2022 CVE Vulnerabilities

27,554 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-0109MEDIUM6.5Inappropriate implementation in Autofill in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to obtain pote...
CVE-2022-0108MEDIUM6.5Inappropriate implementation in Navigation in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cros...
CVE-2022-0107HIGH8.8Use after free in File Manager API in Google Chrome on Chrome OS prior to 97.0.4692.71 allowed an attacker who convinced...
CVE-2022-0106HIGH8.8Use after free in Autofill in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who convinced a user to perf...
CVE-2022-0105HIGH8.8Use after free in PDF Accessibility in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially expl...
CVE-2022-0104HIGH8.8Heap buffer overflow in ANGLE in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit he...
CVE-2022-0103HIGH8.8Use after free in SwiftShader in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit he...
CVE-2022-0102HIGH8.8Type confusion in V8 in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap corrup...
CVE-2022-0101HIGH8.8Heap buffer overflow in Bookmarks in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who convinced a user ...
CVE-2022-0100HIGH8.8Heap buffer overflow in Media streams API in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentiall...
CVE-2022-0099HIGH8.8Use after free in Sign-in in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who convinced a user to perfo...
CVE-2022-0098HIGH8.8Use after free in Screen Capture in Google Chrome on Chrome OS prior to 97.0.4692.71 allowed an attacker who convinced a...
CVE-2022-0097CRITICAL9.6Inappropriate implementation in DevTools in Google Chrome prior to 97.0.4692.71 allowed an attacker who convinced a user...
CVE-2022-0096HIGH8.8Use after free in Storage in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap c...
CVE-2022-24968MEDIUM5.9In Mellium mellium.im/xmpp through 0.21.0, an attacker capable of spoofing DNS TXT records can redirect a WebSocket conn...
CVE-2022-23634MEDIUM5.9Puma is a Ruby/Rack web server built for parallelism. Prior to `puma` version `5.6.2`, `puma` may not always call `close...
CVE-2022-23633MEDIUM5.9Action Pack is a framework for handling and responding to web requests. Under certain circumstances response bodies will...
CVE-2022-24975HIGH7.5The --mirror documentation for Git through 2.35.1 does not mention the availability of deleted content, aka the "GitBlee...
CVE-2022-22766MEDIUM5.5Hardcoded credentials are used in specific BD Pyxis products. If exploited, threat actors may be able to gain access to ...
CVE-2022-24927CRITICAL9.8Improper privilege management vulnerability in Samsung Video Player prior to version 7.3.15.30 allows attackers to execu...
CVE-2022-24926MEDIUM5.4Improper input validation vulnerability in SmartTagPlugin prior to version 1.2.15-6 allows privileged attackers to trigg...
CVE-2022-24925MEDIUM6.5Improper input validation vulnerability in SettingsProvider prior to Android S(12) allows privileged attackers to trigge...
CVE-2022-24924MEDIUM5.3An improper access control in LiveWallpaperService prior to versions 3.0.9.0 allows to create a specific named system di...
CVE-2022-24923LOW3.3Improper access control vulnerability in Samsung SearchWidget prior to versions 2.3.00.6 in China models allows untruste...
CVE-2022-24003MEDIUM5.3Exposure of Sensitive Information vulnerability in Bixby Vision prior to version 3.7.50.6 allows attackers to access int...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now