2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-32137HIGH8.8In multiple CODESYS products, a low privileged remote attacker may craft a request, which may cause a heap-based buffer ...
CVE-2022-32136MEDIUM6.5In multiple CODESYS products, a low privileged remote attacker may craft a request that cause a read access to an uninit...
CVE-2022-31806CRITICAL9.8In CODESYS V2 PLCWinNT and Runtime Toolkit 32 in versions prior to V2.4.7.57 password protection is not enabled by defau...
CVE-2022-31805HIGH7.5In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication ...
CVE-2022-31804HIGH7.5The CODESYS Gateway Server V2 does not verifiy that the size of a request is within expected limits. An unauthenticated ...
CVE-2022-31803MEDIUM5.3In CODESYS Gateway Server V2 an insufficient check for the activity of TCP client connections allows an unauthenticated ...
CVE-2022-31802CRITICAL9.8In CODESYS Gateway Server V2 for versions prior to V2.3.9.38 only a part of the the specified password is been compared ...
CVE-2022-1965HIGH8.1Multiple products of CODESYS implement a improper error handling. A low privilege remote attacker may craft a request, w...
CVE-2022-32405HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32404HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32403HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32402HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32401HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32400HIGH7.2Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32399HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32398HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32397HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32396HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32395HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32394HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32393HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32392HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-32391HIGH8.8Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/adm...
CVE-2022-2147HIGH7.8Cloudflare Warp for Windows from version 2022.2.95.0 contained an unquoted service path which enables arbitrary code exe...
CVE-2022-32987MEDIUM4.8Multiple cross-site scripting (XSS) vulnerabilities in /bsms/?page=manage_account of Simple Bakery Shop Management Syste...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now