2022 CVE Vulnerabilities

27,538 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-36678CRITICAL9.8Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /clas...
CVE-2022-24304Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-2564. Reason: This candidate is a duplicate of C...
CVE-2022-38533MEDIUM5.5In GNU Binutils before 2.40, there is a heap-buffer-overflow in the error function bfd_getl32 when called from the strip...
CVE-2022-36226HIGH7.2SiteServerCMS 5.X has a Remote-download-Getshell-vulnerability via /SiteServer/Ajax/ajaxOtherService.aspx.
CVE-2022-36168LOW2.7A directory traversal vulnerability was discovered in Wuzhicms 4.1.0. via /coreframe/app/attachment/admin/index.php:
CVE-2022-36121MEDIUM5.3An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...
CVE-2022-36120HIGH8.1An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...
CVE-2022-35192HIGH7.5D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows unauthenticated attackers to caus...
CVE-2022-30984HIGH7.8A buffer overflow vulnerability in the Rubrik Backup Service (RBS) Agent for Linux or Unix-based systems in Rubrik CDM 7...
CVE-2022-29850HIGH8.1Various Lexmark products through 2022-04-27 allow an attacker who has already compromised an affected Lexmark device to ...
CVE-2022-37318MEDIUM6.1Archer Platform 6.9 SP2 P2 before 6.11 P3 (6.11.0.3) contain a reflected XSS vulnerability. A remote unauthenticated mal...
CVE-2022-37317MEDIUM5.4Archer Platform 6.x before 6.11 P3 contain an HTML injection vulnerability. An authenticated remote attacker could poten...
CVE-2022-37316MEDIUM6.5Archer Platform 6.8 before 6.11 P3 (6.11.0.3) contains an improper API access control vulnerability in a multi-instance ...
CVE-2022-36119HIGH8.8An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...
CVE-2022-36118MEDIUM5.3An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...
CVE-2022-36117LOW3.1An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...
CVE-2022-36116MEDIUM5.3An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...
CVE-2022-36115HIGH7.1An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue ...
CVE-2022-31798MEDIUM6.1Nortek Linear eMerge E3-Series 0.32-07p devices are vulnerable to /card_scan.php?CardFormatNo= XSS with session fixation...
CVE-2022-31499CRITICAL9.8Nortek Linear eMerge E3-Series devices before 0.32-08f allow an unauthenticated attacker to inject OS commands via Reade...
CVE-2022-28747CRITICAL9.8Key reuse in GoSecure Titan Inbox Detection & Response (IDR) through 2022-04-05 leads to remote code execution. To explo...
CVE-2022-36721HIGH8.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the Textbook parameter at /ad...
CVE-2022-36720HIGH8.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/mo...
CVE-2022-36719CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the ok parameter at /admin/hi...
CVE-2022-36716CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ch...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now