2022 CVE Vulnerabilities
27,553 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-1080 | CRITICAL | 9.8 | 0.7% | Mar 29, 2022 | A vulnerability was found in SourceCodester One Church Management System 1.0. It has been declared as critical. This vul... |
| CVE-2022-1079 | MEDIUM | 6.1 | 0.5% | Mar 29, 2022 | A vulnerability classified as problematic has been found in SourceCodester One Church Management System. Affected are mu... |
| CVE-2022-1078 | CRITICAL | 9.8 | 0.8% | Mar 29, 2022 | A vulnerability was found in SourceCodester College Website Management System 1.0. It has been classified as critical. A... |
| CVE-2022-1077 | HIGH | 7.5 | 2.5% | Mar 29, 2022 | A vulnerability was found in TEM FLEX-1080 and FLEX-1085 1.6.0. It has been declared as problematic. This vulnerability ... |
| CVE-2022-1076 | MEDIUM | 6.1 | 0.5% | Mar 29, 2022 | A vulnerability was found in Automatic Question Paper Generator System 1.0. It has been classified as problematic. This ... |
| CVE-2022-1075 | MEDIUM | 5.4 | 0.4% | Mar 29, 2022 | A vulnerability was found in College Website Management System 1.0 and classified as problematic. Affected by this issue... |
| CVE-2022-1074 | MEDIUM | 5.4 | 0.4% | Mar 29, 2022 | A vulnerability has been found in TEM FLEX-1085 1.6.0 and classified as problematic. Using the input <h1>HTML Injection<... |
| CVE-2022-1073 | CRITICAL | 9.8 | 0.8% | Mar 29, 2022 | A vulnerability was found in Automatic Question Paper Generator 1.0. It has been declared as critical. An attack leads t... |
| CVE-2022-1072 | — | — | — | Mar 29, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-26254. Reason: This candidate is a reservation d... |
| CVE-2022-25420 | CRITICAL | 9.8 | 2.4% | Mar 29, 2022 | NTT Resonant Incorporated goo blog App Web Application 1.0 is vulnerable to CLRF injection. This vulnerability allows at... |
| CVE-2022-24957 | MEDIUM | 5.4 | 0.7% | Mar 29, 2022 | DHC Vision eQMS through 5.4.8.322 has Persistent XSS due to insufficient encoding of untrusted input/output. To exploit ... |
| CVE-2022-24956 | MEDIUM | 6.5 | 1.3% | Mar 29, 2022 | An issue was discovered in Shopware B2B-Suite through 4.4.1. The sort-by parameter of the search functionality of b2bord... |
| CVE-2022-23937 | HIGH | 7.5 | 1.0% | Mar 29, 2022 | In Wind River VxWorks 6.9 and 7, a specific crafted packet may lead to an out-of-bounds read during an IKE initial excha... |
| CVE-2022-26269 | MEDIUM | 4.6 | 0.4% | Mar 29, 2022 | Suzuki Connect v1.0.15 allows attackers to tamper with displayed messages via spoofed CAN messages. |
| CVE-2022-25521 | CRITICAL | 9.8 | 2.2% | Mar 29, 2022 | NUUO v03.11.00 was discovered to contain access control issue. |
| CVE-2022-0331 | MEDIUM | 5.3 | 1.4% | Mar 29, 2022 | An information disclosure vulnerability in Webadmin allows an unauthenticated remote attacker to read the device serial ... |
| CVE-2022-26642 | HIGH | 7.2 | 1.2% | Mar 28, 2022 | TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the X_TP_ClonedMACAddress parameter. |
| CVE-2022-26641 | HIGH | 7.2 | 1.2% | Mar 28, 2022 | TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the httpRemotePort parameter. |
| CVE-2022-26640 | HIGH | 7.2 | 1.2% | Mar 28, 2022 | TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the minAddress parameter. |
| CVE-2022-26639 | HIGH | 7.2 | 1.2% | Mar 28, 2022 | TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the DNSServers parameter. |
| CVE-2022-26296 | MEDIUM | 5.5 | 0.4% | Mar 28, 2022 | BOOM: The Berkeley Out-of-Order RISC-V Processor commit d77c2c3 was discovered to allow unauthorized disclosure of infor... |
| CVE-2022-26291 | MEDIUM | 5.5 | 0.9% | Mar 28, 2022 | lrzip v0.641 was discovered to contain a multiple concurrency use-after-free between the functions zpaq_decompress_buf()... |
| CVE-2022-26280 | MEDIUM | 6.5 | 1.9% | Mar 28, 2022 | Libarchive v3.6.0 was discovered to contain an out-of-bounds read via the component zipx_lzma_alone_init. |
| CVE-2022-24789 | HIGH | 7.6 | 0.7% | Mar 28, 2022 | C1 CMS is an open-source, .NET based Content Management System (CMS). Versions prior to 6.12 allow an authenticated user... |
| CVE-2022-26278 | CRITICAL | 9.8 | 1.7% | Mar 28, 2022 | Tenda AC9 v15.03.2.21_cn was discovered to contain a stack overflow via the time parameter in the PowerSaveSet function. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now