2022 CVE Vulnerabilities

27,531 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-37298CRITICAL9.8Shinken Solutions Shinken Monitoring Version 2.4.3 affected is vulnerable to Incorrect Access Control. The SafeUnpickler...
CVE-2022-26954MEDIUM6.1Multiple open redirect vulnerabilities in NopCommerce 4.10 through 4.50.1 allow remote attackers to conduct phishing att...
CVE-2022-3576HIGH7.5A vulnerability regarding out-of-bounds read is found in the session processing functionality of Out-of-Band (OOB) Manag...
CVE-2022-27626HIGH8.1A vulnerability regarding concurrent execution using shared resource with improper synchronization ('Race Condition') is...
CVE-2022-27625CRITICAL9.8A vulnerability regarding improper restriction of operations within the bounds of a memory buffer is found in the messag...
CVE-2022-27624CRITICAL9.8A vulnerability regarding improper restriction of operations within the bounds of a memory buffer is found in the packet...
CVE-2022-41358MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in Garage Management System v1.0 allows attackers to execute arbitrary...
CVE-2022-3327CRITICAL9.8Missing Authentication for Critical Function in GitHub repository ikus060/rdiffweb prior to 2.5.0a6.
CVE-2022-41983LOW3.7On specific hardware platforms, on BIG-IP versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1,...
CVE-2022-41836HIGH7.5When an 'Attack Signature False Positive Mode' enabled security policy is configured on a virtual server, undisclosed re...
CVE-2022-41835HIGH8.8In F5OS-A version 1.x before 1.1.0 and F5OS-C version 1.x before 1.5.0, excessive file permissions in F5OS allows an aut...
CVE-2022-41833HIGH7.5In all BIG-IP 13.1.x versions, when an iRule containing the HTTP::collect command is configured on a virtual server, und...
CVE-2022-41832HIGH7.5In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 1...
CVE-2022-41813MEDIUM6.5In versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when BIG-I...
CVE-2022-41806HIGH7.5In versions 16.1.x before 16.1.3.2 and 15.1.x before 15.1.5.1, when BIG-IP AFM Network Address Translation policy with I...
CVE-2022-41787HIGH7.5In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 1...
CVE-2022-41780MEDIUM5.5In F5OS-A version 1.x before 1.1.0 and F5OS-C version 1.x before 1.4.0, a directory traversal vulnerability exists in an...
CVE-2022-41770MEDIUM6.5In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1, and all...
CVE-2022-41743HIGH7NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_hls_module that might allow a l...
CVE-2022-41742HIGH7.1NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and...
CVE-2022-41741HIGH7.8NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and...
CVE-2022-41694MEDIUM4.9In BIG-IP versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, and B...
CVE-2022-41691HIGH7.5When a BIG-IP Advanced WAF/ASM security policy is configured on a virtual server, undisclosed requests can cause the bd ...
CVE-2022-41624HIGH7.5In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.2, 15.1.x before 15.1.7, 14.1.x before 14.1.5.2, and 13....
CVE-2022-41617HIGH7.2In versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1, When the...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now