2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-46407MEDIUM4.8Ericsson Network Manager (ENM), versions prior to 22.2, contains a vulnerability in the REST endpoint “editprofile” wher...
CVE-2022-26899HIGH8.8Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-29147LOW3.1Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2022-29146HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-29144HIGH7.5Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2022-4143MEDIUM5.3An issue has been discovered in GitLab affecting all versions starting from 15.7 before 15.8.5, from 15.9 before 15.9.4,...
CVE-2022-20443HIGH7.8In hasInputInfo of Layer.cpp, there is a possible bypass of user interaction requirements due to a tapjacking/overlay at...
CVE-2022-44276CRITICAL9.8In Responsive Filemanager < 9.12.0, an attacker can bypass upload restrictions resulting in RCE.
CVE-2022-48505MEDIUM5.5This issue was addressed with improved data protection. This issue is fixed in macOS Ventura 13. An app may be able to m...
CVE-2022-34352MEDIUM6.5 IBM QRadar SIEM 7.5.0 is vulnerable to information exposure allowing a delegated Admin tenant user with a specific doma...
CVE-2022-4115MEDIUM5.4The Editorial Calendar WordPress plugin before 3.8.3 does not sanitise and escape its settings, allowing users with role...
CVE-2022-48336CRITICAL9.8Widevine Trusted Application (TA) 5.0.0 through 7.1.1 has a PRDiagParseAndStoreData integer overflow and resultant buffe...
CVE-2022-48335CRITICAL9.8Widevine Trusted Application (TA) 5.0.0 through 7.1.1 has a PRDiagVerifyProvisioning integer overflow and resultant buff...
CVE-2022-48334CRITICAL9.8Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_verify_keys total_len+file_name_len integer overflow and...
CVE-2022-48333CRITICAL9.8Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_verify_keys prefix_len+feature_name_len integer overflow...
CVE-2022-48332CRITICAL9.8Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_save_keys file_name_len integer overflow and resultant b...
CVE-2022-40010MEDIUM5.4Tenda AC6 AC1200 Smart Dual-Band WiFi Router 15.03.06.50_multi was discovered to contain a cross-site scripting (XSS) vu...
CVE-2022-48331CRITICAL9.8Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_save_keys feature_name_len integer overflow and resultan...
CVE-2022-46718MEDIUM5.5A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.7.2 and iPadOS 15.7.2, macOS Ventu...
CVE-2022-46715MEDIUM5.5A logic issue was addressed with improved checks. This issue is fixed in iOS 16.1 and iPadOS 16. An app may be able to b...
CVE-2022-42860MEDIUM5.5This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in macOS Monterey 12....
CVE-2022-42834LOW3.3An access issue was addressed with improved access restrictions. This issue is fixed in macOS Monterey 12.6.3, macOS Ven...
CVE-2022-42807MEDIUM4.3A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13. A user may accident...
CVE-2022-42792MEDIUM5.5This issue was addressed with improved data protection. This issue is fixed in iOS 16.1 and iPadOS 16. An app may be abl...
CVE-2022-22630CRITICAL9.8A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.6.6, macOS...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now