2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-29332 | MEDIUM | 6.5 | 1.4% | May 17, 2022 | D-LINK DIR-825 AC1200 R2 is vulnerable to Directory Traversal. An attacker could use the "../../../../" setting of the F... |
| CVE-2022-1711 | HIGH | 7.5 | 5.4% | May 17, 2022 | Server-Side Request Forgery (SSRF) in GitHub repository jgraph/drawio prior to 18.0.5. |
| CVE-2022-1723 | HIGH | 7.5 | 1.6% | May 17, 2022 | Server-Side Request Forgery (SSRF) in GitHub repository jgraph/drawio prior to 18.0.6. |
| CVE-2022-26650 | HIGH | 7.5 | 2.4% | May 17, 2022 | In Apache ShenYui, ShenYu-Bootstrap, RegexPredicateJudge.java uses Pattern.matches(conditionData.getParamValue(), realDa... |
| CVE-2022-1753 | MEDIUM | 4.3 | 0.9% | May 17, 2022 | A vulnerability, which was classified as critical, was found in WoWonder. Affected is the file /requests.php which is re... |
| CVE-2022-23670 | MEDIUM | 6.5 | 1.0% | May 16, 2022 | A remote authenticated information disclosure vulnerability was discovered in Aruba ClearPass Policy Manager version(s):... |
| CVE-2022-23668 | MEDIUM | 4.9 | 0.9% | May 16, 2022 | A remote authenticated server-side request forgery (ssrf) vulnerability was discovered in Aruba ClearPass Policy Manager... |
| CVE-2022-23667 | HIGH | 7.2 | 1.5% | May 16, 2022 | A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10... |
| CVE-2022-1587 | CRITICAL | 9.1 | 2.4% | May 16, 2022 | An out-of-bounds read vulnerability was discovered in the PCRE2 library in the get_recurse_data_length() function of the... |
| CVE-2022-1586 | CRITICAL | 9.1 | 3.0% | May 16, 2022 | An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of... |
| CVE-2022-23666 | CRITICAL | 9.1 | 2.1% | May 16, 2022 | A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10... |
| CVE-2022-23665 | CRITICAL | 9.1 | 2.1% | May 16, 2022 | A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10... |
| CVE-2022-23664 | CRITICAL | 9.1 | 2.1% | May 16, 2022 | A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10... |
| CVE-2022-23663 | CRITICAL | 9.1 | 2.1% | May 16, 2022 | A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10... |
| CVE-2022-23662 | CRITICAL | 9.1 | 2.1% | May 16, 2022 | A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10... |
| CVE-2022-23661 | CRITICAL | 9.1 | 2.1% | May 16, 2022 | A authenticated remote command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10... |
| CVE-2022-23660 | CRITICAL | 10 | 2.6% | May 16, 2022 | A remote authentication bypass vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10.4 and bel... |
| CVE-2022-23659 | MEDIUM | 6.1 | 0.5% | May 16, 2022 | A remote reflected cross site scripting (xss) vulnerability was discovered in Aruba ClearPass Policy Manager version(s):... |
| CVE-2022-23658 | CRITICAL | 10 | 2.6% | May 16, 2022 | A remote authentication bypass vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10.4 and bel... |
| CVE-2022-23657 | CRITICAL | 10 | 2.9% | May 16, 2022 | A remote authentication bypass vulnerability was discovered in Aruba ClearPass Policy Manager version(s): 6.10.4 and bel... |
| CVE-2022-1731 | CRITICAL | 9.8 | 1.2% | May 16, 2022 | Metasonic Doc WebClient 7.0.14.0 / 7.0.12.0 / 7.0.3.0 is vulnerable to a SQL injection attack in the username field. SSO... |
| CVE-2022-30697 | HIGH | 7.8 | 0.2% | May 16, 2022 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Snap Deploy ... |
| CVE-2022-30696 | HIGH | 7.8 | 0.2% | May 16, 2022 | Local privilege escalation due to a DLL hijacking vulnerability. The following products are affected: Acronis Snap Deplo... |
| CVE-2022-30695 | HIGH | 7.8 | 0.2% | May 16, 2022 | Local privilege escalation due to excessive permissions assigned to child processes. The following products are affected... |
| CVE-2022-1679 | HIGH | 7.8 | 0.8% | May 16, 2022 | A use-after-free flaw was found in the Linux kernel’s Atheros wireless adapter driver in the way a user forces the ath9k... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now