2022 CVE Vulnerabilities

27,553 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-24769MEDIUM5.9Moby is an open-source project created by Docker to enable and accelerate software containerization. A bug was found in ...
CVE-2022-22374CRITICAL9.1The BMC (IBM Power 9 AC922 OP910, OP920, OP930, and OP940) may be subject to a firmware downgrade attack which may affec...
CVE-2022-25568HIGH7.5MotionEye v0.42.1 and below allows attackers to access sensitive information via a GET request to /config/list. To explo...
CVE-2022-21820MEDIUM6.3NVIDIA DCGM contains a vulnerability in nvhostengine, where a network user can cause detection of error conditions witho...
CVE-2022-0153HIGH7.5SQL Injection in GitHub repository forkcms/forkcms prior to 5.11.1.
CVE-2022-26629CRITICAL9.1An Access Control vulnerability exists in SoroushPlus+ Messenger 1.0.30 in the Lock Screen Security Feature function due...
CVE-2022-1058MEDIUM6.1Open Redirect on login in GitHub repository go-gitea/gitea prior to 1.16.5.
CVE-2022-0955MEDIUM4.8Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/data-hub prior to 1.2.4.
CVE-2022-0551HIGH7.2Improper Input Validation vulnerability in project file upload in Nozomi Networks Guardian and CMC allows an authenticat...
CVE-2022-0550HIGH7.2Improper Input Validation vulnerability in custom report logo upload in Nozomi Networks Guardian, and CMC allows an auth...
CVE-2022-1052MEDIUM5.5Heap Buffer Overflow in iterate_chained_fixups in GitHub repository radareorg/radare2 prior to 5.6.6.
CVE-2022-0145MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository forkcms/forkcms prior to 5.11.1.
CVE-2022-1061HIGH7.5Heap Buffer Overflow in parseDragons in GitHub repository radareorg/radare2 prior to 5.6.8.
CVE-2022-0315HIGH7.5Insecure Temporary File in GitHub repository horovod/horovod prior to 0.24.0.
CVE-2022-27820MEDIUM4OWASP Zed Attack Proxy (ZAP) through w2022-03-21 does not verify the TLS certificate chain of an HTTPS server.
CVE-2022-27811CRITICAL9.8GNOME OCRFeeder before 0.8.4 allows OS command injection via shell metacharacters in a PDF or image filename.
CVE-2022-27083CRITICAL9.8Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /cgi-bin/upl...
CVE-2022-27082CRITICAL9.8Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/SetI...
CVE-2022-27081CRITICAL9.8Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/SetL...
CVE-2022-27080CRITICAL9.8Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/setW...
CVE-2022-27079CRITICAL9.8Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/setP...
CVE-2022-27078CRITICAL9.8Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/setA...
CVE-2022-27077CRITICAL9.8Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /cgi-bin/upl...
CVE-2022-27076CRITICAL9.8Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/delA...
CVE-2022-26536CRITICAL9.8Tenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /goform/setF...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now