2022 CVE Vulnerabilities

27,543 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-2192HIGH8.8Forced Browsing vulnerability in HYPR Server version 6.10 to 6.15.1 allows remote attackers with a valid one-time recove...
CVE-2022-24082CRITICAL9.8If an on-premise installation of the Pega Platform is configured with the port for the JMX interface exposed to the Inte...
CVE-2022-1984HIGH7.8This issue affects: HYPR Windows WFA versions prior to 7.2; Unsafe Deserialization vulnerability in HYPR Workforce Acces...
CVE-2022-30302HIGH8.1Multiple relative path traversal vulnerabilities [CWE-23] in FortiDeceptor management interface 1.0.0 through 3.2.x, 3.3...
CVE-2022-30301MEDIUM6.7A path traversal vulnerability [CWE-22] in FortiAP-U CLI 6.2.0 through 6.2.3, 6.0.0 through 6.0.4, 5.4.0 through 5.4.6 m...
CVE-2022-2454HIGH7.8Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.1-DEV.
CVE-2022-2453HIGH7.8Use After Free in GitHub repository gpac/gpac prior to 2.1-DEV.
CVE-2022-29060HIGH8.1A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiDDoS API 5.5.0 through 5.5.1, 5.4.0 through 5.4.2,...
CVE-2022-29057MEDIUM5.4A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiEDR version 5.1....
CVE-2022-27483HIGH7.2A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiManager ve...
CVE-2022-26113HIGH7.1An execution with unnecessary privileges vulnerability [CWE-250] in FortiClientWindows 7.0.0 through 7.0.3, 6.4.0 throug...
CVE-2022-2468HIGH8.8A vulnerability was found in SourceCodester Garage Management System 1.0 and classified as critical. This issue affects ...
CVE-2022-2467CRITICAL9.8A vulnerability has been found in SourceCodester Garage Management System 1.0 and classified as critical. This vulnerabi...
CVE-2022-30532MEDIUM5.3In affected versions of Octopus Deploy, there is no logging of changes to artifacts within Octopus Deploy.
CVE-2022-30526HIGH7.8A privilege escalation vulnerability was identified in the CLI command of Zyxel USG FLEX 100(W) firmware versions 4.50 t...
CVE-2022-2030MEDIUM6.5A directory traversal vulnerability caused by specific character sequences within an improperly sanitized URL was identi...
CVE-2022-34643MEDIUM5.5RISCV ISA Sim commit ac466a21df442c59962589ba296c702631e041b5 implements the incorrect exception priotrity when accessin...
CVE-2022-34642MEDIUM5.5The component mcontrol.action in RISCV ISA Sim commit ac466a21df442c59962589ba296c702631e041b5 contains the incorrect ma...
CVE-2022-34641MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a and RISCV-Boom commit ad64c5419151e5e886daee7084d8399713b46b4b impl...
CVE-2022-34640MEDIUM5.5The *tval of ecall/ebreak in CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a was discovered to be incorrect.
CVE-2022-34639MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a treats non-standard fence instructions as illegal which can affect ...
CVE-2022-34637MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a implements an incorrect exception type when an illegal virtual addr...
CVE-2022-34636MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a and RISCV-Boom commit ad64c5419151e5e886daee7084d8399713b46b4b impl...
CVE-2022-34635CRITICAL9.8The mstatus.sd field in CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a does not update when the mstatus.fs field i...
CVE-2022-34634MEDIUM5.5CVA6 commit d315ddd0f1be27c1b3f27eb0b8daf471a952299a executes crafted or incorrectly formatted det instructions rather c...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now