2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-36588CRITICAL9.8In D-Link DAP1650 v1.04 firmware, the fileaccess.cgi program in the firmware has a buffer overflow vulnerability caused ...
CVE-2022-36586CRITICAL9.8In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, there is a buffer overflow vulnerability caused by strcpy in function 0...
CVE-2022-36585CRITICAL9.8In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, in httpd binary, the addDhcpRule function has a buffer overflow caused ...
CVE-2022-36089CRITICAL9.8KubeVela is an application delivery platform Users using KubeVela's VelaUX APIServer could be affected by an authenticat...
CVE-2022-36086CRITICAL9.8linked_list_allocator is an allocator usable for no_std systems. Prior to version 0.10.2, the heap initialization method...
CVE-2022-38250CRITICAL9.8Nagios XI v5.8.6 was discovered to contain a SQL injection vulnerability via the mib_name parameter at the Manage MIBs p...
CVE-2022-3130CRITICAL9.8A vulnerability classified as critical has been found in codeprojects Online Driving School. This affects an unknown par...
CVE-2022-3129CRITICAL9.8A vulnerability was found in codeprojects Online Driving School. It has been rated as critical. Affected by this issue i...
CVE-2022-38314CRITICAL9.8Tenda AC18 router v15.03.05.19 and v15.03.05.05 was discovered to contain a stack overflow via the urls parameter at /go...
CVE-2022-38313CRITICAL9.8Tenda AC18 router v15.03.05.19 and v15.03.05.05 was discovered to contain a stack overflow via the time parameter at /go...
CVE-2022-38312CRITICAL9.8Tenda AC18 router v15.03.05.19 and v15.03.05.05 was discovered to contain a stack overflow via the list parameter at /go...
CVE-2022-38311CRITICAL9.8Tenda AC18 router v15.03.05.19 and v15.03.05.05 was discovered to contain a stack overflow via the time parameter at /go...
CVE-2022-38310CRITICAL9.8Tenda AC18 router v15.03.05.19 and v15.03.05.05 was discovered to contain a stack overflow via the list parameter at /go...
CVE-2022-38309CRITICAL9.8Tenda AC18 router v15.03.05.19 and v15.03.05.05 was discovered to contain a stack overflow via the list parameter at /go...
CVE-2022-36660CRITICAL9.8xhyve commit dfbe09b was discovered to contain a stack buffer overflow via the component pci_vtrnd_notify().
CVE-2022-36587CRITICAL9.8In Tenda G3 US_G3V3.0br_V15.11.0.6(7663)_EN_TDE, there is a buffer overflow vulnerability caused by sprintf in function ...
CVE-2022-31149CRITICAL9.6ActivityWatch open-source automated time tracker. Versions prior to 0.12.0b2 are vulnerable to DNS rebinding attacks. Th...
CVE-2022-31247CRITICAL9.1An Improper Authorization vulnerability in SUSE Rancher, allows any user who has permissions to create/edit cluster role...
CVE-2022-37344CRITICAL9.8Missing Access Control vulnerability in PHP Crafts Accommodation System plugin <= 1.0.1 at WordPress.
CVE-2022-36427CRITICAL9.8Missing Access Control vulnerability in About Rentals. Inc. About Rentals plugin <= 1.5 at WordPress.
CVE-2022-36387CRITICAL9.8Broken Access Control vulnerability in Alessio Caiazza's About Me plugin <= 1.0.12 at WordPress.
CVE-2022-1525CRITICAL9.1The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-602: Client-Side...
CVE-2022-1368CRITICAL9.8The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-306: Missing Aut...
CVE-2022-36067CRITICAL10vm2 is a sandbox that can run untrusted code with whitelisted Node's built-in modules. In versions prior to version 3.9....
CVE-2022-36663CRITICAL9.8Gluu Oxauth before v4.4.1 allows attackers to execute blind SSRF (Server-Side Request Forgery) attacks via a crafted req...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now