7.2
    High

    CVE-2022-23046

    Last Modified: 25 Jan 2022

    PhpIPAM v1.4.4 allows an authenticated admin user to inject SQL sentences in the "subnet" parameter while searching a subnet via app/admin/routing/edit-bgp-mapping-search.php

    Source:Rodolfo Tavares
    Published:19 Jan 2022
    9.8
    Critical

    CVE-2022-22980

    Last Modified: 21 Nov 2024

    A Spring Data MongoDB application is vulnerable to SpEL Injection when using @Query or @Aggregation-annotated query methods with SpEL expressions that contain query parameter placeholders for value binding if the input is not sanitized.

    Published:20 Jun 2022
    9.8
    Critical

    CVE-2022-22978

    Last Modified: 21 Nov 2024

    In spring security versions prior to 5.4.11+, 5.5.7+ , 5.6.4+ and older unsupported versions, RegexRequestMatcher can easily be misconfigured to be bypassed on some servlet containers. Applications using RegexRequestMatcher with `.` in the regular expression are possibly vulnerable to an authorization bypass.

    Published:16 May 2022
    5.3
    Medium

    CVE-2022-22976

    Last Modified: 21 Nov 2024

    Spring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, and earlier unsupported versions contain an integer overflow vulnerability. When using the BCrypt class with the maximum work factor (31), the encoder does not perform any salt rounds, due to an integer overflow error. The default settings are not affected by this CVE.

    Published:17 May 2022
    9.8
    Critical

    CVE-2022-22972

    Last Modified: 21 Nov 2024

    VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an authentication bypass vulnerability affecting local domain users. A malicious actor with network access to the UI may be able to obtain administrative access without the need to authenticate.

    Published:20 May 2022
    6.5
    Medium

    CVE-2022-22971

    Last Modified: 21 Nov 2024

    In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, application with a STOMP over WebSocket endpoint is vulnerable to a denial of service attack by an authenticated user.

    Published:11 May 2022
    5.3
    Medium

    CVE-2022-22970

    Last Modified: 21 Nov 2024

    In spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, applications that handle file uploads are vulnerable to DoS attack if they rely on data binding to set a MultipartFile or javax.servlet.Part to a field in a model object.

    Published:11 May 2022
    5.3
    Medium

    CVE-2022-22968

    Last Modified: 21 Nov 2024

    In Spring Framework versions 5.3.0 - 5.3.18, 5.2.0 - 5.2.20, and older unsupported versions, the patterns for disallowedFields on a DataBinder are case sensitive which means a field is not effectively protected unless it is listed with both upper and lower case for the first character of the field, including upper and lower case for the first character of all nested fields within the property path.

    Published:13 Apr 2022
    7.2
    High

    CVE-2022-22966

    Last Modified: 21 Nov 2024

    An authenticated, high privileged malicious actor with network access to the VMware Cloud Director tenant or provider may be able to exploit a remote code execution vulnerability to gain access to the server.

    Published:14 Apr 2022
    9.8
    Critical

    CVE-2022-22965

    Last Modified: 30 Oct 2025

    A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding. The specific exploit requires the application to run on Tomcat as a WAR deployment. If the application is deployed as a Spring Boot executable jar, i.e. the default, it is not vulnerable to the exploit. However, the nature of the vulnerability is more general, and there may be other ways to exploit it.

    Published:30 Mar 2022
    9.8
    Critical

    CVE-2022-22963

    Last Modified: 11 Jul 2023

    In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user to provide a specially crafted SpEL as a routing-expression that may result in remote code execution and access to local resources.

    Source:GatoGamer1155
    Published:29 Mar 2022
    9.8
    Critical

    CVE-2022-22954

    Last Modified: 30 Oct 2025

    VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template injection. A malicious actor with network access can trigger a server-side template injection that may result in remote code execution.

    Published:11 Apr 2022
    6.5
    Medium

    CVE-2022-22948

    Last Modified: 31 Oct 2025

    The vCenter Server contains an information disclosure vulnerability due to improper permission of files. A malicious actor with non-administrative access to the vCenter Server may exploit this issue to gain access to sensitive information.

    Published:29 Mar 2022
    10
    Critical

    CVE-2022-22947

    Last Modified: 7 Mar 2022

    In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack when the Gateway Actuator endpoint is enabled, exposed and unsecured. A remote attacker could make a maliciously crafted request that could allow arbitrary remote execution on the remote host.

    Source:Carlos E. Vieira
    Published:3 Mar 2022
    5.3
    Medium

    CVE-2022-22932

    Last Modified: 21 Nov 2024

    Apache Karaf obr:* commands and run goal on the karaf-maven-plugin have partial path traversal which allows to break out of expected folder. The risk is low as obr:* commands are not very used and the entry is set by user. This has been fixed in revision: https://gitbox.apache.org/repos/asf?p=karaf.git;h=36a2bc4 https://gitbox.apache.org/repos/asf?p=karaf.git;h=52b70cf Mitigation: Apache Karaf users should upgrade to 4.2.15 or 4.3.6 or later as soon as possible, or use correct path. JIRA Tickets: https://issues.apache.org/jira/browse/KARAF-7326

    Published:9 Jan 2022
    4.3
    Medium

    CVE-2022-22931

    Last Modified: 21 Nov 2024

    Fix of CVE-2021-40525 do not prepend delimiters upon valid directory validations. Affected implementations include: - maildir mailbox store - Sieve file repository This enables a user to access other users data stores (limited to user names being prefixed by the value of the username being used).

    Published:7 Feb 2022
    9.8
    Critical

    CVE-2022-22916

    Last Modified: 21 Nov 2024

    O2OA v6.4.7 was discovered to contain a remote code execution (RCE) vulnerability via /x_program_center/jaxrs/invoke.

    Published:17 Feb 2022
    8.8
    High

    CVE-2022-22909

    Last Modified: 18 Feb 2022

    HotelDruid v3.0.3 was discovered to contain a remote code execution (RCE) vulnerability which is exploited via an attacker inserting a crafted payload into the name field under the Create New Room module.

    Source:0z09e
    Published:2 Mar 2022
    5.4
    Medium

    CVE-2022-22852

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System 1.0 via the description parameter in room_list.

    Published:26 Jan 2022
    5.4
    Medium

    CVE-2022-22851

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System 1.0 via the specialization parameter in doctors.php

    Published:26 Jan 2022
    5.4
    Medium

    CVE-2022-22850

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System 1.0 via the description parameter in room_types.

    Published:26 Jan 2022
    9.8
    Critical

    CVE-2022-22845

    Last Modified: 21 Nov 2024

    QXIP SIPCAPTURE homer-app before 1.4.28 for HOMER 7.x has the same 167f0db2-f83e-4baa-9736-d56064a5b415 JWT secret key across different customers' installations.

    Published:9 Jan 2022
    6.5
    Medium

    CVE-2022-22836

    Last Modified: 10 Jan 2022

    CoreFTP Server before 727 allows directory traversal (for file creation) by an authenticated attacker via ../ in an HTTP PUT request.

    Source:LiamInfosec
    Published:8 Jan 2022
    7.5
    High

    CVE-2022-22833

    Last Modified: 8 Feb 2022

    An issue was discovered in Servisnet Tessa 0.0.2. An attacker can obtain sensitive information via a /js/app.js request.

    Source:AkkuS
    Published:6 Feb 2022
    9.8
    Critical

    CVE-2022-22832

    Last Modified: 8 Feb 2022

    An issue was discovered in Servisnet Tessa 0.0.2. Authorization data is available via an unauthenticated /data-service/users/ request.

    Source:AkkuS
    Published:6 Feb 2022
    9.8
    Critical

    CVE-2022-22831

    Last Modified: 8 Feb 2022

    An issue was discovered in Servisnet Tessa 0.0.2. An attacker can add a new sysadmin user via a manipulation of the Authorization HTTP header.

    Source:AkkuS
    Published:6 Feb 2022
    7.5
    High

    CVE-2022-22828

    Last Modified: 21 Nov 2024

    An insecure direct object reference for the file-download URL in Synametrics SynaMan before 5.0 allows a remote attacker to access unshared files via a modified base64-encoded filename string.

    Published:27 Jan 2022
    9.8
    Critical

    CVE-2022-22822

    Last Modified: 5 May 2025

    addBinding in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.

    Published:8 Jan 2022
    6.1
    Medium

    CVE-2022-22818

    Last Modified: 21 Nov 2024

    The {% debug %} template tag in Django 2.2 before 2.2.27, 3.2 before 3.2.12, and 4.0 before 4.0.2 does not properly encode the current context. This may lead to XSS.

    Published:1 Feb 2022
    9.8
    Critical

    CVE-2022-22814

    Last Modified: 21 Nov 2024

    The System Diagnosis service of MyASUS before 3.1.2.0 allows privilege escalation.

    Published:10 Mar 2022
    6.5
    Medium

    CVE-2022-22733

    Last Modified: 21 Nov 2024

    Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache ShardingSphere ElasticJob-UI allows an attacker who has guest account to do privilege escalation. This issue affects Apache ShardingSphere ElasticJob-UI Apache ShardingSphere ElasticJob-UI 3.x version 3.0.0 and prior versions.

    Published:20 Jan 2022
    9.8
    Critical

    CVE-2022-22720

    Last Modified: 21 Nov 2024

    Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling

    Published:14 Mar 2022
    7.8
    High

    CVE-2022-22718

    Last Modified: 30 Oct 2025

    Windows Print Spooler Elevation of Privilege Vulnerability

    Published:9 Feb 2022
    7.8
    High

    CVE-2022-22706

    Last Modified: 3 Nov 2025

    Arm Mali GPU Kernel Driver allows a non-privileged user to achieve write access to read-only memory pages. This affects Midgard r26p0 through r31p0, Bifrost r0p0 through r35p0, and Valhall r19p0 through r35p0.

    Published:3 Mar 2022
    7.8
    High

    CVE-2022-22639

    Last Modified: 21 Nov 2024

    A logic issue was addressed with improved state management. This issue is fixed in iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3. An application may be able to gain elevated privileges.

    Published:18 Mar 2022
    8.8
    High

    CVE-2022-22629

    Last Modified: 22 May 2025

    A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iTunes 12.12.3 for Windows, iOS 15.4 and iPadOS 15.4, tvOS 15.4. Processing maliciously crafted web content may lead to arbitrary code execution.

    Published:8 Apr 2022
    8.8
    High

    CVE-2022-22620

    Last Modified: 23 Oct 2025

    A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.2.1, iOS 15.3.1 and iPadOS 15.3.1, Safari 15.3 (v. 16612.4.9.1.8 and 15612.4.9.1.8). Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..

    Published:17 Feb 2022
    5.5
    Medium

    CVE-2022-22600

    Last Modified: 21 Nov 2024

    The issue was addressed with improved permissions logic. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3, watchOS 8.5. A malicious application may be able to bypass certain Privacy preferences.

    Published:18 Mar 2022
    5.5
    Medium

    CVE-2022-22582

    Last Modified: 11 Mar 2025

    A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2022-003 Catalina, macOS Big Sur 11.6.5, macOS Monterey 12.3. A local user may be able to write arbitrary files.

    Published:27 Feb 2023
    6
    Medium

    CVE-2022-22555

    Last Modified: 21 Nov 2024

    Dell EMC PowerStore, contains an OS command injection Vulnerability. A locally authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the PowerStore underlying OS, with the privileges of the vulnerable application. Exploitation may lead to an elevation of privilege.

    Published:20 Jul 2022
    9.8
    Critical

    CVE-2022-22536

    Last Modified: 2 Apr 2025

    SAP NetWeaver Application Server ABAP, SAP NetWeaver Application Server Java, ABAP Platform, SAP Content Server 7.53 and SAP Web Dispatcher are vulnerable for request smuggling and request concatenation. An unauthenticated attacker can prepend a victim's request with arbitrary data. This way, the attacker can execute functions impersonating the victim or poison intermediary Web caches. A successful attack could result in complete compromise of Confidentiality, Integrity and Availability of the system.

    Source:C41Tx90
    Published:9 Feb 2022
    5.3
    Medium

    CVE-2022-22296

    Last Modified: 21 Nov 2024

    Sourcecodester Hospital's Patient Records Management System 1.0 is vulnerable to Insecure Permissions via the id parameter in manage_user endpoint. Simply change the value and data of other users can be displayed.

    Published:24 Jan 2022
    9.8
    Critical

    CVE-2022-22274

    Last Modified: 21 Nov 2024

    A Stack-based buffer overflow vulnerability in the SonicOS via HTTP request allows a remote unauthenticated attacker to cause Denial of Service (DoS) or potentially results in code execution in the firewall.

    Published:25 Mar 2022
    8.4
    High

    CVE-2022-22077

    Last Modified: 15 May 2025

    Memory corruption in graphics due to use-after-free in graphics dispatcher logic in Snapdragon Mobile

    Published:12 Oct 2022
    8.4
    High

    CVE-2022-22063

    Last Modified: 18 Apr 2025

    Memory corruption in Core due to improper configuration in boot remapper.

    Published:14 Dec 2022
    8.4
    High

    CVE-2022-22057

    Last Modified: 21 Nov 2024

    Use after free in graphics fence due to a race condition while closing fence file descriptor and destroy graphics timeline simultaneously in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

    Published:14 Jun 2022
    8.1
    High

    CVE-2022-22029

    Last Modified: 8 Jul 2025

    Windows Network File System Remote Code Execution Vulnerability

    Published:12 Jul 2022
    7.8
    High

    CVE-2022-21999

    Last Modified: 30 Oct 2025

    Windows Print Spooler Elevation of Privilege Vulnerability

    Published:9 Feb 2022
    8.8
    High

    CVE-2022-21984

    Last Modified: 2 Jan 2025

    Windows DNS Server Remote Code Execution Vulnerability

    Published:9 Feb 2022
    7.8
    High

    CVE-2022-21974

    Last Modified: 2 Jan 2025

    Roaming Security Rights Management Services Remote Code Execution Vulnerability

    Published:9 Feb 2022