,... |
| CVE-2022-34822 | CRITICAL | 9.8 | 1.4% | Nov 8, 2022 | Path traversal vulnerability in CLUSTERPRO X 5.0 for Windows and earlier, EXPRESSCLUSTER X 5.0 for Windows and earlier, ... |
| CVE-2022-27516 | CRITICAL | 9.8 | 0.6% | Nov 8, 2022 | User login brute force protection functionality bypass |
| CVE-2022-27513 | CRITICAL | 9.6 | 0.3% | Nov 8, 2022 | Remote desktop takeover via phishing |
| CVE-2022-27510 | CRITICAL | 9.8 | 1.2% | Nov 8, 2022 | Unauthorized access to Gateway user capabilities |
| CVE-2022-33321 | CRITICAL | 9.8 | 0.9% | Nov 8, 2022 | Cleartext Transmission of Sensitive Information vulnerability due to the use of Basic Authentication for HTTP connection... |
| CVE-2022-27858 | CRITICAL | 9.8 | 0.8% | Nov 8, 2022 | CSV Injection vulnerability in Activity Log Team Activity Log <= 2.8.3 on WordPress. |
| CVE-2022-44457 | CRITICAL | 9.8 | 0.7% | Nov 8, 2022 | A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions < V1.17.0), Mendix SAML (Mendix 7... |
| CVE-2022-39352 | CRITICAL | 9.8 | 0.4% | Nov 8, 2022 | OpenFGA is a high-performance authorization/permission engine inspired by Google Zanzibar. Versions prior to 0.2.5 are v... |
| CVE-2022-31199 | CRITICAL | 9.8 | 36.2% | Nov 8, 2022 | Remote code execution vulnerabilities exist in the Netwrix Auditor User Activity Video Recording component affecting bot... |
| CVE-2022-3878 | CRITICAL | 9.8 | 0.7% | Nov 7, 2022 | A vulnerability classified as critical has been found in Maxon ERP. This affects an unknown part of the file /index.php/... |
| CVE-2022-44054 | CRITICAL | 9.8 | 1.0% | Nov 7, 2022 | The d8s-xml for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. ... |
| CVE-2022-44053 | CRITICAL | 9.8 | 0.9% | Nov 7, 2022 | The d8s-networking for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third ... |
| CVE-2022-44052 | CRITICAL | 9.8 | 1.0% | Nov 7, 2022 | The d8s-dates for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party... |
| CVE-2022-44051 | CRITICAL | 9.8 | 1.0% | Nov 7, 2022 | The d8s-stats for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party... |
| CVE-2022-44050 | CRITICAL | 9.8 | 1.0% | Nov 7, 2022 | The d8s-networking for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third ... |
| CVE-2022-44049 | CRITICAL | 9.8 | 1.0% | Nov 7, 2022 | The d8s-python for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third part... |
| CVE-2022-44048 | CRITICAL | 9.8 | 1.0% | Nov 7, 2022 | The d8s-urls for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party.... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now