2022 CVE Vulnerabilities

27,531 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-35846CRITICAL9.8An improper restriction of excessive authentication attempts vulnerability [CWE-307] in FortiTester Telnet port 2.3.0 th...
CVE-2022-35844HIGH7.2An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface ...
CVE-2022-42202MEDIUM6.1TP-Link TL-WR841N 8.0 4.17.16 Build 120201 Rel.54750n is vulnerable to Cross Site Scripting (XSS).
CVE-2022-3587MEDIUM5.4A vulnerability was found in SourceCodester Simple Cold Storage Management System 1.0. It has been declared as problemat...
CVE-2022-36439MEDIUM6AsusSoftwareManager.exe in ASUS System Control Interface on ASUS personal computers (running Windows) allows a local use...
CVE-2022-36438HIGH7.8AsusSwitch.exe on ASUS personal computers (running Windows) sets weak file permissions, leading to local privilege escal...
CVE-2022-40889CRITICAL9.8Phpok 6.1 has a deserialization vulnerability via framework/phpok_call.php.
CVE-2022-3585MEDIUM4.3A vulnerability classified as problematic has been found in SourceCodester Simple Cold Storage Management System 1.0. Af...
CVE-2022-3584HIGH8.8A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been rated as critical. This issue aff...
CVE-2022-3583CRITICAL9.8A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been declared as critical. This vulner...
CVE-2022-3582LOW3.5A vulnerability has been found in SourceCodester Simple Cold Storage Management System 1.0 and classified as problematic...
CVE-2022-3581MEDIUM6.1A vulnerability, which was classified as problematic, was found in SourceCodester Cashier Queuing System 1.0. Affected i...
CVE-2022-3580MEDIUM6.1A vulnerability, which was classified as problematic, has been found in SourceCodester Cashier Queuing System 1.0.1. Thi...
CVE-2022-3579CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Cashier Queuing System 1.0. This vulnerability affect...
CVE-2022-3339MEDIUM6.1A reflected cross-site scripting (XSS) vulnerability in ePO prior to 5.10 Update 14 allows a remote unauthenticated atta...
CVE-2022-3338MEDIUM5.4An External XML entity (XXE) vulnerability in ePO prior to 5.10 Update 14 can lead to an unauthenticated remote attacker...
CVE-2022-31122HIGH8.1Wire is an encrypted communication and collaboration platform. Versions prior to 2022-07-12/Chart 4.19.0 are subject to ...
CVE-2022-31037MEDIUM5.4OroCommerce is an open-source Business to Business Commerce application. Versions between 4.1.0 and 4.1.17 inclusive, 4....
CVE-2022-39058HIGH7.5RAVA certification validation system has a path traversal vulnerability. An unauthenticated remote attacker can exploit ...
CVE-2022-39057HIGH7.2RAVA certificate validation system has insufficient filtering for special parameter of the web page input field. A remot...
CVE-2022-39056CRITICAL9.8RAVA certificate validation system has insufficient validation for user input. An unauthenticated remote attacker can in...
CVE-2022-39055MEDIUM5.3RAVA certificate validation system has inadequate filtering for URL parameter. An unauthenticated remote attacker can pe...
CVE-2022-22251HIGH7.8On cSRX Series devices software permission issues in the container filesystem and stored files combined with storing pas...
CVE-2022-22250MEDIUM6.5An Improper Control of a Resource Through its Lifetime vulnerability in Packet Forwarding Engine (PFE) of Juniper Networ...
CVE-2022-22249MEDIUM6.5An Improper Control of a Resource Through its Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Ne...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now