2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-27815HIGH7.8SWHKD 1.1.5 unsafely uses the /tmp/swhkd.pid pathname. There can be an information leak or denial of service.
CVE-2022-27432HIGH8.8A Cross-Site Request Forgery (CSRF) in Pluck CMS v4.7.15 allows attackers to change the password of any given user by ex...
CVE-2022-26951MEDIUM6.1Archer 6.x through 6.10 (6.10.0.0) contains a reflected XSS vulnerability. A remote SAML-unauthenticated malicious Arche...
CVE-2022-26950MEDIUM6.1Archer 6.x through 6.9 P2 (6.9.0.2) is affected by an open redirect vulnerability. A remote unprivileged attacker may po...
CVE-2022-26949MEDIUM6.5Archer 6.x through 6.9 SP2 P1 (6.9.2.1) contains an improper access control vulnerability on attachments. A remote authe...
CVE-2022-26948HIGH7.5The Archer RSS feed integration for Archer 6.x through 6.9 SP1 (6.9.1.0) is affected by an insecure credential storage v...
CVE-2022-26947MEDIUM5.4Archer 6.x through 6.9 SP3 (6.9.3.0) contains a reflected XSS vulnerability. A remote authenticated malicious Archer use...
CVE-2022-26244MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in Hospital Patient Record Management System v1.0 allows attackers to ...
CVE-2022-26871CRITICAL9.8An arbitrary file upload vulnerability in Trend Micro Apex Central could allow an unauthenticated remote attacker to upl...
CVE-2022-21821HIGH7.8NVIDIA CUDA Toolkit SDK contains an integer overflow vulnerability in cuobjdump.To exploit this vulnerability, a remote ...
CVE-2022-22948MEDIUM6.5The vCenter Server contains an information disclosure vulnerability due to improper permission of files. A malicious act...
CVE-2022-1122MEDIUM5.5A flaw was found in the opj2_decompress program in openjpeg2 2.4.0 in the way it handles an input directory with a large...
CVE-2022-27175CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability that exists in G...
CVE-2022-26887CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in DIAE_l...
CVE-2022-26839HIGH7.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) is vulnerable to an incorrect default permission in the ...
CVE-2022-26836CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability that exists in H...
CVE-2022-26667CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability that exists in G...
CVE-2022-26666CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in Handle...
CVE-2022-26514CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability that exists in D...
CVE-2022-26349CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability that exists in D...
CVE-2022-26338CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in Handle...
CVE-2022-26069CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability that exists in H...
CVE-2022-26065CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability exists in GetLat...
CVE-2022-26059CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability that exists in G...
CVE-2022-26013CRITICAL9.8Delta Electronics DIAEnergie (All versions prior to 1.8.02.004) has a blind SQL injection vulnerability that exists in D...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now