2022 CVE Vulnerabilities

27,525 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-50699In the Linux kernel, the following vulnerability has been resolved: selinux: enable use of both GFP_KERNEL and GFP_ATOM...
CVE-2022-50698In the Linux kernel, the following vulnerability has been resolved: ASoC: da7219: Fix an error handling path in da7219_...
CVE-2022-50697HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mrp: introduce active flags to prevent UAF when app...
CVE-2022-50690HIGH8.5Wondershare MirrorGo 2.0.11.346 contains a local privilege escalation vulnerability due to incorrect file permissions on...
CVE-2022-50689MEDIUM5.5Cobian Reflector 0.9.93 RC1 contains a denial of service vulnerability that allows attackers to crash the application by...
CVE-2022-50688HIGH8.5Cobian Backup Gravity 11.2.0.582 contains an unquoted service path vulnerability that allows local users to potentially ...
CVE-2022-50687MEDIUM6.9Cobian Backup 11 Gravity 11.2.0.582 contains a denial of service vulnerability in the FTP password input field that allo...
CVE-2022-50686HIGH7.5An information disclosure vulnerability in Kentico Xperience allows attackers to view sensitive stack trace details via ...
CVE-2022-50685MEDIUM5.4A stored cross-site scripting vulnerability in Kentico Xperience allows authenticated users to inject malicious scripts ...
CVE-2022-50684MEDIUM6.1An HTML injection vulnerability in Kentico Xperience allows attackers to inject malicious HTML values into form submissi...
CVE-2022-50683MEDIUM5.4A stored cross-site scripting vulnerability in Kentico Xperience allows attackers to inject malicious scripts via form r...
CVE-2022-50682MEDIUM6.9A CRLF injection vulnerability in Kentico Xperience allows attackers to manipulate URL query string redirects via improp...
CVE-2022-50681MEDIUM6.1A reflected cross-site scripting vulnerability in Kentico Xperience allows attackers to inject malicious scripts via adm...
CVE-2022-50680MEDIUM4.8A stored cross-site scripting vulnerability in Kentico Xperience allows administration users to inject malicious scripts...
CVE-2022-23851CRITICAL9.8Netaxis API Orchestrator (APIO) before 0.19.3 allows server side template injection (SSTI).
CVE-2022-47425HIGH8.8Missing Authorization vulnerability in Repute Infosystems ARMember allows Exploiting Incorrectly Configured Access Contr...
CVE-2022-46845MEDIUM5.3Missing Authorization vulnerability in Essential Plugin Slider a SlidersPack allows Exploiting Incorrectly Configured Ac...
CVE-2022-50679In the Linux kernel, the following vulnerability has been resolved: i40e: Fix DMA mappings leak During reallocation of...
CVE-2022-50678In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: fix invalid address access when ena...
CVE-2022-50677HIGH7In the Linux kernel, the following vulnerability has been resolved: ipmi: fix use after free in _ipmi_destroy_user() T...
CVE-2022-50676HIGH7.5In the Linux kernel, the following vulnerability has been resolved: net: rds: don't hold sock lock when cancelling work...
CVE-2022-50675In the Linux kernel, the following vulnerability has been resolved: arm64: mte: Avoid setting PG_mte_tagged if no tags ...
CVE-2022-50674In the Linux kernel, the following vulnerability has been resolved: riscv: vdso: fix NULL deference in vdso_join_timens...
CVE-2022-50673HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ext4: fix use-after-free in ext4_orphan_cleanup I ...
CVE-2022-50672In the Linux kernel, the following vulnerability has been resolved: mailbox: zynq-ipi: fix error handling while device_...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now