2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-46093HIGH8.2Hospital Management System v1.0 is vulnerable to SQL Injection. Attackers can gain administrator privileges without the ...
CVE-2022-42136HIGH8.8Authenticated mail users, under specific circumstances, could add files with unsanitized content in public folders where...
CVE-2022-46956HIGH7.2Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ...
CVE-2022-46953HIGH7.2Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ...
CVE-2022-46952HIGH7.2Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ...
CVE-2022-46951HIGH7.2Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ...
CVE-2022-46950HIGH7.2Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at ...
CVE-2022-46949HIGH7.2Helmet Store Showroom Site v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes...
CVE-2022-46947HIGH7.2Helmet Store Showroom Site v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes...
CVE-2022-46946HIGH7.2Helmet Store Showroom Site v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes...
CVE-2022-3693HIGH7.5Path Traversal vulnerability in Deytek Informatics FileOrbis File Management System allows Path Traversal. This issue a...
CVE-2022-42268HIGH7.8 Omniverse Kit contains a vulnerability in the reference applications Create, Audio2Face, Isaac Sim, View, Code, and Mac...
CVE-2022-3841HIGH7.8RHACM: unauthenticated SSRF in console API endpoint. A Server-Side Request Forgery (SSRF) vulnerability was found in the...
CVE-2022-3143HIGH7.4wildfly-elytron: possible timing attacks via use of unsafe comparator. A flaw was found in Wildfly-elytron. Wildfly-elyt...
CVE-2022-42290HIGH8.8NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can inject arbitrary shell commands, w...
CVE-2022-42289HIGH8.8NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can inject arbitrary shell commands, w...
CVE-2022-42287HIGH7.8NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can upload and download arbitrary file...
CVE-2022-42286HIGH7.8DGX A100 SBIOS contains a vulnerability in Bds, which may lead to code execution, denial of service, or escalation of pr...
CVE-2022-42285HIGH7.8DGX A100 SBIOS contains a vulnerability in the Pre-EFI Initialization (PEI)phase, where a privileged user can disable SP...
CVE-2022-42283HIGH7.8NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow and cause ...
CVE-2022-42280HIGH7.8NVIDIA BMC contains a vulnerability in SPX REST auth handler, where an un-authorized attacker can exploit a path travers...
CVE-2022-42279HIGH8.8NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can inject arbitrary shell commands, w...
CVE-2022-42278HIGH7.8NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can read and write to arbitrary locati...
CVE-2022-42277HIGH8.2NVIDIA DGX Station contains a vulnerability in SBIOS in the SmiFlash, where a local user with elevated privileges can re...
CVE-2022-42276HIGH8.2NVIDIA DGX A100 contains a vulnerability in SBIOS in the SmiFlash, where a local user with elevated privileges can read,...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now