2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-48715MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: bnx2fc: Make bnx2fc_recv_frame() mp safe Run...
CVE-2022-48714HIGH7.1In the Linux kernel, the following vulnerability has been resolved: bpf: Use VM_MAP instead of VM_ALLOC for ringbuf Af...
CVE-2022-48713MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel/pt: Fix crash with stop filters in s...
CVE-2022-48712HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ext4: fix error handling in ext4_fc_record_modified...
CVE-2022-48711MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tipc: improve size validations for received domain ...
CVE-2022-45832CRITICAL9.8Missing Authorization vulnerability in Hennessey Digital Attorney.This issue affects Attorney: from n/a through 3.
CVE-2022-23829HIGH8.2A potential weakness in AMD SPI protection features may allow a malicious attacker with Ring0 (kernel mode) access to by...
CVE-2022-37020MEDIUM6.8Potential vulnerabilities have been identified in the system BIOS for certain HP PC products, which might allow escalati...
CVE-2022-37019MEDIUM6.8Potential vulnerabilities have been identified in the system BIOS for certain HP PC products which may allow escalation ...
CVE-2022-48683HIGH7.8An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Ventura 13. An app may ...
CVE-2022-48578HIGH7.1An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.5. Processin...
CVE-2022-32933MEDIUM5.3An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in macOS Monterey 12....
CVE-2022-32897HIGH7.8A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.5. Processing...
CVE-2022-45176MEDIUM5.4An issue was discovered in LIVEBOX Collaboration vDesk through v018. Stored Cross-site Scripting (XSS) can occur under t...
CVE-2022-45168MEDIUM6.5An issue was discovered in LIVEBOX Collaboration vDesk through v018. A Bypass of Two-Factor Authentication can occur und...
CVE-2022-4968MEDIUM6.5netplan leaks the private key of wireguard to local users. Versions after 1.0 are not affected.
CVE-2022-28658MEDIUM5.5Apport argument parsing mishandles filename splitting on older kernels resulting in argument spoofing
CVE-2022-28657HIGH7.8Apport does not disable python crash handler before entering chroot
CVE-2022-28656MEDIUM5.5is_closing_session() allows users to consume RAM in the Apport process
CVE-2022-28655HIGH7.1is_closing_session() allows users to create arbitrary tcp dbus connections
CVE-2022-28654MEDIUM5.5is_closing_session() allows users to fill up apport.log
CVE-2022-28652MEDIUM5.5~/.config/apport/settings parsing is vulnerable to "billion laughs" attack
CVE-2022-1242HIGH7.8Apport can be tricked into connecting to arbitrary sockets as the root user
CVE-2022-0555HIGH8.4Subiquity Shows Guided Storage Passphrase in Plaintext with Read-all Permissions
CVE-2022-25038MEDIUM6.1wanEditor v4.7.11 was discovered to contain a cross-site scripting (XSS) vulnerability via the video upload function.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now