2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2022-44575MEDIUM6.1A vulnerability has been identified in PLM Help Server V4.2 (All versions). A reflected cross-site scripting (XSS) vulne...
CVE-2022-31698MEDIUM5.3The vCenter Server contains a denial-of-service vulnerability in the content library service. A malicious actor with net...
CVE-2022-31697MEDIUM5.5The vCenter Server contains an information disclosure vulnerability due to the logging of credentials in plaintext. A ma...
CVE-2022-27581MEDIUM6.5Use of a Broken or Risky Cryptographic Algorithm in SICK RFU61x firmware version <v2.25 allows a low-privileged remote a...
CVE-2022-25675MEDIUM5.5Denial of service due to reachable assertion in modem while processing filter rule from application client in Snapdragon...
CVE-2022-20502MEDIUM5.5In GetResolvedMethod of entrypoint_utils-inl.h, there is a possible use after free due to a stale cache. This could lead...
CVE-2022-20500MEDIUM5.5In loadFromXml of ShortcutPackage.java, there is a possible crash on boot due to an uncaught exception. This could lead ...
CVE-2022-20498MEDIUM4.4In fdt_path_offset_namelen of fdt_ro.c, there is a possible out of bounds read due to an incorrect bounds check. This co...
CVE-2022-20497MEDIUM4.6In updatePublicMode of NotificationLockscreenUserManagerImpl.java, there is a possible way to reveal sensitive notificat...
CVE-2022-20496MEDIUM5.5In setDataSource of initMediaExtractor.cpp, there is a possibility of arbitrary code execution due to a use after free. ...
CVE-2022-20482MEDIUM5.5In createNotificationChannel of NotificationManager.java, there is a possible way to make the device unusable and requir...
CVE-2022-20476MEDIUM5.5In setEnabledSetting of PackageManager.java, there is a possible way to get the device into an infinite reboot loop due ...
CVE-2022-20471MEDIUM5.5In SendIncDecRestoreCmdPart2 of NxpMfcReader.cc, there is a possible out of bounds read due to a missing bounds check. T...
CVE-2022-20468MEDIUM6.5In BNEP_ConnectResp of bnep_api.cc, there is a possible out of bounds read due to an incorrect bounds check. This could ...
CVE-2022-20466MEDIUM5.5In applyKeyguardFlags of NotificationShadeWindowControllerImpl.java, there is a possible way to observe the user's passw...
CVE-2022-20449MEDIUM4.4In writeApplicationRestrictionsLAr of UserManagerService.java, there is a possible overwrite of system files due to a pa...
CVE-2022-46059MEDIUM6.5AeroCMS v0.0.1 is vulnerable to Cross Site Request Forgery (CSRF).
CVE-2022-44636MEDIUM4.6The Samsung TV (2021 and 2022 model) smart remote control allows attackers to enable microphone access via Bluetooth spo...
CVE-2022-44303MEDIUM6.1Resque Scheduler version 1.27.4 is vulnerable to Cross-site scripting (XSS). A remote attacker could inject javascript c...
CVE-2022-46061MEDIUM6.1AeroCMS v0.0.1 is vulnerable to ClickJacking.
CVE-2022-46058MEDIUM4.8AeroCMS v0.0.1 was discovered to contain a cross-site scripting (XSS) vulnerability via add_post.php. This vulnerability...
CVE-2022-46047MEDIUM4.9AeroCMS v0.0.1 is vulnerable to SQL Injection via the delete parameter.
CVE-2022-38124MEDIUM6.5Debug tool in Secomea SiteManager allows logged-in administrator to modify system state in an unintended manner.
CVE-2022-4444MEDIUM6.1A vulnerability was found in ipti br.tag. It has been declared as problematic. Affected by this vulnerability is an unkn...
CVE-2022-23523MEDIUM5.5In versions prior to 0.8.1, the linux-loader crate uses the offsets and sizes provided in the ELF headers to determine t...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now