2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-28339 | HIGH | 7.8 | 0.3% | Feb 22, 2025 | Trend Micro HouseCall for Home Networks version 5.3.1302 and below contains an uncontrolled search patch element vulnera... |
| CVE-2022-46283 | — | — | — | Feb 19, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused |
| CVE-2022-41545 | MEDIUM | 6.4 | 0.3% | Feb 18, 2025 | The administrative web interface of a Netgear C7800 Router running firmware version 6.01.07 (and possibly others) authen... |
| CVE-2022-28693 | MEDIUM | 4.7 | 0.2% | Feb 14, 2025 | Unprotected alternative channel of return branch target prediction in some Intel(R) Processors may allow an authorized u... |
| CVE-2022-26083 | HIGH | 7.5 | 0.2% | Feb 14, 2025 | Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021.5 may allo... |
| CVE-2022-31631 | CRITICAL | 9.1 | 2.2% | Feb 12, 2025 | In PHP versions 8.0.* before 8.0.27, 8.1.* before 8.1.15, 8.2.* before 8.2.2 when using PDO::quote() function to quote u... |
| CVE-2022-37660 | MEDIUM | 6.5 | 0.4% | Feb 11, 2025 | In hostapd 2.10 and earlier, the PKEX code remains active even after a successful PKEX association. An attacker that suc... |
| CVE-2022-3180 | CRITICAL | 9.8 | 8.8% | Feb 11, 2025 | The WPGateway Plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 3.5. This all... |
| CVE-2022-35202 | MEDIUM | 5.1 | 0.2% | Feb 11, 2025 | A security issue in Sitevision version 10.3.1 and older allows a remote attacker, in certain (non-default) scenarios, to... |
| CVE-2022-2283 | — | — | — | Feb 11, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2022-26389 | HIGH | 7.7 | 0.3% | Feb 7, 2025 | An improper access control vulnerability may allow privilege escalation.This issue affects: * ELI 380 Resting Elect... |
| CVE-2022-26388 | MEDIUM | 6.4 | 0.3% | Feb 7, 2025 | A use of hard-coded password vulnerability may allow authentication abuse.This issue affects ELI 380 Resting Electrocard... |
| CVE-2022-40916 | CRITICAL | 9.8 | 0.8% | Feb 6, 2025 | Tiny File Manager v2.4.7 and below is vulnerable to session fixation. |
| CVE-2022-40490 | MEDIUM | 4.8 | 0.4% | Feb 6, 2025 | Tiny File Manager v2.4.7 and below was discovered to contain a Cross Site Scripting (XSS) vulnerability. This vulnerabil... |
| CVE-2022-31764 | HIGH | 8.5 | 0.6% | Feb 6, 2025 | The Lite UI of Apache ShardingSphere ElasticJob-UI allows an attacker to perform RCE by constructing a special JDBC URL ... |
| CVE-2022-1736 | CRITICAL | 9.8 | 0.7% | Jan 31, 2025 | Ubuntu's configuration of gnome-control-center allowed Remote Desktop Sharing to be enabled by default. |
| CVE-2022-28653 | HIGH | 7.5 | 0.4% | Jan 31, 2025 | Users can consume unlimited disk space in /var/crash |
| CVE-2022-43916 | CRITICAL | 9.1 | 0.3% | Jan 30, 2025 | IBM App Connect Enterprise Certified Container 7.1, 7.2, 8.0, 8.1, 8.2, 9.0, 9.1, 9.2, 10.0, 10.1, 11.0, 11.1, 11.2, 11.... |
| CVE-2022-3365 | CRITICAL | 9.8 | 2.0% | Jan 28, 2025 | Due to reliance on a trivial substitution cipher, sent in cleartext, and the reliance on a default password when the use... |
| CVE-2022-31749 | MEDIUM | 6.5 | 1.2% | Jan 28, 2025 | An argument injection vulnerability in the diagnose and import pac commands in WatchGuard Fireware OS before 12.8.1, 12.... |
| CVE-2022-4975 | HIGH | 8.9 | 0.3% | Jan 27, 2025 | A flaw was found in the Red Hat Advanced Cluster Security (RHACS) portal. When rendering a table view in the portal, for... |
| CVE-2022-49043 | HIGH | 7.8 | 0.3% | Jan 26, 2025 | xmlXIncludeAddNode in xinclude.c in libxml2 before 2.11.0 has a use-after-free. |
| CVE-2022-47090 | HIGH | 7.8 | 0.2% | Jan 24, 2025 | GPAC MP4box 2.1-DEV-rev574-g9d5bb184b contains a buffer overflow in gf_vvc_read_pps_bs_internal function of media_tools/... |
| CVE-2022-23439 | MEDIUM | 6.1 | 0.4% | Jan 22, 2025 | A externally controlled reference to a resource in another sphere vulnerability in Fortinet allows attacker to poison w... |
| CVE-2022-20128 | — | — | — | Jan 17, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now