2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-23831 | HIGH | 7.5 | 0.7% | Nov 9, 2022 | Insufficient validation of the IOCTL input buffer in AMD μProf may allow an attacker to send an arbitrary buffer leading... |
| CVE-2022-42966 | HIGH | 7.5 | 0.9% | Nov 9, 2022 | An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the cleo PyPI package, when an attacker ... |
| CVE-2022-42965 | HIGH | 7.5 | 0.8% | Nov 9, 2022 | An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the snowflake-connector-python PyPI pack... |
| CVE-2022-42964 | HIGH | 7.5 | 0.8% | Nov 9, 2022 | An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the pymatgen PyPI package, when an attac... |
| CVE-2022-3450 | HIGH | 8.8 | 0.6% | Nov 9, 2022 | Use after free in Peer Connection in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially expl... |
| CVE-2022-3449 | HIGH | 8.8 | 0.4% | Nov 9, 2022 | Use after free in Safe Browsing in Google Chrome prior to 106.0.5249.119 allowed an attacker who convinced a user to ins... |
| CVE-2022-3448 | HIGH | 8.8 | 0.7% | Nov 9, 2022 | Use after free in Permissions API in Google Chrome prior to 106.0.5249.119 allowed a remote attacker who convinced a use... |
| CVE-2022-3446 | HIGH | 8.8 | 0.7% | Nov 9, 2022 | Heap buffer overflow in WebSQL in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit... |
| CVE-2022-3445 | HIGH | 8.8 | 0.6% | Nov 9, 2022 | Use after free in Skia in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap co... |
| CVE-2022-32588 | HIGH | 7.8 | 0.6% | Nov 9, 2022 | An out-of-bounds write vulnerability exists in the PICT parsing pctwread_14841 functionality of Accusoft ImageGear 20.0.... |
| CVE-2022-30543 | HIGH | 8.8 | 0.9% | Nov 9, 2022 | A leftover debug code vulnerability exists in the console infct functionality of InHand Networks InRouter302 V3.5.45. A ... |
| CVE-2022-29888 | HIGH | 8.1 | 1.5% | Nov 9, 2022 | A leftover debug code vulnerability exists in the httpd port 4444 upload.cgi functionality of InHand Networks InRouter30... |
| CVE-2022-28689 | HIGH | 8.8 | 0.9% | Nov 9, 2022 | A leftover debug code vulnerability exists in the console support functionality of InHand Networks InRouter302 V3.5.45. ... |
| CVE-2022-43278 | HIGH | 7.2 | 0.7% | Nov 9, 2022 | Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the categoriesId parameter at... |
| CVE-2022-43277 | HIGH | 7.2 | 0.9% | Nov 9, 2022 | Canteen Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via ip/youthappam/php_ac... |
| CVE-2022-43292 | HIGH | 7.2 | 0.7% | Nov 9, 2022 | Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /youthapp... |
| CVE-2022-43291 | HIGH | 7.2 | 0.7% | Nov 9, 2022 | Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /youthapp... |
| CVE-2022-43290 | HIGH | 7.2 | 0.7% | Nov 9, 2022 | Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /youthapp... |
| CVE-2022-31253 | HIGH | 7.8 | 0.3% | Nov 9, 2022 | A Untrusted Search Path vulnerability in openldap2 of openSUSE Factory allows local attackers with control of the ldap u... |
| CVE-2022-45061 | HIGH | 7.5 | 2.5% | Nov 9, 2022 | An issue was discovered in Python before 3.11.1. An unnecessary quadratic algorithm exists in one path when processing s... |
| CVE-2022-45060 | HIGH | 7.5 | 0.9% | Nov 9, 2022 | An HTTP Request Forgery issue was discovered in Varnish Cache 5.x and 6.x before 6.0.11, 7.x before 7.1.2, and 7.2.x bef... |
| CVE-2022-45059 | HIGH | 7.5 | 1.2% | Nov 9, 2022 | An issue was discovered in Varnish Cache 7.x before 7.1.2 and 7.2.x before 7.2.1. A request smuggling attack can be perf... |
| CVE-2022-3889 | HIGH | 8.8 | 0.6% | Nov 9, 2022 | Type confusion in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corr... |
| CVE-2022-3888 | HIGH | 8.8 | 0.6% | Nov 9, 2022 | Use after free in WebCodecs in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit he... |
| CVE-2022-3887 | HIGH | 8.8 | 0.6% | Nov 9, 2022 | Use after free in Web Workers in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit ... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now