2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-48626 | HIGH | 7.8 | 0.3% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: moxart: fix potential use-after-free on remove path... |
| CVE-2022-34357 | MEDIUM | 6.5 | 1.2% | Feb 26, 2024 | IBM Cognos Analytics Mobile Server 11.1.7, 11.2.4, and 12.0.0 is vulnerable to Denial of Service due to due to weak or a... |
| CVE-2022-43842 | CRITICAL | 9.1 | 0.5% | Feb 23, 2024 | IBM Aspera Console 3.4.0 through 3.4.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQ... |
| CVE-2022-25377 | HIGH | 7.5 | 0.8% | Feb 22, 2024 | The ACME-challenge endpoint in Appwrite 0.5.0 through 0.12.x before 0.12.2 allows remote attackers to read arbitrary loc... |
| CVE-2022-45179 | MEDIUM | 5.4 | 0.4% | Feb 21, 2024 | An issue was discovered in LIVEBOX Collaboration vDesk through v031. A basic XSS vulnerability exists under the /api/v1/... |
| CVE-2022-45177 | HIGH | 7.5 | 0.5% | Feb 21, 2024 | An issue was discovered in LIVEBOX Collaboration vDesk through v031. An Observable Response Discrepancy can occur under ... |
| CVE-2022-45169 | MEDIUM | 5.4 | 0.3% | Feb 21, 2024 | An issue was discovered in LIVEBOX Collaboration vDesk through v031. A URL Redirection to an Untrusted Site (Open Redire... |
| CVE-2022-45320 | MEDIUM | 6.3 | 0.5% | Feb 20, 2024 | Liferay Portal before 7.4.3.16 and Liferay DXP before 7.2 fix pack 19, 7.3 before update 6, and 7.4 before update 16 all... |
| CVE-2022-48625 | HIGH | 7.5 | 0.4% | Feb 20, 2024 | Yealink Config Encrypt Tool add RSA before 1.2 has a built-in RSA key pair, and thus there is a risk of decryption by an... |
| CVE-2022-48624 | HIGH | 7.8 | 1.1% | Feb 19, 2024 | close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE. |
| CVE-2022-48621 | HIGH | 7.5 | 0.2% | Feb 18, 2024 | Vulnerability of missing authentication for critical functions in the Wi-Fi module.Successful exploitation of this vulne... |
| CVE-2022-42443 | CRITICAL | 9.8 | 0.5% | Feb 17, 2024 | An undisclosed issue in Trusteer iOS SDK for mobile versions prior to 5.7 and Trusteer Android SDK for mobile versions p... |
| CVE-2022-41738 | HIGH | 7.5 | 0.4% | Feb 17, 2024 | IBM Storage Scale Container Native Storage Access 5.1.2.1 -through 5.1.7.0 could allow an attacker to initiate connectio... |
| CVE-2022-41737 | MEDIUM | 6.5 | 0.1% | Feb 17, 2024 | IBM Storage Scale Container Native Storage Access 5.1.2.1 through 5.1.7.0 could allow a local attacker to initiate conne... |
| CVE-2022-23093 | MEDIUM | 6.5 | 2.4% | Feb 15, 2024 | ping reads raw IP packets from the network to process responses in the pr_pack() function. As part of processing a resp... |
| CVE-2022-23092 | HIGH | 8.8 | 0.7% | Feb 15, 2024 | The implementation of lib9p's handling of RWALK messages was missing a bounds check needed when unpacking the message co... |
| CVE-2022-23091 | MEDIUM | 4 | 0.2% | Feb 15, 2024 | A particular case of memory sharing is mishandled in the virtual memory system. This is very similar to SA-21:08.vm, bu... |
| CVE-2022-23090 | HIGH | 7.7 | 0.2% | Feb 15, 2024 | The aio_aqueue function, used by the lio_listio system call, fails to release a reference to a credential in an error ca... |
| CVE-2022-23089 | MEDIUM | 4.7 | 0.2% | Feb 15, 2024 | When dumping core and saving process information, proc_getargv() might return an sbuf which have a sbuf_len() of 0 or -1... |
| CVE-2022-23088 | CRITICAL | 9.8 | 3.6% | Feb 15, 2024 | The 802.11 beacon handling routine failed to validate the length of an IEEE 802.11s Mesh ID before copying it to a heap-... |
| CVE-2022-23087 | HIGH | 8.8 | 0.2% | Feb 15, 2024 | The e1000 network adapters permit a variety of modifications to an Ethernet packet when it is being transmitted. These ... |
| CVE-2022-23086 | HIGH | 7.8 | 0.4% | Feb 15, 2024 | Handlers for *_CFG_PAGE read / write ioctls in the mpr, mps, and mpt drivers allocated a buffer of a caller-specified si... |
| CVE-2022-23085 | HIGH | 8.2 | 0.5% | Feb 15, 2024 | A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bo... |
| CVE-2022-23084 | HIGH | 7.5 | 0.2% | Feb 15, 2024 | The total size of the user-provided nmreq to nmreq_copyin() was first computed and then trusted during the copyin. This... |
| CVE-2022-48220 | MEDIUM | 6.4 | 0.3% | Feb 14, 2024 | Potential vulnerabilities have been identified in certain HP Desktop PC products using the HP TamperLock feature, which ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now