2022 CVE Vulnerabilities
27,538 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-2979 | HIGH | 7.8 | 0.2% | Sep 12, 2022 | Opening a specially crafted file could cause the affected product to fail to release its memory reference potentially re... |
| CVE-2022-29490 | HIGH | 8.8 | 0.5% | Sep 12, 2022 | Improper Authorization vulnerability exists in the Workplace X WebUI of the Hitachi Energy MicroSCADA X SYS600 allows an... |
| CVE-2022-39200 | MEDIUM | 5.3 | 0.3% | Sep 12, 2022 | Dendrite is a Matrix homeserver written in Go. In affected versions events retrieved from a remote homeserver using the ... |
| CVE-2022-36102 | HIGH | 7.2 | 0.6% | Sep 12, 2022 | Shopware is an open source e-commerce software. In affected versions if backend admin controllers are called with a cert... |
| CVE-2022-36101 | MEDIUM | 5.3 | 0.5% | Sep 12, 2022 | Shopware is an open source e-commerce software. In affected versions the request for the customer detail view in the bac... |
| CVE-2022-31226 | HIGH | 7.8 | 0.2% | Sep 12, 2022 | Dell BIOS versions contain a Stack-based Buffer Overflow vulnerability. A local authenticated malicious user could poten... |
| CVE-2022-31225 | MEDIUM | 5.1 | 0.2% | Sep 12, 2022 | Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated administrator user could poten... |
| CVE-2022-31224 | LOW | 2.4 | 0.2% | Sep 12, 2022 | Dell BIOS versions contain an Improper Protection Against Voltage and Clock Glitches vulnerability. An attacker with phy... |
| CVE-2022-31223 | LOW | 2.3 | 0.2% | Sep 12, 2022 | Dell BIOS versions contain an Improper Neutralization of Null Byte vulnerability. A local authenticated administrator us... |
| CVE-2022-31222 | MEDIUM | 4.4 | 0.2% | Sep 12, 2022 | Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability. A local authenticated a... |
| CVE-2022-31221 | LOW | 2.3 | 0.2% | Sep 12, 2022 | Dell BIOS versions contain an Information Exposure vulnerability. A local authenticated administrator user could potenti... |
| CVE-2022-31220 | MEDIUM | 5.1 | 0.2% | Sep 12, 2022 | Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated administrator user could poten... |
| CVE-2022-1700 | CRITICAL | 9.8 | 0.7% | Sep 12, 2022 | Improper Restriction of XML External Entity Reference ('XXE') vulnerability in the Policy Engine of Forcepoint Data Loss... |
| CVE-2022-37860 | CRITICAL | 9.8 | 80.0% | Sep 12, 2022 | The web configuration interface of the TP-Link M7350 V3 with firmware version 190531 is affected by a pre-authentication... |
| CVE-2022-37300 | CRITICAL | 9.8 | 0.7% | Sep 12, 2022 | A CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists that could cause unauthorized ac... |
| CVE-2022-3178 | HIGH | 7.8 | 0.4% | Sep 12, 2022 | Buffer Over-read in GitHub repository gpac/gpac prior to 2.1.0-DEV. |
| CVE-2022-37797 | HIGH | 7.5 | 2.0% | Sep 12, 2022 | In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket ha... |
| CVE-2022-37767 | CRITICAL | 9.8 | 1.1% | Sep 12, 2022 | Pebble Templates 3.1.5 allows attackers to bypass a protection mechanism and implement arbitrary code execution with spr... |
| CVE-2022-37734 | HIGH | 7.5 | 2.1% | Sep 12, 2022 | graphql-java before19.0 is vulnerable to Denial of Service. An attacker can send a malicious GraphQL query that consumes... |
| CVE-2022-37835 | HIGH | 7.5 | 0.6% | Sep 12, 2022 | Torguard VPN 4.8, has a vulnerability that allows an attacker to dump sensitive information, such as credentials and inf... |
| CVE-2022-36259 | HIGH | 7.5 | 0.9% | Sep 12, 2022 | A SQL injection vulnerability in ConnectionFactory.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to ex... |
| CVE-2022-36258 | HIGH | 7.5 | 0.8% | Sep 12, 2022 | A SQL injection vulnerability in CustomerDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute ... |
| CVE-2022-36257 | HIGH | 7.5 | 0.8% | Sep 12, 2022 | A SQL injection vulnerability in UserDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute arbi... |
| CVE-2022-36256 | HIGH | 7.5 | 0.8% | Sep 12, 2022 | A SQL injection vulnerability in Stocks.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute arbit... |
| CVE-2022-36255 | HIGH | 7.5 | 0.8% | Sep 12, 2022 | A SQL injection vulnerability in SupplierDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now