2022 CVE Vulnerabilities
27,552 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-31296 | CRITICAL | 9.8 | 2.3% | Jun 17, 2022 | Online Discussion Forum Site 1 was discovered to contain a blind SQL injection vulnerability via the component /odfs/pos... |
| CVE-2022-2113 | MEDIUM | 5.4 | 0.7% | Jun 17, 2022 | Cross-site Scripting (XSS) - Stored in GitHub repository inventree/inventree prior to 0.7.2. |
| CVE-2022-2112 | HIGH | 8.8 | 1.2% | Jun 17, 2022 | Improper Neutralization of Formula Elements in a CSV File in GitHub repository inventree/inventree prior to 0.7.2. |
| CVE-2022-2111 | HIGH | 8.8 | 1.2% | Jun 17, 2022 | Unrestricted Upload of File with Dangerous Type in GitHub repository inventree/inventree prior to 0.7.2. |
| CVE-2022-30329 | CRITICAL | 9.8 | 1.8% | Jun 16, 2022 | An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. An OS injection vulnerability exists within the web... |
| CVE-2022-30328 | MEDIUM | 6.5 | 0.4% | Jun 16, 2022 | An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. The username and password setup for the web interfa... |
| CVE-2022-30327 | MEDIUM | 6.5 | 0.5% | Jun 16, 2022 | An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. The web interface is vulnerable to CSRF. An attacke... |
| CVE-2022-30326 | MEDIUM | 5.4 | 0.5% | Jun 16, 2022 | An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. The network pre-shared key field on the web interfa... |
| CVE-2022-30325 | HIGH | 8.8 | 0.4% | Jun 16, 2022 | An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. The default pre-shared key for the Wi-Fi networks i... |
| CVE-2022-33756 | HIGH | 7.5 | 1.1% | Jun 16, 2022 | CA Automic Automation 12.2 and 12.3 contain an entropy weakness vulnerability in the Automic AutomationEngine that could... |
| CVE-2022-33755 | MEDIUM | 5.3 | 0.9% | Jun 16, 2022 | CA Automic Automation 12.2 and 12.3 contain an insecure input handling vulnerability in the Automic Agent that could all... |
| CVE-2022-33754 | CRITICAL | 9.8 | 1.7% | Jun 16, 2022 | CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that cou... |
| CVE-2022-33753 | HIGH | 8.8 | 0.8% | Jun 16, 2022 | CA Automic Automation 12.2 and 12.3 contain an insecure file creation and handling vulnerability in the Automic agent th... |
| CVE-2022-33752 | CRITICAL | 9.8 | 1.7% | Jun 16, 2022 | CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that cou... |
| CVE-2022-33751 | HIGH | 7.5 | 1.1% | Jun 16, 2022 | CA Automic Automation 12.2 and 12.3 contain an insecure memory handling vulnerability in the Automic agent that could al... |
| CVE-2022-33750 | CRITICAL | 9.8 | 1.6% | Jun 16, 2022 | CA Automic Automation 12.2 and 12.3 contain an authentication error vulnerability in the Automic agent that could allow ... |
| CVE-2022-33739 | HIGH | 7.5 | 1.1% | Jun 16, 2022 | CA Clarity 15.8 and below and 15.9.0 contain an insecure XML parsing vulnerability that could allow a remote attacker to... |
| CVE-2022-31299 | MEDIUM | 6.1 | 4.7% | Jun 16, 2022 | Haraj v3.7 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in the User Upgrade Form. |
| CVE-2022-26173 | HIGH | 8.8 | 0.7% | Jun 16, 2022 | JForum v2.8.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via http://target_host:port/jforum-2.8.0/jfo... |
| CVE-2022-31295 | HIGH | 7.5 | 1.3% | Jun 16, 2022 | An issue in the delete_post() function of Online Discussion Forum Site 1 allows unauthenticated attackers to arbitrarily... |
| CVE-2022-31464 | HIGH | 7.8 | 0.4% | Jun 16, 2022 | Insecure permissions configuration in Adaware Protect v1.2.439.4251 allows attackers to escalate privileges via changing... |
| CVE-2022-27512 | MEDIUM | 5.3 | 0.9% | Jun 16, 2022 | Temporary disruption of the ADM license service. The impact of this includes preventing new licenses from being issued o... |
| CVE-2022-27511 | HIGH | 8.1 | 12.0% | Jun 16, 2022 | Corruption of the system by a remote, unauthenticated user. The impact of this can include the reset of the administrato... |
| CVE-2022-24562 | CRITICAL | 9.8 | 53.9% | Jun 16, 2022 | In IOBit IOTransfer 4.3.1.1561, an unauthenticated attacker can send GET and POST requests to Airserv and gain arbitrary... |
| CVE-2022-32547 | HIGH | 7.8 | 1.3% | Jun 16, 2022 | In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'flo... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now