2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-34673 | HIGH | 7.3 | 0.3% | Dec 30, 2022 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer (nvidia.ko), where an out-of-bound... |
| CVE-2022-34672 | HIGH | 7.8 | 0.2% | Dec 30, 2022 | NVIDIA Control Panel for Windows contains a vulnerability where an unauthorized user or an unprivileged regular user can... |
| CVE-2022-34671 | HIGH | 8.8 | 1.4% | Dec 30, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the user-mode layer, where an unprivileged user can ca... |
| CVE-2022-34670 | HIGH | 7.8 | 0.3% | Dec 30, 2022 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler, where an unprivileged reg... |
| CVE-2022-34669 | HIGH | 7.8 | 0.3% | Dec 30, 2022 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular use... |
| CVE-2022-47116 | HIGH | 7.5 | 0.8% | Dec 30, 2022 | Tenda A15 V15.13.07.13 was discovered to contain a stack overflow via the SYSPS parameter at /goform/SysToolChangePwd. |
| CVE-2022-4858 | HIGH | 7.5 | 0.5% | Dec 30, 2022 | Insertion of Sensitive Information into Log Files in M-Files Server before 22.10.11846.0 could allow to obtain sensitive... |
| CVE-2022-43396 | HIGH | 8.8 | 56.8% | Dec 30, 2022 | In the fix for CVE-2022-24697, a blacklist is used to filter user input commands. But there is a risk of being bypassed.... |
| CVE-2022-4857 | HIGH | 7.8 | 0.7% | Dec 30, 2022 | A vulnerability was found in Modbus Tools Modbus Poll up to 9.10.0 and classified as critical. Affected by this issue is... |
| CVE-2022-4856 | HIGH | 7.8 | 0.6% | Dec 30, 2022 | A vulnerability has been found in Modbus Tools Modbus Slave up to 7.5.1 and classified as critical. Affected by this vul... |
| CVE-2022-48194 | HIGH | 8.8 | 33.5% | Dec 30, 2022 | TP-Link TL-WR902AC devices through V3 0.9.1 allow remote authenticated attackers to execute arbitrary code or cause a De... |
| CVE-2022-44137 | HIGH | 7.2 | 0.8% | Dec 30, 2022 | SourceCodester Sanitization Management System 1.0 is vulnerable to SQL Injection. |
| CVE-2022-38212 | HIGH | 7.5 | 0.7% | Dec 29, 2022 | Protections against potential Server-Side Request Forgery (SSRF) vulnerabilities in Esri Portal for ArcGIS versions 10.8... |
| CVE-2022-38211 | HIGH | 7.5 | 0.9% | Dec 29, 2022 | Protections against potential Server-Side Request Forgery (SSRF) vulnerabilities in Esri Portal for ArcGIS versions 10.9... |
| CVE-2022-38205 | HIGH | 7.5 | 1.5% | Dec 29, 2022 | In some non-default installations of Esri Portal for ArcGIS versions 10.9.1 and below, a directory traversal issue may a... |
| CVE-2022-38203 | HIGH | 7.5 | 0.7% | Dec 29, 2022 | Protections against potential Server-Side Request Forgery (SSRF) vulnerabilities in Esri Portal for ArcGIS versions 10.8... |
| CVE-2022-46178 | HIGH | 8.8 | 0.7% | Dec 29, 2022 | MeterSphere is a one-stop open source continuous testing platform, covering test management, interface testing, UI testi... |
| CVE-2022-4844 | HIGH | 8.8 | 0.3% | Dec 29, 2022 | Cross-Site Request Forgery (CSRF) in GitHub repository usememos/memos prior to 0.9.1. |
| CVE-2022-4843 | HIGH | 7.5 | 0.7% | Dec 29, 2022 | NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.8.2. |
| CVE-2022-4780 | HIGH | 7.8 | 0.1% | Dec 29, 2022 | ISOS firmwares from versions 1.81 to 2.00 contain hardcoded credentials from embedded StreamX installer that integrators... |
| CVE-2022-4817 | HIGH | 7.8 | 0.5% | Dec 28, 2022 | A vulnerability was found in centic9 jgit-cookbook. It has been declared as problematic. This vulnerability affects unkn... |
| CVE-2022-23553 | HIGH | 7.5 | 0.8% | Dec 28, 2022 | Alpine is a scaffolding library in Java. Alpine prior to version 1.10.4 allows URL access filter bypass. This issue has ... |
| CVE-2022-44564 | HIGH | 7.8 | 0.2% | Dec 28, 2022 | Huawei Aslan Children's Watch has a path traversal vulnerability. Successful exploitation may allow attackers to access ... |
| CVE-2022-39012 | HIGH | 7.5 | 0.5% | Dec 28, 2022 | Huawei Aslan Children's Watch has an improper input validation vulnerability. Successful exploitation may cause the watc... |
| CVE-2022-38202 | HIGH | 7.5 | 1.3% | Dec 28, 2022 | There is a path traversal vulnerability in Esri ArcGIS Server versions 10.9.1 and below. Successful exploitation may all... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now