2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-33239 | HIGH | 7.5 | 0.4% | Nov 15, 2022 | Transient DOS due to loop with unreachable exit condition in WLAN firmware while parsing IPV6 extension header. in Snapd... |
| CVE-2022-33237 | HIGH | 7.5 | 0.4% | Nov 15, 2022 | Transient DOS due to buffer over-read in WLAN firmware while processing PPE threshold. in Snapdragon Auto, Snapdragon Co... |
| CVE-2022-33236 | HIGH | 7.5 | 0.4% | Nov 15, 2022 | Transient DOS due to buffer over-read in WLAN firmware while parsing cipher suite info attributes. in Snapdragon Compute... |
| CVE-2022-25743 | HIGH | 7.8 | 0.1% | Nov 15, 2022 | Memory corruption in graphics due to use-after-free while importing graphics buffer in Snapdragon Auto, Snapdragon Compu... |
| CVE-2022-25742 | HIGH | 7.5 | 0.4% | Nov 15, 2022 | Denial of service in modem due to infinite loop while parsing IGMPv2 packet from server in Snapdragon Consumer IOT, Snap... |
| CVE-2022-25741 | HIGH | 7.5 | 0.4% | Nov 15, 2022 | Denial of service in WLAN due to potential null pointer dereference while accessing the memory location in Snapdragon Au... |
| CVE-2022-25724 | HIGH | 7.8 | 0.1% | Nov 15, 2022 | Memory corruption in graphics due to buffer overflow while validating the user address in Snapdragon Auto, Snapdragon Co... |
| CVE-2022-25710 | HIGH | 7.5 | 0.4% | Nov 15, 2022 | Denial of service due to null pointer dereference when GATT is disconnected in Snapdragon Auto, Snapdragon Consumer IOT,... |
| CVE-2022-25671 | HIGH | 7.5 | 0.4% | Nov 15, 2022 | Denial of service in MODEM due to reachable assertion in Snapdragon Mobile |
| CVE-2022-25667 | HIGH | 7.5 | 0.3% | Nov 15, 2022 | Information disclosure in kernel due to improper handling of ICMP requests in Snapdragon Wired Infrastructure and Networ... |
| CVE-2022-42060 | HIGH | 7.5 | 1.0% | Nov 15, 2022 | Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a stack overflow via the setWanPpoe functio... |
| CVE-2022-42053 | HIGH | 7.8 | 1.0% | Nov 15, 2022 | Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a command injection vulnerability via the P... |
| CVE-2022-41396 | HIGH | 7.8 | 1.4% | Nov 15, 2022 | Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain multiple command injection vulnerabilities ... |
| CVE-2022-41395 | HIGH | 7.8 | 1.4% | Nov 15, 2022 | Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a command injection vulnerability via the d... |
| CVE-2022-40847 | HIGH | 7.8 | 1.0% | Nov 15, 2022 | In Tenda AC1200 Router model W15Ev2 V15.11.0.10(1576), there exists a command injection vulnerability in the function fo... |
| CVE-2022-42978 | HIGH | 7.5 | 0.8% | Nov 15, 2022 | In the Netic User Export add-on before 1.3.5 for Atlassian Confluence, authorization is mishandled. An unauthenticated a... |
| CVE-2022-42977 | HIGH | 7.5 | 1.0% | Nov 15, 2022 | The Netic User Export add-on before 1.3.5 for Atlassian Confluence has the functionality to generate a list of users in ... |
| CVE-2022-42125 | HIGH | 7.5 | 0.9% | Nov 15, 2022 | Zip slip vulnerability in FileUtil.unzip in Liferay Portal 7.4.3.5 through 7.4.3.35 and Liferay DXP 7.4 update 1 through... |
| CVE-2022-42124 | HIGH | 7.5 | 1.2% | Nov 15, 2022 | ReDoS vulnerability in LayoutPageTemplateEntryUpgradeProcess in Liferay Portal 7.3.2 through 7.4.3.4 and Liferay DXP 7.2... |
| CVE-2022-42123 | HIGH | 7.5 | 0.9% | Nov 15, 2022 | A Zip slip vulnerability in the Elasticsearch Connector in Liferay Portal 7.3.3 through 7.4.3.18, and Liferay DXP 7.3 be... |
| CVE-2022-42121 | HIGH | 8.8 | 1.1% | Nov 15, 2022 | A SQL injection vulnerability in the Layout module in Liferay Portal 7.1.3 through 7.4.3.4, and Liferay DXP 7.1 before f... |
| CVE-2022-40405 | HIGH | 7.5 | 0.6% | Nov 15, 2022 | WoWonder Social Network Platform v4.1.2 was discovered to contain a SQL injection vulnerability via the offset parameter... |
| CVE-2022-35613 | HIGH | 8.8 | 0.3% | Nov 15, 2022 | Konker v2.3.9 was to discovered to contain a Cross-Site Request Forgery (CSRF). |
| CVE-2022-33985 | HIGH | 7 | 0.1% | Nov 15, 2022 | DMA transactions which are targeted at input buffers used for the NvmExpressDxe software SMI handler could cause SMRAM c... |
| CVE-2022-33984 | HIGH | 7 | 0.2% | Nov 15, 2022 | DMA transactions which are targeted at input buffers used for the SdMmcDevice software SMI handler could cause SMRAM cor... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now