2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-50997 | HIGH | 7.5 | — | Aug 11, 2026 | Weaver (Fanwei) E-cology 8.0 and 9.0 contains a SQL injection vulnerability in the HrmCareerApplyPerView.jsp endpoint th... |
| CVE-2022-4990 | HIGH | 7.3 | 0.1% | Jul 3, 2026 | ** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows ... |
| CVE-2022-4989 | HIGH | 8.5 | 0.1% | Jul 3, 2026 | ** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows ... |
| CVE-2022-50971 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Malwarebytes 4.5 contains an unquoted service path vulnerability in the MBAMService executable that allows local attacke... |
| CVE-2022-26758 | HIGH | 7.1 | 0.1% | Jun 10, 2026 | A malicious application may cause unexpected changes in memory shared between processes. A memory corruption issue was a... |
| CVE-2022-49042 | HIGH | 7.8 | 0.1% | Jun 3, 2026 | An inclusion of functionality from untrusted control sphere vulnerability in MinGW DLL component in Synology Hyper Backu... |
| CVE-2022-49036 | HIGH | 7.8 | 0.1% | Jun 3, 2026 | An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Ba... |
| CVE-2022-4992 | HIGH | 8.8 | 0.2% | Jun 2, 2026 | Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors versions VG4.1.1, VG4.0.3, and lower (wi... |
| CVE-2022-4991 | HIGH | 7.4 | 0.3% | Jun 1, 2026 | Tychon includes an OpenSSL component that specifies an OPENSSLDIR variable as a subdirectory that may be controllable by... |
| CVE-2022-34363 | HIGH | 7.5 | 0.2% | May 22, 2026 | Dell Unisphere for PowerMax vApp version prior to 10.0.0.2, contains an authorization bypass vulnerability in the Unisp... |
| CVE-2022-31231 | HIGH | 7.5 | 0.3% | May 22, 2026 | Dell ECS, versions 3.5 and 3.6, contain an Improper Access Control in the Identity and Access Management (IAM) module. A... |
| CVE-2022-4988 | HIGH | 7.3 | 0.3% | May 11, 2026 | Alien::FreeImage versions through 1.001 for Perl contains several vulnerable libraries. Alien::FreeImage contains versi... |
| CVE-2022-50944 | HIGH | 8.8 | 0.3% | May 10, 2026 | Aero CMS 0.0.1 contains a PHP code injection vulnerability that allows authenticated attackers to execute arbitrary PHP ... |
| CVE-2022-26522 | HIGH | 7.8 | 0.2% | May 8, 2026 | The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti Rootkit driver before 22.1 allows local ... |
| CVE-2022-50992 | HIGH | 8.7 | 0.7% | Apr 30, 2026 | Weaver (Fanwei) E-cology 9.5 versions prior to 10.52 contain an arbitrary file read vulnerability in the XmlRpcServlet i... |
| CVE-2022-4987 | HIGH | 7.3 | 0.1% | Apr 3, 2026 | Hirschmann Industrial HiVision version 08.1.03 prior to 08.1.04 and 08.2.00 contains a vulnerability in the execution of... |
| CVE-2022-4986 | HIGH | 8.7 | 0.4% | Apr 2, 2026 | Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device t... |
| CVE-2022-50978 | HIGH | 7.5 | 0.4% | Feb 2, 2026 | An unauthenticated remote attacker could potentially disrupt operations by switching between multiple configuration pres... |
| CVE-2022-50977 | HIGH | 7.5 | 0.4% | Feb 2, 2026 | An unauthenticated remote attacker could potentially disrupt operations by switching between multiple configuration pres... |
| CVE-2022-50976 | HIGH | 7.7 | 0.1% | Feb 2, 2026 | A local attacker could cause a full device reset by resetting the device passwords using an invalid reset file via USB. |
| CVE-2022-50975 | HIGH | 8.8 | 0.2% | Feb 2, 2026 | An unauthenticated remote attacker is able to use an existing session id of a logged in user and gain full access to the... |
| CVE-2022-50950 | HIGH | 7.1 | 0.9% | Feb 1, 2026 | Webile 1.0.1 contains a directory traversal vulnerability that allows remote attackers to manipulate file system paths w... |
| CVE-2022-40620 | HIGH | 7.7 | 0.3% | Jan 28, 2026 | FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS ce... |
| CVE-2022-40619 | HIGH | 7.7 | 2.2% | Jan 28, 2026 | FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, exposes an HTTP server over the L... |
| CVE-2022-50939 | HIGH | 8.6 | 1.1% | Jan 13, 2026 | e107 CMS version 3.2.1 contains a critical file upload vulnerability that allows authenticated administrators to overrid... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now