2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2022-3886HIGH8.8Use after free in Speech Recognition in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially e...
CVE-2022-3885HIGH8.8Use after free in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corr...
CVE-2022-39328HIGH8.1Grafana is an open-source platform for monitoring and observability. Versions starting with 9.2.0 and less than 9.2.4 co...
CVE-2022-41214HIGH8.7Due to insufficient input validation, SAP NetWeaver Application Server ABAP and ABAP Platform allows an attacker with hi...
CVE-2022-41211HIGH7.8Due to lack of proper memory management, when a victim opens manipulated file received from untrusted sources in SAP 3D ...
CVE-2022-41203HIGH8.8In some workflow of SAP BusinessObjects BI Platform (Central Management Console and BI LaunchPad), an authenticated atta...
CVE-2022-39386HIGH7.5@fastify/websocket provides WebSocket support for Fastify. Any application using @fastify/websocket could crash if a spe...
CVE-2022-20462HIGH7.8In phNxpNciHal_write_unlocked of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. ...
CVE-2022-20452HIGH7.8In initializeFromParcelLocked of BaseBundle.java, there is a possible method arbitrary code execution due to a confused ...
CVE-2022-20451HIGH7.8In onCallRedirectionComplete of CallsManager.java, there is a possible permissions bypass due to a missing permission ch...
CVE-2022-20450HIGH7.8In restorePermissionState of PermissionManagerServiceImpl.java, there is a possible way to bypass user consent due to a ...
CVE-2022-20445HIGH7.5In process_service_search_rsp of sdp_discovery.cc, there is a possible out of bounds read due to improper input validati...
CVE-2022-20441HIGH7.8In navigateUpTo of Task.java, there is a possible way to launch an unexported intent handler due to a logic error in the...
CVE-2022-32601HIGH7.8In telephony, there is a possible permission bypass due to a parcel format mismatch. This could lead to local escalation...
CVE-2022-26446HIGH7.5In Modem 4G RRC, there is a possible system crash due to improper input validation. This could lead to remote denial of ...
CVE-2022-39377HIGH7.8sysstat is a set of system performance tools for the Linux operating system. On 32 bit systems, in versions 9.1.16 and n...
CVE-2022-44741HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) in David Anderson Testimonial Slid...
CVE-2022-41136HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability leading to Stored Cross-Site Scripting (XSS) in Vladimir Anokhin's Short...
CVE-2022-38137HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Analytify plugin <= 4.2.2 on WordPress.
CVE-2022-44556HIGH7.5Missing parameter type validation in the DRM module. Successful exploitation of this vulnerability may affect availabili...
CVE-2022-44311HIGH8.1html2xhtml v1.3 was discovered to contain an Out-Of-Bounds read in the function static void elm_close(tree_node_t *nodo)...
CVE-2022-43343HIGH7.5N-Prolog v1.91 was discovered to contain a global buffer overflow vulnerability in the function gettoken() at Main.c.
CVE-2022-41757HIGH8.8An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU processing operat...
CVE-2022-43958HIGH7.6A vulnerability has been identified in QMS Automotive (All versions < V12.39), QMS Automotive (All versions < V12.39). U...
CVE-2022-43546HIGH8.8A vulnerability has been identified in POWER METER SICAM Q100 (All versions < V2.50), POWER METER SICAM Q100 (All versio...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now