2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-4037 | HIGH | 8.5 | 0.6% | Jan 12, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions before 15.5.7, all versions starting from 15.6 befor... |
| CVE-2022-3613 | HIGH | 7.5 | 1.0% | Jan 12, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions before 15.5.7, all versions starting from 15.6 befor... |
| CVE-2022-4874 | HIGH | 7.5 | 11.0% | Jan 11, 2023 | Authentication bypass in Netcomm router models NF20MESH, NF20, and NL1902 allows an unauthenticated user to access conte... |
| CVE-2022-4499 | HIGH | 7.5 | 0.7% | Jan 11, 2023 | TP-Link routers, Archer C5 and WR710N-V1, using the latest software, the strcmp function used for checking credentials i... |
| CVE-2022-4428 | HIGH | 8 | 0.7% | Jan 11, 2023 | support_uri parameter in the WARP client local settings file (mdm.xml) lacked proper validation which allowed for privil... |
| CVE-2022-4696 | HIGH | 7.8 | 0.4% | Jan 11, 2023 | There exists a use-after-free vulnerability in the Linux kernel through io_uring and the IORING_OP_SPLICE operation. If ... |
| CVE-2022-42271 | HIGH | 7.8 | 0.3% | Jan 11, 2023 | NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow and cause ... |
| CVE-2022-43393 | HIGH | 8.2 | 0.6% | Jan 11, 2023 | An improper check for unusual or exceptional conditions in the HTTP request processing function of Zyxel GS1920-24v2 fir... |
| CVE-2022-43390 | HIGH | 8.8 | 1.1% | Jan 11, 2023 | A command injection vulnerability in the CGI program of Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allo... |
| CVE-2022-4379 | HIGH | 7.5 | 6.3% | Jan 10, 2023 | A use-after-free vulnerability was found in __nfs42_ssc_open() in fs/nfs/nfs4file.c in the Linux kernel. This flaw allow... |
| CVE-2022-46449 | HIGH | 7.5 | 0.9% | Jan 10, 2023 | An issue in MPD (Music Player Daemon) v0.23.10 allows attackers to cause a Denial of Service (DoS) via a crafted input. |
| CVE-2022-46163 | HIGH | 7.5 | 1.0% | Jan 10, 2023 | Travel support program is a rails app to support the travel support program of openSUSE (TSP). Sensitive user data (bank... |
| CVE-2022-45165 | HIGH | 8.8 | 0.6% | Jan 10, 2023 | An issue was discovered in Archibus Web Central 2022.03.01.107. A service exposed by the application accepts a user-cont... |
| CVE-2022-38492 | HIGH | 8.8 | 0.7% | Jan 10, 2023 | An issue was discovered in EasyVista 2020.2.125.3 and 2022.1.109.0.03. One parameter allows SQL injection. Version 2022.... |
| CVE-2022-38491 | HIGH | 7.5 | 0.5% | Jan 10, 2023 | An issue was discovered in EasyVista 2020.2.125.3 and 2022.1.109.0.03. Part of the application does not implement protec... |
| CVE-2022-38490 | HIGH | 8.8 | 0.7% | Jan 10, 2023 | An issue was discovered in EasyVista 2020.2.125.3 and 2022.1.109.0.03. Some parameters allow SQL injection. Version 2022... |
| CVE-2022-38393 | HIGH | 7.5 | 18.8% | Jan 10, 2023 | A denial of service vulnerability exists in the cfg_server cm_processConnDiagPktList opcode of Asus RT-AX82U 3.0.0.4.386... |
| CVE-2022-38105 | HIGH | 7.5 | 1.1% | Jan 10, 2023 | An information disclosure vulnerability exists in the cm_processREQ_NC opcode of Asus RT-AX82U 3.0.0.4.386_49674-ge18223... |
| CVE-2022-36443 | HIGH | 7.8 | 0.2% | Jan 10, 2023 | An issue was discovered in Zebra Enterprise Home Screen 4.1.19. The device allows the administrator to lock some communi... |
| CVE-2022-36441 | HIGH | 7.1 | 0.2% | Jan 10, 2023 | An issue was discovered in Zebra Enterprise Home Screen 4.1.19. The Gboard used by different applications can be used to... |
| CVE-2022-35401 | HIGH | 8.1 | 20.8% | Jan 10, 2023 | An authentication bypass vulnerability exists in the get_IFTTTTtoken.cgi functionality of Asus RT-AX82U 3.0.0.4.386_4967... |
| CVE-2022-4636 | HIGH | 7.5 | 0.9% | Jan 10, 2023 | Black Box KVM Firmware version 3.4.31307 on models ACR1000A-R-R2, ACR1000A-T-R2, ACR1002A-T, ACR1002A-R, and ACR1020A-T ... |
| CVE-2022-4704 | HIGH | 8.1 | 0.8% | Jan 10, 2023 | The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_import_template... |
| CVE-2022-4703 | HIGH | 8.1 | 0.9% | Jan 10, 2023 | The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_reset_previous_... |
| CVE-2022-4701 | HIGH | 8.8 | 0.8% | Jan 10, 2023 | The Royal Elementor Addons plugin for WordPress is vulnerable to insufficient access control in the 'wpr_activate_requir... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now