2022 CVE Vulnerabilities
27,531 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-37454 | CRITICAL | 9.8 | 5.2% | Oct 21, 2022 | The Keccak XKCP SHA-3 reference implementation before fdc6fef has an integer overflow and resultant buffer overflow that... |
| CVE-2022-39823 | HIGH | 7.5 | 0.6% | Oct 20, 2022 | An issue was discovered in Softing OPC UA C++ SDK 5.66 through 6.x before 6.10. An OPC/UA browse request exceeding the s... |
| CVE-2022-38108 | HIGH | 7.2 | 69.5% | Oct 20, 2022 | SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversa... |
| CVE-2022-37453 | HIGH | 7.5 | 0.7% | Oct 20, 2022 | An issue was discovered in Softing OPC UA C++ SDK before 6.10. A buffer overflow or an excess allocation happens due to ... |
| CVE-2022-36966 | MEDIUM | 5.4 | 0.4% | Oct 20, 2022 | Users with Node Management rights were able to view and edit all nodes due to Insufficient control on URL parameter caus... |
| CVE-2022-36958 | HIGH | 8.8 | 82.7% | Oct 20, 2022 | SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversa... |
| CVE-2022-36957 | HIGH | 7.2 | 12.3% | Oct 20, 2022 | SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversa... |
| CVE-2022-3623 | HIGH | 7.5 | 0.7% | Oct 20, 2022 | A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the fu... |
| CVE-2022-3621 | MEDIUM | 6.5 | 1.2% | Oct 20, 2022 | A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_bmap_lo... |
| CVE-2022-3620 | CRITICAL | 9.8 | 0.7% | Oct 20, 2022 | A vulnerability was found in Exim and classified as problematic. This issue affects the function dmarc_dns_lookup of the... |
| CVE-2022-3619 | MEDIUM | 4.3 | 0.6% | Oct 20, 2022 | A vulnerability has been found in Linux Kernel and classified as problematic. This vulnerability affects the function l2... |
| CVE-2022-42344 | HIGH | 8.8 | 1.1% | Oct 20, 2022 | Adobe Commerce versions 2.4.3-p2 (and earlier), 2.3.7-p3 (and earlier) and 2.4.4 (and earlier) are affected by an Incorr... |
| CVE-2022-42233 | CRITICAL | 9.8 | 42.7% | Oct 20, 2022 | Tenda 11N with firmware version V5.07.33_cn suffers from an Authentication Bypass vulnerability. |
| CVE-2022-3577 | HIGH | 7.8 | 0.2% | Oct 20, 2022 | An out-of-bounds memory write flaw was found in the Linux kernel’s Kid-friendly Wired Controller driver. This flaw allow... |
| CVE-2022-2069 | HIGH | 7.8 | 0.4% | Oct 20, 2022 | The APDFL.dll in Siemens JT2Go prior to V13.3.0.5 and Siemens Teamcenter Visualization prior to V14.0.0.2 contains an ou... |
| CVE-2022-42176 | HIGH | 7.8 | 0.3% | Oct 20, 2022 | In PCTechSoft PCSecure V5.0.8.xw, use of Hard-coded Credentials in configuration files leads to admin panel access. |
| CVE-2022-42021 | CRITICAL | 9.8 | 0.8% | Oct 20, 2022 | Best Student Result Management System v1.0 is vulnerable to SQL Injection via /upresult/upresult/notice-details.php?nid=... |
| CVE-2022-40084 | MEDIUM | 5.3 | 0.6% | Oct 20, 2022 | OpenCRX before v5.2.2 was discovered to be vulnerable to password enumeration due to the difference in error messages re... |
| CVE-2022-42201 | HIGH | 7.2 | 1.0% | Oct 20, 2022 | Simple Exam Reviewer Management System v1.0 is vulnerable to Insecure file upload. |
| CVE-2022-42200 | MEDIUM | 5.4 | 0.5% | Oct 20, 2022 | Simple Exam Reviewer Management System v1.0 is vulnerable to Stored Cross Site Scripting (XSS) via the Exam List. |
| CVE-2022-42199 | HIGH | 8.8 | 0.5% | Oct 20, 2022 | Simple Exam Reviewer Management System v1.0 is vulnerable to Cross Site Request Forgery (CSRF) via the Exam List. |
| CVE-2022-42198 | HIGH | 8.8 | 1.0% | Oct 20, 2022 | In Simple Exam Reviewer Management System v1.0 the User List function suffers from insecure file upload. |
| CVE-2022-42197 | MEDIUM | 6.5 | 0.6% | Oct 20, 2022 | In Simple Exam Reviewer Management System v1.0 the User List function has improper access control that allows low privil... |
| CVE-2022-31366 | HIGH | 7.2 | 1.1% | Oct 20, 2022 | An arbitrary file upload vulnerability in the apiImportLabs function in api_labs.php of EVE-NG 2.0.3-112 Community allow... |
| CVE-2022-37598 | CRITICAL | 9.8 | 1.3% | Oct 20, 2022 | Prototype pollution vulnerability in function DEFNODE in ast.js in mishoo UglifyJS 3.13.2 via the name variable in ast.j... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now