2022 CVE Vulnerabilities
27,525 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-40519 | MEDIUM | 5.5 | 0.1% | Jan 9, 2023 | Information disclosure due to buffer overread in Core |
| CVE-2022-40518 | MEDIUM | 5.5 | 0.1% | Jan 9, 2023 | Information disclosure due to buffer overread in Core |
| CVE-2022-33286 | MEDIUM | 6.5 | 0.4% | Jan 9, 2023 | Transient DOS due to buffer over-read in WLAN while processing 802.11 management frames. |
| CVE-2022-33285 | MEDIUM | 6.5 | 0.4% | Jan 9, 2023 | Transient DOS due to buffer over-read in WLAN while parsing WLAN CSA action frames. |
| CVE-2022-33284 | MEDIUM | 6.5 | 0.4% | Jan 9, 2023 | Information disclosure due to buffer over-read in WLAN while parsing BTM action frame. |
| CVE-2022-33283 | MEDIUM | 6.5 | 0.4% | Jan 9, 2023 | Information disclosure due to buffer over-read in WLAN while WLAN frame parsing due to missing frame length check. |
| CVE-2022-33255 | MEDIUM | 6.5 | 0.4% | Jan 9, 2023 | Information disclosure due to buffer over-read in Bluetooth HOST while processing GetFolderItems and GetItemAttribute Cm... |
| CVE-2022-33253 | MEDIUM | 5.5 | 0.2% | Jan 9, 2023 | Transient DOS due to buffer over-read in WLAN while parsing corrupted NAN frames. |
| CVE-2022-33252 | MEDIUM | 5.5 | 0.2% | Jan 9, 2023 | Information disclosure due to buffer over-read in WLAN while handling IBSS beacons frame. |
| CVE-2022-25725 | MEDIUM | 5.5 | 0.1% | Jan 9, 2023 | Denial of service in MODEM due to improper pointer handling |
| CVE-2022-25722 | MEDIUM | 5.5 | 0.1% | Jan 9, 2023 | Information exposure in DSP services due to improper handling of freeing memory |
| CVE-2022-22470 | MEDIUM | 5.5 | 0.1% | Jan 9, 2023 | IBM Security Verify Governance 10.0 stores user credentials in plain clear text which can be read by a local user. IBM ... |
| CVE-2022-22079 | MEDIUM | 4.6 | 0.2% | Jan 9, 2023 | Denial of service while processing fastboot flash command on mmc due to buffer over read |
| CVE-2022-4881 | MEDIUM | 5.4 | 0.6% | Jan 8, 2023 | A vulnerability was found in CapsAdmin PAC3. It has been rated as problematic. Affected by this issue is some unknown fu... |
| CVE-2022-1102 | MEDIUM | 6.1 | 0.7% | Jan 7, 2023 | A vulnerability classified as problematic has been found in SourceCodester Royale Event Management System 1.0. Affected ... |
| CVE-2022-45913 | MEDIUM | 6.1 | 0.4% | Jan 6, 2023 | An issue was discovered in Zimbra Collaboration (ZCS) 9.0. XSS can occur via one of attributes in webmail URLs to execut... |
| CVE-2022-45911 | MEDIUM | 6.1 | 0.4% | Jan 6, 2023 | An issue was discovered in Zimbra Collaboration (ZCS) 9.0. XSS can occur on the Classic UI login page by injecting arbit... |
| CVE-2022-47974 | MEDIUM | 6.5 | 0.2% | Jan 6, 2023 | The Bluetooth AVRCP module has a vulnerability that can lead to DoS attacks.Successful exploitation of this vulnerabilit... |
| CVE-2022-39072 | MEDIUM | 5.4 | 0.3% | Jan 6, 2023 | There is a SQL injection vulnerability in Some ZTE Mobile Internet products. Due to insufficient validation of the input... |
| CVE-2022-4878 | MEDIUM | 5.3 | 0.7% | Jan 6, 2023 | A vulnerability classified as critical has been found in JATOS. Affected is the function ZipUtil of the file modules/com... |
| CVE-2022-45935 | MEDIUM | 5.5 | 0.4% | Jan 6, 2023 | Usage of temporary files with insecure permissions by the Apache James server allows an attacker with local access to ac... |
| CVE-2022-45787 | MEDIUM | 5.5 | 0.3% | Jan 6, 2023 | Unproper laxist permissions on the temporary files used by MIME4J TempFileStorageProvider may lead to information disclo... |
| CVE-2022-44870 | MEDIUM | 6.1 | 0.5% | Jan 6, 2023 | A reflected cross-site scripting (XSS) vulnerability in maccms10 v2022.1000.3032 allows attackers to execute arbitrary w... |
| CVE-2022-3928 | MEDIUM | 5.5 | 0.2% | Jan 5, 2023 | Hardcoded credential is found in affected products' message queue. An attacker that manages to exploit this vulnerabili... |
| CVE-2022-47543 | MEDIUM | 5.3 | 0.4% | Jan 5, 2023 | An issue was discovered in Siren Investigate before 12.1.7. There is an ACL bypass on global objects. |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now