2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-43104CRITICAL9.8Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the wpapsk_crypto parameter in the fromSetWire...
CVE-2022-43103CRITICAL9.8Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the list parameter in the formSetQosBand funct...
CVE-2022-43102CRITICAL9.8Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the timeZone parameter in the fromSetSysTime f...
CVE-2022-43101CRITICAL9.8Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName...
CVE-2022-39382CRITICAL9.8Keystone is a headless CMS for Node.js — built with GraphQL and React.`@keystone-6/core@3.0.0 || 3.0.1` users that use `...
CVE-2022-24936CRITICAL9.1Out-of-Bounds error in GBL parser in Silicon Labs Gecko Bootloader version 4.0.1 and earlier allows attacker to overwrit...
CVE-2022-3575CRITICAL9.8Frauscher Sensortechnik GmbH FDS102 for FAdC R2 and FAdCi R2 v2.8.0 to v2.9.1 are vulnerable to malicious code upload wi...
CVE-2022-39353CRITICAL9.8xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) `DOMParser` and `XMLSerializer` module. xmldom par...
CVE-2022-3827CRITICAL9.8A vulnerability was found in centreon. It has been declared as critical. This vulnerability affects unknown code of the ...
CVE-2022-39379CRITICAL9.8Fluentd collects events from various data sources and writes them to files, RDBMS, NoSQL, IaaS, SaaS, Hadoop and so on. ...
CVE-2022-38381CRITICAL9.8An improper handling of malformed request vulnerability [CWE-228] exists in FortiADC 5.0 all versions, 6.0.0 all version...
CVE-2022-27586CRITICAL9.8Password recovery vulnerability in SICK SIM1004 Partnumber 1098148 with firmware version <2.0.0 allows an unprivileged r...
CVE-2022-27585CRITICAL9.8Password recovery vulnerability in SICK SIM1000 FX Partnumber 1097816 and 1097817 with firmware version <1.6.0 allows an...
CVE-2022-27584CRITICAL9.8Password recovery vulnerability in SICK SIM2000ST Partnumber 1080579 allows an unprivileged remote attacker to gain acce...
CVE-2022-27582CRITICAL9.8Password recovery vulnerability in SICK SIM4000 (PPC) Partnumber 1078787 allows an unprivileged remote attacker to gain ...
CVE-2022-42813CRITICAL9.8A certificate validation issue existed in the handling of WKWebView. This issue was addressed with improved validation. ...
CVE-2022-42808CRITICAL9.8An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in tvOS 16.1, iOS 16.1 and...
CVE-2022-32941CRITICAL9.8The issue was addressed with improved bounds checks. This issue is fixed in iOS 15.7.1 and iPadOS 15.7.1, macOS Ventura ...
CVE-2022-3789CRITICAL9.8A vulnerability has been found in Tim Campus Confession Wall and classified as critical. Affected by this vulnerability ...
CVE-2022-41552CRITICAL9.8Server-Side Request Forgery (SSRF) vulnerability in Hitachi Infrastructure Analytics Advisor on Linux (Data Center Analy...
CVE-2022-2572CRITICAL9.8In affected versions of Octopus Server where access is managed by an external authentication provider, it was possible t...
CVE-2022-44542CRITICAL9.8lesspipe before 2.06 allows attackers to execute code via Perl Storable (pst) files, because of deserialized object dest...
CVE-2022-40296CRITICAL9.8 The application was vulnerable to a Server-Side Request Forgery attacks, allowing the backend server to interact with u...
CVE-2022-40293CRITICAL9.8 The application was vulnerable to a session fixation that could be used hijack accounts.
CVE-2022-40289CRITICAL9 The application was vulnerable to an authenticated Stored Cross-Site Scripting (XSS) in the upload and download functio...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now