2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-35976 | CRITICAL | 9.8 | 0.4% | Aug 18, 2022 | The GitOps Tools Extension for VSCode relies on kubeconfigs in order to communicate with Kubernetes clusters. A speciall... |
| CVE-2022-37061 | CRITICAL | 9.8 | 99.6% | Aug 18, 2022 | All FLIR AX8 thermal sensor cameras version up to and including 1.46.16 are vulnerable to Remote Command Injection. This... |
| CVE-2022-35975 | CRITICAL | 9.8 | 1.1% | Aug 18, 2022 | The GitOps Tools Extension for VSCode can make it easier to manage Flux objects. A specially crafted Flux object may all... |
| CVE-2022-35175 | CRITICAL | 9.8 | 0.8% | Aug 18, 2022 | Barangay Management System v1.0 was discovered to contain a SQL injection vulnerability via the hidden_id parameter at /... |
| CVE-2022-2876 | CRITICAL | 9.8 | 0.6% | Aug 18, 2022 | A vulnerability, which was classified as critical, was found in SourceCodester Student Management System. Affected is an... |
| CVE-2022-35164 | CRITICAL | 9.8 | 0.9% | Aug 18, 2022 | LibreDWG v0.12.4.4608 & commit f2dea29 was discovered to contain a heap use-after-free via bit_copy_chain. |
| CVE-2022-35154 | CRITICAL | 9.8 | 0.9% | Aug 18, 2022 | Shopro Mall System v1.3.8 was discovered to contain a SQL injection vulnerability via the value parameter. |
| CVE-2022-35153 | CRITICAL | 9.8 | 1.7% | Aug 18, 2022 | FusionPBX 5.0.1 was discovered to contain a command injection vulnerability via /fax/fax_send.php. |
| CVE-2022-35606 | CRITICAL | 9.8 | 0.7% | Aug 18, 2022 | A SQL injection vulnerability in CustomerDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute ... |
| CVE-2022-35605 | CRITICAL | 9.8 | 0.7% | Aug 18, 2022 | A SQL injection vulnerability in UserDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute arbi... |
| CVE-2022-35603 | CRITICAL | 9.8 | 0.7% | Aug 18, 2022 | A SQL injection vulnerability in CustomerDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute ... |
| CVE-2022-35602 | CRITICAL | 9.8 | 0.8% | Aug 18, 2022 | A SQL injection vulnerability in UserDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute arbi... |
| CVE-2022-35601 | CRITICAL | 9.8 | 0.8% | Aug 18, 2022 | A SQL injection vulnerability in SupplierDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute ... |
| CVE-2022-35599 | CRITICAL | 9.8 | 0.8% | Aug 18, 2022 | A SQL injection vulnerability in Stocks.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to execute arbit... |
| CVE-2022-35598 | CRITICAL | 9.8 | 0.7% | Aug 18, 2022 | A SQL injection vulnerability in ConnectionFactoryDAO.java in sazanrjb InventoryManagementSystem 1.0 allows attackers to... |
| CVE-2022-35147 | CRITICAL | 9.8 | 1.3% | Aug 17, 2022 | DoraCMS v2.18 and earlier allows attackers to bypass login authentication via a crafted HTTP request. |
| CVE-2022-35122 | CRITICAL | 9.1 | 1.0% | Aug 17, 2022 | An access control issue in Ecowitt GW1100 Series Weather Stations <=GW1100B_v2.1.5 allows unauthenticated attackers to a... |
| CVE-2022-2336 | CRITICAL | 9.8 | 0.9% | Aug 17, 2022 | Softing Secure Integration Server, edgeConnector, and edgeAggregator software ships with the default administrator crede... |
| CVE-2022-23764 | CRITICAL | 9.8 | 0.5% | Aug 17, 2022 | The vulnerability causing from insufficient verification procedures for downloaded files during WebCube update. Remote a... |
| CVE-2022-23747 | CRITICAL | 9.8 | 10.0% | Aug 17, 2022 | In Sony Xperia series 1, 5, and Pro, an out of bound memory access can occur due to lack of validation of the number of ... |
| CVE-2022-35516 | CRITICAL | 9.8 | 1.9% | Aug 17, 2022 | DedeCMS v5.7.93 - v5.7.96 was discovered to contain a remote code execution vulnerability in login.php. |
| CVE-2022-35121 | CRITICAL | 9.8 | 0.8% | Aug 17, 2022 | Novel-Plus v3.6.1 was discovered to contain a SQL injection vulnerability via the keyword parameter at /service/impl/Boo... |
| CVE-2022-2870 | CRITICAL | 9.8 | 0.7% | Aug 17, 2022 | A vulnerability was found in laravel 5.1 and classified as problematic. This issue affects some unknown processing. The ... |
| CVE-2022-22455 | CRITICAL | 9.8 | 0.4% | Aug 17, 2022 | IBM Security Verify Governance Identity Manager 10.0 virtual appliance component performs an operation at a privilege le... |
| CVE-2022-36190 | CRITICAL | 9.8 | 0.9% | Aug 17, 2022 | GPAC mp4box 2.1-DEV-revUNKNOWN-master has a use-after-free vulnerability in function gf_isom_dovi_config_get. This vulne... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now