2022 CVE Vulnerabilities
27,531 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-37298 | CRITICAL | 9.8 | 2.0% | Oct 20, 2022 | Shinken Solutions Shinken Monitoring Version 2.4.3 affected is vulnerable to Incorrect Access Control. The SafeUnpickler... |
| CVE-2022-26954 | MEDIUM | 6.1 | 0.7% | Oct 20, 2022 | Multiple open redirect vulnerabilities in NopCommerce 4.10 through 4.50.1 allow remote attackers to conduct phishing att... |
| CVE-2022-3576 | HIGH | 7.5 | 0.9% | Oct 20, 2022 | A vulnerability regarding out-of-bounds read is found in the session processing functionality of Out-of-Band (OOB) Manag... |
| CVE-2022-27626 | HIGH | 8.1 | 1.0% | Oct 20, 2022 | A vulnerability regarding concurrent execution using shared resource with improper synchronization ('Race Condition') is... |
| CVE-2022-27625 | CRITICAL | 9.8 | 1.5% | Oct 20, 2022 | A vulnerability regarding improper restriction of operations within the bounds of a memory buffer is found in the messag... |
| CVE-2022-27624 | CRITICAL | 9.8 | 1.5% | Oct 20, 2022 | A vulnerability regarding improper restriction of operations within the bounds of a memory buffer is found in the packet... |
| CVE-2022-41358 | MEDIUM | 5.4 | 2.9% | Oct 20, 2022 | A stored cross-site scripting (XSS) vulnerability in Garage Management System v1.0 allows attackers to execute arbitrary... |
| CVE-2022-3327 | CRITICAL | 9.8 | 0.7% | Oct 20, 2022 | Missing Authentication for Critical Function in GitHub repository ikus060/rdiffweb prior to 2.5.0a6. |
| CVE-2022-41983 | LOW | 3.7 | 0.2% | Oct 19, 2022 | On specific hardware platforms, on BIG-IP versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1,... |
| CVE-2022-41836 | HIGH | 7.5 | 0.6% | Oct 19, 2022 | When an 'Attack Signature False Positive Mode' enabled security policy is configured on a virtual server, undisclosed re... |
| CVE-2022-41835 | HIGH | 8.8 | 0.1% | Oct 19, 2022 | In F5OS-A version 1.x before 1.1.0 and F5OS-C version 1.x before 1.5.0, excessive file permissions in F5OS allows an aut... |
| CVE-2022-41833 | HIGH | 7.5 | 0.6% | Oct 19, 2022 | In all BIG-IP 13.1.x versions, when an iRule containing the HTTP::collect command is configured on a virtual server, und... |
| CVE-2022-41832 | HIGH | 7.5 | 0.6% | Oct 19, 2022 | In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 1... |
| CVE-2022-41813 | MEDIUM | 6.5 | 0.6% | Oct 19, 2022 | In versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when BIG-I... |
| CVE-2022-41806 | HIGH | 7.5 | 0.6% | Oct 19, 2022 | In versions 16.1.x before 16.1.3.2 and 15.1.x before 15.1.5.1, when BIG-IP AFM Network Address Translation policy with I... |
| CVE-2022-41787 | HIGH | 7.5 | 0.6% | Oct 19, 2022 | In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 1... |
| CVE-2022-41780 | MEDIUM | 5.5 | 0.5% | Oct 19, 2022 | In F5OS-A version 1.x before 1.1.0 and F5OS-C version 1.x before 1.4.0, a directory traversal vulnerability exists in an... |
| CVE-2022-41770 | MEDIUM | 6.5 | 0.6% | Oct 19, 2022 | In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, 14.1.x before 14.1.5.1, and all... |
| CVE-2022-41743 | HIGH | 7 | 0.2% | Oct 19, 2022 | NGINX Plus before versions R27 P1 and R26 P1 have a vulnerability in the module ngx_http_hls_module that might allow a l... |
| CVE-2022-41742 | HIGH | 7.1 | 1.1% | Oct 19, 2022 | NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and... |
| CVE-2022-41741 | HIGH | 7.8 | 0.8% | Oct 19, 2022 | NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and... |
| CVE-2022-41694 | MEDIUM | 4.9 | 0.6% | Oct 19, 2022 | In BIG-IP versions 16.1.x before 16.1.3, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, and B... |
| CVE-2022-41691 | HIGH | 7.5 | 0.6% | Oct 19, 2022 | When a BIG-IP Advanced WAF/ASM security policy is configured on a virtual server, undisclosed requests can cause the bd ... |
| CVE-2022-41624 | HIGH | 7.5 | 0.6% | Oct 19, 2022 | In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.2, 15.1.x before 15.1.7, 14.1.x before 14.1.5.2, and 13.... |
| CVE-2022-41617 | HIGH | 7.2 | 1.1% | Oct 19, 2022 | In versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1, When the... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now