2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-31296CRITICAL9.8Online Discussion Forum Site 1 was discovered to contain a blind SQL injection vulnerability via the component /odfs/pos...
CVE-2022-2113MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository inventree/inventree prior to 0.7.2.
CVE-2022-2112HIGH8.8Improper Neutralization of Formula Elements in a CSV File in GitHub repository inventree/inventree prior to 0.7.2.
CVE-2022-2111HIGH8.8Unrestricted Upload of File with Dangerous Type in GitHub repository inventree/inventree prior to 0.7.2.
CVE-2022-30329CRITICAL9.8An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. An OS injection vulnerability exists within the web...
CVE-2022-30328MEDIUM6.5An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. The username and password setup for the web interfa...
CVE-2022-30327MEDIUM6.5An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. The web interface is vulnerable to CSRF. An attacke...
CVE-2022-30326MEDIUM5.4An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. The network pre-shared key field on the web interfa...
CVE-2022-30325HIGH8.8An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. The default pre-shared key for the Wi-Fi networks i...
CVE-2022-33756HIGH7.5CA Automic Automation 12.2 and 12.3 contain an entropy weakness vulnerability in the Automic AutomationEngine that could...
CVE-2022-33755MEDIUM5.3CA Automic Automation 12.2 and 12.3 contain an insecure input handling vulnerability in the Automic Agent that could all...
CVE-2022-33754CRITICAL9.8CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that cou...
CVE-2022-33753HIGH8.8CA Automic Automation 12.2 and 12.3 contain an insecure file creation and handling vulnerability in the Automic agent th...
CVE-2022-33752CRITICAL9.8CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that cou...
CVE-2022-33751HIGH7.5CA Automic Automation 12.2 and 12.3 contain an insecure memory handling vulnerability in the Automic agent that could al...
CVE-2022-33750CRITICAL9.8CA Automic Automation 12.2 and 12.3 contain an authentication error vulnerability in the Automic agent that could allow ...
CVE-2022-33739HIGH7.5CA Clarity 15.8 and below and 15.9.0 contain an insecure XML parsing vulnerability that could allow a remote attacker to...
CVE-2022-31299MEDIUM6.1Haraj v3.7 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in the User Upgrade Form.
CVE-2022-26173HIGH8.8JForum v2.8.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via http://target_host:port/jforum-2.8.0/jfo...
CVE-2022-31295HIGH7.5An issue in the delete_post() function of Online Discussion Forum Site 1 allows unauthenticated attackers to arbitrarily...
CVE-2022-31464HIGH7.8Insecure permissions configuration in Adaware Protect v1.2.439.4251 allows attackers to escalate privileges via changing...
CVE-2022-27512MEDIUM5.3Temporary disruption of the ADM license service. The impact of this includes preventing new licenses from being issued o...
CVE-2022-27511HIGH8.1Corruption of the system by a remote, unauthenticated user. The impact of this can include the reset of the administrato...
CVE-2022-24562CRITICAL9.8In IOBit IOTransfer 4.3.1.1561, an unauthenticated attacker can send GET and POST requests to Airserv and gain arbitrary...
CVE-2022-32547HIGH7.8In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'flo...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now