2022 CVE Vulnerabilities
27,526 CVEs published in 2022.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2022-20513 | MEDIUM | 5.5 | 0.2% | Dec 16, 2022 | In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to a missing bounds check. This could lea... |
| CVE-2022-20511 | MEDIUM | 5.5 | 0.2% | Dec 16, 2022 | In getNearbyAppStreamingPolicy of DevicePolicyManagerService.java, there is a missing permission check. This could lead ... |
| CVE-2022-20510 | MEDIUM | 5.5 | 0.1% | Dec 16, 2022 | In getNearbyNotificationStreamingPolicy of DevicePolicyManagerService.java, there is a possible way to learn about the n... |
| CVE-2022-20509 | MEDIUM | 6.7 | 0.2% | Dec 16, 2022 | In mapGrantorDescr of MessageQueueBase.h, there is a possible out of bounds write due to a missing bounds check. This co... |
| CVE-2022-20505 | MEDIUM | 6.7 | 0.1% | Dec 16, 2022 | In openFile of CallLogProvider.java, there is a possible permission bypass due to a path traversal error. This could lea... |
| CVE-2022-20504 | MEDIUM | 6.7 | 0.2% | Dec 16, 2022 | In multiple locations of DreamManagerService.java, there is a missing permission check. This could lead to local escalat... |
| CVE-2022-20199 | MEDIUM | 5.5 | 0.1% | Dec 16, 2022 | In multiple locations of NfcService.java, there is a possible disclosure of NFC tags due to a confused deputy. This coul... |
| CVE-2022-4555 | MEDIUM | 5.3 | 0.7% | Dec 16, 2022 | The WP Shamsi plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the deacti... |
| CVE-2022-36223 | MEDIUM | 6.1 | 0.4% | Dec 16, 2022 | In Emby Server 4.6.7.0, the playlist name field is vulnerable to XSS stored where it is possible to steal the administra... |
| CVE-2022-46870 | MEDIUM | 5.4 | 1.1% | Dec 16, 2022 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache Zeppelin... |
| CVE-2022-41961 | MEDIUM | 4.3 | 0.3% | Dec 16, 2022 | BigBlueButton is an open source web conferencing system. Versions prior to 2.4-rc-6 are subject to Ineffective user bans... |
| CVE-2022-41960 | MEDIUM | 4.3 | 0.4% | Dec 16, 2022 | BigBlueButton is an open source web conferencing system. Versions prior to 2.4.3, are subject to Insufficient Verificati... |
| CVE-2022-46392 | MEDIUM | 5.3 | 0.8% | Dec 15, 2022 | An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0. An adversary with access to precise enough infor... |
| CVE-2022-4527 | MEDIUM | 6.1 | 0.5% | Dec 15, 2022 | A vulnerability was found in collective.task up to 3.0.8. It has been classified as problematic. This affects the functi... |
| CVE-2022-4526 | MEDIUM | 6.1 | 0.5% | Dec 15, 2022 | A vulnerability was found in django-photologue up to 3.15.1 and classified as problematic. Affected by this issue is som... |
| CVE-2022-4525 | MEDIUM | 6.1 | 0.5% | Dec 15, 2022 | A vulnerability has been found in National Sleep Research Resource sleepdata.org up to 58.x and classified as problemati... |
| CVE-2022-4524 | MEDIUM | 6.1 | 0.6% | Dec 15, 2022 | A vulnerability, which was classified as problematic, was found in Roots soil Plugin up to 4.0.x. Affected is the functi... |
| CVE-2022-4523 | MEDIUM | 6.1 | 0.5% | Dec 15, 2022 | A vulnerability, which was classified as problematic, has been found in vexim2. This issue affects some unknown processi... |
| CVE-2022-4522 | MEDIUM | 6.1 | 0.5% | Dec 15, 2022 | A vulnerability classified as problematic was found in CalendarXP up to 10.0.1. This vulnerability affects unknown code.... |
| CVE-2022-4521 | MEDIUM | 6.1 | 0.6% | Dec 15, 2022 | A vulnerability classified as problematic has been found in WSO2 carbon-registry up to 4.8.6. This affects an unknown pa... |
| CVE-2022-4520 | MEDIUM | 6.1 | 0.7% | Dec 15, 2022 | A vulnerability was found in WSO2 carbon-registry up to 4.8.11. It has been rated as problematic. Affected by this issue... |
| CVE-2022-4519 | MEDIUM | 4.8 | 0.6% | Dec 15, 2022 | The WP User plugin for WordPress is vulnerable to Stored Cross-Site Scripting via its settings parameters in versions up... |
| CVE-2022-4514 | MEDIUM | 6.1 | 0.6% | Dec 15, 2022 | A vulnerability, which was classified as problematic, was found in Opencaching Deutschland oc-server3. Affected is an un... |
| CVE-2022-4513 | MEDIUM | 6.1 | 0.6% | Dec 15, 2022 | A vulnerability, which was classified as problematic, has been found in European Environment Agency eionet.contreg. This... |
| CVE-2022-46702 | MEDIUM | 5.5 | 0.2% | Dec 15, 2022 | The issue was addressed with improved memory handling. This issue is fixed in iOS 16.2 and iPadOS 16.2. An app may be ab... |
Check if your code is affected by 2022 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now