2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-27777MEDIUM6.1A XSS Vulnerability in Action View tag helpers >= 5.2.0 and < 5.2.0 which would allow an attacker to inject content if a...
CVE-2022-22577MEDIUM6.1An XSS Vulnerability in Action Pack >= 5.2.0 and < 5.2.0 that could allow an attacker to bypass CSP for non HTML like re...
CVE-2022-22576HIGH8.1An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-au...
CVE-2022-21831CRITICAL9.8A code injection vulnerability exists in the Active Storage >= v5.2.0 that could allow an attacker to execute code via i...
CVE-2022-21827HIGH7.1An improper privilege vulnerability has been discovered in Citrix Gateway Plug-in for Windows (Citrix Secure Access for ...
CVE-2022-1899CRITICAL9.1Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0.
CVE-2022-1882HIGH7.8A use-after-free flaw was found in the Linux kernel’s pipes functionality in how a user performs manipulations with the ...
CVE-2022-1261HIGH8.8Matrikon, a subsidary of Honeywell Matrikon OPC Server (all versions) is vulnerable to a condition where a low privilege...
CVE-2022-30789HIGH7.8A crafted NTFS image can cause a heap-based buffer overflow in ntfs_check_log_client_array in NTFS-3G through 2021.8.22.
CVE-2022-30788HIGH7.8A crafted NTFS image can cause a heap-based buffer overflow in ntfs_mft_rec_alloc in NTFS-3G through 2021.8.22.
CVE-2022-30787MEDIUM6.7An integer underflow in fuse_lib_readdir enables arbitrary memory read operations in NTFS-3G through 2021.8.22 when usin...
CVE-2022-30786HIGH7.8A crafted NTFS image can cause a heap-based buffer overflow in ntfs_names_full_collate in NTFS-3G through 2021.8.22.
CVE-2022-30785MEDIUM6.7A file handle created in fuse_lib_opendir, and later used in fuse_lib_readdir, enables arbitrary memory read and write o...
CVE-2022-30784HIGH7.8A crafted NTFS image can cause heap exhaustion in ntfs_get_attribute_value in NTFS-3G through 2021.8.22.
CVE-2022-30783MEDIUM6.7An invalid return code in fuse_kern_mount enables intercepting of libfuse-lite protocol traffic between NTFS-3G and the ...
CVE-2022-30500CRITICAL9.8Jfinal cms 5.1.0 is vulnerable to SQL Injection.
CVE-2022-30477CRITICAL9.8Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a stack-based buffer overflow in the httpd modu...
CVE-2022-30476CRITICAL9.8Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a stack-based buffer overflow in the httpd modu...
CVE-2022-30475HIGH7.5Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a stack-based buffer overflow in the httpd modu...
CVE-2022-30474CRITICAL9.8Tenda AC Series Router AC18_V15.03.05.19(6318) was discovered to contain a heap overflow in the httpd module when handli...
CVE-2022-30473HIGH7.5Tenda AC Series Router AC18_V15.03.05.19(6318) has a stack-based buffer overflow vulnerability in function form_fast_set...
CVE-2022-30472CRITICAL9.8Tenda AC Seris Router AC18_V15.03.05.19(6318) has a stack-based buffer overflow vulnerability in function fromAddressNat
CVE-2022-29091MEDIUM6.1Dell Unity, Dell UnityVSA, and Dell UnityXT versions prior to 5.2.0.0.5.173 contain a Reflected Cross-Site Scripting Vul...
CVE-2022-29082MEDIUM4.6Dell EMC NetWorker versions 19.1.x, 19.1.0.x, 19.1.1.x, 19.2.x, 19.2.0.x, 19.2.1.x 19.3.x, 19.3.0.x, 19.4.x, 19.4.0.x, 1...
CVE-2022-26865MEDIUM6.8Dell Support Assist OS Recovery versions before 5.5.2 contain an Authentication Bypass vulnerability. An unauthenticated...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now