2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-40889 | CRITICAL | 9.8 | 1.0% | Oct 18, 2022 | Phpok 6.1 has a deserialization vulnerability via framework/phpok_call.php. |
| CVE-2022-3583 | CRITICAL | 9.8 | 0.7% | Oct 18, 2022 | A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been declared as critical. This vulner... |
| CVE-2022-3579 | CRITICAL | 9.8 | 0.6% | Oct 18, 2022 | A vulnerability classified as critical was found in SourceCodester Cashier Queuing System 1.0. This vulnerability affect... |
| CVE-2022-39056 | CRITICAL | 9.8 | 0.8% | Oct 18, 2022 | RAVA certificate validation system has insufficient validation for user input. An unauthenticated remote attacker can in... |
| CVE-2022-22241 | CRITICAL | 9.8 | 1.1% | Oct 18, 2022 | An Improper Input Validation vulnerability in the J-Web component of Juniper Networks Junos OS may allow an unauthentica... |
| CVE-2022-42149 | CRITICAL | 9.8 | 2.2% | Oct 17, 2022 | kkFileView 4.0 is vulnerable to Server-side request forgery (SSRF) via controller\OnlinePreviewController.java. |
| CVE-2022-32176 | CRITICAL | 9 | 0.9% | Oct 17, 2022 | In "Gin-Vue-Admin", versions v2.5.1 through v2.5.3b are vulnerable to Unrestricted File Upload that leads to execution o... |
| CVE-2022-40055 | CRITICAL | 9.8 | 0.8% | Oct 17, 2022 | An issue in GX Group GPON ONT Titanium 2122A T2122-V1.26EXL allows attackers to escalate privileges via a brute force at... |
| CVE-2022-2992 | CRITICAL | 9.9 | 86.2% | Oct 17, 2022 | A vulnerability in GitLab CE/EE affecting all versions from 11.10 prior to 15.1.6, 15.2 to 15.2.4, 15.3 to 15.3.2 allows... |
| CVE-2022-2884 | CRITICAL | 9.9 | 75.7% | Oct 17, 2022 | A vulnerability in GitLab CE/EE affecting all versions from 11.3.4 prior to 15.1.5, 15.2 to 15.2.3, 15.3 to 15.3 to 15.3... |
| CVE-2022-23770 | CRITICAL | 9.8 | 1.4% | Oct 17, 2022 | This vulnerability could allow a remote attacker to execute remote commands with improper validation of parameters of ce... |
| CVE-2022-23769 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Remote code execution vulnerability due to insufficient user privilege verification in reverseWall-MDS. Remote attackers... |
| CVE-2022-22128 | CRITICAL | 9.8 | 1.3% | Oct 17, 2022 | Tableau discovered a path traversal vulnerability affecting Tableau Server Administration Agent’s internal file transfer... |
| CVE-2022-0699 | CRITICAL | 9.8 | 1.2% | Oct 17, 2022 | A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases. This issue may allow an attack... |
| CVE-2022-42237 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | A SQL Injection issue in Merchandise Online Store v.1.0 allows an attacker to log in to the admin account. |
| CVE-2022-42171 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/saveParentControlInfo. |
| CVE-2022-42170 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formWifiWpsStart. |
| CVE-2022-42169 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/addWifiMacFilter. |
| CVE-2022-42168 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/fromSetIpMacBind. |
| CVE-2022-42167 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetFirewallCfg. |
| CVE-2022-42166 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetSpeedWan. |
| CVE-2022-42154 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | An arbitrary file upload vulnerability in the component /apiadmin/upload/attach of 74cmsSE v3.13.0 allows attackers to e... |
| CVE-2022-42165 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetDeviceName. |
| CVE-2022-42164 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/formSetClientState. |
| CVE-2022-42163 | CRITICAL | 9.8 | 0.9% | Oct 17, 2022 | Tenda AC10 V15.03.06.23 contains a Stack overflow vulnerability via /goform/fromNatStaticSetting. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now