2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-22968MEDIUM5.3In Spring Framework versions 5.3.0 - 5.3.18, 5.2.0 - 5.2.20, and older unsupported versions, the patterns for disallowed...
CVE-2022-22966HIGH7.2An authenticated, high privileged malicious actor with network access to the VMware Cloud Director tenant or provider ma...
CVE-2022-1328MEDIUM5.3Buffer Overflow in uudecoder in Mutt affecting all versions starting from 0.94.13 before 2.2.3 allows read past end of i...
CVE-2022-1304HIGH7.8An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and po...
CVE-2022-28711CRITICAL9.8A memory corruption vulnerability exists in the cgi.c unescape functionality of ArduPilot APWeb master branch 50b6b7ac -...
CVE-2022-22149HIGH8.8A SQL injection vulnerability exists in the HelpdeskEmailActions.aspx functionality of Lansweeper lansweeper 9.1.20.2. A...
CVE-2022-21234HIGH8.8An SQL injection vulnerability exists in the EchoAssets.aspx functionality of Lansweeper lansweeper 9.1.20.2. A speciall...
CVE-2022-21210HIGH8.8An SQL injection vulnerability exists in the AssetActions.aspx functionality of Lansweeper lansweeper 9.1.20.2. A specia...
CVE-2022-21154HIGH7.8An integer overflow vulnerability exists in the fltSaveCMP functionality of Leadtools 22. A specially-crafted BMP file c...
CVE-2022-21145MEDIUM4.8A stored cross-site scripting vulnerability exists in the WebUserActions.aspx functionality of Lansweeper lansweeper 9.1...
CVE-2022-22391MEDIUM4.3IBM Aspera High-Speed Transfer 4.3.1 and earlier could allow an authenticated user to obtain information from non sensit...
CVE-2022-27817MEDIUM4.4SWHKD 1.1.5 consumes the keyboard events of unintended users. This could potentially cause an information leak, but is u...
CVE-2022-27814LOW3.3SWHKD 1.1.5 allows arbitrary file-existence tests via the -c option.
CVE-2022-25166MEDIUM5An issue was discovered in Amazon AWS VPN Client 2.0.0. It is possible to include a UNC path in the OpenVPN configuratio...
CVE-2022-25165HIGH7An issue was discovered in Amazon AWS VPN Client 2.0.0. A TOCTOU race condition exists during the validation of VPN conf...
CVE-2022-22198HIGH7.5An Access of Uninitialized Pointer vulnerability in the SIP ALG of Juniper Networks Junos OS allows an unauthenticated n...
CVE-2022-22197HIGH7.5An Operation on a Resource after Expiration or Release vulnerability in the Routing Protocol Daemon (RPD) of Juniper Net...
CVE-2022-22196MEDIUM6.5An Improper Check for Unusual or Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Ne...
CVE-2022-22195HIGH7.5An Improper Update of Reference Count vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthe...
CVE-2022-22194HIGH7.5An Improper Check for Unusual or Exceptional Conditions vulnerability in the packetIO daemon of Juniper Networks Junos O...
CVE-2022-22193MEDIUM5.5An Improper Handling of Unexpected Data Type vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Juno...
CVE-2022-22191MEDIUM6.5A Denial of Service (DoS) vulnerability in the processing of a flood of specific ARP traffic in Juniper Networks Junos O...
CVE-2022-22190HIGH7.5An Improper Access Control vulnerability in the Juniper Networks Paragon Active Assurance Control Center allows an unaut...
CVE-2022-22189HIGH7.8An Incorrect Ownership Assignment vulnerability in Juniper Networks Contrail Service Orchestration (CSO) allows a locall...
CVE-2022-22188HIGH7.5An Uncontrolled Memory Allocation vulnerability leading to a Heap-based Buffer Overflow in the packet forwarding engine ...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now