2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-38768CRITICAL9.8The mobile application in Transtek Mojodat FAM (Fixed Asset Management) 2.4.6 allows remote attackers to bypass authoriz...
CVE-2022-35413CRITICAL9.8WAPPLES through 6.0 has a hardcoded systemi account. A threat actor could use this account to access the system configur...
CVE-2022-39815CRITICAL9.8In NOKIA 1350 OMS R14.2, multiple OS Command Injection vulnerabilities occurs. This vulnerability allow unauthenticated ...
CVE-2022-38637CRITICAL9.8Hospital Management System v1.0 was discovered to contain multiple SQL injection vulnerabilities via the Username and Pa...
CVE-2022-20391CRITICAL9.8Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257000
CVE-2022-20390CRITICAL9.8Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257002
CVE-2022-20389CRITICAL9.8Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238257004
CVE-2022-20388CRITICAL9.8Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227323
CVE-2022-20387CRITICAL9.8Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227324
CVE-2022-20386CRITICAL9.8Summary:Product: AndroidVersions: Android SoCAndroid ID: A-238227328
CVE-2022-20385CRITICAL9.8a function called 'nla_parse', do not check the len of para, it will check nla_type (which can be controlled by userspac...
CVE-2022-39206CRITICAL9.9Onedev is an open source, self-hosted Git Server with CI/CD and Kanban. When using Docker-based job executors, the Docke...
CVE-2022-39205CRITICAL9.8Onedev is an open source, self-hosted Git Server with CI/CD and Kanban. In versions of Onedev prior to 7.3.0 unauthentic...
CVE-2022-34722CRITICAL9.8Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
CVE-2022-34721CRITICAL9.8Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
CVE-2022-34718CRITICAL9.8Windows TCP/IP Remote Code Execution Vulnerability
CVE-2022-38542CRITICAL9.8Archery v1.4.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the ThreadIDs parameter in the kill...
CVE-2022-38541CRITICAL9.8Archery v1.8.3 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_time and stop_ti...
CVE-2022-38540CRITICAL9.8Archery v1.4.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the ThreadIDs parameter in the crea...
CVE-2022-38539CRITICAL9.8Archery v1.7.5 to v1.8.5 was discovered to contain a SQL injection vulnerability via the where parameter at /archive/app...
CVE-2022-38538CRITICAL9.8Archery v1.7.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the checksum parameter in the repor...
CVE-2022-38537CRITICAL9.8Archery v1.4.5 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_file, end_file, ...
CVE-2022-36779CRITICAL9.8PROSCEND - PROSCEND / ADVICE .Ltd - G/5G Industrial Cellular Router (with GPS)4 Unauthenticated OS Command Injection Pro...
CVE-2022-37011CRITICAL9.8A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions < V1.17.0), Mendix SAML (Mendix 8...
CVE-2022-38297CRITICAL9.8UCMS v1.6.0 contains an authentication bypass vulnerability which is exploited via cookie poisoning.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now