2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-37425 | CRITICAL | 9.8 | 1.5% | Oct 28, 2022 | Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in OpenNebula OpenNebu... |
| CVE-2022-3741 | CRITICAL | 9.8 | 0.9% | Oct 28, 2022 | Impact varies for each individual vulnerability in the application. For generation of accounts, it may be possible, depe... |
| CVE-2022-3320 | CRITICAL | 9.8 | 0.4% | Oct 28, 2022 | It was possible to bypass policies configured for Zero Trust Secure Web Gateway by using warp-cli 'set-custom-endpoint' ... |
| CVE-2022-3735 | CRITICAL | 9.8 | 0.5% | Oct 28, 2022 | A vulnerability was found in seccome Ehoney. It has been rated as critical. This issue affects some unknown processing o... |
| CVE-2022-3734 | CRITICAL | 9.8 | 0.6% | Oct 28, 2022 | A vulnerability was found in a port or fork of Redis. It has been declared as critical. This vulnerability affects unkno... |
| CVE-2022-3732 | CRITICAL | 9.8 | 0.4% | Oct 28, 2022 | A vulnerability was found in seccome Ehoney and classified as critical. Affected by this issue is some unknown functiona... |
| CVE-2022-3731 | CRITICAL | 9.8 | 0.4% | Oct 28, 2022 | A vulnerability has been found in seccome Ehoney and classified as critical. Affected by this vulnerability is an unknow... |
| CVE-2022-3730 | CRITICAL | 9.8 | 0.4% | Oct 28, 2022 | A vulnerability, which was classified as critical, was found in seccome Ehoney. Affected is an unknown function of the f... |
| CVE-2022-3729 | CRITICAL | 9.8 | 0.4% | Oct 28, 2022 | A vulnerability, which was classified as critical, has been found in seccome Ehoney. This issue affects some unknown pro... |
| CVE-2022-37915 | CRITICAL | 9.8 | 1.6% | Oct 28, 2022 | A vulnerability in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an unauth... |
| CVE-2022-37914 | CRITICAL | 9.8 | 1.3% | Oct 28, 2022 | Vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an unauth... |
| CVE-2022-37913 | CRITICAL | 9.8 | 1.3% | Oct 28, 2022 | Vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an unauth... |
| CVE-2022-33859 | CRITICAL | 9.8 | 0.3% | Oct 28, 2022 | A security vulnerability was discovered in the Eaton Foreseer EPMS software. Foreseer EPMS connects an operation’s vast ... |
| CVE-2022-31678 | CRITICAL | 9.1 | 8.1% | Oct 28, 2022 | VMware Cloud Foundation (NSX-V) contains an XML External Entity (XXE) vulnerability. On VCF 3.x instances with NSX-V dep... |
| CVE-2022-40876 | CRITICAL | 9.8 | 1.8% | Oct 27, 2022 | In Tenda ax1803 v1.0.0.1, the http requests handled by the fromAdvSetMacMtuWan functions, wanSpeed, cloneType, mac, can ... |
| CVE-2022-3386 | CRITICAL | 9.8 | 1.2% | Oct 27, 2022 | Advantech R-SeeNet Versions 2.4.17 and prior are vulnerable to a stack-based buffer overflow. An unauthorized attacker ... |
| CVE-2022-3385 | CRITICAL | 9.8 | 1.2% | Oct 27, 2022 | Advantech R-SeeNet Versions 2.4.17 and prior are vulnerable to a stack-based buffer overflow. An unauthorized attacker ... |
| CVE-2022-39976 | CRITICAL | 9.8 | 0.8% | Oct 27, 2022 | School Activity Updates with SMS Notification v1.0 was discovered to contain a SQL injection vulnerability via the id pa... |
| CVE-2022-43367 | CRITICAL | 9.8 | 5.2% | Oct 27, 2022 | IP-COM EW9 V15.11.0.14(9732) was discovered to contain a command injection vulnerability in the formSetDebugCfg function... |
| CVE-2022-3095 | CRITICAL | 9.8 | 0.9% | Oct 27, 2022 | The implementation of backslash parsing in the Dart URI class for versions prior to 2.18 and Flutter versions prior to 3... |
| CVE-2022-39365 | CRITICAL | 9.8 | 1.7% | Oct 27, 2022 | Pimcore is an open source data and experience management platform. Prior to version 10.5.9, the user controlled twig tem... |
| CVE-2022-3714 | CRITICAL | 9.8 | 0.4% | Oct 27, 2022 | A vulnerability classified as critical has been found in SourceCodester Online Medicine Ordering System 1.0. Affected is... |
| CVE-2022-2782 | CRITICAL | 9.1 | 0.5% | Oct 27, 2022 | In affected versions of Octopus Server it is possible for a session token to be valid indefinitely due to improper valid... |
| CVE-2022-3363 | CRITICAL | 9.8 | 0.8% | Oct 26, 2022 | Business Logic Errors in GitHub repository ikus060/rdiffweb prior to 2.5.0a7. |
| CVE-2022-39355 | CRITICAL | 9.8 | 0.8% | Oct 26, 2022 | Discourse Patreon enables syncronization between Discourse Groups and Patreon rewards. On sites with Patreon login enabl... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now