2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-22968 | MEDIUM | 5.3 | 5.4% | Apr 14, 2022 | In Spring Framework versions 5.3.0 - 5.3.18, 5.2.0 - 5.2.20, and older unsupported versions, the patterns for disallowed... |
| CVE-2022-22966 | HIGH | 7.2 | 6.3% | Apr 14, 2022 | An authenticated, high privileged malicious actor with network access to the VMware Cloud Director tenant or provider ma... |
| CVE-2022-1328 | MEDIUM | 5.3 | 1.6% | Apr 14, 2022 | Buffer Overflow in uudecoder in Mutt affecting all versions starting from 0.94.13 before 2.2.3 allows read past end of i... |
| CVE-2022-1304 | HIGH | 7.8 | 1.3% | Apr 14, 2022 | An out-of-bounds read/write vulnerability was found in e2fsprogs 1.46.5. This issue leads to a segmentation fault and po... |
| CVE-2022-28711 | CRITICAL | 9.8 | 1.6% | Apr 14, 2022 | A memory corruption vulnerability exists in the cgi.c unescape functionality of ArduPilot APWeb master branch 50b6b7ac -... |
| CVE-2022-22149 | HIGH | 8.8 | 71.3% | Apr 14, 2022 | A SQL injection vulnerability exists in the HelpdeskEmailActions.aspx functionality of Lansweeper lansweeper 9.1.20.2. A... |
| CVE-2022-21234 | HIGH | 8.8 | 71.3% | Apr 14, 2022 | An SQL injection vulnerability exists in the EchoAssets.aspx functionality of Lansweeper lansweeper 9.1.20.2. A speciall... |
| CVE-2022-21210 | HIGH | 8.8 | 69.8% | Apr 14, 2022 | An SQL injection vulnerability exists in the AssetActions.aspx functionality of Lansweeper lansweeper 9.1.20.2. A specia... |
| CVE-2022-21154 | HIGH | 7.8 | 1.0% | Apr 14, 2022 | An integer overflow vulnerability exists in the fltSaveCMP functionality of Leadtools 22. A specially-crafted BMP file c... |
| CVE-2022-21145 | MEDIUM | 4.8 | 77.2% | Apr 14, 2022 | A stored cross-site scripting vulnerability exists in the WebUserActions.aspx functionality of Lansweeper lansweeper 9.1... |
| CVE-2022-22391 | MEDIUM | 4.3 | 0.7% | Apr 14, 2022 | IBM Aspera High-Speed Transfer 4.3.1 and earlier could allow an authenticated user to obtain information from non sensit... |
| CVE-2022-27817 | MEDIUM | 4.4 | 0.4% | Apr 14, 2022 | SWHKD 1.1.5 consumes the keyboard events of unintended users. This could potentially cause an information leak, but is u... |
| CVE-2022-27814 | LOW | 3.3 | 0.4% | Apr 14, 2022 | SWHKD 1.1.5 allows arbitrary file-existence tests via the -c option. |
| CVE-2022-25166 | MEDIUM | 5 | 1.4% | Apr 14, 2022 | An issue was discovered in Amazon AWS VPN Client 2.0.0. It is possible to include a UNC path in the OpenVPN configuratio... |
| CVE-2022-25165 | HIGH | 7 | 0.5% | Apr 14, 2022 | An issue was discovered in Amazon AWS VPN Client 2.0.0. A TOCTOU race condition exists during the validation of VPN conf... |
| CVE-2022-22198 | HIGH | 7.5 | 0.9% | Apr 14, 2022 | An Access of Uninitialized Pointer vulnerability in the SIP ALG of Juniper Networks Junos OS allows an unauthenticated n... |
| CVE-2022-22197 | HIGH | 7.5 | 1.0% | Apr 14, 2022 | An Operation on a Resource after Expiration or Release vulnerability in the Routing Protocol Daemon (RPD) of Juniper Net... |
| CVE-2022-22196 | MEDIUM | 6.5 | 0.4% | Apr 14, 2022 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Ne... |
| CVE-2022-22195 | HIGH | 7.5 | 1.0% | Apr 14, 2022 | An Improper Update of Reference Count vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthe... |
| CVE-2022-22194 | HIGH | 7.5 | 0.9% | Apr 14, 2022 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the packetIO daemon of Juniper Networks Junos O... |
| CVE-2022-22193 | MEDIUM | 5.5 | 0.2% | Apr 14, 2022 | An Improper Handling of Unexpected Data Type vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Juno... |
| CVE-2022-22191 | MEDIUM | 6.5 | 0.4% | Apr 14, 2022 | A Denial of Service (DoS) vulnerability in the processing of a flood of specific ARP traffic in Juniper Networks Junos O... |
| CVE-2022-22190 | HIGH | 7.5 | 0.9% | Apr 14, 2022 | An Improper Access Control vulnerability in the Juniper Networks Paragon Active Assurance Control Center allows an unaut... |
| CVE-2022-22189 | HIGH | 7.8 | 0.2% | Apr 14, 2022 | An Incorrect Ownership Assignment vulnerability in Juniper Networks Contrail Service Orchestration (CSO) allows a locall... |
| CVE-2022-22188 | HIGH | 7.5 | 1.5% | Apr 14, 2022 | An Uncontrolled Memory Allocation vulnerability leading to a Heap-based Buffer Overflow in the packet forwarding engine ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now