2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-1442 | HIGH | 7.5 | 9.1% | May 10, 2022 | The Metform WordPress plugin is vulnerable to sensitive information disclosure due to improper access control in the ~/c... |
| CVE-2022-1209 | MEDIUM | 5.4 | 0.7% | May 10, 2022 | The Ultimate Member plugin for WordPress is vulnerable to arbitrary redirects due to insufficient validation on supplied... |
| CVE-2022-28986 | HIGH | 7.5 | 2.9% | May 10, 2022 | LMS Doctor Simple 2 Factor Authentication Plugin For Moodle Affected: 2021072900 has an Insecure direct object reference... |
| CVE-2022-23677 | HIGH | 8.1 | 19.1% | May 10, 2022 | A remote execution of arbitrary code vulnerability was discovered in ArubaOS-Switch Devices version(s): ArubaOS-Switch 1... |
| CVE-2022-23676 | CRITICAL | 9.8 | 21.4% | May 10, 2022 | A remote execution of arbitrary code vulnerability was discovered in ArubaOS-Switch Devices version(s): ArubaOS-Switch 1... |
| CVE-2022-0947 | CRITICAL | 9.8 | 0.8% | May 10, 2022 | A vulnerability in ABB ARG600 Wireless Gateway series that could allow an attacker to exploit the vulnerability by remot... |
| CVE-2022-22774 | CRITICAL | 9.1 | 0.8% | May 10, 2022 | The DOM XML parser and SAX XML parser components of TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center, TI... |
| CVE-2022-1649 | MEDIUM | 5.5 | 0.7% | May 10, 2022 | Null pointer dereference in libr/bin/format/mach0/mach0.c in radareorg/radare2 in GitHub repository radareorg/radare2 pr... |
| CVE-2022-22454 | HIGH | 7.8 | 0.3% | May 10, 2022 | IBM InfoSphere Information Server 11.7 could allow a locally authenticated attacker to execute arbitrary commands on the... |
| CVE-2022-26988 | HIGH | 7.8 | 1.4% | May 10, 2022 | TP-Link TL-WDR7660 2.0.30, Mercury D196G 20200109_2.0.4, and Fast FAC1900R 20190827_2.0.2 routers have a stack overflow ... |
| CVE-2022-26987 | HIGH | 7.8 | 1.4% | May 10, 2022 | TP-Link TL-WDR7660 2.0.30, Mercury D196G 20200109_2.0.4, and Fast FAC1900R 20190827_2.0.2 routers have a stack overflow ... |
| CVE-2022-29329 | CRITICAL | 9.8 | 13.3% | May 10, 2022 | D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a heap overflow via the devicename parameter in /goform/s... |
| CVE-2022-29328 | CRITICAL | 9.8 | 13.3% | May 10, 2022 | D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a stack overflow via the function checkvalidupgrade. |
| CVE-2022-29327 | CRITICAL | 9.8 | 3.5% | May 10, 2022 | D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the urladd parameter in /goform/websURLFilte... |
| CVE-2022-29326 | CRITICAL | 9.8 | 3.5% | May 10, 2022 | D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addhostfilter parameter in /goform/websH... |
| CVE-2022-29325 | CRITICAL | 9.8 | 3.5% | May 10, 2022 | D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addurlfilter parameter in /goform/websUR... |
| CVE-2022-29324 | CRITICAL | 9.8 | 3.6% | May 10, 2022 | D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the proto parameter in /goform/form2IPQoSTcA... |
| CVE-2022-29323 | CRITICAL | 9.8 | 3.6% | May 10, 2022 | D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the MAC parameter in /goform/editassignment. |
| CVE-2022-29322 | CRITICAL | 9.8 | 16.1% | May 10, 2022 | D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the IPADDR and nvmacaddr parameters in /gofo... |
| CVE-2022-29321 | CRITICAL | 9.8 | 3.6% | May 10, 2022 | D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the lanip parameter in /goform/setNetworkLan... |
| CVE-2022-28915 | CRITICAL | 9.8 | 6.5% | May 10, 2022 | D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a command injection vulnerability via the admuser and admpass par... |
| CVE-2022-28913 | CRITICAL | 9.8 | 2.5% | May 10, 2022 | TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename paramet... |
| CVE-2022-28912 | CRITICAL | 9.8 | 2.5% | May 10, 2022 | TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename paramet... |
| CVE-2022-28911 | CRITICAL | 9.8 | 2.5% | May 10, 2022 | TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename paramet... |
| CVE-2022-28910 | CRITICAL | 9.8 | 2.5% | May 10, 2022 | TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the devicename param... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now