2022 CVE Vulnerabilities

27,526 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-45180MEDIUM6.5An issue was discovered in LIVEBOX Collaboration vDesk through v018. Broken Access Control exists under the /api/v1/vdes...
CVE-2022-45178HIGH8.8An issue was discovered in LIVEBOX Collaboration vDesk through v018. Broken Access Control exists under the /api/v1/vdes...
CVE-2022-45175MEDIUM6.5An issue was discovered in LIVEBOX Collaboration vDesk through v018. An Insecure Direct Object Reference can occur under...
CVE-2022-45174CRITICAL9.8An issue was discovered in LIVEBOX Collaboration vDesk through v018. A Bypass of Two-Factor Authentication for SAML User...
CVE-2022-45173CRITICAL9.8An issue was discovered in LIVEBOX Collaboration vDesk through v018. A Bypass of Two-Factor Authentication can occur und...
CVE-2022-45170MEDIUM6.5An issue was discovered in LIVEBOX Collaboration vDesk through v018. A Cryptographic Issue can occur under the /api/v1/v...
CVE-2022-47027CRITICAL9.8Timmystudios Fast Typing Keyboard v1.275.1.162 allows unauthorized apps to overwrite arbitrary files in its internal sto...
CVE-2022-48468MEDIUM5.5protobuf-c before 1.4.1 has an unsigned integer overflow in parse_required_member.
CVE-2022-2445Rejected reason: Incorrectly assigned CVE. Not a valid issue.
CVE-2022-45358MEDIUM5.4Auth. (subscriber+) Reflected Cross-Site Scripting (XSS) vulnerability in Silkalns Activello theme <= 1.4.4 versions.
CVE-2022-44625MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting') vulnerability in Zephilou Cyklodev WP Notify plugin <= 1.2.1 versions.
CVE-2022-45064CRITICAL9The SlingRequestDispatcher doesn't correctly implement the RequestDispatcher API resulting in a generic type of include-...
CVE-2022-40532HIGH7.8Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
CVE-2022-40503HIGH7.5Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.
CVE-2022-33302HIGH7.8Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than ...
CVE-2022-33301HIGH7.8Memory corruption due to incorrect type conversion or cast in audio while using audio playback/capture when crafted addr...
CVE-2022-33298HIGH7.8Memory corruption due to use after free in Modem while modem initialization.
CVE-2022-33297MEDIUM5.5Information disclosure due to buffer overread in Linux sensors
CVE-2022-33296HIGH7.8Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Neighbor List Update...
CVE-2022-33295HIGH7.5Information disclosure in Modem due to buffer over-read while parsing the wms message received given the buffer and its ...
CVE-2022-33294HIGH7.5Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registration/update/bootstrap r...
CVE-2022-33291HIGH7.5Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.
CVE-2022-33289MEDIUM6.8Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.
CVE-2022-33288HIGH8.8Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write p...
CVE-2022-33287HIGH7.5Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now