2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48715 | MEDIUM | 5.5 | 0.2% | Jun 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: scsi: bnx2fc: Make bnx2fc_recv_frame() mp safe Run... |
| CVE-2022-48714 | HIGH | 7.1 | 0.2% | Jun 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: bpf: Use VM_MAP instead of VM_ALLOC for ringbuf Af... |
| CVE-2022-48713 | MEDIUM | 5.5 | 0.2% | Jun 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel/pt: Fix crash with stop filters in s... |
| CVE-2022-48712 | HIGH | 7.8 | 0.2% | Jun 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix error handling in ext4_fc_record_modified... |
| CVE-2022-48711 | MEDIUM | 5.5 | 0.2% | Jun 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: tipc: improve size validations for received domain ... |
| CVE-2022-45832 | CRITICAL | 9.8 | 0.4% | Jun 19, 2024 | Missing Authorization vulnerability in Hennessey Digital Attorney.This issue affects Attorney: from n/a through 3. |
| CVE-2022-23829 | HIGH | 8.2 | 0.2% | Jun 18, 2024 | A potential weakness in AMD SPI protection features may allow a malicious attacker with Ring0 (kernel mode) access to by... |
| CVE-2022-37020 | MEDIUM | 6.8 | 0.2% | Jun 10, 2024 | Potential vulnerabilities have been identified in the system BIOS for certain HP PC products, which might allow escalati... |
| CVE-2022-37019 | MEDIUM | 6.8 | 0.2% | Jun 10, 2024 | Potential vulnerabilities have been identified in the system BIOS for certain HP PC products which may allow escalation ... |
| CVE-2022-48683 | HIGH | 7.8 | 0.2% | Jun 10, 2024 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Ventura 13. An app may ... |
| CVE-2022-48578 | HIGH | 7.1 | 0.2% | Jun 10, 2024 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.5. Processin... |
| CVE-2022-32933 | MEDIUM | 5.3 | 0.4% | Jun 10, 2024 | An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in macOS Monterey 12.... |
| CVE-2022-32897 | HIGH | 7.8 | 0.4% | Jun 10, 2024 | A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.5. Processing... |
| CVE-2022-45176 | MEDIUM | 5.4 | 0.3% | Jun 10, 2024 | An issue was discovered in LIVEBOX Collaboration vDesk through v018. Stored Cross-site Scripting (XSS) can occur under t... |
| CVE-2022-45168 | MEDIUM | 6.5 | 0.5% | Jun 10, 2024 | An issue was discovered in LIVEBOX Collaboration vDesk through v018. A Bypass of Two-Factor Authentication can occur und... |
| CVE-2022-4968 | MEDIUM | 6.5 | 0.3% | Jun 7, 2024 | netplan leaks the private key of wireguard to local users. Versions after 1.0 are not affected. |
| CVE-2022-28658 | MEDIUM | 5.5 | 0.2% | Jun 4, 2024 | Apport argument parsing mishandles filename splitting on older kernels resulting in argument spoofing |
| CVE-2022-28657 | HIGH | 7.8 | 0.2% | Jun 4, 2024 | Apport does not disable python crash handler before entering chroot |
| CVE-2022-28656 | MEDIUM | 5.5 | 0.2% | Jun 4, 2024 | is_closing_session() allows users to consume RAM in the Apport process |
| CVE-2022-28655 | HIGH | 7.1 | 0.2% | Jun 4, 2024 | is_closing_session() allows users to create arbitrary tcp dbus connections |
| CVE-2022-28654 | MEDIUM | 5.5 | 0.3% | Jun 4, 2024 | is_closing_session() allows users to fill up apport.log |
| CVE-2022-28652 | MEDIUM | 5.5 | 0.2% | Jun 4, 2024 | ~/.config/apport/settings parsing is vulnerable to "billion laughs" attack |
| CVE-2022-1242 | HIGH | 7.8 | 0.2% | Jun 3, 2024 | Apport can be tricked into connecting to arbitrary sockets as the root user |
| CVE-2022-0555 | HIGH | 8.4 | 0.3% | Jun 3, 2024 | Subiquity Shows Guided Storage Passphrase in Plaintext with Read-all Permissions |
| CVE-2022-25038 | MEDIUM | 6.1 | 0.3% | May 31, 2024 | wanEditor v4.7.11 was discovered to contain a cross-site scripting (XSS) vulnerability via the video upload function. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now