2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2022-36045CRITICAL9.8NodeBB Forum Software is powered by Node.js and supports either Redis, MongoDB, or a PostgreSQL database. It utilizes we...
CVE-2022-37021CRITICAL9.8Apache Geode versions up to 1.12.5, 1.13.4 and 1.14.0 are vulnerable to a deserialization of untrusted data flaw when us...
CVE-2022-36749CRITICAL9.8RPi-Jukebox-RFID v2.3.0 was discovered to contain a command injection vulnerability via the component /htdocs/utils/File...
CVE-2022-36735CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at /admi...
CVE-2022-36734CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the RollNo parameter at /admi...
CVE-2022-36733CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the M_Id parameter at /admin/...
CVE-2022-36732CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /libraria...
CVE-2022-36731CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the RollNo parameter at /libr...
CVE-2022-36730CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at /libr...
CVE-2022-31232CRITICAL9.8SmartFabric storage software version 1.0.0 contains a Command-Injection vulnerability. A remote unauthenticated attacker...
CVE-2022-37176CRITICAL9.8Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains a vulnerability which allows attackers to remove the Wi...
CVE-2022-37149CRITICAL9.8WAVLINK WL-WN575A3 RPT75A3.V4300.201217 was discovered to contain a command injection vulnerability when operating the f...
CVE-2022-38116CRITICAL9.8Le-yan Personnel and Salary Management System has hard-coded database account and password within the website source cod...
CVE-2022-36714CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the Section parameter at /sta...
CVE-2022-36713CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the Section parameter at /lib...
CVE-2022-36712CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /staff/st...
CVE-2022-36711CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /staff/bo...
CVE-2022-36709CRITICAL9.8Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /staff/ed...
CVE-2022-36560CRITICAL9.8Seiko SkyBridge MB-A200 v01.00.04 and below was discovered to contain multiple hard-coded passcodes for root. Attackers ...
CVE-2022-36559CRITICAL9.8Seiko SkyBridge MB-A200 v01.00.04 and below was discovered to contain a command injection vulnerability via the Ping par...
CVE-2022-36558CRITICAL9.8Seiko SkyBridge MB-A100/A110 v4.2.0 and below implements a hard-coded passcode for the root account. Attackers are able ...
CVE-2022-36557CRITICAL9.8Seiko SkyBridge MB-A100/A110 v4.2.0 and below was discovered to contain an arbitrary file upload vulnerability via the r...
CVE-2022-36556CRITICAL9.8Seiko SkyBridge MB-A100/A110 v4.2.0 and below was discovered to contain a command injection vulnerability via the ipAddr...
CVE-2022-36555CRITICAL9.8Hytec Inter HWL-2511-SS v1.05 and below implements a SHA512crypt hash for the root account which can be easily cracked v...
CVE-2022-36554CRITICAL9.8A command injection vulnerability in the CLI (Command Line Interface) implementation of Hytec Inter HWL-2511-SS v1.05 an...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now