2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-1442HIGH7.5The Metform WordPress plugin is vulnerable to sensitive information disclosure due to improper access control in the ~/c...
CVE-2022-1209MEDIUM5.4The Ultimate Member plugin for WordPress is vulnerable to arbitrary redirects due to insufficient validation on supplied...
CVE-2022-28986HIGH7.5LMS Doctor Simple 2 Factor Authentication Plugin For Moodle Affected: 2021072900 has an Insecure direct object reference...
CVE-2022-23677HIGH8.1A remote execution of arbitrary code vulnerability was discovered in ArubaOS-Switch Devices version(s): ArubaOS-Switch 1...
CVE-2022-23676CRITICAL9.8A remote execution of arbitrary code vulnerability was discovered in ArubaOS-Switch Devices version(s): ArubaOS-Switch 1...
CVE-2022-0947CRITICAL9.8A vulnerability in ABB ARG600 Wireless Gateway series that could allow an attacker to exploit the vulnerability by remot...
CVE-2022-22774CRITICAL9.1The DOM XML parser and SAX XML parser components of TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center, TI...
CVE-2022-1649MEDIUM5.5Null pointer dereference in libr/bin/format/mach0/mach0.c in radareorg/radare2 in GitHub repository radareorg/radare2 pr...
CVE-2022-22454HIGH7.8IBM InfoSphere Information Server 11.7 could allow a locally authenticated attacker to execute arbitrary commands on the...
CVE-2022-26988HIGH7.8TP-Link TL-WDR7660 2.0.30, Mercury D196G 20200109_2.0.4, and Fast FAC1900R 20190827_2.0.2 routers have a stack overflow ...
CVE-2022-26987HIGH7.8TP-Link TL-WDR7660 2.0.30, Mercury D196G 20200109_2.0.4, and Fast FAC1900R 20190827_2.0.2 routers have a stack overflow ...
CVE-2022-29329CRITICAL9.8D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a heap overflow via the devicename parameter in /goform/s...
CVE-2022-29328CRITICAL9.8D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a stack overflow via the function checkvalidupgrade.
CVE-2022-29327CRITICAL9.8D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the urladd parameter in /goform/websURLFilte...
CVE-2022-29326CRITICAL9.8D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addhostfilter parameter in /goform/websH...
CVE-2022-29325CRITICAL9.8D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addurlfilter parameter in /goform/websUR...
CVE-2022-29324CRITICAL9.8D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the proto parameter in /goform/form2IPQoSTcA...
CVE-2022-29323CRITICAL9.8D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the MAC parameter in /goform/editassignment.
CVE-2022-29322CRITICAL9.8D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the IPADDR and nvmacaddr parameters in /gofo...
CVE-2022-29321CRITICAL9.8D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the lanip parameter in /goform/setNetworkLan...
CVE-2022-28915CRITICAL9.8D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a command injection vulnerability via the admuser and admpass par...
CVE-2022-28913CRITICAL9.8TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename paramet...
CVE-2022-28912CRITICAL9.8TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename paramet...
CVE-2022-28911CRITICAL9.8TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename paramet...
CVE-2022-28910CRITICAL9.8TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the devicename param...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now