2022 CVE Vulnerabilities

27,531 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-38107MEDIUM5.3Sensitive information could be displayed when a detailed technical error message is posted. This information could discl...
CVE-2022-36795HIGH7.5In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, and 14.1.x before 14.1.5.1, whe...
CVE-2022-31684MEDIUM4.3Reactor Netty HTTP Server, in versions 1.0.11 - 1.0.23, may log request headers in some cases of invalid HTTP requests. ...
CVE-2022-20424Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2022-43029CRITICAL9.8Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the time parameter at /go...
CVE-2022-43028CRITICAL9.8Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the timeZone parameter at...
CVE-2022-43027CRITICAL9.8Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the firewallEn parameter ...
CVE-2022-43026CRITICAL9.8Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the endIp parameter at /g...
CVE-2022-43025CRITICAL9.8Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the startIp parameter at ...
CVE-2022-43024CRITICAL9.8Tenda TX3 US_TX3V1.0br_V16.03.13.11_multi_TDE01 was discovered to contain a stack overflow via the list parameter at /go...
CVE-2022-41708MEDIUM4.3Relatedcode's Messenger version 7bcd20b allows an authenticated external attacker to access existing chats in the worksp...
CVE-2022-43023MEDIUM6.5OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the importID parameter in the Import viewerr...
CVE-2022-43022MEDIUM6.5OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the tag_id variable in the Tag deletion func...
CVE-2022-43021MEDIUM6.5OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the entriesPerPage variable.
CVE-2022-43020MEDIUM6.5OpenCATS v0.9.6 was discovered to contain a SQL injection vulnerability via the tag_id variable in the Tag update functi...
CVE-2022-43019CRITICAL9.8OpenCATS v0.9.6 was discovered to contain a remote code execution (RCE) vulnerability via the getDataGridPager's ajax fu...
CVE-2022-43018MEDIUM6.1OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the email parameter i...
CVE-2022-43017MEDIUM6.1OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the indexFile compone...
CVE-2022-43016MEDIUM6.1OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the callback componen...
CVE-2022-43015MEDIUM6.1OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the entriesPerPage pa...
CVE-2022-43014MEDIUM6.1OpenCATS v0.9.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the joborderID parame...
CVE-2022-42227HIGH7.5jsonlint 1.0 is vulnerable to heap-buffer-overflow via /home/hjsz/jsonlint/src/lexer.
CVE-2022-40885MEDIUM5.5Bento4 v1.6.0-639 has a memory allocation issue that can cause denial of service.
CVE-2022-40884MEDIUM5.5Bento4 1.6.0 has memory leaks via the mp4fragment.
CVE-2022-3586MEDIUM5.5A flaw was found in the Linux kernel’s networking code. A use-after-free was found in the way the sch_sfb enqueue functi...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now