2022 CVE Vulnerabilities

27,538 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-40834CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-40833CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-40832CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-40831CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-40830CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-40829CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-40828CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-40827CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-40826CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-40825CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-40824CRITICAL9.8B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.ph...
CVE-2022-3423MEDIUM6.5Allocation of Resources Without Limits or Throttling in GitHub repository nocodb/nocodb prior to 0.92.0.
CVE-2022-3422HIGH7.5Account Takeover :: when see the info i can see the hash pass i can creaked it ............... Account Takeover :: when ...
CVE-2022-41672HIGH8.1In Apache Airflow, prior to version 2.4.1, deactivating a user wouldn't prevent an already authenticated user from being...
CVE-2022-3414CRITICAL9.8A vulnerability was found in SourceCodester Web-Based Student Clearance System. It has been classified as critical. Affe...
CVE-2022-2929MEDIUM6.5In ISC DHCP 1.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1 a system with access to a DHCP server, sending DHCP pack...
CVE-2022-2928MEDIUM6.5In ISC DHCP 4.4.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1, when the function option_code_hash_lookup() is called...
CVE-2022-26238MEDIUM5.5The default privileges for the running service Normand Service Manager in Beckman Coulter Remisol Advance v2.0.12.1 and ...
CVE-2022-26236MEDIUM5.5The default privileges for the running service Normand Remisol Advance Launcher in Beckman Coulter Remisol Advance v2.0....
CVE-2022-40494CRITICAL9.8NPS before v0.26.10 was discovered to contain an authentication bypass vulnerability via constantly generating and sendi...
CVE-2022-41355HIGH7.2Online Leave Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /lea...
CVE-2022-39284MEDIUM4.3CodeIgniter is a PHP full-stack web framework. In versions prior to 4.2.7 setting `$secure` or `$httponly` value to `tru...
CVE-2022-39279MEDIUM5.4discourse-chat is a plugin for the Discourse message board which adds chat functionality. In versions prior to 0.9 some ...
CVE-2022-27810HIGH7.5It was possible to trigger an infinite recursion condition in the error handler when Hermes executed specific maliciousl...
CVE-2022-41528HIGH8.8TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the text parameter...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now